ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 94.142.138.147:48665.

Database Entry


IOC ID:1116621
IOC: 94.142.138.147:48665
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS210644 AEZA-AS
Country:- RU
First seen:2023-05-16 07:05:15 UTC
Last seen:2023-08-11 21:04:03 UTC
UUID:022f8c7e-f3b8-11ed-8292-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2023-05-16 13:10:06 46014c170ea305219338090d42375c14ba1cfaaf520b6124b0b7ebc540620d37
2023-05-16 07:05:15 dbf87d0624b33c36770a628e1dc17682628bd5e83807f17154d0b2938e57f4b4