ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 57.128.132.216:55123.

Database Entry


IOC ID:1774959
IOC: 57.128.132.216:55123
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS16276 OVH
Country:- FR
First seen:2026-03-24 13:51:55 UTC
Last seen:2026-03-24 15:01:19 UTC
UUID:9ec09b78-2788-11f1-9af6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLine
Reference: https://bazaar.abuse.ch/sample/d1156dbb3b3355d9decf9af50beeab52e3214557fd85be73147feddc57ef11a8/

Avatar
abuse_ch
redline (aka RECORDSTEALER) botnet C2