ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 198.135.49.79:4190.

Database Entry


IOC ID:1552539
IOC: 198.135.49.79:4190
IOC Type :ip:port
Threat Type :botnet_cc
Malware: XWorm
Confidence Level : Confidence level is high (100%)
ASN:AS396073 MAJESTIC-HOSTING-01
Country:- US
First seen:2025-07-02 08:01:39 UTC
Last seen:never
UUID:c8ade232-571a-11f0-a7f6-42010aa4000a
Reporter abuse_ch
Reward 50 credits from anonymous
10 credits from 01Xyris
50 credits from anonymous
10 credits from netresec
Tags:XWorm

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-07-02 08:01:42 47e617afb46967a44544313425c6c3d84d49758554feb1a7258149f2a3a23d2e