ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 1.94.198.111:8888.

Database Entry


IOC ID:1561253
IOC: 1.94.198.111:8888
IOC Type :ip:port
Threat Type :botnet_cc
Malware: ValleyRAT
Malware alias:Winos
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS55990 HWCSNET
Country:- CN
First seen:2025-07-27 19:40:15 UTC
Last seen:never
UUID:84f182f0-6b21-11f0-851c-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RAT ValleyRAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2025-07-27 19:40:18 427b7f56dc616fb14f432da94ec3e4e855a0e674cd7357f7420c52c3f836411f