ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 20.187.1.254:443.

Database Entry


IOC ID:1440139
IOC: 20.187.1.254:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: ReedBed
Confidence Level : Confidence level is high (100%)
ASN:AS8075 MICROSOFT-CORP-MSN-AS-BLOCK
Country:- US
First seen:2025-03-03 12:53:27 UTC
Last seen:never
UUID:803d925a-f82e-11ef-a488-42010aa4000a
Reporter Rony
Reward 5 credits from ThreatFox
Tags:Backconnect QakBot trendmicro
Reference: https://www.trendmicro.com/en_us/research/25/b/black-basta-cactus-ransomware-backconnect.html

Avatar
Rony
from https://www.trendmicro.com/en_us/research/25/b/black-basta-cactus-ransomware-backconnect.html