ThreatFox IOC Database

You are viewing the ThreatFox database entry for url https://api.telegram.org/bot8434610897:AAHF9xXxrjYYz_1wDY5cO4VDzrYc1gTqNTc.

Database Entry


IOC ID:1771983
IOC: https://api.telegram.org/bot8434610897:AAHF9xXxrjYYz_1wDY5cO4VDzrYc1gTqNTc
IOC Type :url
Threat Type :botnet_cc
Malware: Unknown Stealer
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS62041 Telegram
Country:- VG
First seen:2026-03-20 10:43:13 UTC
Last seen:never
UUID:4945d90a-2447-11f1-9af6-42010aa4000a
Reporter Skynet11
Reward 5 credits from ThreatFox
Tags:java minecraft stealer telegram

Avatar
Skynet11
Telegram bot C2 for Glazed-client-n15.jar stealer disguised as Minecraft mod. Exfiltrates stolen data to this bot. Dynamic C2 URL fetched from GitHub (user tranth655, repo 1df). Encryption key: OptimizerSecretKey. On MalwareBazaar.