ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 45.156.87.17:80.

Database Entry


IOC ID:1778056
IOC: 45.156.87.17:80
IOC Type :ip:port
Threat Type :payload_delivery
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike, cobeacon
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS51396 PFCLOUD
Country:- DE
First seen:2026-03-29 14:00:41 UTC
Last seen:never
UUID:aac11868-2ad1-11f1-9af6-42010aa4000a
Reporter superweird7
Reward 5 credits from ThreatFox
Tags:Amadey Cobalt-Strike DarkGate HijackLoader
Reference: https://www.virustotal.com/gui/ip-address/45.156.87.17

Avatar
superweird7
Active C2 server delivering PowerShell loader (Trojan.PowerShell.Cobalt)