ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 178.154.229.148:443.

Database Entry


IOC ID:1831706
IOC: 178.154.229.148:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike, cobeacon
Confidence Level : Confidence level is high (93%)
Is compromised? : False
ASN:AS200350 YandexCloud
Country:- RU
First seen:2026-06-13 15:05:42 UTC
Last seen:never
UUID:1f9cb768-6703-11f1-9e0e-42010aa4000a
Reporter Erebu
Reward 10 credits from anonymous
Tags:c2 erebus-v14 nation-state-hunter t1059_003 t1071_001

Avatar
Erebu
Confirmed C2 infrastructure via EREBUS APEX | PROOF:JARM:f9d831c53182f569(cobalt_strike_malleable)|TLS_C2:cobalt_strike|ASN:AS200350|TIER:T2 | MITRE:T1071.001,T1059.003,T1573.002,T1055 | GEO:RU | SRC:shodan_AS48282 | TOOL:EREBUS-V14-WRAITH