ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 194.113.106.38:26940.

Database Entry


IOC ID:66885
IOC: 194.113.106.38:26940
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS48282 VDSINA-AS
Country:- RU
First seen:2021-05-29 17:05:28 UTC
Last seen:2023-08-01 18:00:00 UTC
UUID:11a0cbb8-c0a0-11eb-b17b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-05-30 07:50:20 c97f29867924b2a7bfc24e6d44ec58da21b5450479becdf3ffda0086b37deb0f
2021-05-29 17:20:21 2e29c4a8aa64659e07fb2e157f5a3f2cc6e322ed5b9299b15aa40886acf5c6f9