[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$foB7T0hb7j46vUAjAoxL05ujPWdHKw9bELUNJ8pZYN90":3},{"article":4,"iocs":27,"watch_terms":43},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":11,"published_at":13,"ingested_at":14,"relevance_score":15,"entities":16,"category_id":17,"category":18,"article_tags":21},"5464de46-0e64-498c-ba48-3a50328ead3e","@smica83 Also there is a related (by *.ecs-ent-aff-mgr\\.in.net traffic) sample that is coming fro...","smica83-also-there-is-a-related-by-ecs-ent-aff-mgr-in-net-traffic-sample-that-is","@smica83 Also there is a related (by *.ecs-ent-aff-mgr\\.in.net traffic) sample that is coming from these urls:\nhttps:\u002F\u002Fdownload-version.1-4-9[.]com\u002Fmanus\nhttps:\u002F\u002Fdownload-version.1-4-9[.]com\u002Fcowork\nhttps:\u002F\u002Fdownload-version.1-4-9[.]com\u002Fapp\n🤷‍♂️ https:\u002F\u002Ft.co\u002F3ctmzOXlNL","A security researcher posted threat intelligence regarding malware samples hosted on download-version.1-4-9[.]com with multiple suspicious paths (manus, cowork, app) and noted correlating C2 traffic patterns to *.ecs-ent-aff-mgr.in.net infrastructure. The post appears to be part of ongoing malware analysis and threat tracking within the security community.","Researcher shares malware sample URLs and C2 traffic patterns related to *.ecs-ent-aff-mgr.in.net",null,"https:\u002F\u002Fx.com\u002Fmalwrhunterteam\u002Fstatus\u002F2036416032328294402","2026-03-24T12:13:11+00:00","2026-03-24T13:00:16.80972+00:00",7,[],"e7b231c8-5f79-4465-8d38-1ef13aea5a14",{"id":17,"icon":11,"name":19,"slug":20},"Threat Intelligence","threat-intelligence",[22],{"category":23},{"id":24,"icon":11,"name":25,"slug":26},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",[28,32,35,39,41],{"type":29,"value":30,"context":31},"domain","ecs-ent-aff-mgr.in.net","C2 traffic pattern indicator; wildcard domain associated with malware communication",{"type":29,"value":33,"context":34},"download-version.1-4-9[.]com","Malware distribution host; hosting multiple suspicious payloads",{"type":36,"value":37,"context":38},"url","https:\u002F\u002Fdownload-version.1-4-9[.]com\u002Fmanus","Malware sample download URL",{"type":36,"value":40,"context":38},"https:\u002F\u002Fdownload-version.1-4-9[.]com\u002Fcowork",{"type":36,"value":42,"context":38},"https:\u002F\u002Fdownload-version.1-4-9[.]com\u002Fapp",[]]