ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 5.188.168.132:80.

Database Entry


IOC ID:379316
IOC: 5.188.168.132:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS202422 GHOST
Country:- LU
First seen:2022-02-04 15:30:50 UTC
Last seen:never
UUID:6e825ebe-85cf-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-05 11:25:27 7fa24025283e6b745f20c81e15a8cdb866905fb079579b71efd9e659398cb574
2022-02-05 09:50:23 549953d5db2a4646740e721e24ec1b7fa57ef6c4d72ffa32752b17d4a65c36e4
2022-02-05 00:15:45 1e4b2af07cb9e6478dbf5051e1839a1f944e950a6f2dbadc94446928e46e7d45
2022-02-04 21:35:43 e00ddba4fd34c7b0f0f2e547ee9e3ff4c0cb4d906f1ca26b17ba2e3f459c59bd
2022-02-04 20:35:47 9e719c4dd5e1086d5197fded7b8cdb0d3d592c0636b0d469fcda22c9723e8e7c
2022-02-04 15:55:40 10c760b38e37d7df4fdb3caa56328e51943ac422018b1261fbd4820cdaa046d3