ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://31.56.48.179:666/w.

Database Entry


IOC ID:1839852
IOC: http://31.56.48.179:666/w
IOC Type :url
Threat Type :payload_delivery
Malware: Unknown malware
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS56971 AS56971
Country:- HK
First seen:2026-06-30 04:50:38 UTC
Last seen:2026-06-29 16:03:10 UTC
UUID:4160a1e0-73d2-11f1-97fa-42010aa4000a
Reporter Stateoftheattack
Reward 5 credits from ThreatFox
Tags:container-escape credential-harvest cryptojacking cve-2026-31431 docker teampcp TeamTNT
Reference: https://stateoftheattack.com/campaign/scattershell-teampcp-v21