Sliver C2 Detected – 217[.]195[.]153[.]204:31337

Covenant C2 Detection Alerts

The Information provided at the time of posting was detected as “Sliver C2”. Depending on when you are viewing this article, it may no longer be the case and could be determined as being a false positive. Please do your own additional validation. – RedPacket Security

TimeStamp 2024-05-10T14:27:08.984715

Sliver C2
Sliver C2

General Information

9.421425703751282e+37
Cloud Provider
Cloud Region
Service
Domainshandydocprep[.]com
Hostnameshost2[.]handydocprep[.]com
HTTP Host
ISPShock Hosting LLC
ORGShock Hosting LLC
OSN/A
HTTP HTML HASH
HTTP LOCATION
HTTP REDIRECTS
HTTP ROBOTS
HTTP ROBOTS HASH
HTTP SECURITY.TXT
HTTP SECURITY.TXT HASH
HTTP SERVER
HTTP SITEMAP
HTTP SITEMAP HASH
HTTP TITLE
LOCATION (AREA CODE)N/A
LOCATION (CITY)Amsterdam
LOCATION (COUNTRY CODE)NL
LOCATION (COUNTRY NAME)Netherlands
LOCATION (LATITUDE)52.37403
LOCATION (LONGITUDE)4.88969
LOCATION (POSTAL CODE)N/A
SSL SERIAL
SSL EXPIREDN/A
SSL FINGERPRINT (SHA1)73a9650fd4f88aff7ed0b4624a5cdd97d9eb8e13
SSL ISSUED20231210020823Z
SSL EXPIRES20261209020823Z
SSL CYPHERTLS_AES_128_GCM_SHA256
SSL VERSIONTLSv1.3
SSL TRUST (REVOKED)N/A
TAGSc2
PRODUCTSliver C2
TRANSPORTtcp
PORT31337

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.