ThreatFox IOC Database
You are viewing the ThreatFox database entry for ip:port 158.94.208.4:9000.
Database Entry
| IOC ID: | 1765907 |
|---|---|
| IOC: | 158.94.208.4:9000 |
| IOC Type : | ip:port |
| Threat Type : | botnet_cc |
| Malware: | SectopRAT |
| Malware alias: | 1xxbot, ArechClient |
| Confidence Level : | Confidence level is moderate (50%) |
| Is compromised? : | False |
| ASN: | AS202412 OMEGATECH-AS |
| Country: | GB |
| First seen: | 2026-03-14 11:22:31 UTC |
| Last seen: | 2026-03-14 16:01:11 UTC |
| UUID: | 17a5b0b6-1f98-11f1-9af6-42010aa4000a |
| Reporter | |
| Reward | 5 credits from ThreatFox |
| Tags: | c2 sectop shodan |
| Reference: | https://www.shodan.io/host/158.94.208.4#9000 |
GB