ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 94.140.115.158:80.

Database Entry


IOC ID:28469
IOC: 94.140.115.158:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS43513 NANO-AS
Country:- LV
First seen:2021-05-03 19:55:58 UTC
Last seen:never
UUID:93f8eda1-ac49-11eb-a134-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-05-04 12:15:12 328c5eb8908b83c474ab4ab892ac1c2cae066f1f55dbcd15d850b54cc0f4c3cc
2021-05-03 19:56:00 9eeaa4a0bcfc641d7f395c5a7d5ac15a8d50b18f8ef1ac3545c55c5679367228