ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 65.108.20.113:4279.

Database Entry


IOC ID:715144
IOC: 65.108.20.113:4279
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS24940 HETZNER-AS
Country:- DE
First seen:2022-06-16 18:27:19 UTC
Last seen:2023-08-01 18:04:04 UTC
UUID:f52235e1-eda1-11ec-a2e7-42010aa4000a
Reporter fish_illuminati
Reward 5 credits from ThreatFox
Tags:RedLineStealer
Reference: https://app.any.run/tasks/e1b23e2c-afed-4569-94ba-884c9e23fa2e

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-10-13 13:35:23 431443649e82b6bd0d382d6bfae82144a9849566ed401df4d3baf155c2a8ec55