ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 23.254.217.192:443.

Database Entry


IOC ID:454603
IOC: 23.254.217.192:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: DanaBot
Malware alias:DanaTools
Confidence Level : Confidence level is high (100%)
ASN:AS54290 HOSTWINDS
Country:- US
First seen:2022-03-26 17:05:59 UTC
Last seen:2024-06-04 09:23:04 UTC
UUID:02301bb5-ad27-11ec-8c1d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:danabot

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-03-27 06:55:42 9310daf6d10f4fbfaf390e74bcf1c4d9acc023d7db3e26030f8772528572a22a
2022-03-26 23:20:54 5aecb2a5bc5447dc736c29882193fef4f2b007299a1817c664e1ba6a028363cf
2022-03-26 20:06:13 157757f5065076824ea142b1e3910b51326149a0a457f986cc4270b5fec1d319
2022-03-26 17:06:01 e1511e934906072c0717e68c0a05b04c61846f7ad15ce323b61f854a24c86b15