ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 176.65.142.99:5052.

Database Entry


IOC ID:1539175
IOC: 176.65.142.99:5052
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Quasar RAT
Malware alias:CinaRAT, QuasarRAT, Yggdrasil
Confidence Level : Confidence level is high (100%)
ASN:AS214717 DOLPHINHOST-AS
First seen:2025-06-03 07:15:23 UTC
Last seen:never
UUID:84183378-404a-11f0-90ee-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:QuasarRAT RAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-06-03 11:15:32 9e112e2a8ca34f215042f5d331b4f79eca8003fe825594fcbf8936d32e9d2d7c
2025-06-03 07:25:28 617522e53742abc202436a8098084b4a26ba3a6a6dfd8899e7527269a0f55e96
2025-06-03 07:20:31 8a737222b87d1ba3e145c099feddd38893e9bd3864e0d505477347872d108941