ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 62.171.142.134:6379.

Database Entry


IOC ID:1825060
IOC: 62.171.142.134:6379
IOC Type :ip:port
Threat Type :payload_delivery
Malware: XMRIG
Confidence Level : Confidence level is high (85%)
Is compromised? : False
ASN:AS51167 CONTABO
Country:- DE
First seen:2026-06-08 14:42:24 UTC
Last seen:never
UUID:441f4734-632e-11f1-a345-42010aa4000a
Reporter nullblue67
Reward 5 credits from ThreatFox
Tags:module-load Muhstik redis
Reference: https://twitter.com/NullBlue67

Avatar
nullblue67
Redis Muhstik-style RCE: CONFIG SET dir /var/spool/cron/ + dir /tmp/ dbfilename exp.so, SLAVEOF + MODULE LOAD exp.so (sha256 4c1bef5e, 29/76 VT). 2026-06-08 NullBlue67