ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 3.127.253.86:16995.

Database Entry


IOC ID:1563323
IOC: 3.127.253.86:16995
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NjRAT
Malware alias:Bladabindi, Lime-Worm
Confidence Level : Confidence level is elevated (75%)
ASN:AS16509 AMAZON-02
Country:- US
First seen:2025-08-02 09:32:10 UTC
Last seen:never
UUID:158a5122-6f7f-11f0-851c-42010aa4000a
Reporter threatquery
Reward 5 credits from ThreatFox
Tags:AS16509 c2 njrat threatquery
Reference: https://threatquery.com/engines/ip.html?value=3.127.253.86&type=ip

Avatar
threatquery
Submitted from threatquery threat intelligence platfrom to make internet safer.

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-08-05 03:35:12 6351577adc7052cc74c414372305602d829c52dcacce43562021248606272c59