ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 213.209.159.158:22.

Database Entry


IOC ID:1783011
IOC: 213.209.159.158:22
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedTail
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS208137 FPS12
Country:- RO
First seen:2026-04-09 05:18:11 UTC
Last seen:never
UUID:46985629-337b-11f1-9af6-42010aa4000a
Reporter isaac1
Reward 5 credits from ThreatFox

Avatar
isaac1
Confirmed malicious hosting IP. Feo Prest SRL
(AS208137, feoprest.life) — suspected bulletproof
provider. Active TODAY 2026-04-08. Coordinated
RedTail distribution alongside 130.12.180.51
(AS202412). Same tooling, same hashes, same
campaign. Not spoofable — confirmed real source.