🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 45.239.9.8:22.

Database Entry


IOC ID:1915663
IOC: 45.239.9.8:22
IOC Type :ip:port
Threat Type :botnet_cc
Malware: XMRIG
Confidence Level : Confidence level is high (80%)
Is compromised? : True
ASN:AS264562 PBR_SERVICOS_DE_TELECOMUNICACOES_LTDA
Country:- BR
First seen:2026-09-12 13:44:25 UTC
Last seen:never
UUID:7a0ce280-aead-11f1-b569-42010aa4000a
Reporter Chuan_jian_guo
Reward 5 credits from ThreatFox
Tags:go-bot ssh-bruteforce

Avatar
Chuan_jian_guo
Aggressive SSH brute-force node: SSH-2.0-Go client, 23670 connections on 2026-09-08 and 10094 on 2026-09-09, zero success. Same toolchain as 103.105.67.170 (identical Go client + in-session 'ok' echo handshake). Sustained dictionary spraying.