ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 3.138.180.119:11271.

Database Entry


IOC ID:255358
IOC: 3.138.180.119:11271
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NjRAT
Malware alias:Bladabindi, Lime-Worm
Confidence Level : Confidence level is high (100%)
ASN:AS16509 AMAZON-02
Country:- US
First seen:2021-11-27 17:56:13 UTC
Last seen:never
UUID:4fb13fe4-4fab-11ec-8ab6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:njrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-11-27 18:50:53 534b9bc8809ae37a2beada5b9d868bda1c17c32be812ec3b30de2ad2382014a0
2021-11-27 17:56:14 83b1180e8794a4d719586d4f5fe237b37167ef93c186d3c0976a70d39541c72f