ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 179.43.139.80:80.

Database Entry


IOC ID:1817389
IOC: 179.43.139.80:80
IOC Type :ip:port
Threat Type :payload_delivery
Malware: XMRIG
Confidence Level : Confidence level is moderate (60%)
Is compromised? : False
ASN:AS51852 PLI-AS
Country:- PA
First seen:2026-05-23 08:59:07 UTC
Last seen:never
UUID:31c06b38-5607-11f1-b930-42010aa4000a
Reporter nullblue67
Reward 5 credits from ThreatFox
Tags:dota3 failover-c2 outlaw xmr-pool

Avatar
nullblue67
Failover XMR mining pool listed in Outlaw dota3 crond config (sibling C2 commented in pools array). Private Layer INC. VT 0/91 but strong correlation: same operator cluster as 179.43.139.83, .84.