ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 137.175.73.149:3878.

Database Entry


IOC ID:1631179
IOC: 137.175.73.149:3878
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Quasar RAT
Malware alias:CinaRAT, QuasarRAT, Yggdrasil
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS54600 PEG-SV
Country:- US
First seen:2025-11-02 12:02:07 UTC
Last seen:2025-11-07 12:55:16 UTC
UUID:c14630e0-b7e3-11f0-894e-42010aa4000a
Reporter DonPasci
Reward 5 credits from ThreatFox
Tags:AS54600 c2 quasar RAT triage
Reference: https://tria.ge/251102-g2zgtaas6h

Avatar
DonPasci
Office2025

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-11-07 21:20:06 459911f0b95584e0741a32a4e9a66916b827e831a9f21a1c3f88dd743155c95c