ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 147.185.221.17:61202.

Database Entry


IOC ID:1740931
IOC: 147.185.221.17:61202
IOC Type :ip:port
Threat Type :botnet_cc
Malware: XWorm
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS400519 PLAYIT-GG
Country:- US
First seen:2026-02-04 07:44:41 UTC
Last seen:2026-02-23 04:19:05 UTC
UUID:498b7c97-0147-11f1-ac94-42010aa4000a
Reporter Neiki
Reward 10 credits from Saber
10 credits from anonymous
Tags:AUTO-REG AUTO-STARTUP execution persistence RAT trojan
Reference: https://www.threat.rip/file/c60637c94d8ada9a2e969bcd5628c3aca49e0417d36fb39fab168f70a3ef70b9/config