This vulnerability (CVE-2016-6802) applies to BigFix relays and servers.
As far as IOCs, there is nothing left in the system to track such as an md5 digital signature.
If you have Network Monitoring you could look into IPs accessing this URL, keeping in mind that simply accessing the URL doesn’t necessarily mean there was an attack.