ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 52.43.119.120:80.

Database Entry


IOC ID:1838147
IOC: 52.43.119.120:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS16509 AMAZON-02
Country:- US
First seen:2026-06-26 15:00:04 UTC
Last seen:2026-06-27 03:55:02 UTC
UUID:b65db7c4-716f-11f1-97fa-42010aa4000a
Reporter abuse_ch
Reward 10 credits from azizr2779
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2026-06-26 15:00:08 d20ac6d6eda2d70adf552f3bca04c1e030611df9e61febee7246b87410e68d6e