ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 5.188.168.132:81.

Database Entry


IOC ID:384605
IOC: 5.188.168.132:81
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS202422 GHOST
Country:- LU
First seen:2022-02-09 20:31:04 UTC
Last seen:never
UUID:342995d3-89e7-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-10 18:40:10 fd314021a32f1c8293c1edbd05ca4be90cea736551754e9e2b954aed2cca7e67
2022-02-09 20:36:03 7b40863ec74aadb8aa7f38657302a39c1699f3e49dfc35ad63f32a0d37c19933