ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 52.254.91.238:443.

Database Entry


IOC ID:1811225
IOC: 52.254.91.238:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Sliver
Confidence Level : Confidence level is moderate (50%)
Is compromised? : False
ASN:AS8075 MICROSOFT-CORP-MSN-AS-BLOCK
Country:- US
First seen:2026-05-12 14:50:44 UTC
Last seen:never
UUID:cdf8660a-4d9e-11f1-b930-42010aa4000a
Reporter sojubear
Reward 5 credits from ThreatFox
Tags:8075 c2 censys sliver

Avatar
sojubear
Automated C2 detection - sliver infrastructure