ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://158.94.208.6/h8jfdmdWS/index.php.

Database Entry


IOC ID:1701296
IOC: http://158.94.208.6/h8jfdmdWS/index.php
IOC Type :url
Threat Type :botnet_cc
Malware: Amadey
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS214943 RAILNET
Country:- US
First seen:2026-01-12 15:51:05 UTC
Last seen:2026-03-03 19:00:12 UTC
UUID:65505732-efc7-11f0-9957-42010aa4000a
Reporter Bitsight
Reward 5 credits from ThreatFox
Tags:9c4517 Amadey c2

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2026-01-15 15:20:15 3dcb5e15e1575b2996202710412e308a0a82642a4a2c6cdf053e919a7c1d4354