Sliver C2 Detected – 172[.]104[.]63[.]85:31337

Covenant C2 Detection Alerts

The Information provided at the time of posting was detected as “Sliver C2”. Depending on when you are viewing this article, it may no longer be the case and could be determined as being a false positive. Please do your own additional validation. – RedPacket Security

TimeStamp 2024-02-09T15:00:30.441366

Sliver C2
Sliver C2

General Information

4.7679508153216984e+36
Cloud ProviderLinode
Cloud Regionsg-04
ServiceN/A
Domainslinodeusercontent[.]com
Hostnames172-104-63-85[.]ip[.]linodeusercontent[.]com
HTTP Host
ISPAkamai Connected Cloud
ORGLinode
OSN/A
HTTP HTML HASH
HTTP LOCATION
HTTP REDIRECTS
HTTP ROBOTS
HTTP ROBOTS HASH
HTTP SECURITY.TXT
HTTP SECURITY.TXT HASH
HTTP SERVER
HTTP SITEMAP
HTTP SITEMAP HASH
HTTP TITLE
LOCATION (AREA CODE)N/A
LOCATION (CITY)Singapore
LOCATION (COUNTRY CODE)SG
LOCATION (COUNTRY NAME)Singapore
LOCATION (LATITUDE)1.28967
LOCATION (LONGITUDE)103.85007
LOCATION (POSTAL CODE)N/A
SSL SERIAL
SSL EXPIREDN/A
SSL FINGERPRINT (SHA1)0189541d76e6f75d44ca841ca24602bfc8c4227b
SSL ISSUED20230128081024Z
SSL EXPIRES20250127081024Z
SSL CYPHERTLS_AES_128_GCM_SHA256
SSL VERSIONTLSv1.3
SSL TRUST (REVOKED)N/A
TAGScloud, c2
PRODUCTSliver C2
TRANSPORTtcp
PORT31337

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.