ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 52.147.204.230:38212.

Database Entry


IOC ID:455378
IOC: 52.147.204.230:38212
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS8075 MICROSOFT-CORP-MSN-AS-BLOCK
Country:- US
First seen:2022-03-27 02:36:21 UTC
Last seen:2023-08-01 18:03:53 UTC
UUID:afffeb5f-ad76-11ec-8c1d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-03-27 13:05:50 16b06e8167e896b08f1d711c6966f1fb855f76ba50c3fd9266ec419ef285b18f
2022-03-27 02:36:23 709eaae9c64a81ed67b776375c84ac1e2aef80a3ace7753f05e0587f0af1ed17