ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 79.134.225.92:4820.

Database Entry


IOC ID:136076
IOC: 79.134.225.92:4820
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Nanocore RAT
Malware alias:Nancrat, NanoCore
Confidence Level : Confidence level is high (100%)
ASN:AS6775 FINK-TELECOM-SERVICES
Country:- CH
First seen:2021-06-18 05:46:27 UTC
Last seen:never
UUID:861e423f-cff8-11eb-b17b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:NanoCore RAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-06-21 06:46:15 37956e4a54f70235fa01c97d058f98e06c2ae5115bf5d8a77cf7a0b262582b54
2021-06-18 06:46:32 0dec63ec7747612b9bb8ea25ff9b15c61635af01dcab0cf099fdb23bc5f58132
2021-06-18 05:46:30 959cdffe6cfb1d11b91bbf2d54fad6e8115d4d74034e39eb7c5ac157edc7d996