🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 185.53.179.128:443.

Database Entry


IOC ID:1747029
IOC: 185.53.179.128:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Lumma Stealer
Malware alias:LummaC2 Stealer
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS61969 TEAMINTERNET-AS
Country:- DE
First seen:2026-02-13 06:09:44 UTC
Last seen:2026-02-16 14:45:31 UTC
UUID:00075f69-085f-11f1-a068-42010aa4000a
Reporter Neiki
Reward 5 credits from ThreatFox
Tags:ARCH-DOC ARCH-EXEC discovery FINGERPRINTING Lumma stealer
Reference: https://www.threat.rip/file/bc4938515098bc1f4081cd3f32d2021ccdfbe77973a5724b48532d04f9a19fd4/config

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2026-02-15 20:40:06 0ecbe1f822dfe8275839a986aef349a04d6772a2beee2c4269670fbb5456326a