ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 104.37.1.32:5637.

Database Entry


IOC ID:5609
IOC: 104.37.1.32:5637
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NetWire RC
Malware alias:NetWeird, NetWire, Recam
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS36351 SOFTLAYER
Country:- US
First seen:2021-03-27 21:25:29 UTC
Last seen:never
UUID:f44522a4-8f42-11eb-858b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:NetWire RAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-03-28 05:40:18 4cbd0b1a1f9ae0ceea57df4f35037077539cce88e44f41eda079505b1fe7d119
2021-03-27 21:25:31 f8dca387469b2738777335c7e1a2da3e95bf7989e6eace00a6bb8adaa3c5db6b