ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 178.16.54.254:49965.

Database Entry


IOC ID:1616975
IOC: 178.16.54.254:49965
IOC Type :ip:port
Threat Type :botnet_cc
Malware: XWorm
Confidence Level : Confidence level is high (100%)
ASN:AS214943 RAILNET
Country:- US
First seen:2025-10-17 04:55:09 UTC
Last seen:never
UUID:74fb7de6-ab15-11f0-894e-42010aa4000a
Reporter abuse_ch
Reward 10 credits from akanine1337
10 credits from Saber
Tags:XWorm

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-10-17 04:55:11 9adfd64cfe4fe95eb8e6d74e84a9cb9acf3449a4d39097d3ba78ff44e4132492