ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 176.65.132.12:5588.

Database Entry


IOC ID:1670039
IOC: 176.65.132.12:5588
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NjRAT
Malware alias:Bladabindi, Lime-Worm
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS51396 PFCLOUD
Country:- DE
First seen:2025-12-08 02:20:03 UTC
Last seen:2025-12-12 18:39:59 UTC
UUID:677e0476-d3dc-11f0-a341-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:njrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-12-08 02:20:05 c5518a2c94d6f6f1d38d6a55d5cb93e2e4d0a82f09088f0e1f583e46ff28ded9