ThreatFox IOC Database

You are viewing the ThreatFox database entry for url http://umt.catalyicsecurity.com/latest/v6.78/QVOW4BSXNPM.

Database Entry


IOC ID:841582
IOC: http://umt.catalyicsecurity.com/latest/v6.78/QVOW4BSXNPM
IOC Type :url
Threat Type :botnet_cc
Malware: Cobalt Strike
Malware alias:Agentemis, BEACON, CobaltStrike, cobeacon
Confidence Level : Confidence level is high (100%)
First seen:2022-08-06 02:17:27 UTC
Last seen:never
UUID:ea9d156a-152d-11ed-ab39-42010aa4000a
Reporter @drb_ra
Reward 5 credits from ThreatFox
Tags:CobaltStrike ORACLE-BMC-31898

Twitter
@drb_ra
Cobalt Strike Server Found
C2: HTTP @ 129[.]146[.]169[.]67:80
C2 Server: umt[.]catalyicsecurity[.]com,/latest/v6[.]78/QVOW4BSXNPM
POST URI: /annotate/v7[.]94/AOGQ6QPKLEOY
Country: United States
ASN: ORACLE-BMC-31898