ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 197.234.221.30:8887.

Database Entry


IOC ID:1686447
IOC: 197.234.221.30:8887
IOC Type :ip:port
Threat Type :botnet_cc
Malware: XWorm
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS37424 Spacetel
Country:- BJ
First seen:2025-12-25 20:45:36 UTC
Last seen:2026-01-01 22:54:26 UTC
UUID:aa255b09-e1d2-11f0-9957-42010aa4000a
Reporter abuse_ch
Reward 10 credits from Saber
Tags:XWorm
Reference: https://bazaar.abuse.ch/sample/e7c30ad28271f6cd25745fe06ea3b01e1c5a50e3991a715fc9b843965e43af70/

Avatar
abuse_ch
xworm botnet C2