ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 91.193.75.132:7668.

Database Entry


IOC ID:817366
IOC: 91.193.75.132:7668
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Nanocore RAT
Malware alias:Nancrat, NanoCore
Confidence Level : Confidence level is elevated (75%)
ASN:AS3214 XTOM
Country:- DE
First seen:2022-07-08 08:43:54 UTC
Last seen:2023-09-27 18:39:03 UTC
UUID:19248c92-fe9a-11ec-8276-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:NanoCore
Reference: https://bazaar.abuse.ch/sample/b57e26ecd6f5d47c9f82989f62fe0ec5355e5237a911c675d70304e1a27b699b/

Avatar
abuse_ch
nanocore (aka Nancrat,NanoCore) botnet C2

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-07-08 09:20:48 97d257d5265e902c2be8ec77fcd4884983ea6a082457c0e64b291152fc6507ab