ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 23.133.4.99:5555.

Database Entry


IOC ID:1626824
IOC: 23.133.4.99:5555
IOC Type :ip:port
Threat Type :botnet_cc
Malware: ValleyRAT
Malware alias:Winos
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS152918 LNL-AS-AP
Country:- US
First seen:2025-10-26 06:02:32 UTC
Last seen:2025-11-07 12:55:49 UTC
UUID:5ccf456c-b231-11f0-894e-42010aa4000a
Reporter DonPasci
Reward 10 credits from netresec
Tags:AS152918 c2 RAT triage ValleyRAT
Reference: https://tria.ge/251026-b1daasdj3s

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2026-02-04 12:40:25 b363a303ff19c9371c0a23ebc45b642e05cd9985837b1bdda6d6c3e581d340c5