ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 138.124.186.180:39821.

Database Entry


IOC ID:226555
IOC: 138.124.186.180:39821
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS210512 IT-COMM
Country:- KZ
First seen:2021-09-25 14:46:27 UTC
Last seen:2023-08-01 17:56:52 UTC
UUID:5d3b2516-1e0f-11ec-b078-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-09-25 21:36:50 d2864e311effcef848301945da620b92d1a982dbe2a708e0e380370113e71577
2021-09-25 15:16:00 5f6faf0507fca9db0b364b6d4718b24eb3880054ecace3207de384e8037852b2