ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 103.48.68.173:80.

Database Entry


IOC ID:1313897
IOC: 103.48.68.173:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Emotet
Malware alias:Geodo, Heodo
Confidence Level : Confidence level is elevated (75%)
ASN:AS136290 COUNTRYONLINE-AS-IN
Country:- IN
First seen:2024-08-20 14:20:29 UTC
Last seen:never
UUID:5a316e46-5eff-11ef-ac38-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:emotet
Reference: https://bazaar.abuse.ch/sample/b97a1ba326d7a6413d1ec7ef4966dba7cbfc0d100b4990cf0ea2d7071c2dfa01/

Avatar
abuse_ch
emotet (aka Geodo,Heodo) botnet C2