ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 144.202.1.189:21.

Database Entry


IOC ID:1318558
IOC: 144.202.1.189:21
IOC Type :ip:port
Threat Type :botnet_cc
Malware: ShadowPad
Malware alias:POISONPLUG.SHADOW, XShellGhost
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS20473 AS-VULTR
Country:- US
First seen:2024-09-01 08:15:18 UTC
Last seen:never
UUID:c08ead79-67bf-11ef-ac38-42010aa4000a
Reporter sudous3r
Reward 50 credits from Sampath84248919
Tags:c2 censys shadowpad
Reference: https://search.censys.io/hosts/144.202.1.189?resource=hosts&sort=RELEVANCE&per_page=25&virtual_hosts=EXCLUDE&q=SHADOWPAD&at_time=2024-08-31T14%3A15%3A14.470Z