ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 94.140.115.194:80.

Database Entry


IOC ID:161418
IOC: 94.140.115.194:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS43513 NANO-AS
Country:- LV
First seen:2021-07-20 03:21:36 UTC
Last seen:never
UUID:9762cbad-e909-11eb-b17b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-10-26 21:56:16 00fb6f91b51ac26bee53b42937074c9a0f662e9e2b0b9a70a7caba2547c68c65
2021-10-26 21:16:07 0081ce7f8c3a50f714bcdf68069b66827e59bd089b2e1d9adabdaa58fdb51464
2021-07-20 19:01:06 db875cea3177f0eea47e5d5fbeb92633343716b7477a7ae328c68e6f11a67308
2021-07-20 12:31:14 d79a379ce1fcbe1e3548dfde37f6c2591f2ebf8de6c0d0db6f282933e529cf53
2021-07-20 03:56:30 817a50d00909383bbef41e6f4e61b527d55f0873bcf745b29dbba75f52fe2e97