ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 13.72.81.58:13413.

Database Entry


IOC ID:850803
IOC: 13.72.81.58:13413
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS8075 MICROSOFT-CORP-MSN-AS-BLOCK
Country:- US
First seen:2022-09-21 00:50:32 UTC
Last seen:2023-08-01 17:56:33 UTC
UUID:658e5339-3947-11ed-ae73-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-10-01 22:15:58 93c1133925636f66bdd621606e652c5aac0a7f181a05273c8179ac7f6192377c
2022-09-21 01:55:30 a5a7eff00ec01804a3f4686b47c0628a4cd183bb0b116695fd086b465c0687f9
2022-09-21 00:50:34 bce6534446ce6013dc7daf080565df4c5e13ce218eb8436f2fcb70dd0e980368