ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 104.21.89.241:64.

Database Entry


IOC ID:1806972
IOC: 104.21.89.241:64
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Quasar RAT
Malware alias:CinaRAT, QuasarRAT, Yggdrasil
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS13335 CLOUDFLARENET
Country:- US
First seen:2026-05-05 11:16:07 UTC
Last seen:never
UUID:d0056674-4873-11f1-8759-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:quasar
Reference: https://bazaar.abuse.ch/sample/7f480546f41135ae91207f59a20c596bc8e53007e1d769831333683d43f9f7b7/

Avatar
abuse_ch
quasar (aka CinaRAT,QuasarRAT,Yggdrasil) botnet C2