s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

ipv4 155.138.193.22

📛 IOC Value

155.138.193.22

First seen: Last seen: Threats: 3 Source: AlienVaulkt OTXThreatfox IOCs/Threats

Description

ip:port combination that is used for botnet Command&control (C&C) attributed to VShell

Found in 3 threats

Threat Title Severity Attached Source
TF-1812072 VShell: ip:port combination that is used for botnet Command&control (C&C) 155.138.193.22:9200 high Threatfox IOCs/Threats
TF-1812071 VShell: ip:port combination that is used for botnet Command&control (C&C) 155.138.193.22:3389 high Threatfox IOCs/Threats
OTX-699f2c4c77b5f6de9653c8ef Vshell - C2 IP/Domain Tracker high AlienVaulkt OTX

VirusTotal

3/91Vendors flagged
0Community score
Last refreshed
Open on VirusTotal https://www.virustotal.com/gui/ip-address/155.138.193.22

File details (from VirusTotal)

Network
155.138.128.0/17
Country
US
AS owner
The Constant Company, LLC
ASN
20473
Regional registry
ARIN

History

Last analysis
2026-05-14 08:15 UTC
Last modified on VirusTotal
2026-06-11 08:18 UTC
WHOIS record date
2026-05-14 04:46 UTC

Flagged vendors — 3 / 91

  • loading…

Full list of vendors

  • loading…

VirusTotal details

loading…

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.

IP Geolocation

Loading…