C2
Key: 84.252.139.94 · Resolved IP: 84.252.139.94
RU / AS200350 / YANDEXCLOUD
Protocols: https · Ports: 443
First view: 2026-06-18 00:07:02 CEST · Last view: 2026-06-18 16:07:09 CEST
RU / AS200350 / YANDEXCLOUD
Protocols: https · Ports: 443
First view: 2026-06-18 00:07:02 CEST · Last view: 2026-06-18 16:07:09 CEST
Endpoints
| ID | Protocol | Port | First view | Last view | SubmitURIs | Paths | URLs | Seen in |
|---|---|---|---|---|---|---|---|---|
| https:443 | https | 443 | 2026-06-18 00:07:02 CEST | 2026-06-18 16:07:09 CEST | /submit.php | /cm, /pixel.gif |
3
sample
|
2 |
Raw JSON
{
"Endpoints": {
"https:443": {
"Firsttime": 1781734022.4419532,
"lasttime": 1781791629.1379097,
"paths": [
"/cm",
"/pixel.gif"
],
"port": "443",
"protocol": "https",
"seen_in": [
{
"arch": "x86",
"beacon_ip": "84.252.139.94",
"beacon_port": "443",
"config_hash": "15fede76f2c198470786e84d661ba85dcb1f6d17d2e7b5ef5e4ba50da7db4205",
"trial": false,
"ts": 1781791628.6388211,
"version": "Cobalt Strike 4.9 (Sep 19, 2023)",
"watermark": 987654321
},
{
"arch": "x64",
"beacon_ip": "84.252.139.94",
"beacon_port": "443",
"config_hash": "41d12a0aa37d503c3a38722e8772b094f9627b26f22c90c4f717011481882d29",
"trial": false,
"ts": 1781791629.1379097,
"version": "Cobalt Strike 4.9 (Sep 19, 2023)",
"watermark": 987654321
}
],
"submituris": [
"/submit.php"
],
"urls": [
"https://84.252.139.94:443/cm/submit.php",
"https://84.252.139.94:443/submit.php",
"https://84.252.139.94:443/pixel.gif/submit.php"
]
}
},
"Firsttime": 1781734022.4419532,
"Host": "84.252.139.94",
"IP": "84.252.139.94",
"IPs": [
"84.252.139.94"
],
"Paths": [
"/cm",
"/pixel.gif"
],
"Ports": [
"443"
],
"Protocols": [
"https"
],
"SubmitURIs": [
"/submit.php"
],
"URLs": [
"https://84.252.139.94:443/cm/submit.php",
"https://84.252.139.94:443/submit.php",
"https://84.252.139.94:443/pixel.gif/submit.php"
],
"ip_enrichment": {
"84.252.139.94": {
"ASN": {
"number": 200350,
"org": "YANDEXCLOUD"
},
"GEO": {
"country": "RU",
"country_name": "Russia",
"lat": 60.0,
"lon": 100.0
},
"first": 1781734022.4419532,
"last": 1781734023.1895597,
"meta": {
"build_db": "2025-10-14 12:06:54",
"db_source": "GeoOpen-Country-ASN"
},
"source": "ip.circl.lu",
"updated": 1781734030.6559224
}
},
"lasttime": 1781791629.1379097
}