🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 143.20.154.42:80.

Database Entry


IOC ID:1959514
IOC: 143.20.154.42:80
IOC Type :ip:port
Threat Type :payload_delivery
Malware: Mirai
Malware alias:Katana
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS214677 DeluxHost
Country:- IT
First seen:2026-10-10 06:01:59 UTC
Last seen:2026-10-09 22:15:38 UTC
UUID:f4ed6f76-c42e-11f1-bd13-42010aa4000a
Reporter vlasovmichael
Reward 5 credits from ThreatFox
Tags:honeypot

Avatar
vlasovmichael
Served http://143.20.154.42/bins/wget.sh to an attacker on an SSH honeypot (sha256 81a7cdbbf15c84b01f5144fa45f4148dd12a373df07ea37850510cc3b0694d92)