Concerning C2 traffic from freepbx server

Anyone else seeing traffic from their freepbx server to 108.61.242.184? I see it is being flagged as C2 (command and control) traffic and dropped by our Sophos firewall. We are running Freepbx version 16.0.40.7. Anyone had similar traffic flagged and if so was it a false positive or something concerning?

whois -h whois.cymru.com ’ -v -f 108.61.242.184’
20473 | 108.61.242.184 | 108.61.242.0/24 | US | arin | 2010-12-08 | AS-CHOOPA, US

presumably Vultr

This topic was automatically closed 31 days after the last reply. New replies are no longer allowed.