🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 175.194.143.205:8000.

Database Entry


IOC ID:1533077
IOC: 175.194.143.205:8000
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Ghost RAT
Malware alias:Farfli, Gh0st RAT, PCRat
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS4766 KIXS-AS-KR
Country:- KR
First seen:2025-05-23 22:10:19 UTC
Last seen:never
UUID:b6afcba0-3822-11f0-90ee-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:Gh0stRAT RAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-05-24 09:45:34 b25d4a715168af6c3f1ba9cbbae511ee7d111afd4b3aaf87c2a16a4411cd4bd8
2025-05-24 07:45:24 b3fa3f7dc6c2b088001cc99393897a243922a49f45c10e3361b771e43065c968
2025-05-24 02:45:25 0feca1ec2a554be5179ecad65d8de9c26c3b8e46cb192c636ea19c226460aca7
2025-05-23 22:10:23 2b62027afa63d743ade31d0d7aa567dee371127ec72221fc15762e8c3a66baea