ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 38.181.23.21:443.

Database Entry


IOC ID:1686179
IOC: 38.181.23.21:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Ghost RAT
Malware alias:Farfli, Gh0st RAT, PCRat
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS140227 HKCICL-AS-AP
Country:- HK
First seen:2025-12-25 08:08:08 UTC
Last seen:2025-12-31 11:41:53 UTC
UUID:d960cd65-e168-11f0-9957-42010aa4000a
Reporter DonPasci
Reward 5 credits from ThreatFox
Tags:AS140227 c2 Farfli Gh0stRAT HKCICL-AS-AP RAT
Reference: https://x.com/K_N1kolenko/status/2004077600076153198