ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 41.249.244.52:10000.

Database Entry


IOC ID:1288165
IOC: 41.249.244.52:10000
IOC Type :ip:port
Threat Type :botnet_cc
Malware: NjRAT
Malware alias:Bladabindi, Lime-Worm
Confidence Level : Confidence level is high (100%)
ASN:AS701 UUNET
Country:- US
First seen:2024-06-24 00:10:14 UTC
Last seen:2024-06-24 01:06:44 UTC
UUID:211324b8-31be-11ef-8261-42010aa4000a
Reporter abuse_ch
Reward 10 credits from tophucthinh
Tags:njrat

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2024-06-24 03:20:16 023a41305bae352e2bab9686ab8efdde111585a6e357b6245b59bb3459142b38
2024-06-24 03:05:16 ccdea9d525e02bea9927110a0ff982a2b56439298dbdc52329f0d935141fc46f
2024-06-24 01:00:19 01b7c4f2fd331fa3b60509d40f17e18622cc4e2e0d51d2da642a8a169b4099b3
2024-06-24 00:55:17 df83cef315dc016412a03ce95770d9bc418b9780878c8116d91f0bd9cdcb7c0f
2024-06-24 00:50:14 950642667832dfc935327fadb2d34754861e612253ded52707202e0425193071
2024-06-24 00:25:16 d922132bd6b747e094d0ded4460f854353da88637cba8ab915038b57a2735a88
2024-06-24 00:10:16 3ed2cc17203f1d0c92bda0d567ed327de37bdf1af02b082efd5806198846e132