ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 194.38.157.233:8443.

Database Entry


IOC ID:1836188
IOC: 194.38.157.233:8443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike, cobeacon
Confidence Level : Confidence level is high (93%)
Is compromised? : False
ASN:AS5626 ONI
Country:- PT
First seen:2026-06-23 06:51:44 UTC
Last seen:never
UUID:215fb52b-6e8f-11f1-9258-42010aa4000a
Reporter Erebu
Reward 10 credits from anonymous
Tags:c2 erebus-v14 manual-override nation-state-hunter t1071_001 t1105

Avatar
Erebu
[MANUAL OVERRIDE — analyst-asserted, not auto-validated by EREBUS] Confirmed C2 infrastructure via EREBUS APEX | PROOF:JARM:2ad2ad16d2ad2ad00042d42d000000df133019600a83abfb096ff3e86cd79d|ASN:AS5626|TIER:T3 | MITRE:T1105,T1071.001,T1059.003,T1573.002 | GEO:PT | SRC:shodan_AS208046 | TOOL:EREBUS-V14-WRAITH