ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 20.206.109.185:1389.

Database Entry


IOC ID:294746
IOC: 20.206.109.185:1389
IOC Type :ip:port
Threat Type :payload_delivery
Malware: Mirai
Malware alias:Katana
Confidence Level : Confidence level is elevated (75%)
First seen:2022-01-13 17:57:41 UTC
Last seen:never
UUID:4d2c78d1-749a-11ec-8ab6-42010aa4000a
Reporter @abuse_ch
Reward 5 credits from ThreatFox
Tags:CVE-2021-44228 log4j Mirai rogue-ldap
Reference: https://urlhaus.abuse.ch/host/2.56.56.117/

Twitter
@abuse_ch
Rogue LDAP server used in log4j (CVE-2021-44228) exploitation attempts spreading Mirai