ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 65.21.141.215:8374.

Database Entry


IOC ID:192438
IOC: 65.21.141.215:8374
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS24940 HETZNER-AS
Country:- DE
First seen:2021-08-20 11:26:09 UTC
Last seen:2023-08-01 18:04:16 UTC
UUID:6aedc14f-01a9-11ec-830d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-08-20 16:56:36 8c6e8a02877680a2b503cef0b068b452221f95e68f9131a59421ca95c4339eb2
2021-08-20 16:26:34 8657e386693f95e28e69b6a24876daa5f54052fabb2b6c2e1238bc55b6d85b09
2021-08-20 15:31:34 f2dc381b529cbc75c03ca8bf1886b0ee6b1e2622f8918a27a876c50889e2ae7e
2021-08-20 14:56:11 b46fa39b04cb5928c3dd9c1bbcbd9008401d98faff5e42115102b00c60fbd486
2021-08-20 14:41:08 0a823cbd6a32a10c927253fa40466c8a3177e487ee7895a8a2e244a9b4c415fc
2021-08-20 14:36:35 142483644d21d3bbdde166a2848e7819f91197a51ffdb64567168ec11dd0b321
2021-08-20 14:06:15 8a0c92492986fc6dde9450672a3f76d05beee65f95b997a7866c7bba341bbaa2
2021-08-20 14:01:20 78f958d430a4dec84e4126958d0bde722beab77f03f1ecd733ba94827997dec7
2021-08-20 11:41:15 b817002c69c6315e116f14d6fe64151577999eb773842f052fb17d9a7413a53c
2021-08-20 11:36:13 3b15547e53d7254ec42974dc5a1d7b72cffd722a41114944b5606a845be7b76d