ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 95.216.85.83:28608.

Database Entry


IOC ID:388140
IOC: 95.216.85.83:28608
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS24940 HETZNER-AS
Country:- DE
First seen:2022-02-16 12:51:05 UTC
Last seen:never
UUID:1a8b2643-8f27-11ec-a022-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-02-17 06:50:45 5d99125b0d97ba0abfcf9916c1a05081c1cc117eb2afaaab39a6f95a60e42ab3
2022-02-16 12:56:00 29e2eb857dc6f1b5c2ce97acdad6c3957cbb8dc61b3a5dcaa81e9e925bc006a5
2022-02-16 12:51:06 bb5ec56740f8e99fe4bf5b43e7fd7db75d678a7273dd418060b610e60185cc20