ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 194.5.98.45:4040.

Database Entry


IOC ID:442892
IOC: 194.5.98.45:4040
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Nanocore RAT
Malware alias:Nancrat, NanoCore
Confidence Level : Confidence level is elevated (75%)
ASN:AS149020 WEBHORIZON-AS-AP
Country:- IN
First seen:2022-03-23 14:35:35 UTC
Last seen:2023-09-27 18:38:34 UTC
UUID:8073716d-aab6-11ec-8c1d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:NanoCore
Reference: https://bazaar.abuse.ch/sample/17bfeb7d3ce99be98b31104b4e05c406becc5c3c0d1995fd8cdece16e7d8531f/

Avatar
abuse_ch
nanocore (aka Nancrat,NanoCore) botnet C2

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-03-23 18:27:22 81fe733026110d1d4ff33cccb9a79a593af2b7db12a4b34f0feab313ab3655a2