ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain ns524280.ip-192-99-232.net.

Database Entry


IOC ID:1679314
IOC: ns524280.ip-192-99-232.net
IOC Type :domain
Threat Type :botnet_cc
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike, cobeacon
Confidence Level : Confidence level is moderate (50%)
ASN:AS16276 OVH
Country:- FR
First seen:2025-12-15 06:55:25 UTC
Last seen:2025-12-16 04:00:07 UTC
UUID:8d6df47a-d96a-11f0-9957-42010aa4000a
Reporter duggusa
Reward 10 credits from anonymous
Reference: https://analytics.dugganusa.com

Avatar
duggusa
C2 domain from self-signed SSL cert on 192.99.232.216 - DugganUSA SSL enrichment