ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 185.253.7.41:49508.

Database Entry


IOC ID:303332
IOC: 185.253.7.41:49508
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS204601 PODAON
Country:- NL
First seen:2022-01-19 19:12:28 UTC
Last seen:2023-08-01 17:59:13 UTC
UUID:be67f2de-795b-11ec-8ab6-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-01-20 13:57:24 db58a1794f9948d2a5f535298d004fde0392acb4bec6ec92be2dd51c467d043f
2022-01-20 06:37:31 0e988e5af62ae1e0f16d79d8345b9c3923c011c4b3d50020e60ceec507c65b61
2022-01-19 22:51:37 672dd4755045abaf5a6f52ab0d4cbdc1f7dec73ed6b575f10e73dfea17f99822
2022-01-19 19:12:29 633a9612349d1981d9ed3714f48054be6b60a13f1370aed7ef92eaf7791e2183