🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain BiMQuT238p64emYwAjhVaw==.

Database Entry


IOC ID:1822208
IOC: BiMQuT238p64emYwAjhVaw==
IOC Type :domain
Threat Type :botnet_cc
Malware: XWorm
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
First seen:2026-06-04 06:30:40 UTC
Last seen:never
UUID:e828992d-5fde-11f1-a345-42010aa4000a
Reporter abuse_ch
Reward 10 credits from anonymous
Tags:XWorm
Reference: https://bazaar.abuse.ch/sample/ea84300a2c8500206df527ef2d2559a328e9b3efd41717c1a4d3e865d602c316/

Avatar
abuse_ch
xworm botnet C2 on port 23 TCP