ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 37.139.128.94:6000.

Database Entry


IOC ID:949957
IOC: 37.139.128.94:6000
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Nanocore RAT
Malware alias:Nancrat, NanoCore
Confidence Level : Confidence level is elevated (75%)
ASN:AS44477 UNKNOWN
Country:- MD
First seen:2022-10-26 13:45:10 UTC
Last seen:2023-09-27 18:37:41 UTC
UUID:68acf407-5534-11ed-a76d-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:NanoCore
Reference: https://bazaar.abuse.ch/sample/d86628ed9c58fadce80cac836d949eb6dac45d1671a76d77ed4d39fe5db93bd8/

Avatar
abuse_ch
nanocore (aka Nancrat,NanoCore) botnet C2

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-10-27 06:50:48 05eb5d5bcd4c6af5626eb67b20323c8cc179ccf26a00670b352494b50e19f1a7
2022-10-27 06:40:48 55c32a9bd16c2d9113c92d2b57f2204aee9f1685c0496cea083309bb70d86c6f