ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 195.2.84.92:5328.

Database Entry


IOC ID:384295
IOC: 195.2.84.92:5328
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS48282 VDSINA-AS
Country:- RU
First seen:2022-02-08 21:31:19 UTC
Last seen:never
UUID:74303910-8926-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-12 08:05:41 06db093414f42d7669e57d31a8d563c71018e8d75c886244b77a6a9bc86b6fdb
2022-02-09 20:35:07 7b40863ec74aadb8aa7f38657302a39c1699f3e49dfc35ad63f32a0d37c19933
2022-02-08 21:31:22 0a7682c0607e0fcb3580d28aec0e3439d6eae0cde1ab3359832046f7f33cdb0f