Sliver C2 Detected – 35[.]212[.]172[.]98:31337

Covenant C2 Detection Alerts

The Information provided at the time of posting was detected as “Sliver C2”. Depending on when you are viewing this article, it may no longer be the case and could be determined as being a false positive. Please do your own additional validation. – RedPacket Security

TimeStamp 2024-02-09T15:00:22.948264

Sliver C2
Sliver C2

General Information

3.1972463700644776e+38
Cloud ProviderGoogle
Cloud Regionus-west1
ServiceN/A
Domainsgoogleusercontent[.]com
Hostnames98[.]172[.]212[.]35[.]bc[.]googleusercontent[.]com
HTTP Host
ISPGoogle LLC
ORGGoogle LLC
OSN/A
HTTP HTML HASH
HTTP LOCATION
HTTP REDIRECTS
HTTP ROBOTS
HTTP ROBOTS HASH
HTTP SECURITY.TXT
HTTP SECURITY.TXT HASH
HTTP SERVER
HTTP SITEMAP
HTTP SITEMAP HASH
HTTP TITLE
LOCATION (AREA CODE)N/A
LOCATION (CITY)The Dalles
LOCATION (COUNTRY CODE)US
LOCATION (COUNTRY NAME)United States
LOCATION (LATITUDE)45.59456
LOCATION (LONGITUDE)-121.17868
LOCATION (POSTAL CODE)N/A
SSL SERIAL
SSL EXPIREDN/A
SSL FINGERPRINT (SHA1)6f7bf17399d75d2bac1c7e3ac4e8514413e36522
SSL ISSUED20230306233208Z
SSL EXPIRES20260305233208Z
SSL CYPHERTLS_AES_128_GCM_SHA256
SSL VERSIONTLSv1.3
SSL TRUST (REVOKED)N/A
TAGScloud, c2
PRODUCTSliver C2
TRANSPORTtcp
PORT31337

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.