ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 80.85.138.229:4064.

Database Entry


IOC ID:247967
IOC: 80.85.138.229:4064
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS204601 PODAON
Country:- NL
First seen:2021-11-13 17:39:48 UTC
Last seen:2023-08-01 18:04:59 UTC
UUID:b26a7e8c-44a8-11ec-8ab6-42010aa4000a
Reporter fish_illuminati
Reward 5 credits from ThreatFox
Tags:RedLineStealer
Reference: https://app.any.run/tasks/57fcfd4e-c661-4839-b2bd-d2b5f9292b5c

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-11-18 19:06:49 8ec387e2f939562019e489bedf349bb3807713a0168021ec2505aa7d392b04d4
2021-11-18 18:56:40 1aba3ebf5fc7d6221270fa7e13713216e06b678b197524a35d3a5cd9b1e0d857
2021-11-18 17:26:36 3ed3b03c36265ddffd8382859b7545cec6955331f85907018adc4bacde22e70e
2021-11-18 15:01:59 50d77a8a5e5ced0e79891d026a9329744a23b75e80359e4a2b23bab1eaa95188