ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 108.187.43.136:557.

Database Entry


IOC ID:1793638
IOC: 108.187.43.136:557
IOC Type :ip:port
Threat Type :botnet_cc
Malware: ValleyRAT
Malware alias:Winos
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS138995 ANTBOX1-AS-AP
Country:- HK
First seen:2026-04-17 17:32:59 UTC
Last seen:never
UUID:7a7493d8-3a83-11f1-8759-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:valleyrat_s2
Reference: https://bazaar.abuse.ch/sample/753e3923f63b122a65c886aac5932670d0dcd5c46a4cc4f5292da5c0dbea73ce/

Avatar
abuse_ch
valleyrat_s2 (aka Winos) botnet C2