ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 156.247.41.70:6666.

Database Entry


IOC ID:1608885
IOC: 156.247.41.70:6666
IOC Type :ip:port
Threat Type :botnet_cc
Malware: ValleyRAT
Malware alias:Winos
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS401739 REDLUFF-NET01
Country:- HK
First seen:2025-10-07 17:55:07 UTC
Last seen:never
UUID:c28c5dc7-a3a6-11f0-894e-42010aa4000a
Reporter abuse_ch
Reward 10 credits from netresec
Tags:RAT ValleyRAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-10-07 18:40:11 3f210a1b33e11acd7c2cd189312bb541d0e7b1f0bbd7564e8f3bb02025680f80
2025-10-07 17:55:09 64f099327947fe21c770ada4c870a1d25304cda4f028973d7098b3f831771ceb