ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 158.94.209.33:80.

Database Entry


IOC ID:1772693
IOC: 158.94.209.33:80
IOC Type :ip:port
Threat Type :payload_delivery
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike, cobeacon
Confidence Level : Confidence level is high (90%)
Is compromised? : False
ASN:AS202412 OMEGATECH-AS
Country:- GB
First seen:2026-03-21 08:34:05 UTC
Last seen:never
UUID:d246e36d-248b-11f1-9af6-42010aa4000a
Reporter Lenny_3BO
Reward 5 credits from ThreatFox
Tags:AS202412 ClickFix Donut Omegatech

Avatar
Lenny_3BO
ClickFix stage 1 delivery. UA-gated: PowerShell UA returns PS loader, browser UA returns 302 to cloudflare.com. AS202412 Omegatech LTD.