ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 66.63.187.164:8595.

Database Entry


IOC ID:1545365
IOC: 66.63.187.164:8595
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NjRAT
Malware alias:Bladabindi, Lime-Worm
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS214943 RAILNET
Country:- US
First seen:2025-06-16 13:19:07 UTC
Last seen:2025-06-28 22:26:13 UTC
UUID:7b6a7daf-4ab4-11f0-a7f6-42010aa4000a
Reporter DonPasci
Reward 5 credits from ThreatFox
Tags:AS214943 c2 njrat RAILNET
Reference: https://tria.ge/250616-p32bssxqy3

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-06-20 01:50:21 e09b4ab71ba4f6cc7c6d81c613c96e1934ee6f7c356d6ab715e3bb97369c18da