ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 143.198.110.248:443.

Database Entry


IOC ID:389861
IOC: 143.198.110.248:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike, cobeacon
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS14061 DIGITALOCEAN-ASN
Country:- US
First seen:2022-02-21 16:54:53 UTC
Last seen:2026-06-10 21:01:47 UTC
UUID:fda8537a-9336-11ec-a022-42010aa4000a
Reporter drb_ra
Reward 10 credits from dms1899
Tags:CobaltStrike DIGITALOCEAN-ASN

Avatar
drb_ra
Cobalt Strike Server Found
C2: HTTPS @ 143[.]198[.]110[.]248:443
C2 Server: 138[.]68[.]227[.]71,/jp,161[.]35[.]137[.]163,/jp,45[.]55[.]36[.]143,/jp,68[.]183[.]200[.]63,/jp,143[.]198[.]110[.]248,/jp,192[.]241[.]133[.]130,/jp,159[.]65[.]246[.]188,/jp,64[.]227[.]0[.]177,/jp,165[.]227[.]219[.]211,/jp,165[.]227[.]23[.]218,/jp,165[.]232[.]154[.]73,/jp,178[.]128[.]171[.]206,/jp
POST URI: /tab_home_active
Country: United States
ASN: DIGITALOCEAN-ASN
Host Header: avast[.]com