ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 104.238.221.208:21732.

Database Entry


IOC ID:260107
IOC: 104.238.221.208:21732
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS23470 RELIABLESITE
Country:- US
First seen:2021-12-06 03:40:47 UTC
Last seen:2023-08-01 17:56:12 UTC
UUID:4c691fa5-5646-11ec-8ab6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-12-06 03:50:57 9ff74673a7307c3625a0f61fec014e79dbe25d3c467647d5c192c2185ebf128a
2021-12-06 03:50:56 98d93834f17d6f7bc2c5251740d38b8ba569c03b84e6f0124c2e519b9c61e40c
2021-12-06 03:40:48 963a73a00d5a09138b610d7a2a8cca387bced6b67c918a7708fb74bd88ac0c5e