ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 185.112.83.116:8080.

Database Entry


IOC ID:295301
IOC: 185.112.83.116:8080
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike
Confidence Level : Confidence level is elevated (75%)
First seen:2022-01-14 20:24:19 UTC
Last seen:never
UUID:f41f0c09-7577-11ec-8ab6-42010aa4000a
Reporter @abuse_ch
Reward 5 credits from ThreatFox
Tags:CobaltStrike log4j vmware
Reference: https://twitter.com/TheDFIRReport/status/1482078434327244805?t=-j9g4VVMOqW9fk6skngoQg&s=19

Twitter
@abuse_ch
Cobalt Strike C2 related to VMware Horizon mass exploitation (log4j)