ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 194.87.71.4:3431.

Database Entry


IOC ID:548028
IOC: 194.87.71.4:3431
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS207713 GIR-AS
Country:- RU
First seen:2022-05-04 00:56:06 UTC
Last seen:2023-08-01 18:00:47 UTC
UUID:fac49d95-cb44-11ec-bf24-42010aa4000a
Reporter fish_illuminati
Reward 5 credits from ThreatFox
Tags:185128129099 RedLineStealer
Reference: https://tria.ge/220504-a7ldtacgc5

Avatar
fish_illuminati
Botnet - 1851281290_99
C2 - 194.87.71.4:3431

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-05-04 09:11:35 f3880e401bccfd6fabb58040b81a52f55cffb843d2aef2cffc7d63aa192e08a2