| 2026-04-09 08:49 | map-node.desertpract.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 08:43 | area-api.desertpract.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 08:38 | sand-logic.desertpract.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 08:32 | grid-gate.friskynanos.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 08:27 | micro-svc.friskynanos.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 08:21 | cell-vault.friskynanos.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 08:18 | market.dianamercer.com | FAKEUPDATES | SocGholish | monitorsg |
| 2026-04-09 08:16 | unit-node.friskynanos.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 08:10 | small-api.friskynanos.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 08:04 | nano-tech.friskynanos.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:59 | root-gate.ryesears.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:57 | 38.240.58.33:8041 | Unknown RAT | ConnectWise rmm ScreenConnect | abuse_ch |
| 2026-04-09 07:53 | trade-svc.ryesears.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:50 | https://jpbassin.com/curl/0ebf4f9b481eb31e79a09c764a277d3c73b68b548c4284be08162345716d1529 | Unknown Stealer | macOS | HuntYethHounds |
| 2026-04-09 07:47 | store-vault.ryesears.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:47 | https://jpbassin.com/hiddenfix/update | Unknown Stealer | macOS | HuntYethHounds |
| 2026-04-09 07:46 | https://proj-hid513291kzg.pages.dev | Unknown Stealer | macOS | HuntYethHounds |
| 2026-04-09 07:46 | proj-hid513291kzg.pages.dev | Unknown Stealer | macOS | HuntYethHounds |
| 2026-04-09 07:42 | seed-node.ryesears.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:36 | farm-api.ryesears.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:35 | https://antongandon.club/log.php | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-09 07:35 | https://antongandon.club/api/index.php | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-09 07:34 | https://antongandon.club/cf.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-09 07:34 | antongandon.club | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-09 07:31 | grain-log.ryesears.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:25 | soil-hub.bereathfertil.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:19 | base-svc.bereathfertil.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:14 | grow-vault.bereathfertil.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 07:08 | land-node.bereathfertil.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 07:02 | crop-api.bereathfertil.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:59 | 74.0.42.253:443 | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | hez.msalifenterprise.net | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | hez.hbway.com.au | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | tfe.msalifenterprise.net | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | tfe.hbway.com.au | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | https://tfe.msalifenterprise.net/ | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | https://tfe.hbway.com.au/ | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | https://hez.msalifenterprise.net/ | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | https://hez.hbway.com.au/ | Vidar | Vidar | crep1x |
| 2026-04-09 06:59 | https://74.0.42.253/ | Vidar | Vidar | crep1x |
| 2026-04-09 06:57 | field-sync.bereathfertil.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:51 | sync-hub.importantserv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:47 | svc-relay.importantserv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:40 | data-vault.importantserv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:35 | host-node.importantserv.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 06:29 | core-api.importantserv.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 06:24 | main-gate.importantserv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:20 | 91.196.32.232:8089 | Unknown malware | | abuse_ch |
| 2026-04-09 06:20 | http://91.196.32.232:8089/Files/a.txt | Unknown malware | | abuse_ch |
| 2026-04-09 06:18 | vector-gate.cognifluxion.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:12 | think-hub.cognifluxion.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:06 | brain-svc.cognifluxion.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:03 | 38.45.125.58:8888 | ValleyRAT | AS9294 c2 RAT triage ValleyRAT | DonPasci |
| 2026-04-09 06:02 | https://arresetrewwqo.shop/api | Lumma Stealer | c2 Lumma stealer triage | DonPasci |
| 2026-04-09 06:01 | sense-vault.cognifluxion.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 06:00 | chat.ttseokitty.com | XWorm | c2 domain triage XWorm | DonPasci |
| 2026-04-09 06:00 | 172.245.119.75:34421 | Remcos | remcos | dyingbreeds_ |
| 2026-04-09 05:56 | sdsda.lat | SparkRAT | RAT SparkRAT | abuse_ch |
| 2026-04-09 05:55 | 43.228.157.121:80 | SparkRAT | RAT SparkRAT | abuse_ch |
| 2026-04-09 05:55 | neural-node.cognifluxion.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 05:50 | flux-api.cognifluxion.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 05:45 | https://185.56.45.248 | Vidar | Vidar | abuse_ch |
| 2026-04-09 05:44 | main-gate.systemoraengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 05:42 | zephyrhall.cfd | Unknown Loader | OffLoader | abuse_ch |
| 2026-04-09 05:39 | core-hub.systemoraengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 05:33 | order-svc.systemoraengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 05:27 | matrix-vault.systemoraengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 05:22 | rule-node.systemoraengine.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 05:18 | 9210d45827b893c515e961d3008b4fb8 | Unknown malware | bluehammer exploit Windows | TheRavenFile |
| 2026-04-09 05:18 | 103.7.81.202:22 | Unknown malware | Dropper libssh Windows | isaac1 |
| 2026-04-09 05:18 | 130.12.180.51:22 | RedTail | | isaac1 |
| 2026-04-09 05:18 | 213.209.159.158:22 | RedTail | | isaac1 |
| 2026-04-09 05:18 | 165.22.97.111:22 | Unknown malware | backdoor Digitalocean fake-sshd named-bot ssh | isaac1 |
| 2026-04-09 05:18 | http://217.69.2.135/N0K2pzQQzJes1CvLVcxy4A%3D%3D | GlassWorm | glassworm solana-c2 Wave3 | tipo_deincognito |
| 2026-04-09 05:18 | http://217.69.3.51/YFyq24tpV5X3al8CthpMpQ%3D%3D | GlassWorm | glassworm solana-c2 Wave3 | tipo_deincognito |
| 2026-04-09 05:18 | http://45.32.150.251/1Y4WLrpIxyti%2FGLsMk%2FG5A%3D%3D | GlassWorm | glassworm solana-c2 Wave3 | tipo_deincognito |
| 2026-04-09 05:18 | http://45.32.150.251/g/1Y4WLrpIxyti%2FGLsMk%2FG5A%3D%3D | GlassWorm | calendar-c2 glassworm Wave3 | tipo_deincognito |
| 2026-04-09 05:18 | http://217.69.3.51/g/YFyq24tpV5X3al8CthpMpQ%3D%3D | GlassWorm | calendar-c2 glassworm Wave3 | tipo_deincognito |
| 2026-04-09 05:18 | http://217.69.2.135/get_arhive_npm/ieBDXRPfj6hlkPCyIyrLAw%3D%3D | GlassWorm | archive glassworm Wave3 | tipo_deincognito |
| 2026-04-09 05:18 | http://45.32.150.251/get_arhive_npm/ma3yj64bgLp%2Ffuh1k0a4cA%3D%3D | GlassWorm | archive glassworm Wave3 | tipo_deincognito |
| 2026-04-09 05:17 | http://217.69.3.51/get_arhive_npm/18xAz0gOR14htecQZyzXIA%3D%3D | GlassWorm | archive glassworm Wave3 | tipo_deincognito |
| 2026-04-09 05:17 | horecabot-dev.horecabid.com | Unknown malware | c2-infrastructure Digitalocean fake-sshd named-bot | isaac1 |
| 2026-04-09 05:17 | 159.65.5.193:22 | Unknown malware | c2-infrastructure Digitalocean named-bot targeted | isaac1 |
| 2026-04-09 05:17 | 193.123.188.62:54984 | Nanocore RAT | Nancrat NanoCore NanoCore RAT RAT | whoamix302 |
| 2026-04-09 05:17 | r6qckzh8lfkursk13x3g69wgv5vl7urrdn6vjd.com | SmartApeSG | ClickFix RUST sideload SmartApeSG THEMIDA | Lenny_3BO |
| 2026-04-09 05:17 | go6.my | SmartApeSG | ClickFix SmartApeSG | Lenny_3BO |
| 2026-04-09 05:17 | go5z.my | SmartApeSG | ClickFix SmartApeSG | Lenny_3BO |
| 2026-04-09 05:17 | 9aa80f91500e7aef0123e9a10c31a4683433aacd99717b3ddd6796c06a2d16f7 | SmartApeSG | RUST sideload SmartApeSG THEMIDA | Lenny_3BO |
| 2026-04-09 05:17 | fucismarjiaff.com | NetSupportManager RAT | ClickFix FakeCaptcha NetSupport powershell RAT | Anonymous |
| 2026-04-09 05:17 | 8e7bea86cefb90f029aed719311b976d3f72400fcc8b4ca0eab1f9a9dbc43f52 | SmartApeSG | ClickFix SmartApeSG | Lenny_3BO |
| 2026-04-09 05:17 | 59221aa9623d86c930357dba7e3f54138c7ccbd0daa9c483d766cd8ce1b6ad26 | GlassWorm | javascript npm-supply-chain Wave3 | Lenny_3BO |
| 2026-04-09 05:17 | 731c63cfd9a540a588737de5cf7fb8261e4fef7bc7a9b69fe32afee28932e940 | GlassWorm | allaple code-synthesis Wave3 Worm | Lenny_3BO |
| 2026-04-09 05:17 | 45552a3670e52f13df24b403a8d450b592b556bea9e3343e7d38cd3e0921743d | GlassWorm | javascript npm-supply-chain Wave3 | Lenny_3BO |
| 2026-04-09 05:17 | 162.14.70.142:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 91.197.97.236:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 20.226.47.239:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 193.227.240.212:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 52.248.41.253:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 34.19.22.113:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 13.223.165.118:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 52.16.231.37:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 54.170.220.135:443 | Cobalt Strike | C2-Tracker CobaltStrike | Lenny_3BO |
| 2026-04-09 05:17 | 46.151.182.153:443 | Havoc | C2-Tracker Havoc | Lenny_3BO |
| 2026-04-09 05:17 | 52.199.254.98:443 | Brute Ratel C4 | BruteRatel C2-Tracker | Lenny_3BO |
| 2026-04-09 05:17 | 93.71.143.3:443 | Brute Ratel C4 | BruteRatel C2-Tracker | Lenny_3BO |
| 2026-04-09 05:17 | 51.79.185.184:80 | Kimsuky | kimsuky | whoamix302 |
| 2026-04-09 05:17 | 168.227.148.72:2049 | Mozi | Mozi | whoamix302 |
| 2026-04-09 05:17 | 193.123.188.62:54984 | Nanocore RAT | Nancrat NanoCore NanoCore RAT | whoamix302 |
| 2026-04-09 05:16 | engine-api.systemoraengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 05:11 | space-gate.theorivector.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 05:05 | point-hub.theorivector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:59 | theory-svc.theorivector.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 04:54 | view-vault.theorivector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:48 | model-node.theorivector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:42 | vector-api.theorivector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:37 | gate-secure.inferentrixhub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:31 | link-hub.inferentrixhub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:26 | rank-svc.inferentrixhub.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 04:20 | hub-secure.inferentrixhub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:15 | trace-node.inferentrixhub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:09 | infer-api.inferentrixhub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 04:03 | logic-gate.dialectraforge.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:58 | debate-hub.dialectraforge.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:52 | step-svc.dialectraforge.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:46 | thesis-vault.dialectraforge.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:41 | synth-node.dialectraforge.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:35 | forge-api.dialectraforge.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 03:31 | kac.blastus.net | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-09 03:30 | point-gate.axiomatrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:24 | unit-hub.axiomatrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:19 | stream-svc.axiomatrixflow.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 03:13 | shift-node.axiomatrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:10 | 158.160.75.185:40441 | RatonRAT | RatonRAT | abuse_ch |
| 2026-04-09 03:07 | data-api.axiomatrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 03:03 | matrix-flow.axiomatrixflow.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 02:56 | link-gate.ontocorex.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 02:51 | main-hub.ontocorex.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 02:45 | root-svc.ontocorex.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 02:39 | cell-vault.ontocorex.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 02:34 | entity-node.ontocorex.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 02:28 | core-api.ontocorex.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 02:23 | path-gate.epistemevault.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 02:16 | audit-hub.epistemevault.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 02:11 | root-svc.epistemevault.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 02:06 | secure-node.epistemevault.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 02:01 | Adamdasdadad-47266.portmap.host | XWorm | XWorm | dyingbreeds_ |
| 2026-04-09 02:00 | lxt.uk.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-09 02:00 | info-api.epistemevault.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 02:00 | alibabaforwader10.ddns.net | Remcos | remcos | dyingbreeds_ |
| 2026-04-09 01:54 | base-vault.epistemevault.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 01:49 | base-gate.gnoseonflux.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 01:43 | flux-svc.gnoseonflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 01:38 | drift-vault.gnoseonflux.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 01:32 | shift-node.gnoseonflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 01:26 | know-api.gnoseonflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 01:20 | flow-data.gnoseonflux.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 01:15 | global-gate.noetisphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 01:09 | pure-svc.noetisphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 01:04 | logic-vault.noetisphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 00:58 | sphere-node.noetisphere.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 00:52 | thought-api.noetisphere.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 00:47 | mind-sync.noetisphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 00:36 | brain-gate.cogniversehub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 00:30 | vector-svc.cogniversehub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 00:25 | think-node.cogniversehub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 00:19 | sense-log.cogniversehub.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-09 00:13 | neural-api.cogniversehub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 00:08 | mind-hub.cogniversehub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-09 00:03 | path-gate.systematrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:57 | file-hub.systematrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:51 | stream-svc.systematrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:45 | rank-node.systematrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:40 | order-api.systematrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:34 | matrix-flow.systematrixflow.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:28 | hub-gate.theorexuslayer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:23 | view-svc.theorexuslayer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:17 | space-node.theorexuslayer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:12 | abstract-log.theorexuslayer.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 23:06 | model-api.theorexuslayer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 23:01 | layer-io.theorexuslayer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:55 | point-gate.inferentialisflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:50 | data-svc.inferentialisflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:43 | flux-node.inferentialisflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:38 | trace-log.inferentialisflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:32 | step-api.inferentialisflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:27 | infer-unit.inferentialisflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:21 | logic-gate.dialectosphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:15 | debate-hub.dialectosphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:10 | state-svc.dialectosphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:08 | https://logicvault.icu/t.js?site= | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:08 | https://logicvault.icu/ext-b.5211fbb3d30f.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:07 | https://logicvault.icu/ext.ec6c3fd8b3fb.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:07 | logicvault.icu | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:06 | https://deepsight.icu/ext.ec6c3fd8b3fb.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:04 | thesis-log.dialectosphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 22:02 | https://deepsight.icu/t.js?site= | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:01 | https://deepsight.icu/ext-b.5211fbb3d30f.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:00 | https://deepsight.icu/t.188cfd3975db.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:00 | deepsight.icu | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-08 22:00 | 88.98.223.82:50051 | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 22:00 | mohmusremcos.duckdns.org | Remcos | remcos | dyingbreeds_ |
| 2026-04-08 22:00 | 216.250.253.125:2404 | Remcos | remcos | dyingbreeds_ |
| 2026-04-08 22:00 | escoclar.duckdns.org | Remcos | remcos | dyingbreeds_ |
| 2026-04-08 21:59 | talk-node.dialectosphere.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 21:53 | sphere-api.dialectosphere.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:47 | matrix-hub.axiomorphengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:42 | rule-svc.axiomorphengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:36 | unit-vault.axiomorphengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:34 | https://ameublement.bcd-adventures.com | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:34 | ameublement.bcd-adventures.com | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:33 | https://conseilsst.com | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:32 | conseilsst.com | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:32 | https://cegmester.hellodevs.dev | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:31 | cegmester.hellodevs.dev | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:31 | fixed-node.axiomorphengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:31 | new.importletterofcredit.com | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:30 | https://new.importletterofcredit.com | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 21:25 | law-check.axiomorphengine.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 21:20 | engine-io.axiomorphengine.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:14 | space-gate.ontoversegrid.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:08 | verse-svc.ontoversegrid.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:05 | 144.31.169.191:666 | NjRAT | njrat | abuse_ch |
| 2026-04-08 21:03 | entity-node.ontoversegrid.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 21:01 | http://152.32.191.249:23803/YsIH | Cobalt Strike | CobaltStrike | abuse_ch |
| 2026-04-08 21:01 | http://152.32.191.249:23803/ca | Cobalt Strike | CobaltStrike | abuse_ch |
| 2026-04-08 21:00 | 45.151.81.138:24053 | Remcos | RAT RemcosRAT | abuse_ch |
| 2026-04-08 20:58 | map-log.ontoversegrid.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 20:55 | 152.32.191.249:23803 | Cobalt Strike | CobaltStrike | abuse_ch |
| 2026-04-08 20:52 | world-api.ontoversegrid.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 20:46 | grid-core.ontoversegrid.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 20:40 | drift-gate.epistemiconflux.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 20:35 | shift-svc.epistemiconflux.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 20:29 | truth-node.epistemiconflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 20:24 | jpetrade.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-08 20:23 | sync-vault.epistemiconflux.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 20:19 | mesh-api.epistemiconflux.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 20:12 | flow-data.epistemiconflux.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 20:07 | base-gate.gnosticvector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 20:01 | path-svc.gnosticvector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:55 | know-node.gnosticvector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:50 | vector-hub.gnosticvector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:49 | https://jpbassin.com/n8n/update | Unknown malware | macOS | HuntYethHounds |
| 2026-04-08 19:44 | smart-api.gnosticvector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:40 | https://jpbassin.com/curl/45b34232b6c839a6383c73bd2acf07117229211b67986d817a4b35b4beb73902 | Unknown malware | macOS | HuntYethHounds |
| 2026-04-08 19:39 | trace-point.gnosticvector.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:37 | https://download-version.1-5-8.com/claude.msixbundle | Unknown malware | macOS | HuntYethHounds |
| 2026-04-08 19:36 | download-version.1-5-8.com | Unknown malware | macOS | HuntYethHounds |
| 2026-04-08 19:35 | https://project-ms50192kd15.pages.dev | Unknown malware | macOS | HuntYethHounds |
| 2026-04-08 19:35 | project-ms50192kd15.pages.dev | Unknown malware | macOS | HuntYethHounds |
| 2026-04-08 19:33 | shell-svc.noospherecore.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:30 | 38.45.125.58:6666 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-08 19:28 | logic-node.noospherecore.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:22 | core-vault.noospherecore.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:16 | thought-api.noospherecore.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:11 | global-io.noospherecore.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 19:05 | mind-sync.noospherecore.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:59 | magic-hub.assyrfantasy.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:54 | story-gate.assyrfantasy.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:48 | tale-svc.assyrfantasy.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:43 | fair-node.assyrfantasy.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:37 | dream-api.assyrfantasy.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 18:32 | myth-logic.assyrfantasy.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:26 | root-hub.excellsadarma.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:20 | mark-gate.excellsadarma.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:14 | test-svc.excellsadarma.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:09 | best-node.excellsadarma.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:05 | amor11.duckdns.org | AsyncRAT | asyncrat | abuse_ch |
| 2026-04-08 18:03 | data-api.excellsadarma.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 18:00 | bholauclonline.in.net | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | 2.27.59.8:6000 | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | artesvisuais.us.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | cure.uk.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | woad.sa.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | all.ddnsskey.com | XWorm | c2 domain triage XWorm | DonPasci |
| 2026-04-08 18:00 | malware.xoilacxyi.tv | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | 45.153.34.27:443 | XWorm | AS51396 c2 triage XWorm | DonPasci |
| 2026-04-08 18:00 | complainprocess.in.net | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | flagship.jp.net | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | sunwin66.us.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | www.xn--eck4dzdq88wogxb.jpn.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | 38.87.116.37:2137 | XWorm | AS174 c2 triage XWorm | DonPasci |
| 2026-04-08 18:00 | shroom010.duckdns.org | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | 178.16.55.23:1602 | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | 178.16.55.23:1605 | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 18:00 | 4thguy.ooguy.com | Remcos | remcos | dyingbreeds_ |
| 2026-04-08 18:00 | 31.57.38.176:2029 | Remcos | remcos | dyingbreeds_ |
| 2026-04-08 18:00 | cdn.network-sync.online | Remcos | remcos | dyingbreeds_ |
| 2026-04-08 17:58 | win-point.excellsadarma.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 17:52 | load-hub.apotheosbring.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 17:47 | core-gate.apotheosbring.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 17:42 | peak-svc.apotheosbring.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 17:36 | shift-node.apotheosbring.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 17:35 | update35630.duckdns.org | AsyncRAT | asyncrat | abuse_ch |
| 2026-04-08 17:31 | take-api.apotheosbring.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 17:26 | top-logic.apotheosbring.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 17:19 | link-hub.goodtwain.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 17:13 | match-gate.goodtwain.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 17:09 | 74.0.48.39:443 | Vidar | Vidar | crep1x |
| 2026-04-08 17:09 | rbb.msalifenterprise.net | Vidar | Vidar | crep1x |
| 2026-04-08 17:09 | rbb.hbway.com.au | Vidar | Vidar | crep1x |
| 2026-04-08 17:09 | xhx.msalifenterprise.net | Vidar | Vidar | crep1x |
| 2026-04-08 17:09 | xhx.expertcs.au | Vidar | Vidar | crep1x |
| 2026-04-08 17:08 | https://xhx.msalifenterprise.net/ | Vidar | Vidar | crep1x |
| 2026-04-08 17:08 | https://xhx.expertcs.au/ | Vidar | Vidar | crep1x |
| 2026-04-08 17:08 | https://rbb.msalifenterprise.net/ | Vidar | Vidar | crep1x |
| 2026-04-08 17:08 | https://rbb.hbway.com.au/ | Vidar | Vidar | crep1x |
| 2026-04-08 17:08 | https://74.0.48.39/ | Vidar | Vidar | crep1x |
| 2026-04-08 17:07 | item-svc.goodtwain.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 17:01 | step-node.goodtwain.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 16:56 | dual-api.goodtwain.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 16:51 | best-pair.goodtwain.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 16:45 | base-vault.monarchold.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 16:39 | hist-svc.monarchold.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 16:34 | crown-node.monarchold.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 16:28 | rule-check.monarchold.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 16:22 | past-api.monarchold.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 16:18 | king-logic.monarchold.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 16:12 | message-hub.emissarysooth.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 16:06 | clear-gate.emissarysooth.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 16:00 | soft-svc.emissarysooth.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 15:54 | truth-node.emissarysooth.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 15:50 | link-api.emissarysooth.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 15:43 | send-relay.emissarysooth.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 15:35 | port-hub.covercotehour.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 15:30 | coat-svc.covercotehour.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 15:24 | safe-node.covercotehour.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 15:21 | sxhangtie.com | AsyncRAT | asyncrat RAT | abuse_ch |
| 2026-04-08 15:20 | https://74.0.42.84 | Vidar | Vidar | abuse_ch |
| 2026-04-08 15:19 | slot-api.covercotehour.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 15:18 | https://vittaro.ws/1/ | Unknown malware | | abuse_ch |
| 2026-04-08 15:18 | vittaro.ws | Unknown malware | | abuse_ch |
| 2026-04-08 15:17 | umbrellaquestion.xyz | Unknown Loader | OffLoader | abuse_ch |
| 2026-04-08 15:15 | friendjewel.cfd | Unknown Loader | OffLoader | abuse_ch |
| 2026-04-08 15:13 | time-check.covercotehour.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 15:10 | https://135.181.233.232 | Vidar | Vidar | abuse_ch |
| 2026-04-08 15:07 | wrap-logic.covercotehour.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 15:02 | rest-gate.dialectdozing.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:56 | speech-svc.dialectdozing.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:54 | https://clfckhitriver.com/api/data | SmartApeSG | AIMP Aorta ClickFix sideload SmartApeSG | Lenny_3BO |
| 2026-04-08 14:54 | 104.225.129.185:443 | SmartApeSG | ClickFix ShockHosting SmartApeSG | Lenny_3BO |
| 2026-04-08 14:54 | grande-luna.top | KongTuke | | rmceoin |
| 2026-04-08 14:54 | oeannon.com | KongTuke | | rmceoin |
| 2026-04-08 14:54 | https://stromao.com/file.js | Unknown malware | | GoldGoldGold |
| 2026-04-08 14:54 | compat.plenarykcg.com | FAKEUPDATES | SocGholish | monitorsg |
| 2026-04-08 14:54 | http://142.248.80.144/lol.sh | Unknown malware | honeypot | greedybear |
| 2026-04-08 14:50 | quiet-node.dialectdozing.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:45 | term-log.dialectdozing.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 14:39 | word-api.dialectdozing.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:38 | https://stromao.com/g | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 14:38 | https://stromao.com/t | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 14:37 | stromao.com | Unknown malware | ClickFix | HuntYethHounds |
| 2026-04-08 14:35 | https://bestwebchlen.cyou/log.php | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:35 | https://bestwebchlen.cyou/api/index.php | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:34 | https://bestwebchlen.cyou/cf.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:34 | bestwebchlen.cyou | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:34 | talk-sync.dialectdozing.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:31 | https://nsservclod.beer/api/css.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:31 | nsservclod.beer | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:30 | https://jsframeworkns.beer/api/css.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:30 | jsframeworkns.beer | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:29 | https://clnsdns.beer/api/css.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:28 | clnsdns.beer | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-08 14:28 | frame-hub.shapeprimrose.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:22 | solid-svc.shapeprimrose.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:17 | mesh-node.shapeprimrose.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:12 | geo-api.shapeprimrose.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:06 | base-point.shapeprimrose.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 14:05 | 193.161.193.99:64692 | RatonRAT | RatonRAT | abuse_ch |
| 2026-04-08 14:01 | HIAMEGO-36241.portmap.host | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | kx5official.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | malware.kx5official.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | hghehg-51578.portmap.host | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | fkgohw.za.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | gtv.uk.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | rexblade.sa.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | malware.xoilaczzzzc.tv | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | gegehhe-64692.portmap.host | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | cpiprinting.us.com | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 14:00 | form-check.shapeprimrose.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 13:54 | sign-gate.iconoguroque.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 13:49 | art-svc.iconoguroque.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 13:44 | draw-node.iconoguroque.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 13:38 | view-hub.iconoguroque.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 13:32 | image-api.iconoguroque.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 13:26 | pixel-trace.iconoguroque.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 12:51 | https://prennixo.com/react | SmartApeSG | SmartApeSG | monitorsg |
| 2026-04-08 12:51 | https://prennixo.com/pnpm | SmartApeSG | SmartApeSG | monitorsg |
| 2026-04-08 12:51 | 89.110.115.141:9000 | SectopRAT | 1xxbot ArechClient RAT SectopRAT | whoamix302 |
| 2026-04-08 12:51 | prennixo.com | SmartApeSG | SmartApeSG | monitorsg |
| 2026-04-08 12:51 | 158.160.75.185:40435 | Quasar RAT | | netresec |
| 2026-04-08 12:30 | link.mundonerdassistencia.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-08 12:02 | 154.211.104.6:6666 | ValleyRAT | AS399077 c2 RAT triage ValleyRAT | DonPasci |
| 2026-04-08 11:02 | 156.234.162.251:7025 | Cobalt Strike | Agentemis Cobalt Strike CobaltStrike cobeacon | whoamix302 |
| 2026-04-08 11:02 | 77.91.97.244:443 | ACR Stealer | ACR Stealer stealer | whoamix302 |
| 2026-04-08 11:02 | 99.97.147.200:8443 | Unknown malware | c2 PowerSploit shodan Unknown malware | whoamix302 |
| 2026-04-08 11:02 | 171.244.28.167:8443 | Unknown malware | c2 PowerSploit shodan Unknown malware | whoamix302 |
| 2026-04-08 11:02 | 187.237.154.137:8443 | Unknown malware | c2 PowerSploit shodan Unknown malware | whoamix302 |
| 2026-04-08 11:02 | iridia.me | Unknown malware | | burger |
| 2026-04-08 11:02 | iridiacheats.dev | Unknown malware | | burger |
| 2026-04-08 11:02 | kssaprraemdda.com | NetSupportManager RAT | c2 NetSupport RAT | burger |
| 2026-04-08 11:02 | http://193.143.1.21/fakeurl.htm | NetSupportManager RAT | c2 NetSupport RAT | burger |
| 2026-04-08 11:02 | http://193.143.1.21:443/fakeurl.htm | NetSupportManager RAT | c2 NetSupport RAT | burger |
| 2026-04-08 11:02 | 54.36.237.92:8443 | Unknown RAT | AGEWHEEZE gorat UA UAC-0255 | RiddickABSent |
| 2026-04-08 10:58 | style-log.selzovestments.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:52 | item-svc.selzovestments.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:47 | stock-node.selzovestments.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 10:44 | 111.124.203.18:80 | Cobalt Strike | CobaltStrike drb-ra | abuse_ch |
| 2026-04-08 10:41 | shop-hub.selzovestments.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:35 | wear-api.selzovestments.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:30 | coat-check.selzovestments.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:25 | matrix-svc.fastidmatrix.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 10:19 | quick-io.fastidmatrix.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:13 | unit-node.fastidmatrix.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:08 | core-api.fastidmatrix.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 10:02 | base-point.fastidmatrix.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 10:00 | malware.xoilacke.tv | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 10:00 | 143.92.32.25:6666 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-08 10:00 | malware.cakhiaaj.cc | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 10:00 | cakhiaaj.cc | Quasar RAT | quasar | dyingbreeds_ |
| 2026-04-08 09:56 | mesh-static.fastidmatrix.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 09:51 | line-vault.dictatessullen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:45 | hard-svc.dictatessullen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:40 | mood-log.dictatessullen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:34 | dark-node.dictatessullen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:28 | text-api.dictatessullen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:23 | word-check.dictatessullen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:17 | live-svc.ranchitro.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 09:11 | ranch-hub.ranchitro.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:06 | land-vault.ranchitro.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-08 09:00 | field-node.ranchitro.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-08 08:55 | crop-api.ranchitro.in.net | ClearFake | ClearFake | threatcat_ch |