C2
Key: 192.168.1.157 · Resolved IP: 192.168.1.157
None / AS— / Not routed
Protocols: http · Ports: 80
First view: 2026-03-17 00:06:10 CET · Last view: 2026-04-04 16:05:35 CEST
None / AS— / Not routed
Protocols: http · Ports: 80
First view: 2026-03-17 00:06:10 CET · Last view: 2026-04-04 16:05:35 CEST
Endpoints
| ID | Protocol | Port | First view | Last view | SubmitURIs | Paths | URLs | Seen in |
|---|---|---|---|---|---|---|---|---|
| http:80 | http | 80 | 2026-03-17 00:06:10 CET | 2026-04-04 16:05:35 CEST | /submit.php | /ptj, /pixel |
3
sample
|
2 |
Raw JSON
{
"Endpoints": {
"http:80": {
"Firsttime": 1773702370.599193,
"lasttime": 1775311535.6659362,
"paths": [
"/ptj",
"/pixel"
],
"port": "80",
"protocol": "http",
"seen_in": [
{
"arch": "x86",
"beacon_ip": "114.132.60.44",
"beacon_port": "80",
"config_hash": "877f9ec72cc999b67a3026433d268f8989495330a86ea6eec83ff26ce325a503",
"trial": false,
"ts": 1775311531.1184256,
"version": "Cobalt Strike 4.1 (Jun 25, 2020)",
"watermark": 0
},
{
"arch": "x64",
"beacon_ip": "114.132.60.44",
"beacon_port": "80",
"config_hash": "af06c636242565711a2b837e49869eaca83a13082f4eccedb3bd6dccc78e0d34",
"trial": false,
"ts": 1775311535.6659362,
"version": "Unknown",
"watermark": 0
}
],
"submituris": [
"/submit.php"
],
"urls": [
"http://192.168.1.157:80/ptj/submit.php",
"http://192.168.1.157:80/submit.php",
"http://192.168.1.157:80/pixel/submit.php"
]
}
},
"Firsttime": 1773702370.599193,
"Host": "192.168.1.157",
"IP": "192.168.1.157",
"IPs": [
"192.168.1.157"
],
"Paths": [
"/ptj",
"/pixel"
],
"Ports": [
"80"
],
"Protocols": [
"http"
],
"SubmitURIs": [
"/submit.php"
],
"URLs": [
"http://192.168.1.157:80/ptj/submit.php",
"http://192.168.1.157:80/submit.php",
"http://192.168.1.157:80/pixel/submit.php"
],
"ip_enrichment": {
"192.168.1.157": {
"ASN": {
"number": 0,
"org": "Not routed"
},
"GEO": {
"country": "None",
"country_name": null,
"lat": null,
"lon": null
},
"first": 1773702370.599193,
"last": 1773702372.501934,
"meta": {
"build_db": "2025-10-14 12:06:54",
"db_source": "GeoOpen-Country-ASN"
},
"source": "ip.circl.lu",
"updated": 1773702374.2009923
}
},
"lasttime": 1775311535.6659362
}