ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 144.31.4.78:3333.

Database Entry


IOC ID:1738628
IOC: 144.31.4.78:3333
IOC Type :ip:port
Threat Type :botnet_cc
Malware: HijackLoader
Malware alias:DOILoader, GHOSTPULSE, IDAT Loader, SHADOWLADDER
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS215730 H2NEXUS-AS
Country:- UA
First seen:2026-01-28 21:08:58 UTC
Last seen:2026-04-14 19:12:55 UTC
UUID:8fd3d7ad-fc8d-11f0-b7d0-42010aa4000a
Reporter DonPasci
Reward 5 credits from ThreatFox
Tags:AS215730 c2 H2NEXUS-AS HijackLoader VirusTotal
Reference: https://www.virustotal.com/gui/file/6260f900197592b6d88f500c58e3bb03cc98606ac5f4f5c33b2953c2b3aa2309