ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 154.194.35.243:6677.

Database Entry


IOC ID:1570486
IOC: 154.194.35.243:6677
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NjRAT
Malware alias:Bladabindi, Lime-Worm
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS35916 MULTA-ASN1
Country:- US
First seen:2025-08-17 16:40:10 UTC
Last seen:never
UUID:d76fc46b-7b88-11f0-b2c6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:njrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-08-17 18:30:14 071085dd2b88ccbad112b380f7e51fbd34589c8e3a9266ff19f069b38e6175f6
2025-08-17 18:15:21 585f182fccf58a52584664fd66c58c080951f9deef4bed4fd772226e8f524ec8
2025-08-17 17:00:21 632e99e9d581110ecf24bfa136e7f5af0df8fe6dcdd98f91dee11136e8011964
2025-08-17 16:40:13 c6fedce36ff816688c229ee0436a1d17cd209ef8d808c229e95b438316f5327a