| 2026-04-27 09:36 | yj97hpfx.incub-teahouse.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 09:22 | biomecave.incub-teahouse.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 09:18 | vek.vi-ler.dk | Vidar | lv80gzr Vidar | abuse_ch |
| 2026-04-27 09:18 | https://vek.vi-ler.dk/ | Vidar | lv80gzr Vidar | abuse_ch |
| 2026-04-27 09:18 | vek.imoveisavendaemaraxa.com.br | Vidar | lv80gzr Vidar | abuse_ch |
| 2026-04-27 09:18 | https://vek.imoveisavendaemaraxa.com.br/ | Vidar | lv80gzr Vidar | abuse_ch |
| 2026-04-27 09:17 | 2585gqld.incub-teahouse.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 09:10 | kel-coreex.asso7tunexpl.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 09:10 | jp4j.asso7tunexpl.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 09:05 | massivedisco.asso7tunexpl.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 09:04 | 203.202.232.149:2222 | XWorm | XWorm | abuse_ch |
| 2026-04-27 08:49 | 17393sm.asso7tunexpl.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 08:43 | reelfla.asso7tunexpl.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 08:37 | kidjo.oasis-reimburse.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 08:32 | f532v.oasis-reimburse.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 08:27 | 136.243.87.141:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.133:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.138:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.134:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.129:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.131:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.140:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.132:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.128:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:27 | 136.243.87.139:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.132/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.128/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.139/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.141/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.133/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.138/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.134/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.129/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.131/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | https://136.243.87.140/ | Vidar | Vidar | crep1x |
| 2026-04-27 08:26 | surve-chain.oasis-reimburse.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 08:26 | 31.220.80.26:31337 | Sliver | sliver | whoamix302 |
| 2026-04-27 08:26 | duskmor.sleazyhe2ded.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | theorymin.sleazyhe2ded.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | qdacqez.sleazyhe2ded.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | trimeshor6.foot-ricochet.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | br4nd-forge.foot-ricochet.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | gent1-lab.exhumat8urgle.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | 170.75.167.225:443 | Unknown malware | BotManager Unknown malware | whoamix302 |
| 2026-04-27 08:26 | 150.139.132.7:10001 | Xtreme RAT | ExtRat Xtreme RAT | whoamix302 |
| 2026-04-27 08:26 | gathgolde.exhumat8urgle.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | du5k-panel.exhumat8urgle.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | broadfilte.exhumat8urgle.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 08:26 | 167.71.65.175:25001 | Kimwolf | c2 kimwolf | Bitsight |
| 2026-04-27 08:26 | 161.35.91.164:25001 | Kimwolf | c2 kimwolf | Bitsight |
| 2026-04-27 08:26 | 178.62.208.75:25001 | Kimwolf | c2 kimwolf | Bitsight |
| 2026-04-27 08:25 | 107.172.252.244:443 | Cobalt Strike | CobaltStrike cs-watermark-666666666 | abuse_ch |
| 2026-04-27 08:23 | 47.111.184.26:8880 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-27 08:23 | 147.78.2.110:443 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-27 08:22 | 45.130.148.102:8080 | Cobalt Strike | CobaltStrike cs-watermark-305419896 | abuse_ch |
| 2026-04-27 08:21 | crawlerstory.oasis-reimburse.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 08:13 | dynvaleis.oasis-reimburse.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 08:07 | traile-proc.oasis-reimburse.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 08:00 | 178.104.213.150:443 | Vidar | Vidar | crep1x |
| 2026-04-27 08:00 | 74.0.42.54:443 | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | trimeshum.exhumat8urgle.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 07:59 | bom.vi-ler.dk | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | bca.vi-ler.dk | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | tsc.vi-ler.dk | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | gon.vi-ler.dk | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | psy.vi-ler.dk | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://gon.vi-ler.dk/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://psy.vi-ler.dk/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://178.104.213.150/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://74.0.42.54/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://bom.vi-ler.dk/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://bca.vi-ler.dk/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://tsc.vi-ler.dk/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:59 | https://steamcommunity.com/profiles/76561198709529056 | Vidar | Vidar | crep1x |
| 2026-04-27 07:52 | https://pillow.riverbridge.site/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:52 | https://bbs.vi-ler.dk/ | Vidar | Vidar | crep1x |
| 2026-04-27 07:52 | bbs.vi-ler.dk | Vidar | Vidar | crep1x |
| 2026-04-27 07:40 | wint3-array.exhumat8urgle.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 07:23 | uwfw.foot-ricochet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 07:18 | meta-cl1p.foot-ricochet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 07:01 | norcresta.foot-ricochet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 06:55 | 5qpfwfow.foot-ricochet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 06:32 | streamsol.sleazyhe2ded.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 06:22 | https://packetswitchings.com.ng/wp-blog-footer.php?data= | IClickFix | ClickFix IClickFix | HuntYethHounds |
| 2026-04-27 06:21 | vorline8et.sleazyhe2ded.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 06:21 | https://packetswitchings.com.ng/wp-blog-footer.php?fp=1 | IClickFix | ClickFix IClickFix | HuntYethHounds |
| 2026-04-27 06:15 | gdxmgmf8.sleazyhe2ded.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 06:12 | https://mdasnmitrot.com/ooaoll.js | IClickFix | ClickFix IClickFix | HuntYethHounds |
| 2026-04-27 06:12 | mdasnmitrot.com | IClickFix | ClickFix IClickFix | HuntYethHounds |
| 2026-04-27 06:11 | https://marketsnows.com/9cG0Kh | IClickFix | ClickFix IClickFix | HuntYethHounds |
| 2026-04-27 06:11 | marketsnows.com | IClickFix | ClickFix IClickFix | HuntYethHounds |
| 2026-04-27 06:10 | open-2p.mivis-net.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 06:06 | rouge-4v.bexis-cloud.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 06:06 | soft-berg-9.mivis-net.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 06:05 | https://awesomeisojs.beer/api/css.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-27 06:05 | awesomeisojs.beer | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-27 06:04 | dark-land-8b.mivis-net.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 06:04 | rouge-6.mivis-net.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 06:04 | https://ns-claude-js.beer/api/css.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-27 05:51 | petit-fire-5.mivis-net.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 05:46 | bleu-3.mivis-net.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 05:34 | haus-1.dexon-tech.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 05:29 | holz-baum-7k.dexon-tech.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 05:25 | ax2e.tov1maren.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:25 | hen1a.tov1maren.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:25 | 5ynt46-node.kyl6varet.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:25 | taldra2ex.nov2sirel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:25 | soft-2.bexis-cloud.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:25 | blue-fire-3w.mivon-data.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:25 | zeit-land-9.mivon-data.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | haus-6.mivon-data.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | wald-baum-1.mivon-data.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | gold-star-2s.qivor-web.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | holz-berg-3.qivor-web.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | iron-land-9q.zexis-host.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | soft-wald-2.zexis-host.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | rouge-5.zexis-host.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | kalt-8.zexis-host.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | safespacesouthwest.com | magecart | Magecart | localhost |
| 2026-04-27 05:24 | petit-star-8z.sylor-plus.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | vert-1.sylor-plus.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | holz-berg-5.sylor-plus.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | bleu-9.sylor-plus.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | noir-9.dexon-tech.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | gold-mond-2.dexon-tech.in.net | ClearFake | 27April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | trinexa.zun5larek.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | creehid.rax3vomen.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | kellithis.rax3vomen.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | resolvercultur.rax3vomen.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | warmcon.rax3vomen.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | pixellowersoon.top | magecart | Magecart | varysz |
| 2026-04-27 05:24 | networkhub.syke8liron.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | pixel9-layer.syke8liron.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:24 | styledontcryyy.com | magecart | Magecart | varysz |
| 2026-04-27 05:24 | styleinfinity.top | magecart | Magecart | varysz |
| 2026-04-27 05:24 | stylejingle.com | magecart | Magecart | varysz |
| 2026-04-27 05:24 | styleoutsperee.com | magecart | Magecart | varysz |
| 2026-04-27 05:24 | stylebackrooooms.com | magecart | Magecart | varysz |
| 2026-04-27 05:24 | dibzyqjy.zun5larek.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-27 05:23 | vert-4.dexon-tech.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 05:06 | fast-star-5x.dexon-tech.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:58 | open-3n.noven-hub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:53 | zeit-berg-8.noven-hub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:51 | u88.store | Nanocore RAT | NanoCore | abuse_ch |
| 2026-04-27 04:50 | kaede.jpn.com | Nanocore RAT | NanoCore | abuse_ch |
| 2026-04-27 04:47 | 82.165.179.9:1604 | AsyncRAT | asyncrat | abuse_ch |
| 2026-04-27 04:47 | kalt-5.noven-hub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:46 | ukschool.uk.com | Nanocore RAT | NanoCore | abuse_ch |
| 2026-04-27 04:45 | au88.select | Nanocore RAT | NanoCore | abuse_ch |
| 2026-04-27 04:45 | 158.160.75.185:40553 | RatonRAT | RatonRAT | abuse_ch |
| 2026-04-27 04:44 | 23.132.164.14:9000 | RatonRAT | RatonRAT | abuse_ch |
| 2026-04-27 04:44 | 43.132.210.230:884 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-27 04:44 | 43.132.210.230:882 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-27 04:43 | 103.12.148.79:443 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-27 04:43 | 175.24.201.23:443 | Meterpreter | Meterpreter | abuse_ch |
| 2026-04-27 04:43 | http://196.199.55.26:7777/b367c5ea.php | DCRat | dcrat RAT | abuse_ch |
| 2026-04-27 04:42 | 144.31.61.121:31505 | Quasar RAT | QuasarRAT RAT | abuse_ch |
| 2026-04-27 04:42 | soft-land-1.noven-hub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:42 | http://kingspy.dynv6.net:797/Vre | Vjw0rm | Vjw0rm | abuse_ch |
| 2026-04-27 04:41 | 104.21.50.237:443 | Nanocore RAT | NanoCore RAT | abuse_ch |
| 2026-04-27 04:41 | 172.67.213.218:443 | Nanocore RAT | NanoCore RAT | abuse_ch |
| 2026-04-27 04:41 | 160.191.89.201:443 | Nanocore RAT | NanoCore RAT | abuse_ch |
| 2026-04-27 04:40 | 104.21.88.201:443 | Nanocore RAT | NanoCore RAT | abuse_ch |
| 2026-04-27 04:40 | 104.21.67.145:443 | Nanocore RAT | NanoCore RAT | abuse_ch |
| 2026-04-27 04:40 | 172.67.177.87:443 | Nanocore RAT | NanoCore RAT | abuse_ch |
| 2026-04-27 04:40 | 172.67.152.162:443 | Nanocore RAT | NanoCore RAT | abuse_ch |
| 2026-04-27 04:36 | rouge-4.noven-hub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:28 | iron-fire-6s.noven-hub.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:23 | haus-2x.sylor-plus.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 04:15 | dark-wald-3.sylor-plus.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:43 | open-6.raxen-serv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:38 | gold-land-4m.raxen-serv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:30 | noir-2.raxen-serv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:25 | fast-fire-9.raxen-serv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:19 | zeit-5.raxen-serv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:13 | blue-mond-3k.raxen-serv.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:08 | haus-7v.zexis-host.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 03:00 | dark-berg-1.zexis-host.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 02:25 | open-1x.qivor-web.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 02:20 | petit-zeit-4.qivor-web.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 02:14 | noir-6.qivor-web.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 02:12 | ultimatecircleislandtour.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-27 02:03 | vert-8.qivor-web.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 01:50 | fast-7.mivon-data.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 01:38 | brandyparfums.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-27 01:36 | bleu-4k.mivon-data.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 01:11 | iron-8.bexis-cloud.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 01:06 | petit-mond-5.bexis-cloud.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 00:53 | kalt-berg-7.bexis-cloud.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 00:51 | 31.57.184.186:2404 | Remcos | remcos | abuse_ch |
| 2026-04-27 00:41 | dark-star-1.bexis-cloud.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 00:35 | open-9.vortex-node.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 00:30 | holz-baum-4.vortex-node.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 00:24 | vert-1k.vortex-node.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 00:19 | gold-land-8.vortex-node.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-27 00:13 | noir-5.vortex-node.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-27 00:08 | fast-zeit-2.vortex-node.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 23:10 | hglj.nov2sirel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 23:05 | 7xekivp.nov2sirel.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 22:59 | m3rge-mark.nov2sirel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 22:54 | 4ppcd.nov2sirel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 22:42 | neo-rnead.nov2sirel.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 22:37 | lfixa2ax.kyl6varet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 22:31 | cl1e-panel.kyl6varet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 22:20 | quorcresten1.kyl6varet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 22:14 | 9hq5.kyl6varet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 22:08 | vfge.kyl6varet.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:52 | 9al62yq7.souf1atwindow.digital | ClearFake | ClearFake | Anonymous |
| 2026-04-26 21:52 | 503yy20v.souf1atwindow.digital | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:52 | ar1hcfxy.gushchina-kriz.digital | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:51 | mernex1ar.tov1maren.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 21:46 | 54lzq.tov1maren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:41 | quor-valeix.tov1maren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:35 | harbquarr.tov1maren.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 21:29 | uxmidt.syke8liron.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:18 | vel-draex.syke8liron.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:12 | soundatom.syke8liron.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 21:06 | 10ya0-dock.syke8liron.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 21:01 | https://bbs.gessoflex.com.br/ | Vidar | Vidar | crep1x |
| 2026-04-26 21:01 | bbs.gessoflex.com.br | Vidar | Vidar | crep1x |
| 2026-04-26 20:35 | stead5-switch.rax3vomen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 20:26 | 48oni.rax3vomen.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 19:59 | clustchoru.zun5larek.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 19:52 | railspark.zun5larek.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 19:46 | ark-valeen.zun5larek.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 19:39 | ve1ve-loop.zun5larek.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 19:33 | joerass.icu | ACR Stealer | ACRStealer | abuse_ch |
| 2026-04-26 19:33 | royapuls.qor9mital.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 19:33 | brigh-gold.qor9mital.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 19:33 | tfoq2qdi.qor9mital.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 19:33 | motivate.starkmond.cfd | ACR Stealer | ACRStealer | abuse_ch |
| 2026-04-26 19:21 | 85.239.144.97:7754 | PureRAT | PureHVNC PureRAT RAT | abuse_ch |
| 2026-04-26 19:15 | pwq.scoffatop.icu | ACR Stealer | ACRStealer | abuse_ch |
| 2026-04-26 19:15 | ootip.submergejunkie.life | ACR Stealer | ACRStealer | abuse_ch |
| 2026-04-26 19:14 | mer-lithor.qor9mital.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 19:14 | http://91.92.242.236/oPvjr94jfe/Login.php | Amadey | Amadey AS202412 Omegatech LTD | antiphishorg |
| 2026-04-26 19:14 | boos-gri.qor9mital.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 19:14 | http://pillow.riverbridge.site | Vidar | ipocalur Vidar | abuse_ch |
| 2026-04-26 19:02 | warm-senso.qor9mital.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 19:01 | 18.162.233.94:8880 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-26 19:01 | xzcgtffdlmn.cn | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-26 18:59 | 192.109.200.9:4444 | Unknown RAT | RAT | abuse_ch |
| 2026-04-26 18:57 | 95.40.185.56:8880 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-26 18:56 | vgrdshuyyg.cn | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-26 18:50 | 203.91.75.211:2207 | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-26 18:50 | jdjj.cc | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-26 18:49 | oone8de.cn | ValleyRAT | RAT ValleyRAT | abuse_ch |
| 2026-04-26 18:48 | wo0hv.sivla2ken.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 18:39 | xzgik.sivla2ken.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 18:36 | 91.92.242.236:80 | Amadey | Amadey ViriBack | abuse_ch |
| 2026-04-26 18:33 | l1chen-hold.sivla2ken.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 18:27 | kye.venloc.com.br | Vidar | Vidar | abuse_ch |
| 2026-04-26 18:24 | wildsai.sivla2ken.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 18:19 | pillow.riverbridge.site | Vidar | ipocalur Vidar | abuse_ch |
| 2026-04-26 18:18 | https://t.me/periotival | Vidar | ipocalur Vidar | abuse_ch |
| 2026-04-26 18:18 | https://telegram.me/b8bz11 | Vidar | ipocalur Vidar | abuse_ch |
| 2026-04-26 18:13 | fldenmd.sivla2ken.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 18:11 | portalpitch.pav3lorex.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | fund-ancho.pav3lorex.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | fast-zeit-4.miv6soren.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | crestsud.pav3lorex.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | vert-5.miv6soren.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | holz-baum-3.miv6soren.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | fast-1.bexla8rin.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | iron-land-1q.zex1liron.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | dark-berg-2c.zex1liron.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | zeit-2.rax7pavel.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | fast-fire-5.rax7pavel.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | noir-1.rax7pavel.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | gold-land-3m.rax7pavel.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | vert-4.sylo3mer.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | bleu-2.sylo3mer.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | iron-fire-7s.nov2liren.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | kalt-5.nov2liren.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | gold-mond-8.miv8soren.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | open-2.dex1lavel.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 8.148.229.106:8888 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-26 18:11 | manngua.mivonex-serv.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | poditt0j.dexon-node.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | estrqmi.dexon-node.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | lichxz.dexon-node.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | fine7t.bexlor-net.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 35.212.248.36:8888 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-26 18:11 | kopf-wkeu.qivon-store.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | etoi-fbll.qivon-store.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | soci-84i6.zexon-plus.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | piedmg3.zexon-plus.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | fire-02k6.raxen-tech.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | pes-ghj0.raxen-tech.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | freur6r.raxen-tech.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | homb-1h.raxen-tech.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | spia-vo.sylonix-web.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | aguarw2y.sylonix-web.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | https://nxbrew.me/ | Vidar | RenPyLoader Vidar | rifteyy |
| 2026-04-26 18:11 | 180.76.185.146:8888 | Cobalt Strike | CobaltStrike cs-watermark-391144938 | abuse_ch |
| 2026-04-26 18:11 | 64.118.135.172:80 | Cobalt Strike | Agentemis Beacon Cobalt Strike CobaltStrike cobeacon | whoamix302 |
| 2026-04-26 18:11 | http://62.60.226.159/xvzpjyddlu/login.php | TinyLoader | AS214351 FEMO IT SOLUTIONS LIMITED tinyloader | antiphishorg |
| 2026-04-26 18:11 | rosrefurboss.com | Unknown malware | | varysz |
| 2026-04-26 18:11 | holz-baum-5k.miv8soren.in.net | ClearFake | 25April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | trafluxo.xyz | Unknown Webinject | | varysz |
| 2026-04-26 18:11 | 163.61.39.140:3778 | Mirai | Mirai | seckle |
| 2026-04-26 18:11 | paniwcfh.sylonix-web.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | landem.noven-sys.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | homo-ph.noven-sys.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | breagc.dexor-host.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | mund4c.dexor-host.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 04wp.miv6soren.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 5hor-mount.dex2lavel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | rela1-graph.dex2lavel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 3xpos-route.bexla8rin.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | imagesil.qiv5moren.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | crestsync.qiv5moren.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 37.107.161.214:11 | Xtreme RAT | ExtRat Xtreme RAT | whoamix302 |
| 2026-04-26 18:11 | 37.107.163.217:9069 | Xtreme RAT | ExtRat Xtreme RAT | whoamix302 |
| 2026-04-26 18:11 | 209.99.185.174:8889 | Remcos | remcos RemcosRAT Remvio Socmer | whoamix302 |
| 2026-04-26 18:11 | 47.239.106.95:8443 | GobRAT | GobRAT | whoamix302 |
| 2026-04-26 18:11 | 189.150.109.130:1604 | DarkComet | Breut darkcomet Fynloski klovbot | whoamix302 |
| 2026-04-26 18:11 | lanedev.sylo3mer.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | http://199.68.217.18:8888/supershell/login/ | Unknown malware | AS979 NetLab Global Supershell | antiphishorg |
| 2026-04-26 18:11 | 199.68.217.18:8888 | Unknown malware | AS979 NetLab Global Supershell | antiphishorg |
| 2026-04-26 18:11 | st4ge-pulse.dex4lavel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | vaultink.dex4lavel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | talnexos5.dex4lavel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | bluysbweb.com | Unknown malware | | burger |
| 2026-04-26 18:11 | blyuserbwrbs.com | Unknown malware | | burger |
| 2026-04-26 18:11 | parcelquick.bexla3rin.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | sub-h11l.bexla3rin.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | puresthomes.com | Unknown malware | c2 | burger |
| 2026-04-26 18:11 | 187.77.255.235:5252 | Unknown malware | c2 | burger |
| 2026-04-26 18:11 | tiruet.com | Unknown malware | c2 | burger |
| 2026-04-26 18:11 | 143.198.228.219:5632 | Unknown malware | c2 | burger |
| 2026-04-26 18:11 | project-info-world.info | SantaStealer | c2 | burger |
| 2026-04-26 18:11 | 39hwegfg.qiv7moren.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | sthj.qiv7moren.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | lumennix.live | Unknown malware | | burger |
| 2026-04-26 18:11 | lum-lineon.zex2liron.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 66.163.123.111:80 | Stealc | Stealc | whoamix302 |
| 2026-04-26 18:11 | 91.92.242.57:80 | Stealc | Stealc | whoamix302 |
| 2026-04-26 18:11 | alphsummer.zex2liron.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | studi-fores.zex2liron.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | 3vnp4.zex2liron.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | vocalatomic.zex2liron.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:11 | http://91.92.242.236/oPvjr94jfe/index.php | Amadey | 54e64e Amadey c2 | Bitsight |
| 2026-04-26 18:11 | tigmjuy.rax8pavel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | ion-cra.rax8pavel.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | peak7-frame.sylo1mer.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | iswear.thisisafalsepositive.ru | Empyrean | | Anonymous |
| 2026-04-26 18:10 | titaniumclient.com | Empyrean | | Anonymous |
| 2026-04-26 18:10 | cbd34e6a8274c62f1d0e4f183dafc17b305e0988b2e5e46cd4a94ef680e7f405 | Empyrean | | Anonymous |
| 2026-04-26 18:10 | 172.67.214.234:443 | Empyrean | | Anonymous |
| 2026-04-26 18:10 | 104.21.91.94:443 | Empyrean | | Anonymous |
| 2026-04-26 18:10 | analysis-one-orpin.vercel.app | Unknown malware | c2 | burger |
| 2026-04-26 18:10 | sandbhar.to6varon.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | quarrytrav.to6varon.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | runt11-drive.to6varon.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | webdisk.housecleaninggrovecityohio.com | FAKEUPDATES | SocGholish | varysz |
| 2026-04-26 18:10 | shop.steadycompanion.com | FAKEUPDATES | SocGholish | varysz |
| 2026-04-26 18:10 | samples.addisgraphix.com | FAKEUPDATES | SocGholish | varysz |
| 2026-04-26 18:10 | exposerv.pav7lorex.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | 144.31.204.136:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 64.188.70.194:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 94.228.161.88:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 77.110.117.204:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 84.201.4.120:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 172.245.112.202:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 206.245.157.177:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 193.23.211.29:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 77.239.121.3:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 77.239.120.249:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 93.185.159.90:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 77.110.117.211:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 144.31.139.203:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 144.31.139.201:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | 144.31.204.145:443 | GhostSocks | GhostSocks | whoamix302 |
| 2026-04-26 18:10 | insivisual.pav7lorex.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | medi4-spark.pav7lorex.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | 46.149.73.232:9000 | SectopRAT | 1xxbot ArechClient SectopRAT | whoamix302 |
| 2026-04-26 18:10 | foplq.vex4moral.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | aa5sf.vex4moral.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | zazsvrye.vex4moral.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | temmodul.vex4moral.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | thor-hinge.tor4nexil.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | sand-tar.tor4nexil.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | vqq7jll.tor4nexil.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | okqgg.tor4nexil.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | fembiq.vel7ramon.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | minorclosed.vel7ramon.in.net | ClearFake | 26April2026 ClearFake Commandline Windows | Gi7w0rm |
| 2026-04-26 18:10 | https://tabbysbakescodes.ws/mnlinmwv/insirs.php | Unknown malware | CNBackdoor | abuse_ch |
| 2026-04-26 18:10 | https://tommysbakescodes.ws/mnlinmwv/insris.php | Unknown malware | CNBackdoor | abuse_ch |
| 2026-04-26 18:09 | tommysbakescodes.ws | Unknown malware | CNBackdoor | abuse_ch |
| 2026-04-26 18:09 | tommysbakescodes.cv | Unknown malware | CNBackdoor | abuse_ch |
| 2026-04-26 18:09 | 8.149.139.253:8080 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-26 18:09 | 107.172.252.244:444 | Cobalt Strike | CobaltStrike cs-watermark-666666666 | abuse_ch |
| 2026-04-26 18:08 | 2.26.133.54:443 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-26 18:08 | 103.195.190.251:80 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-26 18:08 | 103.230.15.38:80 | Cobalt Strike | CobaltStrike cs-watermark-987654321 | abuse_ch |
| 2026-04-26 18:06 | edit8-grid.sivla2ken.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 18:01 | https://bom.gessoflex.com.br/ | Vidar | Vidar | crep1x |
| 2026-04-26 18:01 | bom.gessoflex.com.br | Vidar | Vidar | crep1x |
| 2026-04-26 18:00 | snovv8-mesh.vel7ramon.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 17:59 | peafamqe.cyou | CountLoader | CountLoader | abuse_ch |
| 2026-04-26 17:59 | snconor.vg | CountLoader | CountLoader | abuse_ch |
| 2026-04-26 17:53 | 8ltu2.vel7ramon.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 17:47 | ofdqgn.vel7ramon.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 17:40 | ughckpku.vel7ramon.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 17:03 | marshform.tor4nexil.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 17:01 | trishnacolleges.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-26 16:54 | gl0ss-vault.tor4nexil.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 16:18 | sermarken.vex4moral.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 16:11 | geo-ca5t.vex4moral.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 15:47 | norcorear3.pav7lorex.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 15:43 | ns-claude-js.beer | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-26 15:42 | https://ntsnsdns.beer/api/css.js | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-26 15:42 | ntsnsdns.beer | Unknown malware | ClickFix ErrTraffic | HuntYethHounds |
| 2026-04-26 15:41 | alt-rnetr.pav7lorex.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 15:34 | rklpwx.pav7lorex.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 15:17 | janadiscovery.creativepreflight.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-26 15:07 | lightinn.to6varon.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 15:01 | 3eums.to6varon.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 14:54 | uy2qx.to6varon.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 14:42 | imgnyc.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-26 14:37 | iframeshop.fietsenco.com | StrelaStealer | StrelaStealer | threatcat_ch |
| 2026-04-26 14:25 | ridgegentle.sylo1mer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 14:19 | qkkrhea.sylo1mer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 14:10 | r4vxeem.sylo1mer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 14:03 | loose-bun.sylo1mer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 13:57 | zentideor.sylo1mer.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 13:35 | zenmeshix1.rax8pavel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 13:21 | glolab.rax8pavel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 13:15 | cargoquery.rax8pavel.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 13:08 | arkmesh7al.rax8pavel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 13:02 | gr1m-index.zex2liron.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 13:01 | https://bca.gessoflex.com.br/ | Vidar | Vidar | crep1x |
| 2026-04-26 13:00 | bca.gessoflex.com.br | Vidar | Vidar | crep1x |
| 2026-04-26 12:18 | zenmesh9en.qiv7moren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 12:11 | 5ob0.qiv7moren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 11:51 | compressout.qiv7moren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 11:44 | 5pruc7-mount.qiv7moren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 11:39 | https://scalarview.shop/t.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-26 11:38 | vorline5is.bexla3rin.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 11:35 | https://scalarview.shop/ext.0ff2555835d3.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-26 11:35 | https://scalarview.shop/ext-b.58316c304236.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-26 11:33 | https://scalarview.shop/t.188cfd3975db.js | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-26 11:31 | calm-spool.bexla3rin.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 11:31 | scalarview.shop | Unknown malware | ClickFix EXT | HuntYethHounds |
| 2026-04-26 11:24 | echogate.bexla3rin.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 11:12 | https://ra7tel.digital/script.sh | Unknown malware | macOS | HuntYethHounds |
| 2026-04-26 11:12 | ra7tel.digital | Unknown malware | macOS | HuntYethHounds |
| 2026-04-26 11:04 | solflux6ix.bexla3rin.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 10:44 | bajbvqgz.dex4lavel.in.net | ClearFake | ClearFake | Anonymous |
| 2026-04-26 10:38 | loadtin.dex4lavel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 10:31 | jloj7ws.dex4lavel.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 10:30 | updatedata.us | Unknown malware | Fake Adobe Fake Microsoft Teams | HuntYethHounds |
| 2026-04-26 10:29 | http://pixeldrain.com/api/file/HDAhDKwK | Unknown malware | Fake Adobe | HuntYethHounds |
| 2026-04-26 10:28 | https://pixeldrain.com/api/file/FQiVU7kw | Unknown malware | Fake Microsoft Teams | HuntYethHounds |
| 2026-04-26 10:28 | https://updatedata.us/msoft/Windows/invite.php | Unknown malware | Fake Microsoft Teams | HuntYethHounds |
| 2026-04-26 10:27 | https://pixeldrain.com/api/file/Xb8wt515 | Unknown malware | Fake Microsoft Teams | HuntYethHounds |
| 2026-04-26 10:26 | https://updatedata.us/cloud/Windows/invite.php | Unknown malware | Fake Microsoft Teams | HuntYethHounds |
| 2026-04-26 10:25 | https://updatedata.us/acrobat/windows/adobe.php | Unknown malware | Fake Adobe | HuntYethHounds |
| 2026-04-26 10:18 | bin4ry-trail.miv9soren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 10:09 | fre5h-logic.miv9soren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 10:02 | g4th-sheet.miv9soren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 09:59 | https://livemeetinggatgoogllemeet.top/Windows/microsoft-store.php | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:58 | https://livemeetinggatgoogllemeet.top/Windows/ | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:58 | livemeetinggatgoogllemeet.top | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:56 | otter0-field.miv9soren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 09:55 | https://googlemetingninviit.click/meet/567/Windows/microsoft-store.php | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:54 | https://googlemetingninviit.click/meet/567/Windows/ | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:54 | googlemetingninviit.click | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:49 | 40l627.miv9soren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 09:46 | 05327t.miv9soren.in.net | ClearFake | ClearFake | threatcat_ch |
| 2026-04-26 09:44 | https://googlemeet.meeting-live.site/update/GoogleMeetInstaller.zip | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:43 | https://meeting-live.site/googlemeet/process.php | Unknown malware | Fake Google Meet | HuntYethHounds |
| 2026-04-26 09:43 | https://meeting-live.site/googlemeet/update.html | Unknown malware | Fake Google Meet | HuntYethHounds |