ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 157.90.251.148:53294.

Database Entry


IOC ID:72120
IOC: 157.90.251.148:53294
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS24940 HETZNER-AS
Country:- DE
First seen:2021-06-07 05:40:39 UTC
Last seen:2023-08-01 17:57:21 UTC
UUID:e479acea-c752-11eb-b17b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-06-07 09:15:29 0c8ad3a0485e2edad4d5cdde99d34434d79233c131edd06e6efa25f8bc86037e
2021-06-07 05:40:48 cc03001bc0a55b5ae872d210e94470745edb6d9465a87ea276a414c16ae6080a
2021-06-07 05:40:45 26483f30ef585dd1a6b988d2cbfb474adf6d45f91d6ed22dfd8474c1a374c1cc
2021-06-07 05:40:42 add6e9827625e6d09da7b134b34bfd0bc52d3c2a23e3efdefebd50319899a007
2021-06-07 05:40:42 76695f6c444b5dc5e8f8104ece90e45aa711df868faa0f0d88b730a8da54fc09