ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 94.154.32.40:8383.

Database Entry


IOC ID:1758674
IOC: 94.154.32.40:8383
IOC Type :ip:port
Threat Type :botnet_cc
Malware: XWorm
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS214961 STELLARGROUPSAS
Country:- BE
First seen:2026-03-05 08:05:31 UTC
Last seen:2026-03-13 12:32:33 UTC
UUID:14bcb1ab-186a-11f1-9af6-42010aa4000a
Reporter abuse_ch
Reward 10 credits from Saber
10 credits from anonymous
Tags:XWorm
Reference: https://bazaar.abuse.ch/sample/6c3c5cd5b76fbb25f63902bc5d1cd032c1d3b72694b9ef17583fac1310f4f99c/

Avatar
abuse_ch
xworm botnet C2