ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 91.243.59.140:6198.

Database Entry


IOC ID:379387
IOC: 91.243.59.140:6198
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS59729 ITL-BG
Country:- BG
First seen:2022-02-04 20:30:52 UTC
Last seen:2023-08-01 18:06:26 UTC
UUID:58fb26fd-85f9-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-05 13:45:40 5379c83b35d84600a7786806f15c3d6ab30e7b8bbbd4fc37b2d31898dcd6fe87
2022-02-04 20:36:13 9e719c4dd5e1086d5197fded7b8cdb0d3d592c0636b0d469fcda22c9723e8e7c