Sliver C2 Detected – 52[.]79[.]217[.]6:31337

Covenant C2 Detection Alerts

The Information provided at the time of posting was detected as “Sliver C2”. Depending on when you are viewing this article, it may no longer be the case and could be determined as being a false positive. Please do your own additional validation. – RedPacket Security

TimeStamp 2024-07-01T10:09:02.605698

Sliver C2
Sliver C2

General Information

9.369080867051696e+37
Cloud ProviderAmazon
Cloud Regionap-northeast-2
ServiceEC2
Domainsamazonaws[.]com
Hostnamesec2-52-79-217-6[.]ap-northeast-2[.]compute[.]amazonaws[.]com
HTTP Host
ISPAmazon.com, Inc.
ORGAWS Asia Pacific (Seoul) Region
OSN/A
HTTP HTML HASH
HTTP LOCATION
HTTP REDIRECTS
HTTP ROBOTS
HTTP ROBOTS HASH
HTTP SECURITY.TXT
HTTP SECURITY.TXT HASH
HTTP SERVER
HTTP SITEMAP
HTTP SITEMAP HASH
HTTP TITLE
LOCATION (AREA CODE)N/A
LOCATION (CITY)Incheon
LOCATION (COUNTRY CODE)KR
LOCATION (COUNTRY NAME)Korea, Republic of
LOCATION (LATITUDE)37.45646
LOCATION (LONGITUDE)126.70515
LOCATION (POSTAL CODE)N/A
SSL SERIAL
SSL EXPIREDN/A
SSL FINGERPRINT (SHA1)e3f4f7642d6e2b17b6d66c6f8a8f055148d2c7d2
SSL ISSUED20240505161357Z
SSL EXPIRES20260505161357Z
SSL CYPHERTLS_AES_128_GCM_SHA256
SSL VERSIONTLSv1.3
SSL TRUST (REVOKED)N/A
TAGScloud, c2
PRODUCTSliver C2
TRANSPORTtcp
PORT31337

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.