ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 194.5.98.156:12094.

Database Entry


IOC ID:949951
IOC: 194.5.98.156:12094
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Nanocore RAT
Malware alias:Nancrat, NanoCore
Confidence Level : Confidence level is elevated (75%)
ASN:AS149020 WEBHORIZON-AS-AP
Country:- IN
First seen:2022-10-26 13:20:09 UTC
Last seen:2023-09-27 18:40:57 UTC
UUID:ea0b2636-5530-11ed-a76d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:NanoCore
Reference: https://bazaar.abuse.ch/sample/d96270f6bb0efd49003e83412063f8d86b98fa72093d37a3d5c641350d77b85a/

Avatar
abuse_ch
nanocore (aka Nancrat,NanoCore) botnet C2

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-10-27 02:05:42 41a9ae8ca0a4ff2c58b423a915e55af6de026730f327b727e7f1355456ca26d3