ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 194.93.2.28:21390.

Database Entry


IOC ID:839673
IOC: 194.93.2.28:21390
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS197309 RSMedia-AS
Country:- RU
First seen:2022-07-26 14:30:39 UTC
Last seen:2023-08-01 18:00:48 UTC
UUID:858cf1e4-0cef-11ed-8b86-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-07-26 14:40:55 659fc25606a80029012436848c7901b37fb1c580506fbbd1c0617a2855a5b44a
2022-07-26 14:40:52 e79b96330e953aedb6d553bb9693644cb56bf1dffbbfcab97fb297722b59d7df
2022-07-26 14:40:49 4e53778b6d2025b040ac38edf07dd9c31cae71628c231b227a7256c12a788cfc
2022-07-26 14:30:40 59cc3561cf457f8e258eaac0dcaa33e9f2294400b92af8bfb5c5b66290322236