ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 45.138.72.167:25882.

Database Entry


IOC ID:166004
IOC: 45.138.72.167:25882
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS28753 LEASEWEB-DE-FRA-10
Country:- NL
First seen:2021-08-07 10:35:29 UTC
Last seen:2023-08-01 18:02:24 UTC
UUID:2fc24d07-f76b-11eb-830d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-08-07 10:35:32 2e0b1b8b6c0f6a512152d19c53bc7690aa7a5c06e4cdd60f46c24b93972d8fec