{"Endpoints":{"http:80":{"Firsttime":1779833144.9482975,"lasttime":1780841325.1758757,"paths":["/load","/push"],"port":"80","protocol":"http","seen_in":[{"arch":"x86","beacon_ip":"168.222.97.93","beacon_port":"80","config_hash":"8b7656c73a9cfcbf4490e2cadccf437a7512aa9dfdb3a08f13c000abe6e49a07","trial":false,"ts":1780841324.3825848,"version":"Cobalt Strike 4.4 (Aug 04, 2021)","watermark":1234567890},{"arch":"x64","beacon_ip":"168.222.97.93","beacon_port":"80","config_hash":"e8bf54c7a6532f2803d45817996066b2da144aadaa6498b5eefcbda5f0accc6b","trial":false,"ts":1780841325.1758757,"version":"Unknown","watermark":1234567890}],"submituris":["/submit.php"],"urls":["http://168.222.97.93:80/load/submit.php","http://168.222.97.93:80/submit.php","http://168.222.97.93:80/push/submit.php"]},"https:443":{"Firsttime":1778767547.5889418,"lasttime":1780841346.5846539,"paths":["/cx","/en_US/all.js"],"port":"443","protocol":"https","seen_in":[{"arch":"x86","beacon_ip":"168.222.97.93","beacon_port":"443","config_hash":"188a706a8baa9ef58ba98ecb2a0c08ec56c9cd898c73a5c42ad6fd3aece9f72b","trial":false,"ts":1780841345.615823,"version":"Cobalt Strike 4.4 (Aug 04, 2021)","watermark":1234567890},{"arch":"x64","beacon_ip":"168.222.97.93","beacon_port":"443","config_hash":"f44255f1ba3cfefab7c67367ddec52c1c1ae1f12f2dc14c554555087ccca92e1","trial":false,"ts":1780841346.5846539,"version":"Unknown","watermark":1234567890}],"submituris":["/submit.php"],"urls":["https://168.222.97.93:443/cx/submit.php","https://168.222.97.93:443/submit.php","https://168.222.97.93:443/en_US/all.js/submit.php"]}},"Firsttime":1778767547.5889418,"Host":"168.222.97.93","IP":"168.222.97.93","IPs":["168.222.97.93"],"Paths":["/cx","/en_US/all.js","/load","/push"],"Ports":["443","80"],"Protocols":["https","http"],"SubmitURIs":["/submit.php"],"URLs":["https://168.222.97.93:443/cx/submit.php","https://168.222.97.93:443/submit.php","https://168.222.97.93:443/en_US/all.js/submit.php","http://168.222.97.93:80/load/submit.php","http://168.222.97.93:80/submit.php","http://168.222.97.93:80/push/submit.php"],"ip_enrichment":{"168.222.97.93":{"ASN":{"number":0,"org":"Not routed"},"GEO":{"country":"None","country_name":null,"lat":null,"lon":null},"first":1778767547.5889418,"last":1778767548.7657793,"meta":{"build_db":"2025-10-14 12:06:54","db_source":"GeoOpen-Country-ASN"},"source":"ip.circl.lu","updated":1778767649.9812326}},"lasttime":1780841346.5846539}
