ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 5.253.63.156:80.

Database Entry


IOC ID:379567
IOC: 5.253.63.156:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS49981 WorldStream
Country:- NL
First seen:2022-02-06 08:50:53 UTC
Last seen:never
UUID:e41d185c-8729-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-06 11:26:11 45035bf547b0aa25f7df53e6b904422c870c2f002c05680548737dc76c0dd191
2022-02-06 11:01:13 d2d0690651be391bb60affcb094efc79b3aafae8587103eed4595717191d981f
2022-02-06 08:50:55 027dd9d41ae5364eafb8ad151321a32b1b7d1d20eb02db7bc2c94dcfaceaff95