ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 191.252.159.33:8539.

Database Entry


IOC ID:1871154
IOC: 191.252.159.33:8539
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remus
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS27715 Locaweb_Servios_de_Internet_S/A
Country:- BR
First seen:2026-08-09 06:31:00 UTC
Last seen:2026-08-20 00:32:33 UTC
UUID:7d88e02a-9372-11f1-8a3d-42010aa4000a
Reporter Bitsight
Reward 5 credits from ThreatFox
Tags:c2 d2a9afc03e8d4d0f85017c9598f91db6 Remus

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2026-08-19 19:25:20 4f92f1b658856b2662100c26dcd5f81525a74482b4fdebb16923ec27234f0a7e
2026-08-19 18:50:21 65af8ffdecfc2394c2a27c6d53880ad5b89de8fd201a69d33a34e31e320a3a5d
2026-08-19 18:30:27 1e4d72fcabed4e14fcc8b2e1b6a792beb72f3077ae03f91a76d040cb0c4520c7
2026-08-19 17:05:22 8c33d69fd0aa0a7b092e53c32e3961c3ee2350b73bd83d39478ec0eab512292f
2026-08-19 14:00:32 d3840bcd452fbd7df0083393d79e5848192231195a7242a018c0b8a991e3d3f8
2026-08-19 13:55:24 7ff4fe3f3d7784da58e257cc7ea7e4f7ce63255817e4b79be123144d3027cd62
2026-08-19 13:50:18 3f41440207e26e54813578765aaa5e3855dab36b33e48a3117ebbd5fa9c99606