ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://5.252.195.219:40355/.

Database Entry


IOC ID:5653
IOC: http://5.252.195.219:40355/
IOC Type :url
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS44812 IPSERVER-RU-NET
Country:- RU
First seen:2021-03-28 21:25:51 UTC
Last seen:never
UUID:2c0f479a-900c-11eb-858b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-03-29 08:35:29 1c88f5a9499a54522c8338fb93c326debeb890fb08251ce29fcf19ae7441d11c
2021-03-29 02:35:27 689ca59de6d01b808fa447086aefd829f18f5b628c279148220188ab95e66cf1
2021-03-29 01:10:15 9f6213768398115934da0a8ad4c3a6c021f6faa1103c25bb9d994153b08b9e5e
2021-03-28 21:25:55 6aa1689c65b3af4d5e9f3d5774c0ecdd2cfd1e9c439e8f905832b9fcdf6951e5