ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 218.252.234.243:443.

Database Entry


IOC ID:1836197
IOC: 218.252.234.243:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Sliver
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS9908 HKCABLE2-HK-AP
Country:- HK
First seen:2026-06-23 06:51:38 UTC
Last seen:never
UUID:1b2d7bb2-6e92-11f1-9258-42010aa4000a
Reporter Erebu
Reward 5 credits from ThreatFox
Tags:c2 erebus-v14 manual-override nation-state-hunter t1071_001 t1573_001

Avatar
Erebu
[MANUAL OVERRIDE — analyst-asserted, not auto-validated by EREBUS] Confirmed C2 infrastructure via EREBUS APEX | PROOF:JARM:497592101f7cc00f|TLS_C2:sliver|VT:10|ASN:AS9908 | MITRE:T1071.001,T1573.001,T1059.001,T1105 | GEO:HK | SRC:feed_urlhaus | TOOL:EREBUS-V14-WRAITH