ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 190.2.136.29:15554.

Database Entry


IOC ID:236643
IOC: 190.2.136.29:15554
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS49981 WorldStream
Country:- NL
First seen:2021-10-22 18:44:35 UTC
Last seen:2025-06-30 18:01:47 UTC
UUID:1a8da747-3368-11ec-a35f-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-10-23 06:27:34 8867a5229762e4b01828f7295c0821f4acd8545acb7fc648b05b87da54754120
2021-10-22 18:44:38 ee469f144571531a0b2961a624141b76c6ed18ec2f6d72badb86bd46ad430b44
2021-10-22 18:44:36 118d0ce35d4f5528b2883f244355ff9cee93dcc8ca25bdd9a121f503df979e61