🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 91.200.14.203:80.

Database Entry


IOC ID:1906820
IOC: 91.200.14.203:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Hook
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS209641 I-SERVERS-EAST
Country:- RU
First seen:2026-09-10 05:13:49 UTC
Last seen:never
UUID:030bf60e-acb7-11f1-b569-42010aa4000a
Reporter tajapps
Reward 5 credits from ThreatFox
Tags:Android hook
Reference: https://tajapps.com/research/hook.html

Avatar
tajapps
Recovered via automated detonation on Privara Unmask (TAJ APPS LLC). Sample SHA-256 e29def53e832ca9ca4d5a6c80d1c3c6d4f801c5f3f2ba50cc7f528fafee21b65 (pkg com.taramasdan.cm). Endpoint observed at runtime via kernel-level connect tracing; PTR 140262.luxhost.cc. Offline/historical at analysis time.