ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 103.79.120.71:5000.

Database Entry


IOC ID:1381881
IOC: 103.79.120.71:5000
IOC Type :ip:port
Threat Type :botnet_cc
Malware: PlugX
Malware alias:Destroy RAT, Kaba, Korplug, Sogu, TIGERPLUG, RedDelta
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS137443 CHANGLIAN-AS-AP
Country:- CN
First seen:2025-01-11 19:42:06 UTC
Last seen:never
UUID:237cf4ef-d054-11ef-893f-42010aa4000a
Reporter Rony
Reward 5 credits from ThreatFox
Tags:DarkPeony Operation ControlPlug
Reference: https://search.censys.io/hosts/103.79.120.71?at_time=2025-01-08T00%3A47%3A45.557Z