ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 185.89.182.91:8443.

Database Entry


IOC ID:1832349
IOC: 185.89.182.91:8443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Meterpreter
Confidence Level : Confidence level is high (94%)
Is compromised? : False
ASN:AS200984 NUOVARETI-AS
Country:- IT
First seen:2026-06-15 12:48:24 UTC
Last seen:never
UUID:ad365ae9-68b4-11f1-9e0e-42010aa4000a
Reporter Erebu
Reward 5 credits from ThreatFox
Tags:c2 erebus-v14 manual-override nation-state-hunter t1071_001 t1573_002

Avatar
Erebu
[MANUAL OVERRIDE — analyst-asserted, not auto-validated by EREBUS] Confirmed C2 infrastructure via EREBUS APEX | PROOF:JARM:7125bb413f211ffb|TLS_C2:metasploit|ASN:AS200984 | MITRE:T1071.001,T1573.002,T1059.001,T1055 | GEO:IT | SRC:shodan_AS202975 | TOOL:EREBUS-V14-WRAITH