ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 128.0.1.9:9302.

Database Entry


IOC ID:1749859
IOC: 128.0.1.9:9302
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Quasar RAT
Malware alias:CinaRAT, QuasarRAT, Yggdrasil
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS44547 NetundWeb
Country:- TR
First seen:2026-02-17 12:30:37 UTC
Last seen:2026-02-19 18:30:54 UTC
UUID:81cf83a2-0bdf-11f1-a068-42010aa4000a
Reporter Neiki
Reward 5 credits from ThreatFox
Tags:AUTO-REG AUTO-STARTUP defense_evasion discovery execution Loader NETREACTOR persistence quasar
Reference: https://www.threat.rip/file/f7278de146714fe6f7eda96c380542b340c4d67e9962848ecd6162eadc33f0b6/config