ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 31.220.4.216:54573.

Database Entry


IOC ID:7316
IOC: 31.220.4.216:54573
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NetWire RC
Malware alias:NetWeird, NetWire, Recam
Confidence Level : Confidence level is high (100%)
ASN:AS63473 HOSTHATCH
Country:- US
First seen:2021-04-08 08:55:44 UTC
Last seen:never
UUID:33fcae9e-9848-11eb-858b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:NetWire RAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-04-09 07:40:09 5dfa632fd080886a0b7a3c236e15081a41929e3d617f0aeb02c06d1c5d583b67
2021-04-09 04:15:15 71f9ec40a29963c0e4948e565b2832dbe8b879143b74b432c2087b700a982dae
2021-04-08 20:10:28 59dfc2ac190104ed3eff9c2c77f80e9e6ca18f84e7c4845ac713a30a8668280e
2021-04-08 08:55:46 eaa2ffea97ff065ac6270e67d8d96664360ea8cde77b78a4cc19949a63ed3563