ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 200.4.115.1:80.

Database Entry


IOC ID:1820692
IOC: 200.4.115.1:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: XMRIG
Confidence Level : Confidence level is high (80%)
Is compromised? : False
ASN:AS271332 MS_NET
Country:- BR
First seen:2026-06-01 20:49:31 UTC
Last seen:never
UUID:2a0e48d8-5ddc-11f1-b930-42010aa4000a
Reporter nullblue67
Reward 5 credits from ThreatFox
Tags:miner payload-host perfctl-killer postgres xmrig
Reference: https://twitter.com/NullBlue67

Avatar
nullblue67
Perfctl-killer miner C2 hosting promocioni3.php captured via PG COPY FROM PROGRAM 2026-06-01