ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 178.20.44.109:80.

Database Entry


IOC ID:845312
IOC: 178.20.44.109:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS48282 VDSINA-AS
Country:- RU
First seen:2022-08-25 12:50:41 UTC
Last seen:never
UUID:86ea08b5-2474-11ed-ae73-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-08-25 19:05:44 1d1e740cc9ceec9439a667d3a7aac16d237f46dfa47000c2c782b62bb40c0250
2022-08-25 18:10:38 e67cd64a3724a700c181d6389937fd9ada65ae0c71c74980a374f99f5033bc2f
2022-08-25 17:25:45 d4cb89f8101ff774cf368fad163c905a8f09450cdcda6b7fc88f954c1be57b83
2022-08-25 15:30:38 24623aea5d3f54ceb49cf3ed1e5420a72677dbdcfdd41720d25a060008b24b41
2022-08-25 15:00:37 68f4041171f513bf2f6d3cd22b6654296a16f81e101e458dd7ceb45a0ed78d1c
2022-08-25 14:15:41 a10c9bf01558e10f4a86891147ca9228f263e1518066e61ecc145dc42cd3501c
2022-08-25 13:50:43 ddf7f34799dc6a885c424b16447b466c9253edf6caa2a5f0e254d474acd70670
2022-08-25 13:45:56 0cf4f32baa9bda70f764794b8aa2351b8b40f3665b0cd1557e10495a39968e22
2022-08-25 12:50:43 15b2bc3ce330217b2b98d7b9a00eccf6669706bc6cbd8c1e080a4897538c71af