ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 168.144.45.211:2375.

Database Entry


IOC ID:1831958
IOC: 168.144.45.211:2375
IOC Type :ip:port
Threat Type :payload_delivery
Malware: RedTail
Confidence Level : Confidence level is high (85%)
Is compromised? : False
ASN:AS14061 DIGITALOCEAN-ASN
Country:- US
First seen:2026-06-14 10:39:31 UTC
Last seen:never
UUID:ab91f704-67b8-11f1-9e0e-42010aa4000a
Reporter nullblue67
Reward 5 credits from ThreatFox
Tags:docker-api Redtail ssh-key-plant
Reference: https://twitter.com/NullBlue67

Avatar
nullblue67
Docker API exec planting OpenSSH key + SCP-pull Redtail (cve_2024_4577 pattern). 2026-06-14 NullBlue67