2025-07-01 00:20:16,CarlyGriggs13,domain,pancakeswag.eu.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939841449652081133 2025-07-01 00:20:16,CarlyGriggs13,url,https://pancakeswag.eu.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939841449652081133 2025-07-01 00:26:26,CarlyGriggs13,domain,clubenatural.blog,#phishing,https://x.com/CarlyGriggs13/status/1939843000181399723 2025-07-01 00:26:26,CarlyGriggs13,url,https://clubenatural.blog/news_natural/,#phishing,https://x.com/CarlyGriggs13/status/1939843000181399723 2025-07-01 00:26:41,CarlyGriggs13,url,https://relaxationlight.com/index_685ebbc8a8a48.php?camp_id=685ebbc8a8a48,#phishing,https://x.com/CarlyGriggs13/status/1939843061497860150 2025-07-01 00:26:41,CarlyGriggs13,domain,relaxationlight.com,#phishing,https://x.com/CarlyGriggs13/status/1939843061497860150 2025-07-01 00:26:54,CarlyGriggs13,domain,oscarappspin.com,#phishing,https://x.com/CarlyGriggs13/status/1939843116770443554 2025-07-01 00:26:54,CarlyGriggs13,url,https://oscarappspin.com,#phishing,https://x.com/CarlyGriggs13/status/1939843116770443554 2025-07-01 00:27:10,CarlyGriggs13,domain,play-chickenroad-game.com,#phishing,https://x.com/CarlyGriggs13/status/1939843184370073666 2025-07-01 00:27:10,CarlyGriggs13,url,http://play-chickenroad-game.com/?chiname=ropwr7ylj13857&s=2&sub5=XXXX&sub4=XXXX&chikreo=EE6chL&sub6=XXXX&chipix=9815121488543397,#phishing,https://x.com/CarlyGriggs13/status/1939843184370073666 2025-07-01 00:28:56,CarlyGriggs13,domain,coinvolcanos.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1939843628660146183 2025-07-01 00:28:56,CarlyGriggs13,url,https://coinvolcanos.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1939843628660146183 2025-07-01 00:29:10,CarlyGriggs13,url,https://funplaytimeclick.info/?fbclid=%7B%7Bfbclid%7D%7D&sub3=%7B%7Bcampaign.name%7D%7D&sub4=%7B%7Badset.name%7D%7D&sub5=469&sub6=%7B%7Bad.name%7D%7D,#phishing,https://x.com/CarlyGriggs13/status/1939843687070195784 2025-07-01 00:29:10,CarlyGriggs13,domain,funplaytimeclick.info,#phishing,https://x.com/CarlyGriggs13/status/1939843687070195784 2025-07-01 00:29:25,CarlyGriggs13,domain,bookofraspace.com,#phishing,https://x.com/CarlyGriggs13/status/1939843749510558047 2025-07-01 00:29:25,CarlyGriggs13,url,https://bookofraspace.com,#phishing,https://x.com/CarlyGriggs13/status/1939843749510558047 2025-07-01 00:30:00,CarlyGriggs13,url,https://tytiks.store/gCGjMt,#phishing,https://x.com/CarlyGriggs13/status/1939843897141993754 2025-07-01 00:30:00,CarlyGriggs13,domain,tytiks.store,#phishing,https://x.com/CarlyGriggs13/status/1939843897141993754 2025-07-01 00:32:08,CarlyGriggs13,url,https://eth77go.com,#phishing,https://x.com/CarlyGriggs13/status/1939844433257566269 2025-07-01 00:32:08,CarlyGriggs13,domain,eth77go.com,#phishing,https://x.com/CarlyGriggs13/status/1939844433257566269 2025-07-01 01:07:16,CarlyGriggs13,url,https://raydium.io-liquidity-pools-sol40e817af36c94d2ac33a39bce1f.pro/clmm/create-position/?pool_id=CvyHpmqKt6ugLc9od9o3C8rs5Af1pRgvGM5BchXs6vXk,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1939853276587176225 2025-07-01 01:07:16,CarlyGriggs13,domain,raydium.io-liquidity-pools-sol40e817af36c94d2ac33a39bce1f.pro,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1939853276587176225 2025-07-01 02:00:12,urldna_bot,domain,bbsancon.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1939866599231475905 2025-07-01 02:00:12,urldna_bot,url,https://bbsancon.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1939866599231475905 2025-07-01 02:31:52,CarlyGriggs13,domain,solix-airdrop.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939874565234045140 2025-07-01 02:31:52,CarlyGriggs13,url,https://solix-airdrop.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939874565234045140 2025-07-01 02:32:42,CarlyGriggs13,url,https://defirecovers.com,#phishing,https://x.com/CarlyGriggs13/status/1939874774550732889 2025-07-01 02:32:42,CarlyGriggs13,domain,defirecovers.com,#phishing,https://x.com/CarlyGriggs13/status/1939874774550732889 2025-07-01 02:33:31,CarlyGriggs13,url,https://xeqnetwork.com,#phishing,https://x.com/CarlyGriggs13/status/1939874981162230104 2025-07-01 02:33:31,CarlyGriggs13,domain,xeqnetwork.com,#phishing,https://x.com/CarlyGriggs13/status/1939874981162230104 2025-07-01 02:33:45,CarlyGriggs13,url,https://airdropmeganet.live,#phishing,https://x.com/CarlyGriggs13/status/1939875038804516867 2025-07-01 02:33:45,CarlyGriggs13,domain,airdropmeganet.live,#phishing,https://x.com/CarlyGriggs13/status/1939875038804516867 2025-07-01 02:36:09,CarlyGriggs13,domain,coizm.cc,#phishing,https://x.com/CarlyGriggs13/status/1939875646072639831 2025-07-01 02:36:09,CarlyGriggs13,url,https://coizm.cc,#phishing,https://x.com/CarlyGriggs13/status/1939875646072639831 2025-07-01 02:36:24,CarlyGriggs13,url,https://www.unmarshal-ai.org,#phishing,https://x.com/CarlyGriggs13/status/1939875708299338102 2025-07-01 02:36:24,CarlyGriggs13,domain,unmarshal-ai.org,#phishing,https://x.com/CarlyGriggs13/status/1939875708299338102 2025-07-01 02:37:08,CarlyGriggs13,domain,foxbitexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939875890110111972 2025-07-01 02:37:08,CarlyGriggs13,url,https://foxbitexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939875890110111972 2025-07-01 02:37:20,CarlyGriggs13,url,https://bit2me.exchange,#phishing,https://x.com/CarlyGriggs13/status/1939875941414838535 2025-07-01 02:37:20,CarlyGriggs13,domain,bit2me.exchange,#phishing,https://x.com/CarlyGriggs13/status/1939875941414838535 2025-07-01 02:39:28,fbgwls245,domain,4ozbomcjurd64vgeblkoqeqirvawi3dddswriw6qespscmequmqlshyd.onion,#ransomware,https://x.com/fbgwls245/status/1939876480571646258 2025-07-01 02:39:28,fbgwls245,md5,F392807DA3EE1F3E9702CE5FA91D418D,#ransomware,https://x.com/fbgwls245/status/1939876480571646258 2025-07-01 02:39:28,fbgwls245,domain,zdkexsh2e7yihw5uhg5hpsgq3dois2m5je7lzfagij2y6iw5ptl35gyd.onion,#ransomware,https://x.com/fbgwls245/status/1939876480571646258 2025-07-01 02:39:28,fbgwls245,url,http://zdkexsh2e7yihw5uhg5hpsgq3dois2m5je7lzfagij2y6iw5ptl35gyd.onion,#ransomware,https://x.com/fbgwls245/status/1939876480571646258 2025-07-01 02:39:28,fbgwls245,url,http://4ozbomcjurd64vgeblkoqeqirvawi3dddswriw6qespscmequmqlshyd.onion,#ransomware,https://x.com/fbgwls245/status/1939876480571646258 2025-07-01 02:40:20,CarlyGriggs13,domain,cloufdlare.com-verification.us.org,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939876695407755741 2025-07-01 02:40:20,CarlyGriggs13,url,https://cloufdlare.com-verification.us.org,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939876695407755741 2025-07-01 02:40:50,CarlyGriggs13,url,https://airdropscarv.live,#phishing,https://x.com/CarlyGriggs13/status/1939876822541348950 2025-07-01 02:40:50,CarlyGriggs13,domain,airdropscarv.live,#phishing,https://x.com/CarlyGriggs13/status/1939876822541348950 2025-07-01 02:41:20,CarlyGriggs13,domain,learn-elixir.dev,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939876950027157760 2025-07-01 02:41:20,CarlyGriggs13,url,https://learn-elixir.dev,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939876950027157760 2025-07-01 02:44:29,CarlyGriggs13,domain,aerodrome.wegic.app,#phishing,https://x.com/CarlyGriggs13/status/1939877742008275285 2025-07-01 02:44:29,CarlyGriggs13,url,https://aerodrome.wegic.app/home,#phishing,https://x.com/CarlyGriggs13/status/1939877742008275285 2025-07-01 03:01:13,masaomi346,url,https://mypage-ocn.0m0rms.top,#phishing,https://x.com/masaomi346/status/1939881951839887539 2025-07-01 03:01:13,masaomi346,domain,mypage-ocn.0m0rms.top,#phishing,https://x.com/masaomi346/status/1939881951839887539 2025-07-01 03:10:41,CarlyGriggs13,domain,airdropsonic.live,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939884336523731345 2025-07-01 03:10:41,CarlyGriggs13,url,https://airdropsonic.live,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939884336523731345 2025-07-01 03:12:35,CarlyGriggs13,domain,stoxsteps.com,#phishing,https://x.com/CarlyGriggs13/status/1939884812589768732 2025-07-01 03:12:35,CarlyGriggs13,url,https://stoxsteps.com,#phishing,https://x.com/CarlyGriggs13/status/1939884812589768732 2025-07-01 03:14:16,CarlyGriggs13,domain,orangexexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939885237674090580 2025-07-01 03:14:16,CarlyGriggs13,url,https://orangexexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939885237674090580 2025-07-01 03:36:09,CarlyGriggs13,url,https://bit2meexchange.live,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939890745818980431 2025-07-01 03:36:09,CarlyGriggs13,domain,bit2meexchange.live,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939890745818980431 2025-07-01 03:39:51,PaduckLee,md5,5938ff2fb71171100e4ba38c91a62143,#ransomware,https://x.com/PaduckLee/status/1939891675670929419 2025-07-01 03:41:20,CarlyGriggs13,url,https://wingriders.live,#phishing,https://x.com/CarlyGriggs13/status/1939892048800489902 2025-07-01 03:41:20,CarlyGriggs13,domain,wingriders.live,#phishing,https://x.com/CarlyGriggs13/status/1939892048800489902 2025-07-01 03:41:50,CarlyGriggs13,url,https://www.bravelabs.app,#phishing,https://x.com/CarlyGriggs13/status/1939892176399524101 2025-07-01 03:41:50,CarlyGriggs13,domain,bravelabs.app,#phishing,https://x.com/CarlyGriggs13/status/1939892176399524101 2025-07-01 03:42:20,CarlyGriggs13,url,https://gamefipulse.com,#phishing,https://x.com/CarlyGriggs13/status/1939892299606950101 2025-07-01 03:42:20,CarlyGriggs13,domain,gamefipulse.com,#phishing,https://x.com/CarlyGriggs13/status/1939892299606950101 2025-07-01 03:43:10,CarlyGriggs13,url,https://www.tellernoteai.com,#phishing,https://x.com/CarlyGriggs13/status/1939892509548695798 2025-07-01 03:43:10,CarlyGriggs13,domain,tellernoteai.com,#phishing,https://x.com/CarlyGriggs13/status/1939892509548695798 2025-07-01 03:45:10,CarlyGriggs13,url,https://rbx25fry.com,#phishing,https://x.com/CarlyGriggs13/status/1939893012529643772 2025-07-01 03:45:10,CarlyGriggs13,domain,rbx25fry.com,#phishing,https://x.com/CarlyGriggs13/status/1939893012529643772 2025-07-01 03:54:32,CarlyGriggs13,url,https://indoexexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939895370366247256 2025-07-01 03:54:32,CarlyGriggs13,domain,indoexexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939895370366247256 2025-07-01 04:04:50,CarlyGriggs13,domain,nodepay.cloud,#phishing,https://x.com/CarlyGriggs13/status/1939897961367892117 2025-07-01 04:04:50,CarlyGriggs13,url,https://nodepay.cloud,#phishing,https://x.com/CarlyGriggs13/status/1939897961367892117 2025-07-01 04:17:07,suyog41,md5,1013a1560acd661924673f97c7879d12,#stealer #AmosStealer,https://x.com/suyog41/status/1939901054180565242 2025-07-01 04:17:07,suyog41,md5,6d55dda53e21bee4d6a005d2a886a0c1,#stealer #AmosStealer,https://x.com/suyog41/status/1939901054180565242 2025-07-01 04:17:07,suyog41,md5,fc6ac85fc9367c51b678fe77ad2d94d3,#stealer #AmosStealer,https://x.com/suyog41/status/1939901054180565242 2025-07-01 04:17:07,suyog41,md5,68315ad0b43a379b3d60913bc98335da,#stealer #AmosStealer,https://x.com/suyog41/status/1939901054180565242 2025-07-01 04:17:07,suyog41,md5,8d428d2ba3347e27ccabac95e5608167,#stealer #AmosStealer,https://x.com/suyog41/status/1939901054180565242 2025-07-01 04:28:32,CarlyGriggs13,domain,mexc.com--verification.us.com,#phishing,https://x.com/CarlyGriggs13/status/1939903927610143062 2025-07-01 04:28:32,CarlyGriggs13,url,https://mexc.com--verification.us.com,#phishing,https://x.com/CarlyGriggs13/status/1939903927610143062 2025-07-01 04:29:41,CarlyGriggs13,domain,bitgetexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939904218074153236 2025-07-01 04:29:41,CarlyGriggs13,url,https://bitgetexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939904218074153236 2025-07-01 04:40:37,CarlyGriggs13,domain,fast-24.top,#phishing,https://x.com/CarlyGriggs13/status/1939906966983516577 2025-07-01 04:40:37,CarlyGriggs13,url,http://fast-24.top,#phishing,https://x.com/CarlyGriggs13/status/1939906966983516577 2025-07-01 04:40:51,CarlyGriggs13,url,http://asapswap.io,#phishing,https://x.com/CarlyGriggs13/status/1939907025645048282 2025-07-01 04:40:51,CarlyGriggs13,domain,asapswap.io,#phishing,https://x.com/CarlyGriggs13/status/1939907025645048282 2025-07-01 04:41:07,CarlyGriggs13,url,http://www.bitnora.net,#phishing,https://x.com/CarlyGriggs13/status/1939907094242812272 2025-07-01 04:41:07,CarlyGriggs13,domain,bitnora.net,#phishing,https://x.com/CarlyGriggs13/status/1939907094242812272 2025-07-01 04:41:22,CarlyGriggs13,domain,swapflow.space,#phishing,https://x.com/CarlyGriggs13/status/1939907156490559639 2025-07-01 04:41:22,CarlyGriggs13,url,http://swapflow.space,#phishing,https://x.com/CarlyGriggs13/status/1939907156490559639 2025-07-01 04:45:23,CarlyGriggs13,ip,45.150.34.43,#phishing,https://x.com/CarlyGriggs13/status/1939908165673656393 2025-07-01 04:45:23,CarlyGriggs13,url,http://45.150.34.43,#phishing,https://x.com/CarlyGriggs13/status/1939908165673656393 2025-07-01 04:47:23,CarlyGriggs13,url,https://s.team-lo.com/p/dfgh-gfwe/loerefp/,#phishing,https://x.com/CarlyGriggs13/status/1939908670675923091 2025-07-01 04:47:23,CarlyGriggs13,domain,s.team-lo.com,#phishing,https://x.com/CarlyGriggs13/status/1939908670675923091 2025-07-01 04:48:09,CarlyGriggs13,url,https://nexawealth.online,#phishing,https://x.com/CarlyGriggs13/status/1939908863077015800 2025-07-01 04:48:09,CarlyGriggs13,domain,nexawealth.online,#phishing,https://x.com/CarlyGriggs13/status/1939908863077015800 2025-07-01 04:48:43,CarlyGriggs13,url,https://aax-exchange.com,#phishing,https://x.com/CarlyGriggs13/status/1939909006597771449 2025-07-01 04:48:43,CarlyGriggs13,domain,aax-exchange.com,#phishing,https://x.com/CarlyGriggs13/status/1939909006597771449 2025-07-01 04:49:43,CarlyGriggs13,url,https://jup-ag-swap.org,#phishing,https://x.com/CarlyGriggs13/status/1939909258218279242 2025-07-01 04:49:43,CarlyGriggs13,domain,jup-ag-swap.org,#phishing,https://x.com/CarlyGriggs13/status/1939909258218279242 2025-07-01 04:49:58,CarlyGriggs13,domain,growwcrypto.biz,#phishing,https://x.com/CarlyGriggs13/status/1939909320956944599 2025-07-01 04:49:58,CarlyGriggs13,url,https://growwcrypto.biz,#phishing,https://x.com/CarlyGriggs13/status/1939909320956944599 2025-07-01 04:50:12,CarlyGriggs13,domain,globeaiprofit.com,#phishing,https://x.com/CarlyGriggs13/status/1939909379169595564 2025-07-01 04:50:12,CarlyGriggs13,url,https://globeaiprofit.com,#phishing,https://x.com/CarlyGriggs13/status/1939909379169595564 2025-07-01 04:50:40,CarlyGriggs13,domain,jup-swap-ag.org,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939909498686370302 2025-07-01 04:50:40,CarlyGriggs13,url,https://jup-swap-ag.org,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939909498686370302 2025-07-01 04:53:04,CarlyGriggs13,domain,whitebitexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939910100593901880 2025-07-01 04:53:04,CarlyGriggs13,url,https://whitebitexchange.live,#phishing,https://x.com/CarlyGriggs13/status/1939910100593901880 2025-07-01 05:05:44,romonlyht,ip,188.245.227.196,#phishing,https://x.com/romonlyht/status/1939913288776917263 2025-07-01 05:05:44,romonlyht,domain,linksredirect.com,#phishing,https://x.com/romonlyht/status/1939913288776917263 2025-07-01 05:05:45,romonlyht,url,https://securedatas.it.com/ini/core-jp/core.php,#phishing,https://x.com/romonlyht/status/1939913290748240158 2025-07-01 05:05:45,romonlyht,url,https://securedatas.it.com/ini/core-jp/sever99c78558ghd356c4adt894hf89eb33642a906aghdgd#aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1939913290748240158 2025-07-01 05:05:45,romonlyht,ip,45.148.10.175,#phishing,https://x.com/romonlyht/status/1939913290748240158 2025-07-01 05:05:45,romonlyht,ip,68.183.244.242,#phishing,https://x.com/romonlyht/status/1939913290748240158 2025-07-01 05:05:45,romonlyht,domain,securedatas.it.com,#phishing,https://x.com/romonlyht/status/1939913290748240158 2025-07-01 06:00:08,urldna_bot,url,https://btinternetsecureservice8ju89u9i.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1939926978116685947 2025-07-01 06:00:08,urldna_bot,domain,btinternetsecureservice8ju89u9i.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1939926978116685947 2025-07-01 06:07:52,CarlyGriggs13,domain,uuexxxone.top,#phishing,https://x.com/CarlyGriggs13/status/1939928925028733105 2025-07-01 06:07:52,CarlyGriggs13,url,https://uuexxxone.top,#phishing,https://x.com/CarlyGriggs13/status/1939928925028733105 2025-07-01 06:08:07,CarlyGriggs13,domain,extradety.top,#phishing,https://x.com/CarlyGriggs13/status/1939928987892842656 2025-07-01 06:08:07,CarlyGriggs13,url,https://extradety.top,#phishing,https://x.com/CarlyGriggs13/status/1939928987892842656 2025-07-01 06:08:21,CarlyGriggs13,url,https://extradexx.top,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939929044583112783 2025-07-01 06:08:21,CarlyGriggs13,domain,extradexx.top,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1939929044583112783 2025-07-01 06:09:02,CarlyGriggs13,url,https://ooaauuex.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1939929216889344235 2025-07-01 06:09:02,CarlyGriggs13,domain,ooaauuex.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1939929216889344235 2025-07-01 06:09:12,drb_ra,ip,128.1.184.179,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929261197906071 2025-07-01 06:09:12,drb_ra,url,http://128.1.184.179:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929261197906071 2025-07-01 06:09:17,drb_ra,url,https://cnm.h0xtopsec.vip/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929282316271783 2025-07-01 06:09:17,drb_ra,domain,cnm.h0xtopsec.vip,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929282316271783 2025-07-01 06:09:17,drb_ra,ip,154.89.205.162,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929282316271783 2025-07-01 06:09:17,drb_ra,url,http://154.89.205.162:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929282316271783 2025-07-01 06:09:22,drb_ra,url,http://159.138.153.205:8888,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929301542936695 2025-07-01 06:09:22,drb_ra,ip,159.138.153.205,#CobaltStrike #C2,https://x.com/drb_ra/status/1939929301542936695 2025-07-01 06:09:31,CarlyGriggs13,url,https://speiuuexone.com,#phishing,https://x.com/CarlyGriggs13/status/1939929340180861322 2025-07-01 06:09:31,CarlyGriggs13,domain,speiuuexone.com,#phishing,https://x.com/CarlyGriggs13/status/1939929340180861322 2025-07-01 06:11:31,CarlyGriggs13,url,https://speirxuuex.com/index.php,#phishing,https://x.com/CarlyGriggs13/status/1939929842624946627 2025-07-01 06:11:31,CarlyGriggs13,domain,speirxuuex.com,#phishing,https://x.com/CarlyGriggs13/status/1939929842624946627 2025-07-01 06:19:04,CarlyGriggs13,domain,dev4.beautyworld.co.id,#phishing,https://x.com/CarlyGriggs13/status/1939931741591875921 2025-07-01 06:19:04,CarlyGriggs13,url,https://dev4.beautyworld.co.id/WIN138/,#phishing,https://x.com/CarlyGriggs13/status/1939931741591875921 2025-07-01 06:21:52,CarlyGriggs13,domain,aerodromeslipstream.live,#phishing,https://x.com/CarlyGriggs13/status/1939932448395063618 2025-07-01 06:21:52,CarlyGriggs13,url,https://aerodromeslipstream.live,#phishing,https://x.com/CarlyGriggs13/status/1939932448395063618 2025-07-01 06:45:35,drb_ra,ip,13.232.53.239,#Mythic #C2,https://x.com/drb_ra/status/1939938415299965323 2025-07-01 06:45:35,drb_ra,url,http://13.232.53.239:7443,#Mythic #C2,https://x.com/drb_ra/status/1939938415299965323 2025-07-01 06:45:39,drb_ra,url,http://47.111.9.150:8888,#Sliver #C2,https://x.com/drb_ra/status/1939938433415135315 2025-07-01 06:45:39,drb_ra,ip,47.111.9.150,#Sliver #C2,https://x.com/drb_ra/status/1939938433415135315 2025-07-01 06:47:33,drb_ra,ip,13.127.151.53,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938910592708846 2025-07-01 06:47:33,drb_ra,url,http://13.127.151.53:1224,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938910592708846 2025-07-01 06:47:35,drb_ra,ip,16.63.101.3,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938919081996397 2025-07-01 06:47:35,drb_ra,url,http://16.63.101.3:81,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938919081996397 2025-07-01 06:47:37,drb_ra,url,http://179.95.194.18:9990,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938927802003951 2025-07-01 06:47:37,drb_ra,ip,179.95.194.18,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938927802003951 2025-07-01 06:47:40,drb_ra,url,http://13.37.239.254:25434,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938940745662503 2025-07-01 06:47:40,drb_ra,ip,13.37.239.254,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938940745662503 2025-07-01 06:47:42,drb_ra,url,http://3.25.68.150:2456,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1939938950296019450 2025-07-01 06:47:47,drb_ra,url,http://172.111.150.118:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1939938971384951244 2025-07-01 06:47:47,drb_ra,ip,172.111.150.118,#AsyncRAT #C2,https://x.com/drb_ra/status/1939938971384951244 2025-07-01 06:47:48,drb_ra,url,http://192.3.134.25:8085,#Reverse_SSH #C2,https://x.com/drb_ra/status/1939938972840370418 2025-07-01 06:47:48,drb_ra,ip,192.3.134.25,#Reverse_SSH #C2,https://x.com/drb_ra/status/1939938972840370418 2025-07-01 06:47:50,drb_ra,url,http://119.45.160.154:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1939938982093033915 2025-07-01 06:47:50,drb_ra,ip,119.45.160.154,#Reverse_SSH #C2,https://x.com/drb_ra/status/1939938982093033915 2025-07-01 06:47:52,drb_ra,ip,196.251.115.156,#AsyncRAT #C2,https://x.com/drb_ra/status/1939938990183862664 2025-07-01 06:47:52,drb_ra,url,http://196.251.115.156:1000,#AsyncRAT #C2,https://x.com/drb_ra/status/1939938990183862664 2025-07-01 06:47:56,drb_ra,url,http://172.94.96.108:6606,#AsyncRAT #C2,https://x.com/drb_ra/status/1939939008961789993 2025-07-01 06:47:56,drb_ra,ip,172.94.96.108,#AsyncRAT #C2,https://x.com/drb_ra/status/1939939008961789993 2025-07-01 06:48:01,drb_ra,url,http://63.33.191.191:443,#Interactsh #C2,https://x.com/drb_ra/status/1939939029044064754 2025-07-01 06:48:06,drb_ra,url,http://23.254.225.125:2404,#Remcos #C2,https://x.com/drb_ra/status/1939939051093598579 2025-07-01 06:48:06,drb_ra,ip,23.254.225.125,#Remcos #C2,https://x.com/drb_ra/status/1939939051093598579 2025-07-01 06:48:06,drb_ra,ip,63.33.191.191,#Interactsh #C2,https://x.com/drb_ra/status/1939939047926874495 2025-07-01 06:48:06,drb_ra,url,http://63.33.191.191:80,#Interactsh #C2,https://x.com/drb_ra/status/1939939047926874495 2025-07-01 06:48:10,drb_ra,url,http://54.220.249.148:443,#Interactsh #C2,https://x.com/drb_ra/status/1939939066788642820 2025-07-01 06:48:11,drb_ra,url,http://2.58.56.13:2404,#Remcos #C2,https://x.com/drb_ra/status/1939939070768988504 2025-07-01 06:48:15,drb_ra,url,http://54.220.249.148:80,#Interactsh #C2,https://x.com/drb_ra/status/1939939085977563413 2025-07-01 06:48:15,drb_ra,url,http://195.191.218.23:30370,#Remcos #C2,https://x.com/drb_ra/status/1939939086669611405 2025-07-01 06:48:15,drb_ra,ip,195.191.218.23,#Remcos #C2,https://x.com/drb_ra/status/1939939086669611405 2025-07-01 06:48:15,drb_ra,ip,54.220.249.148,#Interactsh #C2,https://x.com/drb_ra/status/1939939085977563413 2025-07-01 06:48:19,drb_ra,url,http://43.162.122.245:4000,#Evilginx #C2 #EvilGoPhish,https://x.com/drb_ra/status/1939939106311618980 2025-07-01 06:48:19,drb_ra,ip,43.162.122.245,#Evilginx #C2 #EvilGoPhish,https://x.com/drb_ra/status/1939939106311618980 2025-07-01 06:48:24,drb_ra,ip,49.113.78.135,#Supershell #C2,https://x.com/drb_ra/status/1939939125743731012 2025-07-01 06:48:24,drb_ra,url,http://49.113.78.135:8888,#Supershell #C2,https://x.com/drb_ra/status/1939939125743731012 2025-07-01 06:48:29,drb_ra,ip,185.169.54.63,#Dcrat #C2,https://x.com/drb_ra/status/1939939144819507456 2025-07-01 06:48:29,drb_ra,url,http://185.169.54.63:8848,#Dcrat #C2,https://x.com/drb_ra/status/1939939144819507456 2025-07-01 06:48:33,drb_ra,ip,216.137.216.185,#Qakbot #C2,https://x.com/drb_ra/status/1939939162322260392 2025-07-01 06:48:33,drb_ra,url,http://216.137.216.185:443,#Qakbot #C2,https://x.com/drb_ra/status/1939939162322260392 2025-07-01 06:48:37,drb_ra,ip,120.53.14.145,#Havoc #C2,https://x.com/drb_ra/status/1939939180148117865 2025-07-01 06:48:37,drb_ra,url,http://120.53.14.145:443,#Havoc #C2,https://x.com/drb_ra/status/1939939180148117865 2025-07-01 06:48:42,drb_ra,ip,43.138.209.230,#Havoc #C2,https://x.com/drb_ra/status/1939939201962696810 2025-07-01 06:48:42,drb_ra,url,http://43.138.209.230:443,#Havoc #C2,https://x.com/drb_ra/status/1939939201962696810 2025-07-01 06:48:47,drb_ra,ip,140.238.58.71,#Deimos #C2,https://x.com/drb_ra/status/1939939221164138774 2025-07-01 06:48:47,drb_ra,url,http://140.238.58.71:443,#Deimos #C2,https://x.com/drb_ra/status/1939939221164138774 2025-07-01 06:48:51,drb_ra,url,http://92.116.90.188:443,#Deimos #C2,https://x.com/drb_ra/status/1939939240298598713 2025-07-01 06:48:51,drb_ra,ip,92.116.90.188,#Deimos #C2,https://x.com/drb_ra/status/1939939240298598713 2025-07-01 06:48:56,drb_ra,ip,43.141.132.166,#Deimos #C2,https://x.com/drb_ra/status/1939939259776995735 2025-07-01 06:48:56,drb_ra,url,http://43.141.132.166:10250,#Deimos #C2,https://x.com/drb_ra/status/1939939259776995735 2025-07-01 06:49:01,drb_ra,ip,221.181.64.114,#Deimos #C2,https://x.com/drb_ra/status/1939939279003627913 2025-07-01 06:49:01,drb_ra,url,http://221.181.64.114:4506,#Deimos #C2,https://x.com/drb_ra/status/1939939279003627913 2025-07-01 06:51:04,drb_ra,ip,146.70.87.237,#C2,https://x.com/drb_ra/status/1939939796454973689 2025-07-01 06:51:04,drb_ra,url,http://146.70.87.237:43211,#C2,https://x.com/drb_ra/status/1939939796454973689 2025-07-01 06:51:09,drb_ra,ip,38.132.122.141,#C2,https://x.com/drb_ra/status/1939939815660609891 2025-07-01 06:51:09,drb_ra,url,http://38.132.122.141:43211,#C2,https://x.com/drb_ra/status/1939939815660609891 2025-07-01 06:51:13,drb_ra,ip,46.101.119.100,#C2,https://x.com/drb_ra/status/1939939833675190604 2025-07-01 06:51:13,drb_ra,url,http://46.101.119.100:443,#C2,https://x.com/drb_ra/status/1939939833675190604 2025-07-01 06:51:17,drb_ra,ip,45.138.50.75,#Remcos #C2,https://x.com/drb_ra/status/1939939852176306500 2025-07-01 06:51:17,drb_ra,url,http://45.138.50.75:2404,#Remcos #C2,https://x.com/drb_ra/status/1939939852176306500 2025-07-01 06:51:22,drb_ra,url,http://45.94.31.124:2404,#Remcos #C2,https://x.com/drb_ra/status/1939939871293898851 2025-07-01 06:51:22,drb_ra,ip,45.94.31.124,#Remcos #C2,https://x.com/drb_ra/status/1939939871293898851 2025-07-01 07:39:16,CarlyGriggs13,domain,bingxqa.com,#phishing,https://x.com/CarlyGriggs13/status/1939951924704317505 2025-07-01 07:39:16,CarlyGriggs13,url,https://bingxqa.com,#phishing,https://x.com/CarlyGriggs13/status/1939951924704317505 2025-07-01 07:40:45,CarlyGriggs13,domain,aligned-airdrop.live,#phishing,https://x.com/CarlyGriggs13/status/1939952300916621802 2025-07-01 07:40:45,CarlyGriggs13,url,https://aligned-airdrop.live,#phishing,https://x.com/CarlyGriggs13/status/1939952300916621802 2025-07-01 07:46:58,CarlyGriggs13,url,https://stakee.app,#phishing,https://x.com/CarlyGriggs13/status/1939953863001346265 2025-07-01 07:46:58,CarlyGriggs13,domain,stakee.app,#phishing,https://x.com/CarlyGriggs13/status/1939953863001346265 2025-07-01 07:46:58,skocherhan,domain,humltech-eg.com,#opendir #Remcos,https://x.com/skocherhan/status/1939953864972611901 2025-07-01 07:46:58,skocherhan,url,http://humltech-eg.com/Thai%20Clean/,#opendir #Remcos,https://x.com/skocherhan/status/1939953864972611901 2025-07-01 07:53:03,skocherhan,domain,m.nwebi.com,#phishing,https://x.com/skocherhan/status/1939955396535275626 2025-07-01 07:53:03,skocherhan,url,http://m.nwebi.com,#phishing,https://x.com/skocherhan/status/1939955396535275626 2025-07-01 07:59:55,ShadowChasing1,url,http://mofa-govpk.co,#APT,https://x.com/ShadowChasing1/status/1939957124982841365 2025-07-01 07:59:55,ShadowChasing1,domain,mofa-govpk.co,#APT,https://x.com/ShadowChasing1/status/1939957124982841365 2025-07-01 07:59:55,ShadowChasing1,url,http://cons.mofagovpk.co,#APT,https://x.com/ShadowChasing1/status/1939957124982841365 2025-07-01 07:59:55,ShadowChasing1,url,http://mofagovpk-hq.co,#APT,https://x.com/ShadowChasing1/status/1939957124982841365 2025-07-01 07:59:55,ShadowChasing1,domain,cons.mofagovpk.co,#APT,https://x.com/ShadowChasing1/status/1939957124982841365 2025-07-01 07:59:55,ShadowChasing1,domain,mofagovpk-hq.co,#APT,https://x.com/ShadowChasing1/status/1939957124982841365 2025-07-01 08:00:09,ShadowChasing1,domain,safecityctd.com,#APT,https://x.com/ShadowChasing1/status/1939957180729278704 2025-07-01 08:00:09,ShadowChasing1,url,http://safecityctd.com,#APT,https://x.com/ShadowChasing1/status/1939957180729278704 2025-07-01 08:00:09,ShadowChasing1,ip,109.248.161.210,#APT,https://x.com/ShadowChasing1/status/1939957180729278704 2025-07-01 08:01:03,ShadowChasing1,url,http://islamabadpolice.org,#APT,https://x.com/ShadowChasing1/status/1939957410078081295 2025-07-01 08:01:03,ShadowChasing1,domain,islamabadpolice.org,#APT,https://x.com/ShadowChasing1/status/1939957410078081295 2025-07-01 08:01:03,ShadowChasing1,ip,109.248.161.64,#APT,https://x.com/ShadowChasing1/status/1939957410078081295 2025-07-01 08:01:03,ShadowChasing1,url,http://109.248.161.64,#APT,https://x.com/ShadowChasing1/status/1939957410078081295 2025-07-01 08:08:22,skocherhan,ip,185.235.137.237,,https://x.com/skocherhan/status/1939959249146200086 2025-07-01 08:24:32,ReBensk,md5,aba7688ba6f225124da6ab49cd6edf0d,#malware #Android #Trojan,https://x.com/ReBensk/status/1939963317436498295 2025-07-01 08:27:25,skocherhan,url,http://predragneskovic.com/wp-includes/ID3/module.audio-video.asf.php,,https://x.com/skocherhan/status/1939964043290173780 2025-07-01 08:27:25,skocherhan,domain,predragneskovic.com,,https://x.com/skocherhan/status/1939964043290173780 2025-07-01 08:27:25,skocherhan,md5,b132adfbd49409f64880244e34e2581b,,https://x.com/skocherhan/status/1939964043290173780 2025-07-01 08:27:25,skocherhan,md5,16c370fba130d98acdc693e0ea837cb7,,https://x.com/skocherhan/status/1939964043290173780 2025-07-01 08:58:06,skocherhan,domain,myaccel.blue,#opendir,https://x.com/skocherhan/status/1939971767075754001 2025-07-01 08:58:06,skocherhan,url,http://myaccel.blue/SSA.ORG/,#opendir,https://x.com/skocherhan/status/1939971767075754001 2025-07-01 09:00:15,SarlackLab,ip,196.251.83.44,#C2 #NanoCore,https://x.com/SarlackLab/status/1939972305490170271 2025-07-01 09:00:15,SarlackLab,url,http://196.251.83.44:50050,#C2 #NanoCore,https://x.com/SarlackLab/status/1939972305490170271 2025-07-01 09:29:37,500mk500,url,http://minepi.team,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.team,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.space,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.pw,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.sale,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.sale,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.tech,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.space,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.xin,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://pinet.vin,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.uno,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.xin,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://pi-wallet.cn,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,pinet.vin,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,xiaolv.uno,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.pw,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.pro,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.tech,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.uno,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,pi-wallet.cn,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://xiaolv.uno,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.email,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,craxsrat.link,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.autos,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.autos,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.club,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.pro,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.club,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.email,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.plus,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://craxsrat.link,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.fit,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.ink,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.ink,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.link,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.link,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.plus,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.fans,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,url,http://minepi.fans,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:29:37,500mk500,domain,minepi.fit,,https://x.com/500mk500/status/1939979698236199260 2025-07-01 09:34:51,Fact_Finder03,ip,47.237.142.172,,https://x.com/Fact_Finder03/status/1939981012542357987 2025-07-01 10:26:31,abuse_ch,ip,185.156.72.61,,https://x.com/abuse_ch/status/1939994015111201142 2025-07-01 10:52:07,s3curetheweb,domain,views.base.com,#phishing,https://x.com/s3curetheweb/status/1940000457486672288 2025-07-01 10:52:07,s3curetheweb,sha256,d465172175d35d493fb1633e237700022bd849fa123164790b168b8318acb090,#phishing,https://x.com/s3curetheweb/status/1940000457486672288 2025-07-01 10:52:07,s3curetheweb,url,https://views.base.com,#phishing,https://x.com/s3curetheweb/status/1940000457486672288 2025-07-01 11:04:09,SarlackLab,url,http://192.169.69.26:1985,#NanoCore #C2,https://x.com/SarlackLab/status/1940003485035962835 2025-07-01 11:04:09,SarlackLab,ip,192.169.69.26,#NanoCore #C2,https://x.com/SarlackLab/status/1940003485035962835 2025-07-01 11:04:37,drb_ra,url,http://150.158.98.7:18443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003606486245481 2025-07-01 11:04:37,drb_ra,ip,150.158.98.7,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003606486245481 2025-07-01 11:04:42,drb_ra,url,http://8.152.193.151:8081,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003626182639634 2025-07-01 11:04:47,drb_ra,url,http://106.13.74.33:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003645900165395 2025-07-01 11:04:47,drb_ra,ip,106.13.74.33,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003645900165395 2025-07-01 11:04:52,drb_ra,ip,47.121.24.204,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003665617506552 2025-07-01 11:04:52,drb_ra,url,http://47.121.24.204:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003665617506552 2025-07-01 11:04:56,drb_ra,url,http://39.100.72.166:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003685616038339 2025-07-01 11:04:56,drb_ra,ip,39.100.72.166,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003685616038339 2025-07-01 11:05:02,drb_ra,url,http://110.42.203.222:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003707325653107 2025-07-01 11:05:02,drb_ra,ip,110.42.203.222,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940003707325653107 2025-07-01 11:07:06,drb_ra,domain,video.mca.gov.cn,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:07:06,drb_ra,url,https://video.mca.gov.cn/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:07:06,drb_ra,domain,im-open.douyin.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:07:06,drb_ra,url,https://im-open.douyin.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:07:06,drb_ra,domain,v3-web.douyinvod.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:07:06,drb_ra,url,https://v3-web.douyinvod.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:07:06,drb_ra,url,http://120.79.64.164:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:07:06,drb_ra,ip,120.79.64.164,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940004227868160178 2025-07-01 11:15:11,drb_ra,url,http://60.205.107.16:8389,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006263468740957 2025-07-01 11:15:11,drb_ra,ip,60.205.107.16,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006263468740957 2025-07-01 11:15:16,drb_ra,ip,176.126.114.137,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006283416846523 2025-07-01 11:15:16,drb_ra,url,http://176.126.114.137:4445,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006283416846523 2025-07-01 11:15:21,drb_ra,ip,183.131.59.121,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006304870797715 2025-07-01 11:15:21,drb_ra,ip,121.4.99.161,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006304870797715 2025-07-01 11:15:21,drb_ra,url,https://183.131.59.121/omp/api/micro_app/get_org_app,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006304870797715 2025-07-01 11:15:21,drb_ra,url,http://121.4.99.161:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940006304870797715 2025-07-01 11:43:31,CarlyGriggs13,domain,cawa4dsukses.vip,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1940013393085104577 2025-07-01 11:43:31,CarlyGriggs13,url,https://cawa4dsukses.vip/?ref=privatevip,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1940013393085104577 2025-07-01 11:43:45,CarlyGriggs13,domain,pjj-ui.live,#phishing,https://x.com/CarlyGriggs13/status/1940013450752565412 2025-07-01 11:43:45,CarlyGriggs13,url,https://pjj-ui.live/cache/empty/login,#phishing,https://x.com/CarlyGriggs13/status/1940013450752565412 2025-07-01 12:40:44,masaomi346,url,https://docom-hugefold.mtscy.cn/authuo/cgiarlonidlogin/,#phishing,https://x.com/masaomi346/status/1940027793481601312 2025-07-01 12:40:44,masaomi346,url,https://docom-yeaher.xchlk.cn/authuo/cgiarlonidlogin/,#phishing,https://x.com/masaomi346/status/1940027793481601312 2025-07-01 12:40:44,masaomi346,domain,docom-yeaher.xchlk.cn,#phishing,https://x.com/masaomi346/status/1940027793481601312 2025-07-01 12:40:44,masaomi346,domain,docom-hugefold.mtscy.cn,#phishing,https://x.com/masaomi346/status/1940027793481601312 2025-07-01 12:40:44,masaomi346,url,https://docom-hieroee.dxzlp.cn/authuo/cgiarlonidlogin/,#phishing,https://x.com/masaomi346/status/1940027793481601312 2025-07-01 12:40:44,masaomi346,domain,docom-hieroee.dxzlp.cn,#phishing,https://x.com/masaomi346/status/1940027793481601312 2025-07-01 13:34:27,c9lab_soc,domain,onex.capital,#phishing #scam,https://x.com/c9lab_soc/status/1940041313405252011 2025-07-01 13:34:27,c9lab_soc,url,http://onex.capital,#phishing #scam,https://x.com/c9lab_soc/status/1940041313405252011 2025-07-01 13:34:27,c9lab_soc,domain,fit-vault.com,#phishing #scam,https://x.com/c9lab_soc/status/1940041313405252011 2025-07-01 13:34:27,c9lab_soc,url,http://fit-vault.com,#phishing #scam,https://x.com/c9lab_soc/status/1940041313405252011 2025-07-01 14:00:07,urldna_bot,domain,anandsr-dev.github.io,#scam #phishing,https://x.com/urldna_bot/status/1940047772121551225 2025-07-01 14:00:07,urldna_bot,url,https://anandsr-dev.github.io/facebookclone,#scam #phishing,https://x.com/urldna_bot/status/1940047772121551225 2025-07-01 14:56:10,skocherhan,url,https://searchway.pro/1997_Florida_Marlins_season?fc9opjjtczfu=FXnLSLXrstrQVuqwiYHgXn%2Bsndo4cnGfsboIp5InC4mk5STV5UvWumF4ctDTxKCiAEIqBDycwp2OrLmfjE0%2BdQ%3D%3D,,https://x.com/skocherhan/status/1940061875850383580 2025-07-01 14:56:10,skocherhan,domain,searchway.pro,,https://x.com/skocherhan/status/1940061875850383580 2025-07-01 17:39:14,drb_ra,url,http://139.180.129.54:53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102913667604723 2025-07-01 17:39:14,drb_ra,ip,139.180.129.54,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102913667604723 2025-07-01 17:39:19,drb_ra,url,http://47.237.86.35:53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102935460851976 2025-07-01 17:39:19,drb_ra,url,https://ns3.enaz.shop/wc/82740874126,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102935460851976 2025-07-01 17:39:19,drb_ra,ip,47.237.86.35,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102935460851976 2025-07-01 17:39:19,drb_ra,url,https://ns2.enaz.shop/wc/82740874126,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102935460851976 2025-07-01 17:39:19,drb_ra,domain,ns3.enaz.shop,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102935460851976 2025-07-01 17:39:19,drb_ra,domain,ns2.enaz.shop,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940102935460851976 2025-07-01 17:44:32,CarlyGriggs13,domain,crypsecure.netlify.app,#phishing,https://x.com/CarlyGriggs13/status/1940104246432600210 2025-07-01 17:44:32,CarlyGriggs13,url,https://crypsecure.netlify.app,#phishing,https://x.com/CarlyGriggs13/status/1940104246432600210 2025-07-01 17:44:47,CarlyGriggs13,domain,gate92.fetelliak.tech,#phishing,https://x.com/CarlyGriggs13/status/1940104311372976168 2025-07-01 17:44:47,CarlyGriggs13,url,https://gate92.fetelliak.tech/gates/7/payment.php?i=Zjg4OWFmNmItYzM4MC00NGFjLTk1NTUtMDFlZmZmODNkMGI0,#phishing,https://x.com/CarlyGriggs13/status/1940104311372976168 2025-07-01 17:45:02,CarlyGriggs13,domain,mvideo.bonus-bs.cfd,#phishing,https://x.com/CarlyGriggs13/status/1940104371314073687 2025-07-01 17:45:02,CarlyGriggs13,url,https://mvideo.bonus-bs.cfd,#phishing,https://x.com/CarlyGriggs13/status/1940104371314073687 2025-07-01 17:45:17,CarlyGriggs13,domain,mvideo.bonus-bz.cfd,#phishing,https://x.com/CarlyGriggs13/status/1940104436833292359 2025-07-01 17:45:17,CarlyGriggs13,url,http://mvideo.bonus-bz.cfd,#phishing,https://x.com/CarlyGriggs13/status/1940104436833292359 2025-07-01 17:45:34,CarlyGriggs13,url,https://pancakcswap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940104506601046158 2025-07-01 17:45:34,CarlyGriggs13,domain,pancakcswap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940104506601046158 2025-07-01 17:45:50,CarlyGriggs13,url,https://pancakeswrp.finance/swap/,#phishing,https://x.com/CarlyGriggs13/status/1940104573181731081 2025-07-01 17:45:50,CarlyGriggs13,domain,pancakeswrp.finance,#phishing,https://x.com/CarlyGriggs13/status/1940104573181731081 2025-07-01 17:46:07,CarlyGriggs13,url,https://securesberbank.sale4229.ru/payment/merchants/sbersafe_sberid/?invoice_uid=3d1b9237-a467-42e5-89b6-aa66448e7ed4&request_id=138504,#phishing,https://x.com/CarlyGriggs13/status/1940104644036046972 2025-07-01 17:46:07,CarlyGriggs13,domain,securesberbank.sale4229.ru,#phishing,https://x.com/CarlyGriggs13/status/1940104644036046972 2025-07-01 17:46:21,CarlyGriggs13,url,https://stakezilliqa.com,#phishing,https://x.com/CarlyGriggs13/status/1940104705884979331 2025-07-01 17:46:21,CarlyGriggs13,domain,stakezilliqa.com,#phishing,https://x.com/CarlyGriggs13/status/1940104705884979331 2025-07-01 17:46:38,CarlyGriggs13,domain,steamcomnunnlty.com,#phishing,https://x.com/CarlyGriggs13/status/1940104774923481294 2025-07-01 17:46:38,CarlyGriggs13,url,https://steamcomnunnlty.com/activation=Dor5Fhnm7w,#phishing,https://x.com/CarlyGriggs13/status/1940104774923481294 2025-07-01 17:46:54,CarlyGriggs13,ip,121.101.134.32,#phishing,https://x.com/CarlyGriggs13/status/1940104840408883709 2025-07-01 17:46:54,CarlyGriggs13,url,https://121.101.134.32:8888/E-School/access/?id=win138,#phishing,https://x.com/CarlyGriggs13/status/1940104840408883709 2025-07-01 18:20:47,CarlyGriggs13,domain,eazyjetcargo.com,#phishing,https://x.com/CarlyGriggs13/status/1940113367856779545 2025-07-01 18:20:47,CarlyGriggs13,url,https://eazyjetcargo.com,#phishing,https://x.com/CarlyGriggs13/status/1940113367856779545 2025-07-01 18:21:23,CarlyGriggs13,domain,perfect-waygame.com,#phishing,https://x.com/CarlyGriggs13/status/1940113519527305330 2025-07-01 18:21:23,CarlyGriggs13,url,https://perfect-waygame.com,#phishing,https://x.com/CarlyGriggs13/status/1940113519527305330 2025-07-01 18:45:41,drb_ra,url,http://157.245.144.9:31337,#Sliver #C2,https://x.com/drb_ra/status/1940119637510816036 2025-07-01 18:45:41,drb_ra,ip,157.245.144.9,#Sliver #C2,https://x.com/drb_ra/status/1940119637510816036 2025-07-01 18:45:46,drb_ra,url,http://68.183.237.222:31337,#Sliver #C2,https://x.com/drb_ra/status/1940119656477434230 2025-07-01 18:45:46,drb_ra,ip,68.183.237.222,#Sliver #C2,https://x.com/drb_ra/status/1940119656477434230 2025-07-01 18:45:50,drb_ra,ip,178.128.19.183,#Sliver #C2,https://x.com/drb_ra/status/1940119675255365696 2025-07-01 18:45:50,drb_ra,url,http://178.128.19.183:31337,#Sliver #C2,https://x.com/drb_ra/status/1940119675255365696 2025-07-01 18:45:55,drb_ra,url,http://91.184.245.56:31337,#Sliver #C2,https://x.com/drb_ra/status/1940119693970612479 2025-07-01 18:45:55,drb_ra,ip,91.184.245.56,#Sliver #C2,https://x.com/drb_ra/status/1940119693970612479 2025-07-01 18:46:00,drb_ra,url,http://185.156.202.203:31337,#Sliver #C2,https://x.com/drb_ra/status/1940119713784512888 2025-07-01 18:46:00,drb_ra,ip,185.156.202.203,#Sliver #C2,https://x.com/drb_ra/status/1940119713784512888 2025-07-01 18:46:05,drb_ra,url,http://109.73.202.146:31337,#Sliver #C2,https://x.com/drb_ra/status/1940119735108346101 2025-07-01 18:46:09,drb_ra,url,http://109.73.202.146:443,#Sliver #C2,https://x.com/drb_ra/status/1940119754121125945 2025-07-01 18:46:09,drb_ra,ip,109.73.202.146,#Sliver #C2,https://x.com/drb_ra/status/1940119754121125945 2025-07-01 18:48:13,drb_ra,url,http://176.34.42.250:2665,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940120271790191000 2025-07-01 18:48:17,drb_ra,url,http://176.34.42.250:465,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940120291134386348 2025-07-01 18:48:17,drb_ra,ip,176.34.42.250,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940120291134386348 2025-07-01 18:48:22,drb_ra,ip,206.123.128.50,#AsyncRAT #C2,https://x.com/drb_ra/status/1940120309996130573 2025-07-01 18:48:22,drb_ra,url,http://206.123.128.50:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1940120309996130573 2025-07-01 18:48:26,drb_ra,url,http://181.131.218.182:8050,#AsyncRAT #C2,https://x.com/drb_ra/status/1940120329701257250 2025-07-01 18:48:31,drb_ra,url,http://181.131.218.182:5080,#AsyncRAT #C2,https://x.com/drb_ra/status/1940120349276045590 2025-07-01 18:48:31,drb_ra,ip,181.131.218.182,#AsyncRAT #C2,https://x.com/drb_ra/status/1940120349276045590 2025-07-01 18:48:36,drb_ra,ip,12.202.180.102,#AsyncRAT #C2,https://x.com/drb_ra/status/1940120369077395790 2025-07-01 18:48:36,drb_ra,url,http://12.202.180.102:8797,#AsyncRAT #C2,https://x.com/drb_ra/status/1940120369077395790 2025-07-01 18:48:40,drb_ra,url,http://13.60.37.41:465,#Interactsh #C2,https://x.com/drb_ra/status/1940120387557200008 2025-07-01 18:48:45,drb_ra,url,http://13.60.37.41:443,#Interactsh #C2,https://x.com/drb_ra/status/1940120406708691397 2025-07-01 18:48:49,drb_ra,url,http://13.60.37.41:80,#Interactsh #C2,https://x.com/drb_ra/status/1940120425742160273 2025-07-01 18:48:49,drb_ra,ip,13.60.37.41,#Interactsh #C2,https://x.com/drb_ra/status/1940120425742160273 2025-07-01 18:48:54,drb_ra,url,http://108.129.154.108:80,#Interactsh #C2,https://x.com/drb_ra/status/1940120444973318554 2025-07-01 18:48:54,drb_ra,ip,108.129.154.108,#Interactsh #C2,https://x.com/drb_ra/status/1940120444973318554 2025-07-01 18:48:59,drb_ra,url,http://47.83.173.1:8888,#C2 #Supershell,https://x.com/drb_ra/status/1940120464338063585 2025-07-01 18:48:59,drb_ra,ip,47.83.173.1,#C2 #Supershell,https://x.com/drb_ra/status/1940120464338063585 2025-07-01 18:49:04,drb_ra,ip,43.250.174.240,#C2 #Supershell,https://x.com/drb_ra/status/1940120486803120545 2025-07-01 18:49:04,drb_ra,url,http://43.250.174.240:8888,#C2 #Supershell,https://x.com/drb_ra/status/1940120486803120545 2025-07-01 18:49:09,drb_ra,url,http://122.51.142.58:8888,#C2 #Supershell,https://x.com/drb_ra/status/1940120506805756032 2025-07-01 18:49:09,drb_ra,ip,122.51.142.58,#C2 #Supershell,https://x.com/drb_ra/status/1940120506805756032 2025-07-01 18:49:14,drb_ra,url,http://173.187.24.139:995,#Qakbot #C2,https://x.com/drb_ra/status/1940120527475208621 2025-07-01 18:49:14,drb_ra,ip,173.187.24.139,#Qakbot #C2,https://x.com/drb_ra/status/1940120527475208621 2025-07-01 18:49:18,drb_ra,url,http://94.49.8.198:995,#Qakbot #C2,https://x.com/drb_ra/status/1940120546274095337 2025-07-01 18:49:18,drb_ra,ip,94.49.8.198,#Qakbot #C2,https://x.com/drb_ra/status/1940120546274095337 2025-07-01 18:49:23,drb_ra,url,http://18.202.30.48:445,#C2,https://x.com/drb_ra/status/1940120565953761463 2025-07-01 18:49:23,drb_ra,ip,18.202.30.48,#C2,https://x.com/drb_ra/status/1940120565953761463 2025-07-01 18:49:28,drb_ra,ip,118.89.81.66,#Havoc #C2,https://x.com/drb_ra/status/1940120586086490390 2025-07-01 18:49:28,drb_ra,url,http://118.89.81.66:443,#Havoc #C2,https://x.com/drb_ra/status/1940120586086490390 2025-07-01 18:49:32,drb_ra,url,http://150.109.111.98:443,#Havoc #C2,https://x.com/drb_ra/status/1940120606235926569 2025-07-01 18:49:32,drb_ra,ip,150.109.111.98,#Havoc #C2,https://x.com/drb_ra/status/1940120606235926569 2025-07-01 18:49:37,drb_ra,url,http://182.30.54.199:443,#Deimos #C2,https://x.com/drb_ra/status/1940120626091761737 2025-07-01 18:49:37,drb_ra,ip,182.30.54.199,#Deimos #C2,https://x.com/drb_ra/status/1940120626091761737 2025-07-01 18:49:42,drb_ra,url,http://45.221.115.160:7443,#C2 #Mythic,https://x.com/drb_ra/status/1940120645708521742 2025-07-01 18:49:42,drb_ra,ip,45.221.115.160,#C2 #Mythic,https://x.com/drb_ra/status/1940120645708521742 2025-07-01 18:49:47,drb_ra,url,http://185.165.171.136:7443,#C2 #Mythic,https://x.com/drb_ra/status/1940120665627021504 2025-07-01 18:49:47,drb_ra,ip,185.165.171.136,#C2 #Mythic,https://x.com/drb_ra/status/1940120665627021504 2025-07-01 18:51:50,drb_ra,url,http://77.110.113.96:8443,#C2,https://x.com/drb_ra/status/1940121183480893878 2025-07-01 18:51:50,drb_ra,ip,77.110.113.96,#C2,https://x.com/drb_ra/status/1940121183480893878 2025-07-01 18:51:55,drb_ra,url,http://94.237.48.209:443,#C2,https://x.com/drb_ra/status/1940121203278323946 2025-07-01 18:51:55,drb_ra,ip,94.237.48.209,#C2,https://x.com/drb_ra/status/1940121203278323946 2025-07-01 18:51:59,drb_ra,ip,172.104.153.87,#C2,https://x.com/drb_ra/status/1940121222341091445 2025-07-01 18:51:59,drb_ra,url,http://172.104.153.87:443,#C2,https://x.com/drb_ra/status/1940121222341091445 2025-07-01 18:52:04,drb_ra,url,http://196.251.117.230:2404,#C2 #Remcos,https://x.com/drb_ra/status/1940121241282576724 2025-07-01 18:52:04,drb_ra,ip,196.251.117.230,#C2 #Remcos,https://x.com/drb_ra/status/1940121241282576724 2025-07-01 18:52:08,drb_ra,url,http://163.5.149.28:5009,#C2 #Remcos,https://x.com/drb_ra/status/1940121260089917498 2025-07-01 18:52:08,drb_ra,ip,163.5.149.28,#C2 #Remcos,https://x.com/drb_ra/status/1940121260089917498 2025-07-01 18:52:14,drb_ra,ip,104.243.254.98,#C2 #Remcos,https://x.com/drb_ra/status/1940121282865135970 2025-07-01 18:52:14,drb_ra,url,http://104.243.254.98:2404,#C2 #Remcos,https://x.com/drb_ra/status/1940121282865135970 2025-07-01 18:52:18,drb_ra,url,http://206.123.145.132:2404,#C2 #Remcos,https://x.com/drb_ra/status/1940121301311795427 2025-07-01 18:52:18,drb_ra,ip,206.123.145.132,#C2 #Remcos,https://x.com/drb_ra/status/1940121301311795427 2025-07-01 18:59:51,CarlyGriggs13,domain,navi45.com,#phishing,https://x.com/CarlyGriggs13/status/1940123201742508535 2025-07-01 18:59:51,CarlyGriggs13,url,https://navi45.com,#phishing,https://x.com/CarlyGriggs13/status/1940123201742508535 2025-07-01 19:20:29,drb_ra,url,https://66.63.162.161/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940128394131214772 2025-07-01 19:20:29,drb_ra,url,http://66.63.162.161:4433,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940128394131214772 2025-07-01 19:20:29,drb_ra,ip,66.63.162.161,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940128394131214772 2025-07-01 19:20:34,drb_ra,url,http://8.137.98.198:8899,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940128415560212664 2025-07-01 19:49:14,CarlyGriggs13,domain,sabaiprotocol.com,#phishing,https://x.com/CarlyGriggs13/status/1940135627543998845 2025-07-01 19:49:14,CarlyGriggs13,url,https://sabaiprotocol.com,#phishing,https://x.com/CarlyGriggs13/status/1940135627543998845 2025-07-01 20:03:51,dmitry_gridin,domain,TeslaX2.net,#phishing,https://x.com/dmitry_gridin/status/1940139308255781173 2025-07-01 20:03:51,dmitry_gridin,url,http://TeslaX2.net,#phishing,https://x.com/dmitry_gridin/status/1940139308255781173 2025-07-01 21:21:11,drb_ra,ip,101.133.148.66,#CobaltStrike #C2,https://x.com/drb_ra/status/1940158769544970300 2025-07-01 21:21:11,drb_ra,url,http://101.133.148.66:18018,#CobaltStrike #C2,https://x.com/drb_ra/status/1940158769544970300 2025-07-01 21:21:16,drb_ra,url,http://150.158.21.250:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1940158790747537874 2025-07-01 21:21:16,drb_ra,ip,150.158.21.250,#CobaltStrike #C2,https://x.com/drb_ra/status/1940158790747537874 2025-07-01 21:59:30,1ZRR4H,domain,rivatalk.com,,https://x.com/1ZRR4H/status/1940168409381232826 2025-07-01 21:59:30,1ZRR4H,url,http://rivatalk.com,,https://x.com/1ZRR4H/status/1940168409381232826 2025-07-01 22:00:11,urldna_bot,domain,adminrod0.github.io,#scam #phishing,https://x.com/urldna_bot/status/1940168581641118148 2025-07-01 22:00:11,urldna_bot,url,http://adminrod0.github.io/rl/dodocu.html,#scam #phishing,https://x.com/urldna_bot/status/1940168581641118148 2025-07-01 22:17:55,skocherhan,domain,eenapi.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://eenapi.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://eemxaj.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,dcwcke.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://dnpzf.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,dnpzf.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://dcwcke.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,eemxaj.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,ekoys.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://bfubxs.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,epzgsa.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://epzgsa.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,erahm.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://erahm.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,eumzt.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://eumzt.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,eurmf.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://eurmf.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://cpvbd.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://ekoys.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,cpvbd.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://avydr.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,cosuci.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,abjb.cc,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://abjb.cc,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,augema.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://augema.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,aveui.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://aveui.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,avydr.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,awxbm.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://awxbm.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://cosuci.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,blza.cc,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://blza.cc,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,bsvc.cc,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://bsvc.cc,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,bsyni.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://bsyni.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,btzvdn.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,url,http://btzvdn.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:17:55,skocherhan,domain,bfubxs.com,,https://x.com/skocherhan/status/1940173046469566955 2025-07-01 22:23:40,CarlyGriggs13,domain,simpleswap-app.org,#phishing,https://x.com/CarlyGriggs13/status/1940174493416378647 2025-07-01 22:23:40,CarlyGriggs13,url,https://simpleswap-app.org,#phishing,https://x.com/CarlyGriggs13/status/1940174493416378647 2025-07-01 22:28:00,skocherhan,url,http://47.238.228.19/test/12h/12h.msi,#C2,https://x.com/skocherhan/status/1940175585072095350 2025-07-01 22:28:00,skocherhan,domain,12.895628.xyz:12020,#C2,https://x.com/skocherhan/status/1940175585072095350 2025-07-01 22:28:00,skocherhan,url,http://12.895628.xyz:12020,#C2,https://x.com/skocherhan/status/1940175585072095350 2025-07-01 22:28:00,skocherhan,ip,47.238.228.19,#C2,https://x.com/skocherhan/status/1940175585072095350 2025-07-01 22:30:12,CarlyGriggs13,url,https://pancakcswap.finance,#phishing,https://x.com/CarlyGriggs13/status/1940176139047338313 2025-07-01 22:30:12,CarlyGriggs13,domain,pancakcswap.finance,#phishing,https://x.com/CarlyGriggs13/status/1940176139047338313 2025-07-01 22:40:56,CarlyGriggs13,domain,burda-havalar-isindi-yaniyorum-gelsene.top,#phishing,https://x.com/CarlyGriggs13/status/1940178836592996391 2025-07-01 22:40:56,CarlyGriggs13,url,https://burda-havalar-isindi-yaniyorum-gelsene.top/sadece-online-ozel/,#phishing,https://x.com/CarlyGriggs13/status/1940178836592996391 2025-07-01 22:41:57,CarlyGriggs13,domain,kayitbilgigirisleri.click,#phishing,https://x.com/CarlyGriggs13/status/1940179092533604454 2025-07-01 22:41:57,CarlyGriggs13,url,https://kayitbilgigirisleri.click/OnlineYapikredi/,#phishing,https://x.com/CarlyGriggs13/status/1940179092533604454 2025-07-01 22:42:19,CarlyGriggs13,domain,metareklamkampanya.click,#phishing,https://x.com/CarlyGriggs13/status/1940179184900583709 2025-07-01 22:42:19,CarlyGriggs13,url,https://metareklamkampanya.click,#phishing,https://x.com/CarlyGriggs13/status/1940179184900583709 2025-07-01 22:42:40,CarlyGriggs13,domain,url-reclick4.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940179275791167792 2025-07-01 22:42:40,CarlyGriggs13,url,https://url-reclick4.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940179275791167792 2025-07-01 22:43:09,CarlyGriggs13,domain,url-reclick3.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940179396259934659 2025-07-01 22:43:09,CarlyGriggs13,url,https://url-reclick3.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940179396259934659 2025-07-01 22:43:39,CarlyGriggs13,domain,dap-insallah.duckdns.org,#phishing,https://x.com/CarlyGriggs13/status/1940179521472201051 2025-07-01 22:43:39,CarlyGriggs13,url,http://dap-insallah.duckdns.org,#phishing,https://x.com/CarlyGriggs13/status/1940179521472201051 2025-07-01 22:45:03,CarlyGriggs13,url,https://juppag.org,#phishing,https://x.com/CarlyGriggs13/status/1940179873752043742 2025-07-01 22:45:03,CarlyGriggs13,domain,juppag.org,#phishing,https://x.com/CarlyGriggs13/status/1940179873752043742 2025-07-01 22:48:32,CarlyGriggs13,domain,geriaaktarimekrani.cfd,#phishing,https://x.com/CarlyGriggs13/status/1940180749401170267 2025-07-01 22:48:32,CarlyGriggs13,url,https://geriaaktarimekrani.cfd/iade-servisi/,#phishing,https://x.com/CarlyGriggs13/status/1940180749401170267 2025-07-01 23:10:35,skocherhan,url,http://github.com/PurpleOrchid65/Testing/releases/download/Js/build.exe,,https://x.com/skocherhan/status/1940186300277260461 2025-07-01 23:10:35,skocherhan,url,http://95.179.176.51/index.php,,https://x.com/skocherhan/status/1940186300277260461 2025-07-01 23:10:35,skocherhan,url,http://github.com/PurpleOrchid65/Testing/releases/download/Js/TJG4KvF5qz.exe,,https://x.com/skocherhan/status/1940186300277260461 2025-07-01 23:10:35,skocherhan,ip,95.179.176.51,,https://x.com/skocherhan/status/1940186300277260461 2025-07-01 23:10:35,skocherhan,md5,01319fa4443f59e8bf809840b3a12caf,,https://x.com/skocherhan/status/1940186300277260461 2025-07-01 23:11:44,masaomi346,domain,pu6zar.top,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,url,https://pu6zar.top/GYkoLrhuP/,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,url,https://ms8clk.top/GYkoLrhuP/,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,url,https://qz8yzm.top/GYkoLrhuP/,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,domain,qz8yzm.top,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,domain,ms8clk.top,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,domain,xw5ucg.top,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,domain,bo9odg.top,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,url,https://8bdb2pe3.top/GYkoLrhuP/,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,domain,8bdb2pe3.top,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,url,https://3jlz1mn5.top/GYkoLrhuP/,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,domain,3jlz1mn5.top,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,url,https://bo9odg.top/GYkoLrhuP/,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-01 23:11:44,masaomi346,url,https://xw5ucg.top/GYkoLrhuP/,#phishing,https://x.com/masaomi346/status/1940186587452907677 2025-07-02 00:22:37,CarlyGriggs13,domain,hyperswop.vip,#phishing,https://x.com/CarlyGriggs13/status/1940204426389856551 2025-07-02 00:22:37,CarlyGriggs13,url,https://hyperswop.vip,#phishing,https://x.com/CarlyGriggs13/status/1940204426389856551 2025-07-02 00:23:49,CarlyGriggs13,domain,pancakeswbp.finance,#phishing,https://x.com/CarlyGriggs13/status/1940204731818778862 2025-07-02 00:23:49,CarlyGriggs13,url,https://pancakeswbp.finance/swap/,#phishing,https://x.com/CarlyGriggs13/status/1940204731818778862 2025-07-02 00:24:38,CarlyGriggs13,domain,qancakeswap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940204935859380408 2025-07-02 00:24:38,CarlyGriggs13,url,https://qancakeswap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940204935859380408 2025-07-02 00:34:08,fbgwls245,url,http://4ozbomcjurd64vgeblkoqeqirvawi3dddswriw6qespscmequmqlshyd.onion,#ransomware,https://x.com/fbgwls245/status/1940207325757022712 2025-07-02 00:34:08,fbgwls245,domain,zdkexsh2e7yihw5uhg5hpsgq3dois2m5je7lzfagij2y6iw5ptl35gyd.onion,#ransomware,https://x.com/fbgwls245/status/1940207325757022712 2025-07-02 00:34:08,fbgwls245,domain,4ozbomcjurd64vgeblkoqeqirvawi3dddswriw6qespscmequmqlshyd.onion,#ransomware,https://x.com/fbgwls245/status/1940207325757022712 2025-07-02 00:34:08,fbgwls245,md5,F392807DA3EE1F3E9702CE5FA91D418D,#ransomware,https://x.com/fbgwls245/status/1940207325757022712 2025-07-02 00:34:08,fbgwls245,url,http://zdkexsh2e7yihw5uhg5hpsgq3dois2m5je7lzfagij2y6iw5ptl35gyd.onion,#ransomware,https://x.com/fbgwls245/status/1940207325757022712 2025-07-02 00:51:01,CarlyGriggs13,url,https://wow.webtoons.it.com/amp/infrateq-id/?id=WIN138,#phishing,https://x.com/CarlyGriggs13/status/1940211576298250557 2025-07-02 00:51:01,CarlyGriggs13,domain,wow.webtoons.it.com,#phishing,https://x.com/CarlyGriggs13/status/1940211576298250557 2025-07-02 00:52:17,CarlyGriggs13,domain,trimspublic.tourismauthority.go.ke,#phishing,https://x.com/CarlyGriggs13/status/1940211892037067221 2025-07-02 00:52:17,CarlyGriggs13,url,https://trimspublic.tourismauthority.go.ke,#phishing,https://x.com/CarlyGriggs13/status/1940211892037067221 2025-07-02 00:53:21,CarlyGriggs13,domain,sciencebring.com,#phishing,https://x.com/CarlyGriggs13/status/1940212161156198803 2025-07-02 00:53:21,CarlyGriggs13,url,https://sciencebring.com/tools/?web=WIN138+LOGIN,#phishing,https://x.com/CarlyGriggs13/status/1940212161156198803 2025-07-02 00:53:48,CarlyGriggs13,url,https://aviu.ac.ug/files/?login=win138,#phishing,https://x.com/CarlyGriggs13/status/1940212274804998408 2025-07-02 00:53:48,CarlyGriggs13,domain,aviu.ac.ug,#phishing,https://x.com/CarlyGriggs13/status/1940212274804998408 2025-07-02 00:56:33,CarlyGriggs13,url,https://infrateq.id/berita/?id=WIN138,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940212965913108917 2025-07-02 00:56:33,CarlyGriggs13,domain,infrateq.id,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940212965913108917 2025-07-02 00:57:47,CarlyGriggs13,url,https://airinskinpremier1.pages.dev/?id=WIN138,#phishing,https://x.com/CarlyGriggs13/status/1940213279651225675 2025-07-02 00:57:47,CarlyGriggs13,domain,airinskinpremier1.pages.dev,#phishing,https://x.com/CarlyGriggs13/status/1940213279651225675 2025-07-02 00:58:13,CarlyGriggs13,url,https://repository.stieyapan.ac.id/aplikasi/?id_ID=WIN138,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940213387528675824 2025-07-02 00:58:13,CarlyGriggs13,domain,repository.stieyapan.ac.id,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940213387528675824 2025-07-02 00:58:40,CarlyGriggs13,url,https://ppid.bpbpk.kalteng.go.id/files/?en_EN=win138,#phishing,https://x.com/CarlyGriggs13/status/1940213499273302043 2025-07-02 00:58:40,CarlyGriggs13,domain,ppid.bpbpk.kalteng.go.id,#phishing,https://x.com/CarlyGriggs13/status/1940213499273302043 2025-07-02 00:59:07,CarlyGriggs13,url,https://weatherfordbar.com/burgers,#phishing,https://x.com/CarlyGriggs13/status/1940213611789787617 2025-07-02 00:59:07,CarlyGriggs13,domain,weatherfordbar.com,#phishing,https://x.com/CarlyGriggs13/status/1940213611789787617 2025-07-02 01:10:15,harugasumi,domain,2vww3xi8.top,#phishing,https://x.com/harugasumi/status/1940216417095491979 2025-07-02 01:10:15,harugasumi,url,https://2vww3xi8.top/GYkoLrhuP,#phishing,https://x.com/harugasumi/status/1940216417095491979 2025-07-02 02:00:11,urldna_bot,url,https://reputationrescue.info,#scam #phishing,https://x.com/urldna_bot/status/1940228979283177547 2025-07-02 02:00:11,urldna_bot,domain,reputationrescue.info,#scam #phishing,https://x.com/urldna_bot/status/1940228979283177547 2025-07-02 05:34:00,RakeshKrish12,md5,e2d7d65a347b3638f81939192294eb13,#ransomware #malware,https://x.com/RakeshKrish12/status/1940282789502304589 2025-07-02 05:34:00,RakeshKrish12,md5,2bf543faf679a374af5fc4848eea5a98,#ransomware #malware,https://x.com/RakeshKrish12/status/1940282789502304589 2025-07-02 06:00:12,urldna_bot,url,https://ahsanullah-org.edp.qdg.mybluehost.me/cxcxcx/xs/cmd-login=8fcea3873b229424189a22867caef31e/error.php?email=,#scam #phishing,https://x.com/urldna_bot/status/1940289381446680576 2025-07-02 06:00:12,urldna_bot,md5,8fcea3873b229424189a22867caef31e,#scam #phishing,https://x.com/urldna_bot/status/1940289381446680576 2025-07-02 06:00:12,urldna_bot,domain,ahsanullah-org.edp.qdg.mybluehost.me,#scam #phishing,https://x.com/urldna_bot/status/1940289381446680576 2025-07-02 06:28:02,malwrhunterteam,domain,rivatalk.com,,https://x.com/malwrhunterteam/status/1940296386207154675 2025-07-02 06:28:02,malwrhunterteam,url,http://rivatalk.com,,https://x.com/malwrhunterteam/status/1940296386207154675 2025-07-02 06:44:53,yvesago,domain,bootstrapcdngvr.web.app,#phishing,https://x.com/yvesago/status/1940300627705569538 2025-07-02 06:44:53,yvesago,url,https://drive.google.com/uc?export=download&id=1E71zdP3G90fJWYzqIydgjFIP5Wa629zl,#phishing,https://x.com/yvesago/status/1940300627705569538 2025-07-02 06:44:53,yvesago,url,https://bootstrapcdngvr.web.app/inscriptrast.js,#phishing,https://x.com/yvesago/status/1940300627705569538 2025-07-02 06:45:57,drb_ra,url,http://3.83.201.170:7443,#Mythic #C2,https://x.com/drb_ra/status/1940300897726443574 2025-07-02 06:46:02,drb_ra,ip,170.75.160.9,#C2 #Sliver,https://x.com/drb_ra/status/1940300917112521107 2025-07-02 06:46:02,drb_ra,url,http://170.75.160.9:443,#C2 #Sliver,https://x.com/drb_ra/status/1940300917112521107 2025-07-02 06:46:06,drb_ra,ip,34.132.104.246,#C2 #Sliver,https://x.com/drb_ra/status/1940300935995302387 2025-07-02 06:46:06,drb_ra,url,http://34.132.104.246:31337,#C2 #Sliver,https://x.com/drb_ra/status/1940300935995302387 2025-07-02 06:46:11,drb_ra,ip,149.56.12.194,#C2 #Sliver,https://x.com/drb_ra/status/1940300954383130865 2025-07-02 06:46:11,drb_ra,url,http://149.56.12.194:31337,#C2 #Sliver,https://x.com/drb_ra/status/1940300954383130865 2025-07-02 06:46:15,drb_ra,url,http://209.38.212.39:31337,#C2 #Sliver,https://x.com/drb_ra/status/1940300974050222576 2025-07-02 06:46:15,drb_ra,ip,209.38.212.39,#C2 #Sliver,https://x.com/drb_ra/status/1940300974050222576 2025-07-02 06:46:20,drb_ra,ip,164.90.197.183,#C2 #Sliver,https://x.com/drb_ra/status/1940300993557823799 2025-07-02 06:46:20,drb_ra,url,http://164.90.197.183:31337,#C2 #Sliver,https://x.com/drb_ra/status/1940300993557823799 2025-07-02 06:46:25,drb_ra,url,http://103.56.19.86:31337,#C2 #Sliver,https://x.com/drb_ra/status/1940301014399365462 2025-07-02 06:46:25,drb_ra,ip,103.56.19.86,#C2 #Sliver,https://x.com/drb_ra/status/1940301014399365462 2025-07-02 06:46:30,drb_ra,ip,88.210.52.201,#C2 #Sliver,https://x.com/drb_ra/status/1940301035165385092 2025-07-02 06:46:30,drb_ra,url,http://88.210.52.201:9090,#C2 #Sliver,https://x.com/drb_ra/status/1940301035165385092 2025-07-02 06:47:33,drb_ra,url,http://159.89.197.250:25,#Interactsh #C2,https://x.com/drb_ra/status/1940301299745968502 2025-07-02 06:47:33,drb_ra,ip,159.89.197.250,#Interactsh #C2,https://x.com/drb_ra/status/1940301299745968502 2025-07-02 06:47:50,drb_ra,url,http://202.55.135.163:80,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301370663243856 2025-07-02 06:47:50,drb_ra,ip,202.55.135.163,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301370663243856 2025-07-02 06:47:52,drb_ra,ip,196.251.69.34,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301380947718599 2025-07-02 06:47:52,drb_ra,url,http://196.251.69.34:8000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301380947718599 2025-07-02 06:47:55,drb_ra,ip,50.18.107.175,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301391508947087 2025-07-02 06:47:55,drb_ra,url,http://50.18.107.175:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301391508947087 2025-07-02 06:47:58,drb_ra,ip,45.94.31.84,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301405161439495 2025-07-02 06:47:58,drb_ra,url,http://45.94.31.84:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301405161439495 2025-07-02 06:48:05,drb_ra,url,http://128.90.113.160:1018,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301433934365059 2025-07-02 06:48:06,drb_ra,url,http://128.90.113.160:5000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301437721792875 2025-07-02 06:48:07,drb_ra,ip,128.90.113.160,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301442444628224 2025-07-02 06:48:07,drb_ra,url,http://128.90.113.160:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940301442444628224 2025-07-02 06:48:17,drb_ra,url,http://118.174.70.104:7443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940301485373284512 2025-07-02 06:48:17,drb_ra,ip,118.174.70.104,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940301485373284512 2025-07-02 06:48:33,drb_ra,url,http://13.38.52.144:40000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940301553157726693 2025-07-02 06:48:33,drb_ra,ip,13.38.52.144,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940301553157726693 2025-07-02 06:48:38,drb_ra,ip,130.164.175.159,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940301573646950677 2025-07-02 06:48:38,drb_ra,url,http://130.164.175.159:443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940301573646950677 2025-07-02 06:48:43,drb_ra,url,http://54.216.83.183:443,#Interactsh #C2,https://x.com/drb_ra/status/1940301591934099786 2025-07-02 06:48:47,drb_ra,ip,54.216.83.183,#Interactsh #C2,https://x.com/drb_ra/status/1940301611513127412 2025-07-02 06:48:47,drb_ra,url,http://54.216.83.183:80,#Interactsh #C2,https://x.com/drb_ra/status/1940301611513127412 2025-07-02 06:48:52,drb_ra,url,http://178.128.36.61:443,#Interactsh #C2,https://x.com/drb_ra/status/1940301630857257217 2025-07-02 06:48:57,drb_ra,url,http://178.128.36.61:80,#Interactsh #C2,https://x.com/drb_ra/status/1940301650025173262 2025-07-02 06:49:01,drb_ra,url,http://178.128.36.61:25,#Interactsh #C2,https://x.com/drb_ra/status/1940301669281243427 2025-07-02 06:49:06,drb_ra,url,http://178.128.36.61:587,#Interactsh #C2,https://x.com/drb_ra/status/1940301688713486381 2025-07-02 06:49:06,drb_ra,ip,178.128.36.61,#Interactsh #C2,https://x.com/drb_ra/status/1940301688713486381 2025-07-02 06:49:11,drb_ra,url,http://34.244.57.56:80,#Interactsh #C2,https://x.com/drb_ra/status/1940301708573470966 2025-07-02 06:49:11,drb_ra,ip,34.244.57.56,#Interactsh #C2,https://x.com/drb_ra/status/1940301708573470966 2025-07-02 06:49:15,drb_ra,url,http://119.45.28.152:8888,#C2 #Supershell,https://x.com/drb_ra/status/1940301727804334275 2025-07-02 06:49:15,drb_ra,ip,119.45.28.152,#C2 #Supershell,https://x.com/drb_ra/status/1940301727804334275 2025-07-02 06:49:20,drb_ra,ip,173.230.136.136,#C2 #Havoc,https://x.com/drb_ra/status/1940301748008276307 2025-07-02 06:49:20,drb_ra,url,http://173.230.136.136:8080,#C2 #Havoc,https://x.com/drb_ra/status/1940301748008276307 2025-07-02 06:49:24,drb_ra,url,http://77.246.110.116:443,#C2 #Havoc,https://x.com/drb_ra/status/1940301767029531017 2025-07-02 06:49:24,drb_ra,ip,77.246.110.116,#C2 #Havoc,https://x.com/drb_ra/status/1940301767029531017 2025-07-02 06:49:29,drb_ra,url,http://106.14.51.126:7443,#Mythic #C2,https://x.com/drb_ra/status/1940301786524581969 2025-07-02 06:49:29,drb_ra,ip,106.14.51.126,#Mythic #C2,https://x.com/drb_ra/status/1940301786524581969 2025-07-02 06:51:32,drb_ra,url,http://146.70.87.96:43211,#C2,https://x.com/drb_ra/status/1940302303879471409 2025-07-02 06:51:32,drb_ra,ip,146.70.87.96,#C2,https://x.com/drb_ra/status/1940302303879471409 2025-07-02 06:51:37,drb_ra,ip,13.37.220.35,#C2,https://x.com/drb_ra/status/1940302323185852812 2025-07-02 06:51:37,drb_ra,url,http://13.37.220.35:443,#C2,https://x.com/drb_ra/status/1940302323185852812 2025-07-02 06:51:42,drb_ra,ip,198.23.175.35,#C2 #Remcos,https://x.com/drb_ra/status/1940302342299308279 2025-07-02 06:51:42,drb_ra,url,http://198.23.175.35:6500,#C2 #Remcos,https://x.com/drb_ra/status/1940302342299308279 2025-07-02 06:51:46,drb_ra,url,http://147.93.0.162:8080,#C2,https://x.com/drb_ra/status/1940302361219498010 2025-07-02 06:51:46,drb_ra,ip,147.93.0.162,#C2,https://x.com/drb_ra/status/1940302361219498010 2025-07-02 06:54:32,suyog41,md5,cb0c87b9738030cf61bbafa87a7e8842,#stealer,https://x.com/suyog41/status/1940303054894768237 2025-07-02 07:00:36,masaomi346,domain,mypage-ocn.aoqj7.com,#phishing,https://x.com/masaomi346/status/1940304584750375302 2025-07-02 07:00:36,masaomi346,url,https://mypage-ocn.aoqj7.com,#phishing,https://x.com/masaomi346/status/1940304584750375302 2025-07-02 07:25:48,masaomi346,domain,mypage-ocn.aii10.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:25:48,masaomi346,url,https://mypage-ocn.1xrhl.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:25:48,masaomi346,url,https://mypage-ocn.aii10.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:25:48,masaomi346,domain,mypage-ocn.1xrhl.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:25:48,masaomi346,url,https://mypage-ocn.ies22.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:25:48,masaomi346,domain,mypage-ocn.odp97.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:25:48,masaomi346,url,https://mypage-ocn.odp97.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:25:48,masaomi346,domain,mypage-ocn.ies22.com,#phishing,https://x.com/masaomi346/status/1940310926756126819 2025-07-02 07:42:10,suyog41,domain,makslove.xyz,#stealer,https://x.com/suyog41/status/1940315044316942707 2025-07-02 07:42:10,suyog41,url,http://makslove.xyz,#stealer,https://x.com/suyog41/status/1940315044316942707 2025-07-02 07:42:10,suyog41,md5,d7b6d68ad689f2c2d376081febbffd33,#stealer,https://x.com/suyog41/status/1940315044316942707 2025-07-02 07:46:43,skocherhan,ip,95.179.176.51,,https://x.com/skocherhan/status/1940316189064102144 2025-07-02 07:46:43,skocherhan,url,http://95.179.176.51/index.php,,https://x.com/skocherhan/status/1940316189064102144 2025-07-02 08:03:45,skocherhan,domain,paxrobot.digital,,https://x.com/skocherhan/status/1940320477228278051 2025-07-02 08:03:45,skocherhan,url,http://paxrobot.digital/webpanel/panel/login.php,,https://x.com/skocherhan/status/1940320477228278051 2025-07-02 08:13:26,CarlyGriggs13,url,https://scanwallets.com,#phishing,https://x.com/CarlyGriggs13/status/1940322914764824699 2025-07-02 08:13:26,CarlyGriggs13,domain,scanwallets.com,#phishing,https://x.com/CarlyGriggs13/status/1940322914764824699 2025-07-02 08:23:23,JAMESWT_WT,domain,arubait-fatturazione.evodig.com.ar,,https://x.com/JAMESWT_WT/status/1940325417162064348 2025-07-02 08:23:23,JAMESWT_WT,url,https://arubait-fatturazione.evodig.com.ar/Fattura2/,,https://x.com/JAMESWT_WT/status/1940325417162064348 2025-07-02 09:04:06,yvesago,domain,liyongping-104e5de.ingress-comporellon.ewp.live,#phishing,https://x.com/yvesago/status/1940335663435624465 2025-07-02 09:04:06,yvesago,url,https://liyongping-104e5de.ingress-comporellon.ewp.live/wp-content/liyong/log.html,#phishing,https://x.com/yvesago/status/1940335663435624465 2025-07-02 09:04:06,yvesago,domain,pagel-groupe.jimdosite.com,#phishing,https://x.com/yvesago/status/1940335663435624465 2025-07-02 09:04:06,yvesago,url,https://pagel-groupe.jimdosite.com,#phishing,https://x.com/yvesago/status/1940335663435624465 2025-07-02 09:50:40,CarlyGriggs13,url,https://btc-etftoken.web.app,#phishing,https://x.com/CarlyGriggs13/status/1940347380890759425 2025-07-02 09:50:40,CarlyGriggs13,domain,btc-etftoken.web.app,#phishing,https://x.com/CarlyGriggs13/status/1940347380890759425 2025-07-02 09:50:54,CarlyGriggs13,url,https://pepeascension.wtf,#phishing,https://x.com/CarlyGriggs13/status/1940347439439073569 2025-07-02 09:50:54,CarlyGriggs13,domain,pepeascension.wtf,#phishing,https://x.com/CarlyGriggs13/status/1940347439439073569 2025-07-02 09:51:29,CarlyGriggs13,url,https://eip-dapps.com,#phishing,https://x.com/CarlyGriggs13/status/1940347586147471580 2025-07-02 09:51:29,CarlyGriggs13,domain,eip-dapps.com,#phishing,https://x.com/CarlyGriggs13/status/1940347586147471580 2025-07-02 09:51:49,CarlyGriggs13,domain,dydx.ltd,#phishing,https://x.com/CarlyGriggs13/status/1940347670071304674 2025-07-02 09:51:49,CarlyGriggs13,url,https://dydx.ltd,#phishing,https://x.com/CarlyGriggs13/status/1940347670071304674 2025-07-02 10:00:07,urldna_bot,url,https://tax-ein-number.com,#scam #phishing,https://x.com/urldna_bot/status/1940349762307248604 2025-07-02 10:00:07,urldna_bot,domain,tax-ein-number.com,#scam #phishing,https://x.com/urldna_bot/status/1940349762307248604 2025-07-02 10:13:00,CarlyGriggs13,url,https://appethena.eu,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940353003518931326 2025-07-02 10:13:00,CarlyGriggs13,domain,appethena.eu,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940353003518931326 2025-07-02 10:14:22,CarlyGriggs13,domain,luminexledger.com,#phishing,https://x.com/CarlyGriggs13/status/1940353346814312937 2025-07-02 10:14:22,CarlyGriggs13,url,https://luminexledger.com,#phishing,https://x.com/CarlyGriggs13/status/1940353346814312937 2025-07-02 10:14:37,CarlyGriggs13,domain,ethereal.ac,#phishing,https://x.com/CarlyGriggs13/status/1940353407744913761 2025-07-02 10:14:37,CarlyGriggs13,url,https://ethereal.ac,#phishing,https://x.com/CarlyGriggs13/status/1940353407744913761 2025-07-02 10:16:32,CarlyGriggs13,domain,bittrade.in,#phishing,https://x.com/CarlyGriggs13/status/1940353891801104412 2025-07-02 10:16:32,CarlyGriggs13,url,https://bittrade.in,#phishing,https://x.com/CarlyGriggs13/status/1940353891801104412 2025-07-02 10:16:47,CarlyGriggs13,url,https://ichianime.app,#phishing,https://x.com/CarlyGriggs13/status/1940353954585698414 2025-07-02 10:16:47,CarlyGriggs13,domain,ichianime.app,#phishing,https://x.com/CarlyGriggs13/status/1940353954585698414 2025-07-02 10:17:52,CarlyGriggs13,domain,puslechain.org,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940354225781014972 2025-07-02 10:17:52,CarlyGriggs13,url,https://puslechain.org,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940354225781014972 2025-07-02 10:18:21,CarlyGriggs13,domain,wealthphantomsolution.com,#phishing,https://x.com/CarlyGriggs13/status/1940354348586090660 2025-07-02 10:18:21,CarlyGriggs13,url,https://wealthphantomsolution.com,#phishing,https://x.com/CarlyGriggs13/status/1940354348586090660 2025-07-02 10:18:41,CarlyGriggs13,domain,airdropsuperfluid.live,#phishing,https://x.com/CarlyGriggs13/status/1940354432073670744 2025-07-02 10:18:41,CarlyGriggs13,url,https://airdropsuperfluid.live,#phishing,https://x.com/CarlyGriggs13/status/1940354432073670744 2025-07-02 10:18:54,CarlyGriggs13,url,https://alphatradesphere.com,#phishing,https://x.com/CarlyGriggs13/status/1940354487815966960 2025-07-02 10:18:54,CarlyGriggs13,domain,alphatradesphere.com,#phishing,https://x.com/CarlyGriggs13/status/1940354487815966960 2025-07-02 10:20:08,CarlyGriggs13,domain,trade-x.tech,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940354796306960891 2025-07-02 10:20:08,CarlyGriggs13,url,https://trade-x.tech,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940354796306960891 2025-07-02 10:51:53,skocherhan,domain,privatedns.huishengzhang.com,#Xworm,https://x.com/skocherhan/status/1940362789048168633 2025-07-02 10:51:53,skocherhan,url,http://privatedns.huishengzhang.com,#Xworm,https://x.com/skocherhan/status/1940362789048168633 2025-07-02 10:59:04,drb_ra,url,http://113.45.47.3:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364594054390153 2025-07-02 10:59:04,drb_ra,ip,113.45.47.3,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364594054390153 2025-07-02 10:59:09,drb_ra,url,http://106.53.52.127:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364614958772325 2025-07-02 10:59:09,drb_ra,ip,106.53.52.127,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364614958772325 2025-07-02 10:59:13,drb_ra,ip,47.113.217.92,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364634428739907 2025-07-02 10:59:13,drb_ra,url,http://47.113.217.92:18888,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364634428739907 2025-07-02 10:59:18,drb_ra,url,http://43.139.59.122:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364655572275429 2025-07-02 10:59:18,drb_ra,ip,43.139.59.122,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364655572275429 2025-07-02 10:59:18,drb_ra,ip,193.112.239.170,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364655572275429 2025-07-02 10:59:23,drb_ra,url,http://43.138.22.149:8081,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364676388606232 2025-07-02 10:59:23,drb_ra,ip,43.138.22.149,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364676388606232 2025-07-02 10:59:29,drb_ra,url,http://154.89.205.162:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364698605822064 2025-07-02 10:59:29,drb_ra,domain,265ea973-18d6-47d2-8796-29db4decc888-00-lq5hf5va4e7m.pike.replit.dev,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364698605822064 2025-07-02 10:59:29,drb_ra,url,https://265ea973-18d6-47d2-8796-29db4decc888-00-lq5hf5va4e7m.pike.replit.dev/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364698605822064 2025-07-02 10:59:29,drb_ra,ip,154.89.205.162,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364698605822064 2025-07-02 10:59:33,drb_ra,ip,35.159.177.27,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364718088282363 2025-07-02 10:59:33,drb_ra,url,http://35.159.177.27:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1940364718088282363 2025-07-02 11:09:39,drb_ra,ip,114.67.230.150,#CobaltStrike #C2,https://x.com/drb_ra/status/1940367259693973907 2025-07-02 11:09:39,drb_ra,url,http://114.67.230.150:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1940367259693973907 2025-07-02 11:22:15,skocherhan,domain,accsrf.top,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,url,http://accsrf.top,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,domain,nbcsfar.xyz,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,url,http://nbcsfar.xyz,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,domain,rbmlh.xyz,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,url,http://rbmlh.xyz,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,domain,ycvduc.xyz,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,url,http://ycvduc.xyz,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:22:15,skocherhan,md5,6c68fd7e25aa342642952f694fad70e7,#Lumma,https://x.com/skocherhan/status/1940370429140779192 2025-07-02 11:49:33,skocherhan,ip,198.55.98.29,#AgentTesla #opendir,https://x.com/skocherhan/status/1940377298890551537 2025-07-02 11:49:33,skocherhan,ip,172.245.123.11,#AgentTesla #opendir,https://x.com/skocherhan/status/1940377298890551537 2025-07-02 11:49:33,skocherhan,url,http://198.55.98.29/host/,#AgentTesla #opendir,https://x.com/skocherhan/status/1940377298890551537 2025-07-02 11:49:33,skocherhan,url,http://172.245.123.11/NEW/EFDJHGJDFGGJDF8867.rar,#AgentTesla #opendir,https://x.com/skocherhan/status/1940377298890551537 2025-07-02 12:04:24,PrakkiSathwik,md5,4ba06a36414616803339a3d4810542d2,#APT #phishing,https://x.com/PrakkiSathwik/status/1940381036795609498 2025-07-02 13:05:59,CarlyGriggs13,domain,proprem.faceitseasonauth.com,#phishing,https://x.com/CarlyGriggs13/status/1940396535843573781 2025-07-02 13:05:59,CarlyGriggs13,url,https://proprem.faceitseasonauth.com/game?game=leagues5v5&skill_level=all&game_type_2=5vs5&source=faceit,#phishing,https://x.com/CarlyGriggs13/status/1940396535843573781 2025-07-02 13:14:21,CarlyGriggs13,domain,pancakuswap.finance,#phishing,https://x.com/CarlyGriggs13/status/1940398641178624193 2025-07-02 13:14:21,CarlyGriggs13,url,https://pancakuswap.finance,#phishing,https://x.com/CarlyGriggs13/status/1940398641178624193 2025-07-02 13:14:50,CarlyGriggs13,domain,pancakecwap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940398761001521364 2025-07-02 13:14:50,CarlyGriggs13,url,https://pancakecwap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940398761001521364 2025-07-02 13:15:07,suyog41,md5,c16efe2c53bcd5ebb98dedc359b2c086,#APT,https://x.com/suyog41/status/1940398834187898973 2025-07-02 13:15:07,suyog41,domain,mobballetc2ec.com,#APT,https://x.com/suyog41/status/1940398834187898973 2025-07-02 13:15:07,suyog41,url,http://mobballetc2ec.com,#APT,https://x.com/suyog41/status/1940398834187898973 2025-07-02 13:18:11,CarlyGriggs13,domain,caseims.com,#phishing,https://x.com/CarlyGriggs13/status/1940399605545607185 2025-07-02 13:18:11,CarlyGriggs13,url,https://caseims.com,#phishing,https://x.com/CarlyGriggs13/status/1940399605545607185 2025-07-02 13:30:45,CarlyGriggs13,domain,relay-tornado.cash,#phishing,https://x.com/CarlyGriggs13/status/1940402767413305728 2025-07-02 13:30:45,CarlyGriggs13,url,https://relay-tornado.cash,#phishing,https://x.com/CarlyGriggs13/status/1940402767413305728 2025-07-02 13:32:00,CarlyGriggs13,domain,cipheredge.org,#phishing,https://x.com/CarlyGriggs13/status/1940403082262872459 2025-07-02 13:32:00,CarlyGriggs13,url,https://cipheredge.org,#phishing,https://x.com/CarlyGriggs13/status/1940403082262872459 2025-07-02 13:32:31,CarlyGriggs13,url,https://zeta-registry.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1940403212068225164 2025-07-02 13:32:31,CarlyGriggs13,domain,zeta-registry.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1940403212068225164 2025-07-02 13:32:52,CarlyGriggs13,url,https://skyexchid.pro,#phishing,https://x.com/CarlyGriggs13/status/1940403301096608100 2025-07-02 13:32:52,CarlyGriggs13,domain,skyexchid.pro,#phishing,https://x.com/CarlyGriggs13/status/1940403301096608100 2025-07-02 13:33:06,CarlyGriggs13,domain,tornadocash.onl,#phishing,https://x.com/CarlyGriggs13/status/1940403358382358922 2025-07-02 13:33:06,CarlyGriggs13,url,https://tornadocash.onl,#phishing,https://x.com/CarlyGriggs13/status/1940403358382358922 2025-07-02 13:34:36,CarlyGriggs13,domain,hitbtc-exchange.com,#phishing,https://x.com/CarlyGriggs13/status/1940403736096145850 2025-07-02 13:34:36,CarlyGriggs13,url,https://hitbtc-exchange.com,#phishing,https://x.com/CarlyGriggs13/status/1940403736096145850 2025-07-02 13:34:51,CarlyGriggs13,domain,asterdex.com,#phishing,https://x.com/CarlyGriggs13/status/1940403800558457332 2025-07-02 13:34:51,CarlyGriggs13,url,https://www.asterdex.com/en,#phishing,https://x.com/CarlyGriggs13/status/1940403800558457332 2025-07-02 13:35:30,CarlyGriggs13,domain,zeta-app.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1940403964958421026 2025-07-02 13:35:30,CarlyGriggs13,url,https://zeta-app.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1940403964958421026 2025-07-02 13:35:49,CarlyGriggs13,url,https://app-ichi.org,#phishing,https://x.com/CarlyGriggs13/status/1940404045132476736 2025-07-02 13:35:49,CarlyGriggs13,domain,app-ichi.org,#phishing,https://x.com/CarlyGriggs13/status/1940404045132476736 2025-07-02 13:54:19,James_inthe_box,url,http://198.12.126.164/tst/,#opendir,https://x.com/James_inthe_box/status/1940408699417411648 2025-07-02 14:00:07,urldna_bot,domain,telshghfgdythjgjbnm.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1940410157659263106 2025-07-02 14:00:07,urldna_bot,url,https://telshghfgdythjgjbnm.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1940410157659263106 2025-07-02 14:23:58,skocherhan,url,https://mobballetc2ec.com/wp-admin/js/widgets/hurryup/?rv=bear&za=battle0,#APT,https://x.com/skocherhan/status/1940416159050080631 2025-07-02 14:23:58,skocherhan,sha256,81a284353e770872988e483b351223b722004893adc257d671c084b474371ca9,#APT,https://x.com/skocherhan/status/1940416159050080631 2025-07-02 14:27:33,CarlyGriggs13,domain,airdropzora.live,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940417062742241731 2025-07-02 14:27:33,CarlyGriggs13,url,https://airdropzora.live,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940417062742241731 2025-07-02 14:27:48,CarlyGriggs13,domain,zora-airdrop.org,#phishing,https://x.com/CarlyGriggs13/status/1940417125862224203 2025-07-02 14:27:48,CarlyGriggs13,url,https://zora-airdrop.org,#phishing,https://x.com/CarlyGriggs13/status/1940417125862224203 2025-07-02 14:28:03,CarlyGriggs13,url,https://zoraairdrop.info,#phishing,https://x.com/CarlyGriggs13/status/1940417190098022480 2025-07-02 14:28:03,CarlyGriggs13,domain,zoraairdrop.info,#phishing,https://x.com/CarlyGriggs13/status/1940417190098022480 2025-07-02 14:28:19,CarlyGriggs13,domain,m.o-gateio.com,#phishing,https://x.com/CarlyGriggs13/status/1940417254430318700 2025-07-02 14:28:19,CarlyGriggs13,url,https://m.o-gateio.com,#phishing,https://x.com/CarlyGriggs13/status/1940417254430318700 2025-07-02 14:44:05,CarlyGriggs13,domain,ondofoundateon.org,#phishing,https://x.com/CarlyGriggs13/status/1940421224179568779 2025-07-02 14:44:05,CarlyGriggs13,url,https://ondofoundateon.org,#phishing,https://x.com/CarlyGriggs13/status/1940421224179568779 2025-07-02 14:44:25,CarlyGriggs13,domain,okex-platform.net,#phishing,https://x.com/CarlyGriggs13/status/1940421308191543330 2025-07-02 14:44:25,CarlyGriggs13,url,https://okex-platform.net,#phishing,https://x.com/CarlyGriggs13/status/1940421308191543330 2025-07-02 14:45:11,CarlyGriggs13,domain,263fo.cc,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940421501301481662 2025-07-02 14:45:11,CarlyGriggs13,url,https://263fo.cc,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940421501301481662 2025-07-02 14:45:44,CarlyGriggs13,url,https://app-dodo.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940421639784812860 2025-07-02 14:45:44,CarlyGriggs13,domain,app-dodo.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940421639784812860 2025-07-02 14:46:14,CarlyGriggs13,domain,saroscoin.com,#phishing,https://x.com/CarlyGriggs13/status/1940421765186080838 2025-07-02 14:46:14,CarlyGriggs13,url,https://saroscoin.com,#phishing,https://x.com/CarlyGriggs13/status/1940421765186080838 2025-07-02 14:46:30,CarlyGriggs13,domain,woofi-liquiditypools.com,#phishing,https://x.com/CarlyGriggs13/status/1940421831586136508 2025-07-02 14:46:30,CarlyGriggs13,url,https://woofi-liquiditypools.com,#phishing,https://x.com/CarlyGriggs13/status/1940421831586136508 2025-07-02 15:33:38,CarlyGriggs13,domain,kaas.finance,#phishing,https://x.com/CarlyGriggs13/status/1940433694264852577 2025-07-02 15:33:38,CarlyGriggs13,url,https://kaas.finance,#phishing,https://x.com/CarlyGriggs13/status/1940433694264852577 2025-07-02 15:48:32,CarlyGriggs13,domain,vaneda.top,#phishing,https://x.com/CarlyGriggs13/status/1940437440491376772 2025-07-02 15:48:32,CarlyGriggs13,url,https://vaneda.top,#phishing,https://x.com/CarlyGriggs13/status/1940437440491376772 2025-07-02 16:03:08,drb_ra,ip,113.44.87.199,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940441115544703391 2025-07-02 16:03:08,drb_ra,url,http://113.44.87.199:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940441115544703391 2025-07-02 16:26:12,harugasumi,domain,m-monex.wredian.com,#phishing,https://x.com/harugasumi/status/1940446922617364593 2025-07-02 16:26:12,harugasumi,url,https://m-monex.wredian.com/passion,#phishing,https://x.com/harugasumi/status/1940446922617364593 2025-07-02 16:26:12,harugasumi,domain,graniastea.bond,#phishing,https://x.com/harugasumi/status/1940446922617364593 2025-07-02 16:26:12,harugasumi,url,https://graniastea.bond,#phishing,https://x.com/harugasumi/status/1940446922617364593 2025-07-02 16:26:12,harugasumi,domain,monex.boomation-jp.icu,#phishing,https://x.com/harugasumi/status/1940446922617364593 2025-07-02 16:26:12,harugasumi,url,https://monex.boomation-jp.icu/Sign%20in.jp/,#phishing,https://x.com/harugasumi/status/1940446922617364593 2025-07-02 16:27:19,drb_ra,url,http://85.175.101.203:53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940447202079555647 2025-07-02 16:27:19,drb_ra,url,https://192.168.50.2/ptj,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940447202079555647 2025-07-02 16:27:19,drb_ra,ip,85.175.101.203,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940447202079555647 2025-07-02 16:58:47,harugasumi,ip,47.83.161.123,#phishing,https://x.com/harugasumi/status/1940455121076588971 2025-07-02 16:58:47,harugasumi,url,https://jarfvrue3.duckdns.org,#phishing,https://x.com/harugasumi/status/1940455121076588971 2025-07-02 16:58:47,harugasumi,ip,152.32.147.101,#phishing,https://x.com/harugasumi/status/1940455121076588971 2025-07-02 16:58:47,harugasumi,url,https://jabank.sh-wxw.com/Phone/Verification,#phishing,https://x.com/harugasumi/status/1940455121076588971 2025-07-02 16:58:47,harugasumi,domain,jarfvrue3.duckdns.org,#phishing,https://x.com/harugasumi/status/1940455121076588971 2025-07-02 16:58:47,harugasumi,domain,jabank.sh-wxw.com,#phishing,https://x.com/harugasumi/status/1940455121076588971 2025-07-02 17:00:24,SarlackLab,url,http://154.22.5.243:25252,#C2 #NanoCore,https://x.com/SarlackLab/status/1940455529437896796 2025-07-02 17:00:24,SarlackLab,ip,154.22.5.243,#C2 #NanoCore,https://x.com/SarlackLab/status/1940455529437896796 2025-07-02 17:01:38,harugasumi,domain,9lick.me,#phishing,https://x.com/harugasumi/status/1940455838944317923 2025-07-02 17:01:38,harugasumi,url,https://9lick.me/cl6880210/qRbBc,#phishing,https://x.com/harugasumi/status/1940455838944317923 2025-07-02 17:01:38,harugasumi,domain,calm-frost-27db.dani66867543.workers.dev,#phishing,https://x.com/harugasumi/status/1940455838944317923 2025-07-02 17:01:38,harugasumi,url,https://calm-frost-27db.dani66867543.workers.dev,#phishing,https://x.com/harugasumi/status/1940455838944317923 2025-07-02 17:34:41,JAMESWT_WT,sha256,8b31874073fd9d5810247aea86d29dd37057cf23dd62c4e8c8bca5a483e65c0f,,https://x.com/JAMESWT_WT/status/1940464157972898232 2025-07-02 17:34:41,JAMESWT_WT,url,http://104.168.143.135,,https://x.com/JAMESWT_WT/status/1940464157972898232 2025-07-02 17:34:41,JAMESWT_WT,ip,104.168.143.135,,https://x.com/JAMESWT_WT/status/1940464157972898232 2025-07-02 17:34:41,JAMESWT_WT,domain,certifica-lt.com,,https://x.com/JAMESWT_WT/status/1940464157972898232 2025-07-02 17:34:41,JAMESWT_WT,url,https://certifica-lt.com/io/,,https://x.com/JAMESWT_WT/status/1940464157972898232 2025-07-02 18:00:09,urldna_bot,domain,route-circul.info,#scam #phishing,https://x.com/urldna_bot/status/1940470563039797734 2025-07-02 18:00:09,urldna_bot,url,https://route-circul.info,#scam #phishing,https://x.com/urldna_bot/status/1940470563039797734 2025-07-02 18:10:17,volrant136,ip,43.162.121.243,#phishing,https://x.com/volrant136/status/1940473114439438803 2025-07-02 18:10:17,volrant136,url,http://43.162.121.243,#phishing,https://x.com/volrant136/status/1940473114439438803 2025-07-02 18:10:17,volrant136,domain,txdmv.gov-country.win,#phishing,https://x.com/volrant136/status/1940473114439438803 2025-07-02 18:10:17,volrant136,url,http://txdmv.gov-country.win/pay/,#phishing,https://x.com/volrant136/status/1940473114439438803 2025-07-02 18:10:17,volrant136,domain,txdmv.gov-country.xin,#phishing,https://x.com/volrant136/status/1940473114439438803 2025-07-02 18:10:17,volrant136,url,http://txdmv.gov-country.xin/pay/,#phishing,https://x.com/volrant136/status/1940473114439438803 2025-07-02 18:46:00,drb_ra,ip,52.222.57.186,#C2 #Deimos,https://x.com/drb_ra/status/1940482105387241551 2025-07-02 18:46:00,drb_ra,url,http://52.222.57.186:443,#C2 #Deimos,https://x.com/drb_ra/status/1940482105387241551 2025-07-02 18:46:05,drb_ra,url,http://75.2.51.175:443,#C2 #Deimos,https://x.com/drb_ra/status/1940482125582815669 2025-07-02 18:46:05,drb_ra,ip,75.2.51.175,#C2 #Deimos,https://x.com/drb_ra/status/1940482125582815669 2025-07-02 18:46:10,drb_ra,url,http://135.181.27.123:7443,#Mythic #C2,https://x.com/drb_ra/status/1940482144696176662 2025-07-02 18:46:10,drb_ra,ip,135.181.27.123,#Mythic #C2,https://x.com/drb_ra/status/1940482144696176662 2025-07-02 18:46:14,drb_ra,url,http://159.223.171.199:4443,#C2 #Sliver,https://x.com/drb_ra/status/1940482164099018929 2025-07-02 18:46:14,drb_ra,ip,159.223.171.199,#C2 #Sliver,https://x.com/drb_ra/status/1940482164099018929 2025-07-02 18:46:20,drb_ra,url,http://93.115.172.253:39621,#C2 #Sliver,https://x.com/drb_ra/status/1940482186798621046 2025-07-02 18:46:20,drb_ra,ip,93.115.172.253,#C2 #Sliver,https://x.com/drb_ra/status/1940482186798621046 2025-07-02 18:48:23,drb_ra,url,http://107.175.24.23:9098,#C2,https://x.com/drb_ra/status/1940482704350630046 2025-07-02 18:48:23,drb_ra,ip,107.175.24.23,#C2,https://x.com/drb_ra/status/1940482704350630046 2025-07-02 18:48:28,drb_ra,ip,193.233.113.134,#Remcos #C2,https://x.com/drb_ra/status/1940482724831416565 2025-07-02 18:48:28,drb_ra,url,http://193.233.113.134:2404,#Remcos #C2,https://x.com/drb_ra/status/1940482724831416565 2025-07-02 18:48:33,drb_ra,url,http://192.3.146.207:2404,#Remcos #C2,https://x.com/drb_ra/status/1940482743705674091 2025-07-02 18:48:33,drb_ra,ip,192.3.146.207,#Remcos #C2,https://x.com/drb_ra/status/1940482743705674091 2025-07-02 18:48:37,drb_ra,url,http://118.195.141.98:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1940482763049914375 2025-07-02 18:48:37,drb_ra,ip,118.195.141.98,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1940482763049914375 2025-07-02 18:48:42,drb_ra,url,http://15.161.91.90:10258,#NetSupportRAT #C2,https://x.com/drb_ra/status/1940482782813401142 2025-07-02 18:48:42,drb_ra,ip,15.161.91.90,#NetSupportRAT #C2,https://x.com/drb_ra/status/1940482782813401142 2025-07-02 18:48:47,drb_ra,url,http://3.28.43.194:1963,#NetSupportRAT #C2,https://x.com/drb_ra/status/1940482803139072486 2025-07-02 18:48:52,drb_ra,url,http://44.201.73.92:41795,#NetSupportRAT #C2,https://x.com/drb_ra/status/1940482823087182166 2025-07-02 18:48:52,drb_ra,ip,44.201.73.92,#NetSupportRAT #C2,https://x.com/drb_ra/status/1940482823087182166 2025-07-02 18:48:56,drb_ra,ip,196.251.85.119,#AsyncRAT #C2,https://x.com/drb_ra/status/1940482842582294659 2025-07-02 18:48:56,drb_ra,url,http://196.251.85.119:1000,#AsyncRAT #C2,https://x.com/drb_ra/status/1940482842582294659 2025-07-02 18:49:01,drb_ra,url,http://88.229.27.40:888,#AsyncRAT #C2,https://x.com/drb_ra/status/1940482861955788820 2025-07-02 18:49:01,drb_ra,ip,88.229.27.40,#AsyncRAT #C2,https://x.com/drb_ra/status/1940482861955788820 2025-07-02 18:49:06,drb_ra,url,http://103.245.236.239:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1940482882310754309 2025-07-02 18:49:06,drb_ra,ip,103.245.236.239,#AsyncRAT #C2,https://x.com/drb_ra/status/1940482882310754309 2025-07-02 18:49:10,drb_ra,url,http://185.133.0.16:25,#Interactsh #C2,https://x.com/drb_ra/status/1940482901982040108 2025-07-02 18:49:10,drb_ra,ip,185.133.0.16,#Interactsh #C2,https://x.com/drb_ra/status/1940482901982040108 2025-07-02 18:49:15,drb_ra,url,http://130.65.255.146:443,#Interactsh #C2,https://x.com/drb_ra/status/1940482921728823727 2025-07-02 18:49:15,drb_ra,ip,130.65.255.146,#Interactsh #C2,https://x.com/drb_ra/status/1940482921728823727 2025-07-02 18:49:20,drb_ra,url,http://167.160.188.35:25,#Interactsh #C2,https://x.com/drb_ra/status/1940482941630796217 2025-07-02 18:49:20,drb_ra,ip,167.160.188.35,#Interactsh #C2,https://x.com/drb_ra/status/1940482941630796217 2025-07-02 18:49:25,drb_ra,ip,45.9.149.15,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1940482962673586256 2025-07-02 18:49:25,drb_ra,url,http://45.9.149.15:4000,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1940482962673586256 2025-07-02 18:49:30,drb_ra,url,http://82.29.72.11:4000,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1940482983842271267 2025-07-02 18:49:30,drb_ra,ip,82.29.72.11,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1940482983842271267 2025-07-02 18:49:35,drb_ra,url,http://85.110.201.128:443,#C2 #Qakbot,https://x.com/drb_ra/status/1940483003123487167 2025-07-02 18:49:35,drb_ra,ip,85.110.201.128,#C2 #Qakbot,https://x.com/drb_ra/status/1940483003123487167 2025-07-02 18:49:39,drb_ra,url,http://47.122.80.126:3389,#C2 #Havoc,https://x.com/drb_ra/status/1940483022832431479 2025-07-02 18:49:39,drb_ra,ip,47.122.80.126,#C2 #Havoc,https://x.com/drb_ra/status/1940483022832431479 2025-07-02 18:49:44,drb_ra,url,http://18.168.225.154:443,#C2 #Havoc,https://x.com/drb_ra/status/1940483042684162332 2025-07-02 18:49:44,drb_ra,ip,18.168.225.154,#C2 #Havoc,https://x.com/drb_ra/status/1940483042684162332 2025-07-02 18:49:49,drb_ra,url,http://34.44.118.54:80,#C2 #Havoc,https://x.com/drb_ra/status/1940483062309249129 2025-07-02 18:49:53,drb_ra,ip,34.219.200.70,#C2 #Havoc,https://x.com/drb_ra/status/1940483082077065280 2025-07-02 18:49:53,drb_ra,url,http://34.219.200.70:443,#C2 #Havoc,https://x.com/drb_ra/status/1940483082077065280 2025-07-02 19:23:08,apjone,domain,secure-web.cisco.com,#phishing,https://x.com/apjone/status/1940491447700164803 2025-07-02 19:23:08,apjone,url,http://secure-web.cisco.com,#phishing,https://x.com/apjone/status/1940491447700164803 2025-07-02 19:38:22,CarlyGriggs13,domain,blynqreserve.com,#phishing,https://x.com/CarlyGriggs13/status/1940495280367174043 2025-07-02 19:38:22,CarlyGriggs13,url,https://blynqreserve.com,#phishing,https://x.com/CarlyGriggs13/status/1940495280367174043 2025-07-02 19:42:34,CarlyGriggs13,url,https://apeswap-frontend.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1940496339642863896 2025-07-02 19:42:34,CarlyGriggs13,domain,apeswap-frontend.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1940496339642863896 2025-07-02 19:43:34,CarlyGriggs13,domain,listing-bitfinex.com,#phishing,https://x.com/CarlyGriggs13/status/1940496589489094789 2025-07-02 19:43:34,CarlyGriggs13,url,https://listing-bitfinex.com,#phishing,https://x.com/CarlyGriggs13/status/1940496589489094789 2025-07-02 19:45:23,CarlyGriggs13,domain,dineroabs.info,#phishing,https://x.com/CarlyGriggs13/status/1940497045762330820 2025-07-02 19:45:23,CarlyGriggs13,url,https://dineroabs.info,#phishing,https://x.com/CarlyGriggs13/status/1940497045762330820 2025-07-02 19:47:10,ScumBots,url,http://newstartnewjournyevamygirllovesalotwithm.duckdns.org:14646,#Remcos,https://x.com/ScumBots/status/1940497497954115895 2025-07-02 19:47:10,ScumBots,domain,newstartnewjournyevamygirllovesalotwithm.duckdns.org:14646,#Remcos,https://x.com/ScumBots/status/1940497497954115895 2025-07-02 19:47:10,ScumBots,sha256,cd82340a2485580109f0250c99b7ea8cc5f4f40497c665d1ed525bbb9f8fc1c9,#Remcos,https://x.com/ScumBots/status/1940497497954115895 2025-07-02 19:53:24,CarlyGriggs13,domain,immedaitesyndicate.net,#phishing,https://x.com/CarlyGriggs13/status/1940499064807940126 2025-07-02 19:53:24,CarlyGriggs13,url,https://immedaitesyndicate.net,#phishing,https://x.com/CarlyGriggs13/status/1940499064807940126 2025-07-02 19:54:09,CarlyGriggs13,domain,financephantomaiapp.com,#phishing,https://x.com/CarlyGriggs13/status/1940499255850041813 2025-07-02 19:54:09,CarlyGriggs13,url,https://financephantomaiapp.com,#phishing,https://x.com/CarlyGriggs13/status/1940499255850041813 2025-07-02 19:55:05,CarlyGriggs13,domain,immedaite-syndicate.com,#phishing,https://x.com/CarlyGriggs13/status/1940499487866474815 2025-07-02 19:55:05,CarlyGriggs13,url,https://immedaite-syndicate.com,#phishing,https://x.com/CarlyGriggs13/status/1940499487866474815 2025-07-02 20:00:26,SarlackLab,domain,snowgato.duckdns.org,#Njrat #C2,https://x.com/SarlackLab/status/1940500836569735201 2025-07-02 20:00:26,SarlackLab,url,http://snowgato.duckdns.org,#Njrat #C2,https://x.com/SarlackLab/status/1940500836569735201 2025-07-02 21:08:35,drb_ra,url,http://122.51.53.9:6633,#CobaltStrike #C2,https://x.com/drb_ra/status/1940517983509746108 2025-07-02 21:08:35,drb_ra,ip,122.51.53.9,#CobaltStrike #C2,https://x.com/drb_ra/status/1940517983509746108 2025-07-02 21:08:40,drb_ra,url,http://47.121.222.227:9090,#CobaltStrike #C2,https://x.com/drb_ra/status/1940518004691030481 2025-07-02 21:08:40,drb_ra,ip,47.121.222.227,#CobaltStrike #C2,https://x.com/drb_ra/status/1940518004691030481 2025-07-02 21:08:40,drb_ra,url,https://47.121.222.227/load,#CobaltStrike #C2,https://x.com/drb_ra/status/1940518004691030481 2025-07-02 21:08:44,drb_ra,url,http://196.251.81.206:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1940518024811106523 2025-07-02 21:08:44,drb_ra,ip,196.251.81.206,#CobaltStrike #C2,https://x.com/drb_ra/status/1940518024811106523 2025-07-02 21:08:44,drb_ra,url,https://196.251.81.206/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1940518024811106523 2025-07-02 22:00:07,urldna_bot,domain,impts-gou-recouvrement.web.app,#scam #phishing,https://x.com/urldna_bot/status/1940530955849977968 2025-07-02 22:00:07,urldna_bot,url,https://impts-gou-recouvrement.web.app,#scam #phishing,https://x.com/urldna_bot/status/1940530955849977968 2025-07-02 22:44:43,masaomi346,domain,nawoeyaiedes.icu,#phishing,https://x.com/masaomi346/status/1940542176859246732 2025-07-02 22:44:43,masaomi346,url,https://nawoeyaiedes.icu/Signin.jp/,#phishing,https://x.com/masaomi346/status/1940542176859246732 2025-07-02 23:03:21,drb_ra,url,https://193.37.69.43/visit.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546866141356244 2025-07-02 23:03:21,drb_ra,url,http://193.37.69.43:95,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546866141356244 2025-07-02 23:03:21,drb_ra,ip,193.37.69.43,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546866141356244 2025-07-02 23:03:26,drb_ra,domain,user.thinkg.cc,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546887565902000 2025-07-02 23:03:26,drb_ra,url,https://user.thinkg.cc/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546887565902000 2025-07-02 23:03:26,drb_ra,url,http://45.204.207.207:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546887565902000 2025-07-02 23:03:26,drb_ra,ip,45.204.207.207,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546887565902000 2025-07-02 23:03:31,drb_ra,url,http://113.44.87.199:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546909225341313 2025-07-02 23:03:36,drb_ra,domain,api.xiaomis.lol,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546930628874658 2025-07-02 23:03:36,drb_ra,url,https://api.xiaomis.lol/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546930628874658 2025-07-02 23:03:36,drb_ra,url,http://110.40.185.107:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546930628874658 2025-07-02 23:03:36,drb_ra,ip,110.40.185.107,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546930628874658 2025-07-02 23:03:41,drb_ra,url,http://14.103.154.84:6661,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546951248072970 2025-07-02 23:03:41,drb_ra,ip,14.103.154.84,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546951248072970 2025-07-02 23:03:46,drb_ra,url,http://39.98.110.115:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546972135707067 2025-07-02 23:03:46,drb_ra,ip,39.98.110.115,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546972135707067 2025-07-02 23:03:51,drb_ra,url,https://47.92.106.246/g.pixel,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546992914186314 2025-07-02 23:03:51,drb_ra,url,http://47.92.106.246:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546992914186314 2025-07-02 23:03:51,drb_ra,ip,47.92.106.246,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940546992914186314 2025-07-02 23:22:51,fbgwls245,domain,ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion,#ransomware,https://x.com/fbgwls245/status/1940551776752882043 2025-07-02 23:22:51,fbgwls245,url,http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion,#ransomware,https://x.com/fbgwls245/status/1940551776752882043 2025-07-02 23:22:51,fbgwls245,md5,9451420233168C7B0C595257D43C7B85,#ransomware,https://x.com/fbgwls245/status/1940551776752882043 2025-07-03 01:00:02,Metemcyber,domain,trackings-nexarium.fglzt.cn,#phishing,https://x.com/Metemcyber/status/1940576233731117433 2025-07-03 01:00:02,Metemcyber,url,https://trackings-nexarium.fglzt.cn/japeanposder/,#phishing,https://x.com/Metemcyber/status/1940576233731117433 2025-07-03 01:00:02,Metemcyber,url,http://104.21.112.1,#phishing,https://x.com/Metemcyber/status/1940576233731117433 2025-07-03 01:00:02,Metemcyber,url,http://104.21.16.1,#phishing,https://x.com/Metemcyber/status/1940576233731117433 2025-07-03 01:00:02,Metemcyber,url,http://104.21.32.1,#phishing,https://x.com/Metemcyber/status/1940576233731117433 2025-07-03 01:00:02,Metemcyber,url,http://104.21.48.1,#phishing,https://x.com/Metemcyber/status/1940576233731117433 2025-07-03 01:12:25,CarlyGriggs13,url,https://spicebitflow.com,#phishing,https://x.com/CarlyGriggs13/status/1940579346630299660 2025-07-03 01:12:25,CarlyGriggs13,domain,spicebitflow.com,#phishing,https://x.com/CarlyGriggs13/status/1940579346630299660 2025-07-03 01:14:23,CarlyGriggs13,domain,decenrtaland.com,#phishing,https://x.com/CarlyGriggs13/status/1940579845072703762 2025-07-03 01:14:23,CarlyGriggs13,url,https://decenrtaland.com,#phishing,https://x.com/CarlyGriggs13/status/1940579845072703762 2025-07-03 01:20:31,Metemcyber,url,http://104.21.8.191,#phishing,https://x.com/Metemcyber/status/1940581387075309634 2025-07-03 01:20:31,Metemcyber,url,https://e-tax-fabul.gqgkct.cn/loginouudividua/,#phishing,https://x.com/Metemcyber/status/1940581387075309634 2025-07-03 01:20:31,Metemcyber,domain,e-tax-fabul.gqgkct.cn,#phishing,https://x.com/Metemcyber/status/1940581387075309634 2025-07-03 01:20:31,Metemcyber,url,http://172.67.130.154,#phishing,https://x.com/Metemcyber/status/1940581387075309634 2025-07-03 01:34:40,Metemcyber,url,https://56a6av.top/GYkoLrhuP/,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,url,https://t79e9z.top/GYkoLrhuP/,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,url,http://8.217.74.77,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,domain,txfwhi.top,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,domain,t79e9z.top,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,url,https://txfwhi.top/GYkoLrhuP/,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,domain,9hjhu7.top,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,domain,56a6av.top,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:34:40,Metemcyber,url,https://9hjhu7.top/GYkoLrhuP/,#phishing,https://x.com/Metemcyber/status/1940584945870938538 2025-07-03 01:52:35,CarlyGriggs13,domain,thanksgod.net,#phishing,https://x.com/CarlyGriggs13/status/1940589458375823514 2025-07-03 01:52:35,CarlyGriggs13,url,https://thanksgod.net,#phishing,https://x.com/CarlyGriggs13/status/1940589458375823514 2025-07-03 02:01:27,CarlyGriggs13,domain,proposal-shadow.net,#phishing,https://x.com/CarlyGriggs13/status/1940591687027642794 2025-07-03 02:01:27,CarlyGriggs13,url,https://proposal-shadow.net,#phishing,https://x.com/CarlyGriggs13/status/1940591687027642794 2025-07-03 02:01:46,CarlyGriggs13,url,https://rocket-originworld.site,#phishing,https://x.com/CarlyGriggs13/status/1940591767130341726 2025-07-03 02:01:46,CarlyGriggs13,domain,rocket-originworld.site,#phishing,https://x.com/CarlyGriggs13/status/1940591767130341726 2025-07-03 02:02:15,CarlyGriggs13,domain,rocket-origindef.site,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1940591889834823760 2025-07-03 02:02:15,CarlyGriggs13,url,https://rocket-origindef.site,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1940591889834823760 2025-07-03 02:02:36,CarlyGriggs13,url,https://amanda.kukarkab.go.id/NAGA99-LINK-ALTERNATIF,#phishing,https://x.com/CarlyGriggs13/status/1940591975616618880 2025-07-03 02:02:36,CarlyGriggs13,domain,amanda.kukarkab.go.id,#phishing,https://x.com/CarlyGriggs13/status/1940591975616618880 2025-07-03 02:03:11,drb_ra,url,http://217.154.212.25:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1940592125525320136 2025-07-03 02:03:11,drb_ra,ip,217.154.212.25,#CobaltStrike #C2,https://x.com/drb_ra/status/1940592125525320136 2025-07-03 02:03:13,CarlyGriggs13,domain,curve.fi-chain-web3.com,#phishing,https://x.com/CarlyGriggs13/status/1940592130755645536 2025-07-03 02:03:13,CarlyGriggs13,url,https://curve.fi-chain-web3.com/pools.html,#phishing,https://x.com/CarlyGriggs13/status/1940592130755645536 2025-07-03 02:03:37,CarlyGriggs13,domain,e-office.banjarmasinkota.go.id,#phishing,https://x.com/CarlyGriggs13/status/1940592233650299356 2025-07-03 02:03:37,CarlyGriggs13,url,https://e-office.banjarmasinkota.go.id/NAGA99-RTP,#phishing,https://x.com/CarlyGriggs13/status/1940592233650299356 2025-07-03 02:04:02,CarlyGriggs13,domain,mtsn2kotapalu.sch.id,#phishing,https://x.com/CarlyGriggs13/status/1940592337190809884 2025-07-03 02:04:02,CarlyGriggs13,url,https://mtsn2kotapalu.sch.id/?run=naga99,#phishing,https://x.com/CarlyGriggs13/status/1940592337190809884 2025-07-03 02:04:24,CarlyGriggs13,domain,portal.djka.kemenhub.go.id,#phishing,https://x.com/CarlyGriggs13/status/1940592430178619437 2025-07-03 02:04:24,CarlyGriggs13,url,https://portal.djka.kemenhub.go.id/silaki/NAGA99,#phishing,https://x.com/CarlyGriggs13/status/1940592430178619437 2025-07-03 02:05:07,CarlyGriggs13,domain,earn.bittensor-ai.us,#phishing,https://x.com/CarlyGriggs13/status/1940592609925488716 2025-07-03 02:05:07,CarlyGriggs13,url,https://earn.bittensor-ai.us,#phishing,https://x.com/CarlyGriggs13/status/1940592609925488716 2025-07-03 02:05:33,CarlyGriggs13,domain,sipp.pn-ngawi.go.id,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1940592721670164596 2025-07-03 02:05:33,CarlyGriggs13,url,https://www.sipp.pn-ngawi.go.id/NAGA99,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1940592721670164596 2025-07-03 02:08:32,CarlyGriggs13,url,https://www.digitaleuro.irjicc.com,#phishing,https://x.com/CarlyGriggs13/status/1940593470386982942 2025-07-03 02:08:32,CarlyGriggs13,domain,digitaleuro.irjicc.com,#phishing,https://x.com/CarlyGriggs13/status/1940593470386982942 2025-07-03 03:57:17,fbgwls245,domain,ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion,#ransomware,https://x.com/fbgwls245/status/1940620838115647632 2025-07-03 03:57:17,fbgwls245,url,http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion,#ransomware,https://x.com/fbgwls245/status/1940620838115647632 2025-07-03 03:57:17,fbgwls245,md5,9451420233168C7B0C595257D43C7B85,#ransomware,https://x.com/fbgwls245/status/1940620838115647632 2025-07-03 04:15:48,CarlyGriggs13,domain,firstledgermodules.web.app,#phishing,https://x.com/CarlyGriggs13/status/1940625497693868410 2025-07-03 04:15:48,CarlyGriggs13,url,https://firstledgermodules.web.app,#phishing,https://x.com/CarlyGriggs13/status/1940625497693868410 2025-07-03 05:05:21,CarlyGriggs13,domain,move-sushi.top,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940637967753810305 2025-07-03 05:05:21,CarlyGriggs13,url,https://move-sushi.top,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940637967753810305 2025-07-03 05:06:09,CarlyGriggs13,domain,monky-sushi.cfd,#phishing,https://x.com/CarlyGriggs13/status/1940638170993119544 2025-07-03 05:06:09,CarlyGriggs13,url,https://monky-sushi.cfd,#phishing,https://x.com/CarlyGriggs13/status/1940638170993119544 2025-07-03 05:09:08,CarlyGriggs13,domain,cookie-sushi.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940638920649453883 2025-07-03 05:09:08,CarlyGriggs13,url,https://cookie-sushi.xyz,#phishing,https://x.com/CarlyGriggs13/status/1940638920649453883 2025-07-03 05:10:38,CarlyGriggs13,domain,clanker-sushi.xyz,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940639296232570956 2025-07-03 05:10:38,CarlyGriggs13,url,https://clanker-sushi.xyz,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1940639296232570956 2025-07-03 05:58:37,suyog41,md5,abb28b56925c628a163403237d696fce,#stealer,https://x.com/suyog41/status/1940651372304912734 2025-07-03 06:12:22,suyog41,md5,de5b31338e6a3e48c5788f19be4b45c2,,https://x.com/suyog41/status/1940654833104490872 2025-07-03 06:12:22,suyog41,md5,bdeaa44b58a231fa0ce11e4c3d49e66e,,https://x.com/suyog41/status/1940654833104490872 2025-07-03 06:12:22,suyog41,md5,467a27743714deb468babefd86386363,,https://x.com/suyog41/status/1940654833104490872 2025-07-03 06:12:22,suyog41,md5,4858521fc2695ea3e6b784fcf7b7df15,,https://x.com/suyog41/status/1940654833104490872 2025-07-03 06:12:22,suyog41,md5,b63ca7d93c91c40c23265c984e029234,,https://x.com/suyog41/status/1940654833104490872 2025-07-03 06:12:22,suyog41,md5,3adaa04c86fad72a8364b883f57b51f3,,https://x.com/suyog41/status/1940654833104490872 2025-07-03 06:12:22,suyog41,md5,95b12356e4cb866f87134677b5f2b658,,https://x.com/suyog41/status/1940654833104490872 2025-07-03 06:46:31,drb_ra,ip,69.157.7.239,#C2 #Qakbot,https://x.com/drb_ra/status/1940663426113851636 2025-07-03 06:46:31,drb_ra,url,http://69.157.7.239:2222,#C2 #Qakbot,https://x.com/drb_ra/status/1940663426113851636 2025-07-03 06:46:36,drb_ra,url,http://2.50.12.4:443,#C2 #Qakbot,https://x.com/drb_ra/status/1940663446649164274 2025-07-03 06:46:40,drb_ra,url,http://3.252.63.215:445,#C2,https://x.com/drb_ra/status/1940663465687109911 2025-07-03 06:46:45,drb_ra,url,http://3.250.60.129:445,#C2,https://x.com/drb_ra/status/1940663485551260002 2025-07-03 06:46:50,drb_ra,url,http://116.62.107.27:443,#Havoc #C2,https://x.com/drb_ra/status/1940663505335849089 2025-07-03 06:46:50,drb_ra,ip,116.62.107.27,#Havoc #C2,https://x.com/drb_ra/status/1940663505335849089 2025-07-03 06:46:55,drb_ra,ip,182.30.26.165,#Deimos #C2,https://x.com/drb_ra/status/1940663525904708041 2025-07-03 06:46:55,drb_ra,url,http://182.30.26.165:443,#Deimos #C2,https://x.com/drb_ra/status/1940663525904708041 2025-07-03 06:46:59,drb_ra,ip,106.14.59.171,#C2 #Mythic,https://x.com/drb_ra/status/1940663543298445773 2025-07-03 06:46:59,drb_ra,url,http://106.14.59.171:7443,#C2 #Mythic,https://x.com/drb_ra/status/1940663543298445773 2025-07-03 06:47:04,drb_ra,url,http://34.30.106.150:7443,#C2 #Mythic,https://x.com/drb_ra/status/1940663564970479781 2025-07-03 06:47:08,drb_ra,ip,216.120.201.133,#Sliver #C2,https://x.com/drb_ra/status/1940663584444633466 2025-07-03 06:47:08,drb_ra,url,http://216.120.201.133:31337,#Sliver #C2,https://x.com/drb_ra/status/1940663584444633466 2025-07-03 06:47:13,drb_ra,url,http://178.128.140.47:31337,#Sliver #C2,https://x.com/drb_ra/status/1940663605218947498 2025-07-03 06:47:13,drb_ra,ip,178.128.140.47,#Sliver #C2,https://x.com/drb_ra/status/1940663605218947498 2025-07-03 06:47:18,drb_ra,url,http://178.172.244.120:80,#Sliver #C2,https://x.com/drb_ra/status/1940663625511063903 2025-07-03 06:47:23,drb_ra,url,http://178.172.244.120:31337,#Sliver #C2,https://x.com/drb_ra/status/1940663645295595628 2025-07-03 06:47:23,drb_ra,ip,178.172.244.120,#Sliver #C2,https://x.com/drb_ra/status/1940663645295595628 2025-07-03 06:47:33,drb_ra,url,http://54.158.76.209:443,#Interactsh #C2,https://x.com/drb_ra/status/1940663688643355084 2025-07-03 06:47:33,drb_ra,ip,54.158.76.209,#Interactsh #C2,https://x.com/drb_ra/status/1940663688643355084 2025-07-03 06:47:37,drb_ra,url,http://8.218.28.186:25,#Interactsh #C2,https://x.com/drb_ra/status/1940663702287536447 2025-07-03 06:47:41,drb_ra,url,http://161.35.233.237:25,#Interactsh #C2,https://x.com/drb_ra/status/1940663720767557777 2025-07-03 06:47:43,drb_ra,url,http://161.35.233.237:443,#Interactsh #C2,https://x.com/drb_ra/status/1940663727549821398 2025-07-03 06:47:43,drb_ra,ip,161.35.233.237,#Interactsh #C2,https://x.com/drb_ra/status/1940663727549821398 2025-07-03 06:47:48,drb_ra,ip,104.243.254.19,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663749901165010 2025-07-03 06:47:48,drb_ra,url,http://104.243.254.19:8081,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663749901165010 2025-07-03 06:47:50,drb_ra,ip,196.251.116.134,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663760152129618 2025-07-03 06:47:50,drb_ra,url,http://196.251.116.134:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663760152129618 2025-07-03 06:47:56,drb_ra,url,http://128.90.113.73:1018,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663782017061123 2025-07-03 06:47:57,drb_ra,url,http://128.90.113.73:2000,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663786135806412 2025-07-03 06:47:58,drb_ra,url,http://128.90.113.73:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663791936520410 2025-07-03 06:47:58,drb_ra,ip,128.90.113.73,#AsyncRAT #C2,https://x.com/drb_ra/status/1940663791936520410 2025-07-03 06:48:04,drb_ra,url,http://54.238.203.127:4841,#NetSupportRAT #C2,https://x.com/drb_ra/status/1940663816951320732 2025-07-03 06:48:04,drb_ra,ip,54.238.203.127,#NetSupportRAT #C2,https://x.com/drb_ra/status/1940663816951320732 2025-07-03 06:49:27,drb_ra,url,http://134.199.198.49:443,#C2,https://x.com/drb_ra/status/1940664163686297958 2025-07-03 06:49:27,drb_ra,ip,134.199.198.49,#C2,https://x.com/drb_ra/status/1940664163686297958 2025-07-03 06:49:31,drb_ra,ip,45.82.254.44,#Remcos #C2,https://x.com/drb_ra/status/1940664184230105485 2025-07-03 06:49:31,drb_ra,url,http://45.82.254.44:9373,#Remcos #C2,https://x.com/drb_ra/status/1940664184230105485 2025-07-03 06:49:36,drb_ra,url,http://31.57.38.195:20909,#Remcos #C2,https://x.com/drb_ra/status/1940664203490267223 2025-07-03 06:49:36,drb_ra,ip,31.57.38.195,#Remcos #C2,https://x.com/drb_ra/status/1940664203490267223 2025-07-03 06:49:40,drb_ra,ip,64.156.195.173,#C2,https://x.com/drb_ra/status/1940664221379056002 2025-07-03 06:49:40,drb_ra,url,http://64.156.195.173:8458,#C2,https://x.com/drb_ra/status/1940664221379056002 2025-07-03 06:49:45,drb_ra,url,http://64.156.192.19:433,#C2,https://x.com/drb_ra/status/1940664240857387022 2025-07-03 06:49:45,drb_ra,ip,64.156.192.19,#C2,https://x.com/drb_ra/status/1940664240857387022 2025-07-03 06:49:50,drb_ra,ip,123.231.114.81,#Interactsh #C2,https://x.com/drb_ra/status/1940664261262692525 2025-07-03 06:49:50,drb_ra,url,http://123.231.114.81:80,#Interactsh #C2,https://x.com/drb_ra/status/1940664261262692525 2025-07-03 06:49:54,drb_ra,url,http://34.234.178.141:443,#Interactsh #C2,https://x.com/drb_ra/status/1940664280413843566 2025-07-03 06:49:59,drb_ra,ip,34.234.178.141,#Interactsh #C2,https://x.com/drb_ra/status/1940664300559126585 2025-07-03 06:49:59,drb_ra,url,http://34.234.178.141:80,#Interactsh #C2,https://x.com/drb_ra/status/1940664300559126585 2025-07-03 06:50:03,drb_ra,ip,18.177.143.121,#Interactsh #C2,https://x.com/drb_ra/status/1940664318426800170 2025-07-03 06:50:03,drb_ra,url,http://18.177.143.121:80,#Interactsh #C2,https://x.com/drb_ra/status/1940664318426800170 2025-07-03 06:50:08,drb_ra,ip,85.192.18.101,#Interactsh #C2,https://x.com/drb_ra/status/1940664338110730302 2025-07-03 06:50:08,drb_ra,url,http://85.192.18.101:465,#Interactsh #C2,https://x.com/drb_ra/status/1940664338110730302 2025-07-03 06:50:13,drb_ra,url,http://103.124.105.76:4000,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1940664360122110363 2025-07-03 06:50:13,drb_ra,ip,103.124.105.76,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1940664360122110363 2025-07-03 06:50:18,drb_ra,url,http://150.109.78.145:8888,#Supershell #C2,https://x.com/drb_ra/status/1940664381072986195 2025-07-03 06:50:18,drb_ra,ip,150.109.78.145,#Supershell #C2,https://x.com/drb_ra/status/1940664381072986195 2025-07-03 06:50:23,drb_ra,url,http://46.8.122.216:8888,#Supershell #C2,https://x.com/drb_ra/status/1940664400769437717 2025-07-03 06:50:23,drb_ra,ip,46.8.122.216,#Supershell #C2,https://x.com/drb_ra/status/1940664400769437717 2025-07-03 06:50:27,drb_ra,url,http://108.165.100.252:9898,#Dcrat #C2,https://x.com/drb_ra/status/1940664416619597918 2025-07-03 06:50:27,drb_ra,ip,108.165.100.252,#Dcrat #C2,https://x.com/drb_ra/status/1940664416619597918 2025-07-03 06:50:31,drb_ra,ip,86.54.42.116,#Dcrat #C2,https://x.com/drb_ra/status/1940664435636686918 2025-07-03 06:50:31,drb_ra,url,http://86.54.42.116:8854,#Dcrat #C2,https://x.com/drb_ra/status/1940664435636686918 2025-07-03 06:50:36,drb_ra,ip,186.169.61.249,#Dcrat #C2,https://x.com/drb_ra/status/1940664455739986331 2025-07-03 06:50:36,drb_ra,url,http://186.169.61.249:8090,#Dcrat #C2,https://x.com/drb_ra/status/1940664455739986331 2025-07-03 06:50:41,drb_ra,ip,46.246.166.149,#C2 #Qakbot,https://x.com/drb_ra/status/1940664476195606594 2025-07-03 06:50:41,drb_ra,url,http://46.246.166.149:995,#C2 #Qakbot,https://x.com/drb_ra/status/1940664476195606594 2025-07-03 06:56:35,Metemcyber,domain,visa-weekess.fgxzl.cn,#phishing,https://x.com/Metemcyber/status/1940665959645434042 2025-07-03 06:56:35,Metemcyber,url,https://visa-weekess.fgxzl.cn/pay-with-featured/,#phishing,https://x.com/Metemcyber/status/1940665959645434042 2025-07-03 06:56:35,Metemcyber,url,http://172.67.200.245,#phishing,https://x.com/Metemcyber/status/1940665959645434042 2025-07-03 06:56:35,Metemcyber,url,http://104.21.21.232,#phishing,https://x.com/Metemcyber/status/1940665959645434042 2025-07-03 07:43:07,ShanHolo,md5,f73db261d7fea7c12d9468117dd6a2db,,https://x.com/ShanHolo/status/1940677669911515608 2025-07-03 08:11:25,ShadowChasing1,sha256,aefcc13d514d7e130b2ee98ae77998ca7a2f72a1e8a11604f896645eb3ed9884,#Kimsuky #APT,https://x.com/ShadowChasing1/status/1940684792733073589 2025-07-03 09:34:57,ShanHolo,domain,tmy.tmgdhizmetleri.com,#opendir #malware,https://x.com/ShanHolo/status/1940705816493150689 2025-07-03 09:34:57,ShanHolo,url,https://tmy.tmgdhizmetleri.com,#opendir #malware,https://x.com/ShanHolo/status/1940705816493150689 2025-07-03 09:34:57,ShanHolo,ip,37.148.209.127,#opendir #malware,https://x.com/ShanHolo/status/1940705816493150689 2025-07-03 09:34:57,ShanHolo,md5,d07be99ad4cd309294695bdd084735c1,#opendir #malware,https://x.com/ShanHolo/status/1940705816493150689 2025-07-03 09:47:34,drb_ra,url,https://23.102.30.120:8080,#C2,https://x.com/drb_ra/status/1940708988913701029 2025-07-03 09:47:34,drb_ra,url,http://23.102.30.120:8080,#C2,https://x.com/drb_ra/status/1940708988913701029 2025-07-03 09:47:34,drb_ra,ip,23.102.30.120,#C2,https://x.com/drb_ra/status/1940708988913701029 2025-07-03 10:28:50,ShanHolo,domain,machelp.cloud,#malware #opendir,https://x.com/ShanHolo/status/1940719375801344213 2025-07-03 10:28:50,ShanHolo,url,https://www.machelp.cloud/?C=M;O=D,#malware #opendir,https://x.com/ShanHolo/status/1940719375801344213 2025-07-03 10:46:43,ShadowOpCode,domain,bansip.shop,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 10:46:43,ShadowOpCode,url,https://bansip.shop,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 10:46:43,ShadowOpCode,domain,abundant-riches.com,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 10:46:43,ShadowOpCode,url,https://abundant-riches.com,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 10:46:43,ShadowOpCode,domain,offershere.world,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 10:46:43,ShadowOpCode,url,https://offershere.world,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 10:46:43,ShadowOpCode,domain,itstrendtime.com,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 10:46:43,ShadowOpCode,url,https://itstrendtime.com,#phishing #malware,https://x.com/ShadowOpCode/status/1940723874020380873 2025-07-03 11:08:00,drb_ra,url,http://111.230.216.96:8086,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729232122171581 2025-07-03 11:08:00,drb_ra,ip,111.230.216.96,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729232122171581 2025-07-03 11:08:05,drb_ra,url,http://182.160.1.146:8081,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729253802463698 2025-07-03 11:08:05,drb_ra,ip,182.160.1.146,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729253802463698 2025-07-03 11:08:10,drb_ra,url,https://106.42.215.53/common/advertisement/Fixed/float/smile.svg,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729274019049786 2025-07-03 11:08:10,drb_ra,ip,106.42.215.53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729274019049786 2025-07-03 11:08:15,drb_ra,url,https://61.241.13.237/common/advertisement/Fixed/float/smile.svg,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729294571045363 2025-07-03 11:08:15,drb_ra,ip,61.241.13.237,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729294571045363 2025-07-03 11:08:20,drb_ra,url,https://49.119.131.31/archive/static/images/common/phone.svg,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729314594746578 2025-07-03 11:08:20,drb_ra,ip,49.119.131.31,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729314594746578 2025-07-03 11:08:25,drb_ra,url,https://36.189.205.244/common/advertisement/Fixed/float/smile.svg,#CobaltStrike #C2,https://x.com/drb_ra/status/1940729334681293080 2025-07-03 11:08:25,drb_ra,url,http://101.37.175.15:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1940729334681293080 2025-07-03 11:08:25,drb_ra,ip,101.37.175.15,#CobaltStrike #C2,https://x.com/drb_ra/status/1940729334681293080 2025-07-03 11:08:25,drb_ra,ip,36.189.205.244,#CobaltStrike #C2,https://x.com/drb_ra/status/1940729334681293080 2025-07-03 11:08:30,drb_ra,url,http://45.152.65.65:8848,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729355657007256 2025-07-03 11:08:30,drb_ra,ip,45.152.65.65,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729355657007256 2025-07-03 11:08:34,drb_ra,url,http://38.55.124.134:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729375944811001 2025-07-03 11:08:34,drb_ra,ip,38.55.124.134,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729375944811001 2025-07-03 11:08:39,drb_ra,url,http://101.201.49.60:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729397042135046 2025-07-03 11:08:39,drb_ra,ip,101.201.49.60,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729397042135046 2025-07-03 11:08:44,drb_ra,url,http://47.100.184.216:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729417745170630 2025-07-03 11:08:44,drb_ra,ip,47.100.184.216,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729417745170630 2025-07-03 11:08:49,drb_ra,url,http://175.178.45.197:9000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729439073255500 2025-07-03 11:08:49,drb_ra,ip,175.178.45.197,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729439073255500 2025-07-03 11:08:55,drb_ra,url,http://160.250.129.6:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729460489441648 2025-07-03 11:08:55,drb_ra,ip,160.250.129.6,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729460489441648 2025-07-03 11:09:00,drb_ra,url,http://43.138.153.161:8086,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729482132050396 2025-07-03 11:09:00,drb_ra,ip,43.138.153.161,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940729482132050396 2025-07-03 11:11:04,drb_ra,url,http://193.112.116.193:8086,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730001516859605 2025-07-03 11:11:04,drb_ra,ip,193.112.116.193,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730001516859605 2025-07-03 11:11:09,drb_ra,url,http://1.14.60.254:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730023004328232 2025-07-03 11:11:14,drb_ra,url,http://81.71.249.228:8086,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730043568959533 2025-07-03 11:11:14,drb_ra,ip,81.71.249.228,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730043568959533 2025-07-03 11:11:19,drb_ra,url,http://110.40.185.107:8001,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730064477499884 2025-07-03 11:11:19,drb_ra,ip,110.40.185.107,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730064477499884 2025-07-03 11:11:24,drb_ra,url,http://106.53.131.179:8086,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730085805629649 2025-07-03 11:11:24,drb_ra,ip,106.53.131.179,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730085805629649 2025-07-03 11:11:24,drb_ra,ip,81.71.249.57,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940730085805629649 2025-07-03 12:09:15,CarlyGriggs13,domain,gpeng.world,#phishing,https://x.com/CarlyGriggs13/status/1940744647628017875 2025-07-03 12:09:15,CarlyGriggs13,url,https://gpeng.world,#phishing,https://x.com/CarlyGriggs13/status/1940744647628017875 2025-07-03 12:09:42,CarlyGriggs13,domain,pancakaswap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940744760886796344 2025-07-03 12:09:42,CarlyGriggs13,url,https://pancakaswap.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1940744760886796344 2025-07-03 13:59:11,CarlyGriggs13,domain,mavicexpress.com,#phishing,https://x.com/CarlyGriggs13/status/1940772311646490782 2025-07-03 13:59:11,CarlyGriggs13,url,https://mavicexpress.com,#phishing,https://x.com/CarlyGriggs13/status/1940772311646490782 2025-07-03 14:00:07,urldna_bot,domain,login-tk-webmail-telia-index-jsp-tvsvwcilcjpc0rsysi6zmfsc.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1940772547861041458 2025-07-03 14:00:07,urldna_bot,url,https://login-tk-webmail-telia-index-jsp-tvsvwcilcjpc0rsysi6zmfsc.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1940772547861041458 2025-07-03 14:00:14,CarlyGriggs13,domain,danielshepherdsolicitors.com,#phishing,https://x.com/CarlyGriggs13/status/1940772575426289962 2025-07-03 14:00:14,CarlyGriggs13,url,https://danielshepherdsolicitors.com,#phishing,https://x.com/CarlyGriggs13/status/1940772575426289962 2025-07-03 14:32:56,drb_ra,url,http://34.203.227.204:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1940780805254795468 2025-07-03 14:32:56,drb_ra,ip,34.203.227.204,#CobaltStrike #C2,https://x.com/drb_ra/status/1940780805254795468 2025-07-03 15:13:35,fbgwls245,md5,FE522477F4A6CE875CAC7C13F18587F5,#ransomware,https://x.com/fbgwls245/status/1940791034344263740 2025-07-03 15:15:29,setThreatTitle,domain,anydesktenewo.com,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydesktenewo.com,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvza.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvza.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzb.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzb.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzc.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzc.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzd.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzd.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzm.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzm.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzn.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzn.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzs.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzs.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzv.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzv.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzx.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzx.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,domain,anydeskxxvvzz.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:15:29,setThreatTitle,url,http://anydeskxxvvzz.top,,https://x.com/setThreatTitle/status/1940791513576886522 2025-07-03 15:39:12,wavellan,domain,disneyplusubscription.ibizaholding.com,#scam #phishing,https://x.com/wavellan/status/1940797481702642156 2025-07-03 15:39:12,wavellan,url,https://disneyplusubscription.ibizaholding.com/app/load.php,#scam #phishing,https://x.com/wavellan/status/1940797481702642156 2025-07-03 18:46:09,drb_ra,url,http://194.180.188.223:2002,#Deimos #C2,https://x.com/drb_ra/status/1940844530095608133 2025-07-03 18:46:09,drb_ra,ip,194.180.188.223,#Deimos #C2,https://x.com/drb_ra/status/1940844530095608133 2025-07-03 18:46:14,drb_ra,url,http://156.154.120.49:443,#Deimos #C2,https://x.com/drb_ra/status/1940844551977238671 2025-07-03 18:46:14,drb_ra,ip,156.154.120.49,#Deimos #C2,https://x.com/drb_ra/status/1940844551977238671 2025-07-03 18:46:19,drb_ra,url,http://161.189.39.102:8883,#Deimos #C2,https://x.com/drb_ra/status/1940844572621619608 2025-07-03 18:46:19,drb_ra,ip,161.189.39.102,#Deimos #C2,https://x.com/drb_ra/status/1940844572621619608 2025-07-03 18:46:24,drb_ra,url,http://38.50.168.187:8080,#Deimos #C2,https://x.com/drb_ra/status/1940844593580544229 2025-07-03 18:46:24,drb_ra,ip,38.50.168.187,#Deimos #C2,https://x.com/drb_ra/status/1940844593580544229 2025-07-03 18:46:28,drb_ra,url,http://34.140.122.13:7443,#C2 #Mythic,https://x.com/drb_ra/status/1940844610701652106 2025-07-03 18:46:28,drb_ra,ip,34.140.122.13,#C2 #Mythic,https://x.com/drb_ra/status/1940844610701652106 2025-07-03 18:48:32,drb_ra,url,http://196.251.69.198:2721,#C2 #Remcos,https://x.com/drb_ra/status/1940845128647954596 2025-07-03 18:48:32,drb_ra,ip,196.251.69.198,#C2 #Remcos,https://x.com/drb_ra/status/1940845128647954596 2025-07-03 18:48:37,drb_ra,url,http://43.198.88.243:3000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845149514527030 2025-07-03 18:48:37,drb_ra,ip,43.198.88.243,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845149514527030 2025-07-03 18:48:42,drb_ra,url,http://54.233.16.132:14166,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845172650397799 2025-07-03 18:48:42,drb_ra,ip,54.233.16.132,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845172650397799 2025-07-03 18:48:47,drb_ra,url,http://65.2.180.166:831,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845192934052031 2025-07-03 18:48:47,drb_ra,ip,65.2.180.166,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845192934052031 2025-07-03 18:48:52,drb_ra,url,http://16.79.68.103:52126,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845213460955518 2025-07-03 18:48:52,drb_ra,ip,16.79.68.103,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1940845213460955518 2025-07-03 18:48:57,drb_ra,url,http://196.251.69.242:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845234692542957 2025-07-03 18:48:57,drb_ra,ip,196.251.69.242,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845234692542957 2025-07-03 18:49:02,drb_ra,url,http://104.250.172.146:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845255257199078 2025-07-03 18:49:02,drb_ra,ip,104.250.172.146,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845255257199078 2025-07-03 18:49:07,drb_ra,url,http://104.1.253.104:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845276308390078 2025-07-03 18:49:07,drb_ra,ip,104.1.253.104,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845276308390078 2025-07-03 18:49:12,drb_ra,url,http://196.251.71.36:7777,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845297380516084 2025-07-03 18:49:12,drb_ra,ip,196.251.71.36,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845297380516084 2025-07-03 18:49:17,drb_ra,url,http://196.251.72.21:7777,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845318633148453 2025-07-03 18:49:17,drb_ra,ip,196.251.72.21,#C2 #AsyncRAT,https://x.com/drb_ra/status/1940845318633148453 2025-07-03 18:49:22,drb_ra,url,http://157.245.25.250:587,#C2 #Interactsh,https://x.com/drb_ra/status/1940845339382370416 2025-07-03 18:49:22,drb_ra,ip,157.245.25.250,#C2 #Interactsh,https://x.com/drb_ra/status/1940845339382370416 2025-07-03 18:49:27,drb_ra,url,http://164.92.164.238:25,#C2 #Interactsh,https://x.com/drb_ra/status/1940845360991318485 2025-07-03 18:49:32,drb_ra,url,http://164.92.164.238:587,#C2 #Interactsh,https://x.com/drb_ra/status/1940845382441095489 2025-07-03 18:49:37,drb_ra,url,http://164.92.164.238:465,#C2 #Interactsh,https://x.com/drb_ra/status/1940845403030856039 2025-07-03 18:49:37,drb_ra,ip,164.92.164.238,#C2 #Interactsh,https://x.com/drb_ra/status/1940845403030856039 2025-07-03 18:49:42,drb_ra,url,http://20.2.139.87:8888,#Supershell #C2,https://x.com/drb_ra/status/1940845424149254322 2025-07-03 18:49:42,drb_ra,ip,20.2.139.87,#Supershell #C2,https://x.com/drb_ra/status/1940845424149254322 2025-07-03 18:49:47,drb_ra,url,http://197.3.170.96:443,#C2 #Qakbot,https://x.com/drb_ra/status/1940845444944589149 2025-07-03 18:49:47,drb_ra,ip,197.3.170.96,#C2 #Qakbot,https://x.com/drb_ra/status/1940845444944589149 2025-07-03 18:49:52,drb_ra,url,http://172.236.1.218:443,#Havoc #C2,https://x.com/drb_ra/status/1940845465383456944 2025-07-03 18:49:52,drb_ra,ip,172.236.1.218,#Havoc #C2,https://x.com/drb_ra/status/1940845465383456944 2025-07-03 18:49:57,drb_ra,url,http://172.86.84.43:443,#Havoc #C2,https://x.com/drb_ra/status/1940845486002540573 2025-07-03 18:49:57,drb_ra,ip,172.86.84.43,#Havoc #C2,https://x.com/drb_ra/status/1940845486002540573 2025-07-03 18:52:01,drb_ra,url,http://15.188.12.194:80,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1940846004267634871 2025-07-03 18:52:01,drb_ra,ip,15.188.12.194,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1940846004267634871 2025-07-03 18:52:06,drb_ra,url,http://88.80.191.114:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1940846025952186743 2025-07-03 18:52:06,drb_ra,ip,88.80.191.114,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1940846025952186743 2025-07-03 18:52:15,drb_ra,url,http://94.237.93.38:443,#C2,https://x.com/drb_ra/status/1940846064921464876 2025-07-03 18:52:15,drb_ra,ip,94.237.93.38,#C2,https://x.com/drb_ra/status/1940846064921464876 2025-07-03 18:52:20,drb_ra,url,http://38.255.49.38:2404,#Remcos #C2,https://x.com/drb_ra/status/1940846086039679425 2025-07-03 18:52:20,drb_ra,ip,38.255.49.38,#Remcos #C2,https://x.com/drb_ra/status/1940846086039679425 2025-07-03 18:52:25,drb_ra,url,http://65.21.212.93:2441,#Remcos #C2,https://x.com/drb_ra/status/1940846106004611414 2025-07-03 18:52:25,drb_ra,ip,65.21.212.93,#Remcos #C2,https://x.com/drb_ra/status/1940846106004611414 2025-07-03 18:52:30,drb_ra,url,http://107.172.232.88:2525,#Remcos #C2,https://x.com/drb_ra/status/1940846125822673352 2025-07-03 18:52:30,drb_ra,ip,107.172.232.88,#Remcos #C2,https://x.com/drb_ra/status/1940846125822673352 2025-07-03 18:52:35,drb_ra,url,http://194.15.46.225:56687,#Remcos #C2,https://x.com/drb_ra/status/1940846146672644312 2025-07-03 18:52:35,drb_ra,ip,194.15.46.225,#Remcos #C2,https://x.com/drb_ra/status/1940846146672644312 2025-07-03 18:52:40,drb_ra,url,http://155.254.24.139:23212,#Remcos #C2,https://x.com/drb_ra/status/1940846166859764129 2025-07-03 18:52:40,drb_ra,ip,155.254.24.139,#Remcos #C2,https://x.com/drb_ra/status/1940846166859764129 2025-07-03 18:52:44,drb_ra,url,http://103.202.55.149:2404,#Remcos #C2,https://x.com/drb_ra/status/1940846187671941347 2025-07-03 18:52:44,drb_ra,ip,103.202.55.149,#Remcos #C2,https://x.com/drb_ra/status/1940846187671941347 2025-07-03 18:52:49,drb_ra,url,http://196.251.117.113:9090,#Remcos #C2,https://x.com/drb_ra/status/1940846206563111305 2025-07-03 18:52:49,drb_ra,ip,196.251.117.113,#Remcos #C2,https://x.com/drb_ra/status/1940846206563111305 2025-07-03 20:33:19,drb_ra,url,http://209.46.127.132:8443,#C2,https://x.com/drb_ra/status/1940871498291634326 2025-07-03 20:33:19,drb_ra,ip,209.46.127.132,#C2,https://x.com/drb_ra/status/1940871498291634326 2025-07-03 20:33:19,drb_ra,url,https://209.46.127.132:8443,#C2,https://x.com/drb_ra/status/1940871498291634326 2025-07-03 21:15:33,drb_ra,url,http://123.60.130.187:8012,#CobaltStrike #C2,https://x.com/drb_ra/status/1940882125550768520 2025-07-03 21:15:33,drb_ra,ip,123.60.130.187,#CobaltStrike #C2,https://x.com/drb_ra/status/1940882125550768520 2025-07-03 21:15:38,drb_ra,url,http://101.43.150.197:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1940882146476150962 2025-07-03 21:15:38,drb_ra,ip,101.43.150.197,#CobaltStrike #C2,https://x.com/drb_ra/status/1940882146476150962 2025-07-03 21:17:41,drb_ra,url,http://47.94.76.244:7001,#CobaltStrike #C2,https://x.com/drb_ra/status/1940882663981961710 2025-07-03 21:17:41,drb_ra,ip,47.94.76.244,#CobaltStrike #C2,https://x.com/drb_ra/status/1940882663981961710 2025-07-03 21:32:32,James_inthe_box,url,https://paste.ee/d/Fyy2LAQX/0,#Xworm,https://x.com/James_inthe_box/status/1940886401257820216 2025-07-03 21:32:32,James_inthe_box,domain,voilt1984may.duckdns.org,#Xworm,https://x.com/James_inthe_box/status/1940886401257820216 2025-07-03 21:32:32,James_inthe_box,url,http://voilt1984may.duckdns.org,#Xworm,https://x.com/James_inthe_box/status/1940886401257820216 2025-07-03 22:00:07,urldna_bot,domain,ayffhjr.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1940893340167209094 2025-07-03 22:00:07,urldna_bot,url,https://ayffhjr.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1940893340167209094 2025-07-03 22:58:12,drb_ra,domain,oss-global.xfyun.cn,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907957623181711 2025-07-03 22:58:12,drb_ra,url,https://oss-global.xfyun.cn/v4/static/v1.7.9/webpack.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907957623181711 2025-07-03 22:58:12,drb_ra,url,http://139.224.167.235:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907957623181711 2025-07-03 22:58:12,drb_ra,ip,139.224.167.235,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907957623181711 2025-07-03 22:58:16,drb_ra,url,http://106.55.71.90:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907977139277956 2025-07-03 22:58:16,drb_ra,ip,106.55.71.90,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907977139277956 2025-07-03 22:58:21,drb_ra,url,http://121.61.98.164:444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907997418737682 2025-07-03 22:58:21,drb_ra,ip,121.61.98.164,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940907997418737682 2025-07-03 23:00:24,drb_ra,url,http://27.18.19.29:56245,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940908514639335860 2025-07-03 23:00:24,drb_ra,ip,27.18.19.29,#C2 #CobaltStrike,https://x.com/drb_ra/status/1940908514639335860 2025-07-03 23:07:38,masaomi346,domain,orico-allyator.ezfpw.cn,#phishing,https://x.com/masaomi346/status/1940910331926331842 2025-07-03 23:07:38,masaomi346,url,https://orico-allyator.ezfpw.cn/eorico/login/,#phishing,https://x.com/masaomi346/status/1940910331926331842 2025-07-03 23:07:38,masaomi346,domain,orico-ligaab.ezdqw.cn,#phishing,https://x.com/masaomi346/status/1940910331926331842 2025-07-03 23:07:38,masaomi346,url,https://orico-ligaab.ezdqw.cn/eorico/login/,#phishing,https://x.com/masaomi346/status/1940910331926331842 2025-07-04 00:51:01,Metemcyber,domain,dhl-bibetic.vhhsiz.cn,#phishing,https://x.com/Metemcyber/status/1940936351966548455 2025-07-04 00:51:01,Metemcyber,url,https://dhl-bibetic.vhhsiz.cn/portal_login_exp/getQuoteTab/,#phishing,https://x.com/Metemcyber/status/1940936351966548455 2025-07-04 00:51:01,Metemcyber,url,http://172.67.169.65,#phishing,https://x.com/Metemcyber/status/1940936351966548455 2025-07-04 00:51:01,Metemcyber,url,http://104.21.27.116,#phishing,https://x.com/Metemcyber/status/1940936351966548455 2025-07-04 01:00:33,SarlackLab,url,http://104.207.138.98:1177,#Njrat #C2,https://x.com/SarlackLab/status/1940938748339868032 2025-07-04 01:00:33,SarlackLab,ip,104.207.138.98,#Njrat #C2,https://x.com/SarlackLab/status/1940938748339868032 2025-07-04 01:04:02,Metemcyber,url,https://ezqsm.top/RFFiVFaCe/,#phishing,https://x.com/Metemcyber/status/1940939627256598947 2025-07-04 01:04:02,Metemcyber,url,http://8.218.108.105,#phishing,https://x.com/Metemcyber/status/1940939627256598947 2025-07-04 01:04:02,Metemcyber,domain,ezqsm.top,#phishing,https://x.com/Metemcyber/status/1940939627256598947 2025-07-04 01:21:49,Metemcyber,url,http://172.67.128.210,#phishing,https://x.com/Metemcyber/status/1940944103736594782 2025-07-04 01:21:49,Metemcyber,domain,viewsnet-philie.ukhipc.cn,#phishing,https://x.com/Metemcyber/status/1940944103736594782 2025-07-04 01:21:49,Metemcyber,url,https://viewsnet-philie.ukhipc.cn/first_jalsuica-default/,#phishing,https://x.com/Metemcyber/status/1940944103736594782 2025-07-04 01:21:49,Metemcyber,url,http://104.21.2.60,#phishing,https://x.com/Metemcyber/status/1940944103736594782 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzz.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzm.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzx.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzs.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzs.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzv.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzv.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzn.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzx.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzz.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzn.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzc.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzb.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzd.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzb.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvza.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvza.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydesktenewo.com,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydesktenewo.com,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,domain,anydeskxxvvzm.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzc.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 01:49:24,skocherhan,url,http://anydeskxxvvzd.top,,https://x.com/skocherhan/status/1940951044189835502 2025-07-04 02:00:08,urldna_bot,domain,infopay-a7fe0.web.app,#scam #phishing,https://x.com/urldna_bot/status/1940953746499944874 2025-07-04 02:00:08,urldna_bot,url,https://infopay-a7fe0.web.app,#scam #phishing,https://x.com/urldna_bot/status/1940953746499944874 2025-07-04 03:19:24,fbgwls245,domain,ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion,#ransomware,https://x.com/fbgwls245/status/1940973694165438740 2025-07-04 03:19:24,fbgwls245,url,http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion,#ransomware,https://x.com/fbgwls245/status/1940973694165438740 2025-07-04 03:19:24,fbgwls245,md5,9451420233168C7B0C595257D43C7B85,#ransomware,https://x.com/fbgwls245/status/1940973694165438740 2025-07-04 03:24:07,skocherhan,md5,db9faee692cdae7a90453761fc7fc9e2,,https://x.com/skocherhan/status/1940974877504426101 2025-07-04 03:35:11,ShadowChasing1,sha256,81a284353e770872988e483b351223b722004893adc257d671c084b474371ca9,,https://x.com/ShadowChasing1/status/1940977666246824093 2025-07-04 03:35:11,ShadowChasing1,url,https://mobballetc2ec.com/wp-admin/js/widgets/hurryup/?rv=bear&za=battle0,#APT,https://x.com/ShadowChasing1/status/1940977666246824093 2025-07-04 03:35:11,ShadowChasing1,domain,mobballetc2ec.com,#APT,https://x.com/ShadowChasing1/status/1940977666246824093 2025-07-04 03:41:26,skocherhan,sha256,aefcc13d514d7e130b2ee98ae77998ca7a2f72a1e8a11604f896645eb3ed9884,#APT #Kimsuky,https://x.com/skocherhan/status/1940979235461759104 2025-07-04 04:35:24,ReBensk,md5,cab1c0178a8c563fff344436c3ceb7fc,#malware #Android #Trojan,https://x.com/ReBensk/status/1940992817750474844 2025-07-04 04:56:19,ReBensk,md5,afb4c08e5f6953489d97ad2d18280f3b,#malware #Android #Trojan,https://x.com/ReBensk/status/1940998081811829093 2025-07-04 05:00:27,SarlackLab,url,http://77.105.161.10:7000,#C2 #Njrat,https://x.com/SarlackLab/status/1940999121281659272 2025-07-04 05:00:27,SarlackLab,ip,77.105.161.10,#C2 #Njrat,https://x.com/SarlackLab/status/1940999121281659272 2025-07-04 05:29:46,skocherhan,domain,xiaoshihou13.top:8083,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:29:46,skocherhan,url,http://101.42.157.219,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:29:46,skocherhan,url,http://xiaoshihou13.top:8083,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:29:46,skocherhan,ip,101.42.157.219,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:29:46,skocherhan,domain,ffsup-s42.oduuu.com,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:29:46,skocherhan,domain,xiaoshihou1.top:8083,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:29:46,skocherhan,url,http://ffsup-s42.oduuu.com,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:29:46,skocherhan,url,http://xiaoshihou1.top:8083,,https://x.com/skocherhan/status/1941006498592969099 2025-07-04 05:59:58,skocherhan,md5,264ef1f2d1acc8ec939ed5295b747467,,https://x.com/skocherhan/status/1941014101473611833 2025-07-04 05:59:58,skocherhan,url,http://steamcommunity.com/profiles/76561199872233764,,https://x.com/skocherhan/status/1941014101473611833 2025-07-04 05:59:58,skocherhan,domain,cbakk.xyz,,https://x.com/skocherhan/status/1941014101473611833 2025-07-04 05:59:58,skocherhan,url,http://cbakk.xyz,,https://x.com/skocherhan/status/1941014101473611833 2025-07-04 05:59:58,skocherhan,url,http://t.me/q0l0o,,https://x.com/skocherhan/status/1941014101473611833 2025-07-04 06:00:10,urldna_bot,url,http://currentllyattmaill.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1941014151318372399 2025-07-04 06:00:10,urldna_bot,domain,currentllyattmaill.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1941014151318372399 2025-07-04 06:12:38,skocherhan,url,http://quellemutuelle.org,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect10.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect10.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect9.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect7.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect8.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect8.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect9.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect7.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect6.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,quellemutuelle.org,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect2.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect3.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect5.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect4.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect4.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect3.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect6.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect2.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,domain,ms-team-connect1.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect1.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:12:38,skocherhan,url,http://ms-team-connect5.com,,https://x.com/skocherhan/status/1941017287034601766 2025-07-04 06:14:31,drb_ra,url,https://125.76.82.109/s/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017762324976011 2025-07-04 06:14:31,drb_ra,ip,125.76.82.109,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017762324976011 2025-07-04 06:14:36,drb_ra,url,https://117.148.177.211/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017783539818655 2025-07-04 06:14:36,drb_ra,ip,117.148.177.211,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017783539818655 2025-07-04 06:14:41,drb_ra,ip,218.92.216.56,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017803605295373 2025-07-04 06:14:41,drb_ra,url,https://218.92.216.56/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017803605295373 2025-07-04 06:14:46,drb_ra,url,https://61.156.44.221/s/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017824161599565 2025-07-04 06:14:46,drb_ra,ip,61.156.44.221,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017824161599565 2025-07-04 06:14:51,drb_ra,ip,183.131.178.88,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017847012249626 2025-07-04 06:14:51,drb_ra,url,https://183.131.178.88/s/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017847012249626 2025-07-04 06:14:56,drb_ra,ip,218.60.175.252,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017867224572201 2025-07-04 06:14:56,drb_ra,url,https://218.60.175.252/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017867224572201 2025-07-04 06:15:01,drb_ra,url,https://218.28.104.157/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017889718653378 2025-07-04 06:15:01,drb_ra,ip,218.28.104.157,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017889718653378 2025-07-04 06:15:06,drb_ra,url,https://27.152.182.60/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017910895665219 2025-07-04 06:15:06,drb_ra,url,http://101.43.150.197:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017910895665219 2025-07-04 06:15:06,drb_ra,ip,101.43.150.197,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017910895665219 2025-07-04 06:15:06,drb_ra,ip,27.152.182.60,#CobaltStrike #C2,https://x.com/drb_ra/status/1941017910895665219 2025-07-04 06:25:57,JAMESWT_WT,url,https://pin-puk-online-home.codeanyapp.com/on/it/,#phishing,https://x.com/JAMESWT_WT/status/1941020640674566395 2025-07-04 06:25:57,JAMESWT_WT,domain,pin-puk-online-home.codeanyapp.com,#phishing,https://x.com/JAMESWT_WT/status/1941020640674566395 2025-07-04 06:45:18,drb_ra,url,http://144.172.109.72:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941025507753316382 2025-07-04 06:46:46,skocherhan,url,http://hotroutingcdn.asia,,https://x.com/skocherhan/status/1941025879796383814 2025-07-04 06:46:46,skocherhan,domain,hotroutingcdn.asia,,https://x.com/skocherhan/status/1941025879796383814 2025-07-04 06:47:21,drb_ra,url,http://147.182.206.102:465,#C2 #Interactsh,https://x.com/drb_ra/status/1941026024957137319 2025-07-04 06:47:26,drb_ra,url,http://147.182.206.102:443,#C2 #Interactsh,https://x.com/drb_ra/status/1941026045739855892 2025-07-04 06:47:31,drb_ra,url,http://147.182.206.102:80,#C2 #Interactsh,https://x.com/drb_ra/status/1941026066094751784 2025-07-04 06:47:36,drb_ra,url,http://147.182.206.102:25,#C2 #Interactsh,https://x.com/drb_ra/status/1941026087179637176 2025-07-04 06:47:36,drb_ra,ip,147.182.206.102,#C2 #Interactsh,https://x.com/drb_ra/status/1941026087179637176 2025-07-04 06:47:41,drb_ra,ip,144.172.117.108,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1941026108516061413 2025-07-04 06:47:41,drb_ra,url,http://144.172.117.108:443,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1941026108516061413 2025-07-04 06:47:44,drb_ra,url,http://79.215.181.187:55667,#AsyncRAT #C2,https://x.com/drb_ra/status/1941026120003973527 2025-07-04 06:47:44,drb_ra,ip,79.215.181.187,#AsyncRAT #C2,https://x.com/drb_ra/status/1941026120003973527 2025-07-04 06:47:46,drb_ra,ip,46.246.84.2,#Dcrat #C2,https://x.com/drb_ra/status/1941026128195625390 2025-07-04 06:47:46,drb_ra,url,http://46.246.84.2:5000,#Dcrat #C2,https://x.com/drb_ra/status/1941026128195625390 2025-07-04 06:47:46,drb_ra,ip,151.242.58.40,#AsyncRAT #C2,https://x.com/drb_ra/status/1941026130955231649 2025-07-04 06:47:46,drb_ra,url,http://151.242.58.40:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1941026130955231649 2025-07-04 06:47:50,drb_ra,url,http://107.152.45.119:443,#Havoc #C2,https://x.com/drb_ra/status/1941026148282192076 2025-07-04 06:47:50,drb_ra,ip,107.152.45.119,#Havoc #C2,https://x.com/drb_ra/status/1941026148282192076 2025-07-04 06:47:51,drb_ra,ip,83.249.230.189,#AsyncRAT #C2,https://x.com/drb_ra/status/1941026148911022516 2025-07-04 06:47:51,drb_ra,url,http://83.249.230.189:443,#AsyncRAT #C2,https://x.com/drb_ra/status/1941026148911022516 2025-07-04 06:47:55,drb_ra,url,http://3.121.114.119:443,#Havoc #C2,https://x.com/drb_ra/status/1941026168360317350 2025-07-04 06:47:59,drb_ra,url,http://47.111.24.71:47486,#C2,https://x.com/drb_ra/status/1941026186152292622 2025-07-04 06:47:59,drb_ra,ip,47.111.24.71,#C2,https://x.com/drb_ra/status/1941026186152292622 2025-07-04 06:48:00,drb_ra,url,http://56.136.54.163:443,#C2 #Deimos,https://x.com/drb_ra/status/1941026189268996253 2025-07-04 06:48:00,drb_ra,ip,56.136.54.163,#C2 #Deimos,https://x.com/drb_ra/status/1941026189268996253 2025-07-04 06:48:05,drb_ra,ip,42.185.157.75,#C2 #Deimos,https://x.com/drb_ra/status/1941026209456181726 2025-07-04 06:48:05,drb_ra,url,http://42.185.157.75:4506,#C2 #Deimos,https://x.com/drb_ra/status/1941026209456181726 2025-07-04 06:48:10,drb_ra,ip,163.181.66.88,#C2 #Deimos,https://x.com/drb_ra/status/1941026230197014574 2025-07-04 06:48:10,drb_ra,url,http://163.181.66.88:4506,#C2 #Deimos,https://x.com/drb_ra/status/1941026230197014574 2025-07-04 06:48:15,drb_ra,url,http://107.174.0.22:7443,#C2 #Mythic,https://x.com/drb_ra/status/1941026250895577579 2025-07-04 06:48:15,drb_ra,ip,107.174.0.22,#C2 #Mythic,https://x.com/drb_ra/status/1941026250895577579 2025-07-04 06:48:19,drb_ra,url,http://31.6.7.154:2404,#Remcos #C2,https://x.com/drb_ra/status/1941026267886674249 2025-07-04 06:48:19,drb_ra,ip,31.6.7.154,#Remcos #C2,https://x.com/drb_ra/status/1941026267886674249 2025-07-04 06:48:20,drb_ra,url,http://196.251.85.220:7443,#C2 #Mythic,https://x.com/drb_ra/status/1941026271586406659 2025-07-04 06:48:20,drb_ra,ip,196.251.85.220,#C2 #Mythic,https://x.com/drb_ra/status/1941026271586406659 2025-07-04 06:48:22,drb_ra,ip,196.251.84.176,#Remcos #C2,https://x.com/drb_ra/status/1941026282734600269 2025-07-04 06:48:22,drb_ra,url,http://196.251.84.176:5000,#Remcos #C2,https://x.com/drb_ra/status/1941026282734600269 2025-07-04 06:48:25,drb_ra,url,http://3.87.188.100:7443,#C2 #Mythic,https://x.com/drb_ra/status/1941026292037833179 2025-07-04 06:48:25,drb_ra,url,http://91.92.46.250:25,#Remcos #C2,https://x.com/drb_ra/status/1941026292020752837 2025-07-04 06:48:25,drb_ra,ip,91.92.46.250,#Remcos #C2,https://x.com/drb_ra/status/1941026292020752837 2025-07-04 06:48:30,drb_ra,url,http://98.70.49.169:443,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1941026312636051773 2025-07-04 06:48:30,drb_ra,ip,98.70.49.169,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1941026312636051773 2025-07-04 06:48:35,drb_ra,url,http://154.201.93.48:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941026333397803419 2025-07-04 06:48:35,drb_ra,ip,154.201.93.48,#C2 #Sliver,https://x.com/drb_ra/status/1941026333397803419 2025-07-04 06:48:39,drb_ra,url,http://123.163.206.142:40000,#C2 #Sliver,https://x.com/drb_ra/status/1941026354092527685 2025-07-04 06:48:39,drb_ra,ip,123.163.206.142,#C2 #Sliver,https://x.com/drb_ra/status/1941026354092527685 2025-07-04 06:48:44,drb_ra,url,http://5.255.103.206:443,#C2,https://x.com/drb_ra/status/1941026372282937659 2025-07-04 06:48:44,drb_ra,url,http://24.199.97.82:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941026374204248219 2025-07-04 06:48:44,drb_ra,ip,24.199.97.82,#C2 #Sliver,https://x.com/drb_ra/status/1941026374204248219 2025-07-04 06:48:47,drb_ra,url,http://45.144.221.24:1337,#C2,https://x.com/drb_ra/status/1941026386593952108 2025-07-04 06:48:47,drb_ra,ip,45.144.221.24,#C2,https://x.com/drb_ra/status/1941026386593952108 2025-07-04 06:48:49,drb_ra,url,http://45.136.15.6:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941026394466930795 2025-07-04 06:48:49,drb_ra,ip,45.136.15.6,#C2 #Sliver,https://x.com/drb_ra/status/1941026394466930795 2025-07-04 06:48:51,drb_ra,url,http://179.43.186.234:4321,#C2,https://x.com/drb_ra/status/1941026400326021125 2025-07-04 06:48:51,drb_ra,ip,179.43.186.234,#C2,https://x.com/drb_ra/status/1941026400326021125 2025-07-04 06:48:54,drb_ra,url,http://62.171.158.126:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941026414511509867 2025-07-04 06:48:54,drb_ra,ip,62.171.158.126,#C2 #Sliver,https://x.com/drb_ra/status/1941026414511509867 2025-07-04 06:48:59,drb_ra,url,http://3.147.68.101:443,#C2 #Sliver,https://x.com/drb_ra/status/1941026434363150767 2025-07-04 06:49:04,drb_ra,url,http://167.71.16.171:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941026455221424252 2025-07-04 06:49:04,drb_ra,ip,167.71.16.171,#C2 #Sliver,https://x.com/drb_ra/status/1941026455221424252 2025-07-04 06:49:08,drb_ra,url,http://106.75.8.65:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941026475182088575 2025-07-04 06:49:13,drb_ra,ip,106.75.8.65,#C2 #Sliver,https://x.com/drb_ra/status/1941026495910367694 2025-07-04 06:49:13,drb_ra,url,http://106.75.8.65:443,#C2 #Sliver,https://x.com/drb_ra/status/1941026495910367694 2025-07-04 06:49:18,drb_ra,url,http://147.50.230.91:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941026515581653143 2025-07-04 06:49:23,drb_ra,url,http://147.50.230.91:8888,#C2 #Sliver,https://x.com/drb_ra/status/1941026538553831469 2025-07-04 06:49:28,drb_ra,url,http://147.50.230.91:8443,#C2 #Sliver,https://x.com/drb_ra/status/1941026558661283916 2025-07-04 06:49:33,drb_ra,url,http://147.50.230.91:8090,#C2 #Sliver,https://x.com/drb_ra/status/1941026579146330315 2025-07-04 06:49:33,drb_ra,ip,147.50.230.91,#C2 #Sliver,https://x.com/drb_ra/status/1941026579146330315 2025-07-04 06:49:38,drb_ra,url,http://144.172.109.72:8888,#C2 #Sliver,https://x.com/drb_ra/status/1941026599408935092 2025-07-04 06:49:38,drb_ra,ip,144.172.109.72,#C2 #Sliver,https://x.com/drb_ra/status/1941026599408935092 2025-07-04 06:51:41,drb_ra,url,http://157.230.45.113:80,#C2 #Interactsh,https://x.com/drb_ra/status/1941027116315009481 2025-07-04 06:51:41,drb_ra,ip,157.230.45.113,#C2 #Interactsh,https://x.com/drb_ra/status/1941027116315009481 2025-07-04 07:04:36,skocherhan,url,http://loveharmony.live,#SmokeLoader #Lumma,https://x.com/skocherhan/status/1941030364543426634 2025-07-04 07:04:36,skocherhan,domain,loveharmony.live,#SmokeLoader #Lumma,https://x.com/skocherhan/status/1941030364543426634 2025-07-04 07:04:36,skocherhan,url,http://77.90.153.141,#SmokeLoader #Lumma,https://x.com/skocherhan/status/1941030364543426634 2025-07-04 07:04:36,skocherhan,url,http://heoshi.toutfmi.de,#SmokeLoader #Lumma,https://x.com/skocherhan/status/1941030364543426634 2025-07-04 07:04:36,skocherhan,ip,77.90.153.141,#SmokeLoader #Lumma,https://x.com/skocherhan/status/1941030364543426634 2025-07-04 07:04:36,skocherhan,domain,heoshi.toutfmi.de,#SmokeLoader #Lumma,https://x.com/skocherhan/status/1941030364543426634 2025-07-04 07:13:52,drb_ra,url,http://107.175.158.208:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941032697914372167 2025-07-04 07:15:31,skocherhan,domain,talkrt.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,leehpfe.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,pitqhms.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://pitqhms.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://almzsff.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,gilyesu.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://gilyesu.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://talkrt.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,foospjo.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,clehygs.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://clehygs.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,bumualu.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://bumualu.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,diseysy.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,freqbkv.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://diseysy.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://freqbkv.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://foospjo.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,almzsff.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://folshvs.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://rumidk.pics,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,dusjnnn.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://dusjnnn.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,braoto.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://braoto.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://upgrazz.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,folshvs.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,wonxw.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,upgrazz.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,bidafgs.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://wonxw.top,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://whilhi.pics,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,whilhi.pics,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://gecoea.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,rumidk.pics,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://bidafgs.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,domain,gecoea.lat,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:31,skocherhan,url,http://leehpfe.shop,,https://x.com/skocherhan/status/1941033114857353368 2025-07-04 07:15:55,drb_ra,url,http://103.158.36.92:14443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033215432839427 2025-07-04 07:15:55,drb_ra,ip,103.158.36.92,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033215432839427 2025-07-04 07:16:01,drb_ra,ip,43.139.210.38,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033237436157983 2025-07-04 07:16:01,drb_ra,url,http://43.139.210.38:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033237436157983 2025-07-04 07:16:01,drb_ra,url,https://1s-adms-1305520562.cos.ap-guangzhou.myqcloud.com.eo.dnse2.com/cx,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033237436157983 2025-07-04 07:16:01,drb_ra,domain,1s-adms-1305520562.cos.ap-guangzhou.myqcloud.com.eo.dnse2.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033237436157983 2025-07-04 07:16:06,drb_ra,url,http://107.175.158.208:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033258546032794 2025-07-04 07:16:06,drb_ra,ip,107.175.158.208,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033258546032794 2025-07-04 07:16:06,drb_ra,url,https://file.flash-oss.info/image/,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033258546032794 2025-07-04 07:16:06,drb_ra,domain,file.flash-oss.info,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033258546032794 2025-07-04 07:16:10,drb_ra,url,http://103.158.36.17:14443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033278540337577 2025-07-04 07:16:10,drb_ra,ip,103.158.36.17,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033278540337577 2025-07-04 07:16:16,drb_ra,url,http://106.14.89.119:2096,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033300883394765 2025-07-04 07:16:16,drb_ra,domain,server.pikachull.ip-ddns.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033300883394765 2025-07-04 07:16:16,drb_ra,url,https://server.pikachull.ip-ddns.com/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033300883394765 2025-07-04 07:16:16,drb_ra,ip,106.14.89.119,#CobaltStrike #C2,https://x.com/drb_ra/status/1941033300883394765 2025-07-04 07:28:00,c9lab_soc,url,http://chat-telegram.com,#scam #phishing,https://x.com/c9lab_soc/status/1941036256617754812 2025-07-04 07:28:00,c9lab_soc,domain,chat-telegram.com,#scam #phishing,https://x.com/c9lab_soc/status/1941036256617754812 2025-07-04 10:00:08,urldna_bot,url,https://caixageral-encerrar.com/login.php,#phishing #scam,https://x.com/urldna_bot/status/1941074541339361573 2025-07-04 10:00:08,urldna_bot,domain,caixageral-encerrar.com,#phishing #scam,https://x.com/urldna_bot/status/1941074541339361573 2025-07-04 11:09:24,drb_ra,ip,121.36.27.251,#CobaltStrike #C2,https://x.com/drb_ra/status/1941091970048487618 2025-07-04 11:09:24,drb_ra,url,http://121.36.27.251:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1941091970048487618 2025-07-04 11:43:31,skocherhan,ip,49.235.64.155,#AsyncRAT,https://x.com/skocherhan/status/1941100556434768125 2025-07-04 11:43:31,skocherhan,ip,93.177.102.241,#AsyncRAT,https://x.com/skocherhan/status/1941100556434768125 2025-07-04 11:43:31,skocherhan,ip,144.172.87.191,#AsyncRAT,https://x.com/skocherhan/status/1941100556434768125 2025-07-04 11:43:31,skocherhan,ip,185.38.142.16,#AsyncRAT,https://x.com/skocherhan/status/1941100556434768125 2025-07-04 11:43:31,skocherhan,ip,202.95.1.68,#AsyncRAT,https://x.com/skocherhan/status/1941100556434768125 2025-07-04 11:43:32,K_N1kolenko,url,http://rbmlh.xyz/lakd,#LummaStealer,https://x.com/K_N1kolenko/status/1941100561421762733 2025-07-04 11:43:32,K_N1kolenko,domain,rbmlh.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1941100561421762733 2025-07-04 11:44:04,CarlyGriggs13,domain,1win-ek9.top,#phishing,https://x.com/CarlyGriggs13/status/1941100694959980982 2025-07-04 11:44:04,CarlyGriggs13,url,https://1win-ek9.top,#phishing,https://x.com/CarlyGriggs13/status/1941100694959980982 2025-07-04 11:45:37,CarlyGriggs13,url,https://1xbet-ixsc.top,#phishing,https://x.com/CarlyGriggs13/status/1941101085990769111 2025-07-04 11:45:37,CarlyGriggs13,domain,1xbet-ixsc.top,#phishing,https://x.com/CarlyGriggs13/status/1941101085990769111 2025-07-04 11:46:06,CarlyGriggs13,url,https://1xbet-nra.top,#phishing,https://x.com/CarlyGriggs13/status/1941101208418340891 2025-07-04 11:46:06,CarlyGriggs13,domain,1xbet-nra.top,#phishing,https://x.com/CarlyGriggs13/status/1941101208418340891 2025-07-04 11:46:48,CarlyGriggs13,domain,87ab5.v2-curvefinance.xyz,#phishing,https://x.com/CarlyGriggs13/status/1941101385082409353 2025-07-04 11:46:48,CarlyGriggs13,url,https://87ab5.v2-curvefinance.xyz,#phishing,https://x.com/CarlyGriggs13/status/1941101385082409353 2025-07-04 11:47:13,CarlyGriggs13,domain,95vhx.v2-curvefinance.xyz,#phishing,https://x.com/CarlyGriggs13/status/1941101486710374584 2025-07-04 11:47:13,CarlyGriggs13,url,https://95vhx.v2-curvefinance.xyz,#phishing,https://x.com/CarlyGriggs13/status/1941101486710374584 2025-07-04 11:47:42,CarlyGriggs13,domain,abhienergetic.com,#phishing,https://x.com/CarlyGriggs13/status/1941101609200824719 2025-07-04 11:47:42,CarlyGriggs13,url,https://abhienergetic.com,#phishing,https://x.com/CarlyGriggs13/status/1941101609200824719 2025-07-04 11:47:59,CarlyGriggs13,domain,agenda.mtsn1kotacirebon.sch.id,#phishing,https://x.com/CarlyGriggs13/status/1941101683393831362 2025-07-04 11:47:59,CarlyGriggs13,url,https://agenda.mtsn1kotacirebon.sch.id,#phishing,https://x.com/CarlyGriggs13/status/1941101683393831362 2025-07-04 11:48:20,CarlyGriggs13,url,https://altverify.pro,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941101770547306619 2025-07-04 11:48:20,CarlyGriggs13,domain,altverify.pro,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941101770547306619 2025-07-04 11:48:45,CarlyGriggs13,domain,apex-astrofield.xyz,#phishing,https://x.com/CarlyGriggs13/status/1941101874003743054 2025-07-04 11:49:05,CarlyGriggs13,domain,app-raydiurn.com,#phishing,https://x.com/CarlyGriggs13/status/1941101958233981158 2025-07-04 11:49:05,CarlyGriggs13,url,https://app-raydiurn.com/swap/,#phishing,https://x.com/CarlyGriggs13/status/1941101958233981158 2025-07-04 11:49:34,CarlyGriggs13,domain,app.adjust.com,#phishing,https://x.com/CarlyGriggs13/status/1941102079277228107 2025-07-04 11:49:34,CarlyGriggs13,url,https://app.adjust.com/1mt15oxd?campaign=%7B%7Bcampaign.name%7D%7D%20%28%7B%7Bcampaign.id%7D%7D%29&adgroup=%7B%7Badset.name%7D%7D%20%28%7B%7Badset.id%7D%7D%29&creative=%7B%7Bad.name%7D%7D%20%28%7B%7Bad.id%7D%7D%29,#phishing,https://x.com/CarlyGriggs13/status/1941102079277228107 2025-07-04 11:54:16,CarlyGriggs13,domain,blue-estate-agency.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941103262629015683 2025-07-04 11:54:16,CarlyGriggs13,url,https://blue-estate-agency.com/faq/,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941103262629015683 2025-07-04 12:01:16,K_N1kolenko,ip,188.212.158.75,#RAT #Xworm,https://x.com/K_N1kolenko/status/1941105024463200459 2025-07-04 12:01:16,K_N1kolenko,ip,45.156.87.204,#RAT #Xworm,https://x.com/K_N1kolenko/status/1941105024463200459 2025-07-04 12:01:16,K_N1kolenko,ip,85.203.4.232,#RAT #Xworm,https://x.com/K_N1kolenko/status/1941105024463200459 2025-07-04 12:01:16,K_N1kolenko,ip,54.233.70.171,#RAT #Xworm,https://x.com/K_N1kolenko/status/1941105024463200459 2025-07-04 12:01:16,K_N1kolenko,ip,83.143.112.163,#RAT #Xworm,https://x.com/K_N1kolenko/status/1941105024463200459 2025-07-04 12:01:16,K_N1kolenko,ip,198.12.126.169,#RAT #Xworm,https://x.com/K_N1kolenko/status/1941105024463200459 2025-07-04 12:01:16,K_N1kolenko,ip,185.100.157.217,#RAT #Xworm,https://x.com/K_N1kolenko/status/1941105024463200459 2025-07-04 12:02:59,CarlyGriggs13,domain,deishop.sbs,#phishing,https://x.com/CarlyGriggs13/status/1941105458116526447 2025-07-04 12:02:59,CarlyGriggs13,url,https://deishop.sbs,#phishing,https://x.com/CarlyGriggs13/status/1941105458116526447 2025-07-04 12:03:24,CarlyGriggs13,domain,dex.screener-v3.com,#phishing,https://x.com/CarlyGriggs13/status/1941105561300549769 2025-07-04 12:03:24,CarlyGriggs13,url,https://dex.screener-v3.com,#phishing,https://x.com/CarlyGriggs13/status/1941105561300549769 2025-07-04 12:04:14,CarlyGriggs13,domain,eliteempire674.info,#phishing,https://x.com/CarlyGriggs13/status/1941105772441510376 2025-07-04 12:04:14,CarlyGriggs13,url,https://eliteempire674.info/?fbclid=%7B%7Bfbclid%7D%7D&campaign_name=%7B%7Bcampaign.name%7D%7D&adset_name=%7B%7Badset.name%7D%7D&ad_name=%7B%7Bad.name%7D%7D&pixel_fb=488550060442438,#phishing,https://x.com/CarlyGriggs13/status/1941105772441510376 2025-07-04 12:04:39,CarlyGriggs13,domain,eu1.chicken-max.com,#phishing,https://x.com/CarlyGriggs13/status/1941105874765799697 2025-07-04 12:04:39,CarlyGriggs13,url,https://eu1.chicken-max.com/?fbp=3588347984803103&sub1=Chicken-IOS-PWA&sub2=t9SKYyF6&sub3=dimon&sub4=EU&sub5=4027587910857929&sub6=%7B%7Bad.name%7D%7D-2025-07-02-KhanAdsMain-4027587910857929%7B%7Bad.name%7D%7DSAlangNEW61double3,#phishing,https://x.com/CarlyGriggs13/status/1941105874765799697 2025-07-04 12:06:43,CarlyGriggs13,domain,flamingchickenhazard.com,#phishing,https://x.com/CarlyGriggs13/status/1941106394352001248 2025-07-04 12:06:43,CarlyGriggs13,url,https://flamingchickenhazard.com/?sub_id_1=lira&sub_id_2=35128&sub_id_3=sprn&sub_id_4=%7B%7Bcampaign.name%7D%7Dx%7B%7Badset.name%7D%7D&sub_id_6=35017&sub_id_11=Facebook&idpixel=1024776809011385,#phishing,https://x.com/CarlyGriggs13/status/1941106394352001248 2025-07-04 12:07:05,CarlyGriggs13,domain,flamingchickenhighwayhazards.com,#phishing,https://x.com/CarlyGriggs13/status/1941106488941871575 2025-07-04 12:07:05,CarlyGriggs13,url,https://flamingchickenhighwayhazards.com/?sub_id_1=lira&sub_id_2=35128&sub_id_3=sprn&sub_id_4=%7B%7Bcampaign.name%7D%7Dx%7B%7Badset.name%7D%7D&sub_id_6=35017&sub_id_11=Facebook&idpixel=1024776809011385,#phishing,https://x.com/CarlyGriggs13/status/1941106488941871575 2025-07-04 12:08:41,CarlyGriggs13,domain,gameswheels.com,#phishing,https://x.com/CarlyGriggs13/status/1941106892731990438 2025-07-04 12:08:41,CarlyGriggs13,url,https://gameswheels.com/app/MultiRoadNew,#phishing,https://x.com/CarlyGriggs13/status/1941106892731990438 2025-07-04 12:09:29,CarlyGriggs13,domain,gates-of-olympus-it.online,#phishing,https://x.com/CarlyGriggs13/status/1941107091118207435 2025-07-04 12:09:29,CarlyGriggs13,url,https://gates-of-olympus-it.online/?sub3=134&ad_campaign_id=6826221703352&fbp=1205728977737292&sub2=MYrUDcwiSB&sub5=10151830454217305_1OLIMP&offer_id=1439,#phishing,https://x.com/CarlyGriggs13/status/1941107091118207435 2025-07-04 12:10:15,CarlyGriggs13,domain,geelongillustrators.com,#phishing,https://x.com/CarlyGriggs13/status/1941107285859995998 2025-07-04 12:10:15,CarlyGriggs13,url,http://geelongillustrators.com/kejc,#phishing,https://x.com/CarlyGriggs13/status/1941107285859995998 2025-07-04 12:10:37,CarlyGriggs13,url,https://getpassionapp.com/?f=b&trial_screen=select_price_v3&hard_wall=true&discount_available=no&lang=en&book=book368&utm_source=FB_w2w,#phishing,https://x.com/CarlyGriggs13/status/1941107378243412143 2025-07-04 12:10:37,CarlyGriggs13,domain,getpassionapp.com,#phishing,https://x.com/CarlyGriggs13/status/1941107378243412143 2025-07-04 12:19:54,CarlyGriggs13,domain,l1v3f.v2-curvefinance.xyz,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941109714177479125 2025-07-04 12:19:54,CarlyGriggs13,url,https://l1v3f.v2-curvefinance.xyz,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941109714177479125 2025-07-04 12:21:31,CarlyGriggs13,domain,letystar.top,#phishing,https://x.com/CarlyGriggs13/status/1941110119682752815 2025-07-04 12:21:31,CarlyGriggs13,url,https://letystar.top/redirect.html,#phishing,https://x.com/CarlyGriggs13/status/1941110119682752815 2025-07-04 12:22:39,CarlyGriggs13,domain,ls.upp.ac.id,#phishing,https://x.com/CarlyGriggs13/status/1941110406346592752 2025-07-04 12:22:39,CarlyGriggs13,url,https://ls.upp.ac.id/NAGA99,#phishing,https://x.com/CarlyGriggs13/status/1941110406346592752 2025-07-04 12:23:18,CarlyGriggs13,domain,m.literaturewave.net,#phishing,https://x.com/CarlyGriggs13/status/1941110569693835296 2025-07-04 12:23:18,CarlyGriggs13,url,https://m.literaturewave.net/moonstories/64m58cmd3g0.html,#phishing,https://x.com/CarlyGriggs13/status/1941110569693835296 2025-07-04 12:25:02,CarlyGriggs13,domain,metamask-log.teachable.com,#phishing,https://x.com/CarlyGriggs13/status/1941111005041643641 2025-07-04 12:25:02,CarlyGriggs13,url,https://metamask-log.teachable.com,#phishing,https://x.com/CarlyGriggs13/status/1941111005041643641 2025-07-04 12:25:38,CarlyGriggs13,url,https://mst-nutrition.de/products/chromium-picolinate-200-caps?_pos=1&_sid=31eb97240&_ss=r&utm_source=facebook&utm_medium=cpc&utm_campaign=ch&q=Chromium&options%5Bprefix%5D=last,#phishing,https://x.com/CarlyGriggs13/status/1941111155159630004 2025-07-04 12:25:38,CarlyGriggs13,domain,mst-nutrition.de,#phishing,https://x.com/CarlyGriggs13/status/1941111155159630004 2025-07-04 12:26:45,CarlyGriggs13,domain,news.jewishresearcher.com,#phishing,https://x.com/CarlyGriggs13/status/1941111437604319355 2025-07-04 12:26:45,CarlyGriggs13,url,https://news.jewishresearcher.com/CwWrtgMf,#phishing,https://x.com/CarlyGriggs13/status/1941111437604319355 2025-07-04 12:27:06,CarlyGriggs13,domain,nodewave.pages.dev,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941111526594900226 2025-07-04 12:27:06,CarlyGriggs13,url,https://nodewave.pages.dev,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1941111526594900226 2025-07-04 12:31:16,CarlyGriggs13,domain,pancakfswap.finance,#phishing,https://x.com/CarlyGriggs13/status/1941112576039108773 2025-07-04 12:31:16,CarlyGriggs13,url,https://pancakfswap.finance/swap/,#phishing,https://x.com/CarlyGriggs13/status/1941112576039108773 2025-07-04 12:32:05,CarlyGriggs13,domain,perghsiw.shop,#phishing,https://x.com/CarlyGriggs13/status/1941112779840098440 2025-07-04 12:32:05,CarlyGriggs13,url,https://perghsiw.shop/?pixel_id=1121631122959758&sub1=1002&sub2=mult2&sub3=aleksei&sub4=giga&sub5=%7B%7Bcampaign.name%7D%7D&sub6=joker2&sub7=stromajoker,#phishing,https://x.com/CarlyGriggs13/status/1941112779840098440 2025-07-04 12:41:30,masaomi346,domain,www-mizuho-sc.anyeson.com,#phishing,https://x.com/masaomi346/status/1941115148678361146 2025-07-04 12:41:30,masaomi346,url,https://mnc-mizuho-sc.xzchangda.com/CnCwVm/,#phishing,https://x.com/masaomi346/status/1941115148678361146 2025-07-04 12:41:30,masaomi346,url,https://www-mizuho-sc.anyeson.com/CnCwVm/,#phishing,https://x.com/masaomi346/status/1941115148678361146 2025-07-04 12:41:30,masaomi346,domain,mnc-mizuho-sc.xzchangda.com,#phishing,https://x.com/masaomi346/status/1941115148678361146 2025-07-04 13:25:10,fbgwls245,md5,ACE323D6640057CBCB46B8591AAF9136,#ransomware,https://x.com/fbgwls245/status/1941126138199421094 2025-07-04 13:28:30,harugasumi,domain,www-mizuho.bj-heyu.com,#phishing,https://x.com/harugasumi/status/1941126977941041473 2025-07-04 13:28:30,harugasumi,url,https://www-mizuho.bj-heyu.com/CnCwVm/,#phishing,https://x.com/harugasumi/status/1941126977941041473 2025-07-04 14:00:11,urldna_bot,domain,zlwnq.cn,#phishing #scam,https://x.com/urldna_bot/status/1941134949471375562 2025-07-04 14:00:11,urldna_bot,url,https://zlwnq.cn,#phishing #scam,https://x.com/urldna_bot/status/1941134949471375562 2025-07-04 14:25:13,harugasumi,domain,vjtyo.com,#phishing,https://x.com/harugasumi/status/1941141252206145808 2025-07-04 14:25:13,harugasumi,url,https://vjtyo.com/Xn1kZ3/,#phishing,https://x.com/harugasumi/status/1941141252206145808 2025-07-04 14:25:13,harugasumi,ip,185.141.219.172,#phishing,https://x.com/harugasumi/status/1941141252206145808 2025-07-04 14:25:13,harugasumi,ip,212.192.221.52,#phishing,https://x.com/harugasumi/status/1941141252206145808 2025-07-04 15:06:11,harugasumi,url,https://sbisec-co-jp.regudfgfdgslation-jp.icu/jp/,#phishing,https://x.com/harugasumi/status/1941151561000087677 2025-07-04 15:06:11,harugasumi,domain,sbisec-co-jp.regudfgfdgslation-jp.icu,#phishing,https://x.com/harugasumi/status/1941151561000087677 2025-07-04 15:06:11,harugasumi,domain,jhgffdsxasd.bond,#phishing,https://x.com/harugasumi/status/1941151561000087677 2025-07-04 15:06:11,harugasumi,url,https://jhgffdsxasd.bond,#phishing,https://x.com/harugasumi/status/1941151561000087677 2025-07-04 15:57:47,skocherhan,md5,48613d25c0c4c79f0895489371f8bec2,#APT,https://x.com/skocherhan/status/1941164544421929138 2025-07-04 15:57:47,skocherhan,url,http://139.99.85.213,#APT,https://x.com/skocherhan/status/1941164544421929138 2025-07-04 15:57:47,skocherhan,url,http://139.99.87.31,#APT,https://x.com/skocherhan/status/1941164544421929138 2025-07-04 15:57:47,skocherhan,ip,139.99.85.213,#APT,https://x.com/skocherhan/status/1941164544421929138 2025-07-04 15:57:47,skocherhan,ip,139.99.87.31,#APT,https://x.com/skocherhan/status/1941164544421929138 2025-07-04 15:57:47,skocherhan,md5,7499383cbf25d5102dbaf51e5840b5ae,#APT,https://x.com/skocherhan/status/1941164544421929138 2025-07-04 16:06:58,drb_ra,url,http://101.200.193.211:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1941166855886119335 2025-07-04 16:06:58,drb_ra,ip,101.200.193.211,#CobaltStrike #C2,https://x.com/drb_ra/status/1941166855886119335 2025-07-04 16:07:03,drb_ra,url,https://file.flash-oss.info/api/3,#CobaltStrike #C2,https://x.com/drb_ra/status/1941166877495214344 2025-07-04 17:53:22,orlof_v,ip,104.248.15.123,#C2 #CobaltStrike,https://x.com/orlof_v/status/1941193632125714588 2025-07-04 17:53:22,orlof_v,ip,167.71.178.62,#C2 #CobaltStrike,https://x.com/orlof_v/status/1941193632125714588 2025-07-04 17:53:22,orlof_v,ip,68.183.212.212,#C2 #CobaltStrike,https://x.com/orlof_v/status/1941193632125714588 2025-07-04 18:00:07,urldna_bot,domain,increase-0489nb74v7v24gv82b8sv.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1941195334002078189 2025-07-04 18:00:07,urldna_bot,url,https://increase-0489nb74v7v24gv82b8sv.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1941195334002078189 2025-07-04 18:39:16,SarlackLab,domain,m365.acenm.com,,https://x.com/SarlackLab/status/1941205184522166488 2025-07-04 18:39:16,SarlackLab,url,http://m365.acenm.com,,https://x.com/SarlackLab/status/1941205184522166488 2025-07-04 18:39:16,SarlackLab,domain,exifit.eu.org,,https://x.com/SarlackLab/status/1941205184522166488 2025-07-04 18:39:16,SarlackLab,url,http://exifit.eu.org,,https://x.com/SarlackLab/status/1941205184522166488 2025-07-04 18:39:16,SarlackLab,domain,rubyhall.in.net,,https://x.com/SarlackLab/status/1941205184522166488 2025-07-04 18:39:16,SarlackLab,url,http://rubyhall.in.net,,https://x.com/SarlackLab/status/1941205184522166488 2025-07-04 18:45:51,drb_ra,url,http://121.41.69.238:8888,#C2 #Sliver,https://x.com/drb_ra/status/1941206842606231971 2025-07-04 18:45:51,drb_ra,ip,121.41.69.238,#C2 #Sliver,https://x.com/drb_ra/status/1941206842606231971 2025-07-04 18:48:55,drb_ra,url,http://192.159.99.94:2404,#C2 #Remcos,https://x.com/drb_ra/status/1941207611879325765 2025-07-04 18:48:55,drb_ra,ip,192.159.99.94,#C2 #Remcos,https://x.com/drb_ra/status/1941207611879325765 2025-07-04 18:49:00,drb_ra,url,http://172.93.160.93:2404,#C2 #Remcos,https://x.com/drb_ra/status/1941207634054656062 2025-07-04 18:49:00,drb_ra,ip,172.93.160.93,#C2 #Remcos,https://x.com/drb_ra/status/1941207634054656062 2025-07-04 18:49:04,drb_ra,url,http://185.208.159.121:2404,#C2 #Remcos,https://x.com/drb_ra/status/1941207649418346843 2025-07-04 18:49:04,drb_ra,ip,185.208.159.121,#C2 #Remcos,https://x.com/drb_ra/status/1941207649418346843 2025-07-04 18:49:09,drb_ra,url,http://216.9.225.221:14305,#C2 #Remcos,https://x.com/drb_ra/status/1941207673380405310 2025-07-04 18:49:09,drb_ra,ip,216.9.225.221,#C2 #Remcos,https://x.com/drb_ra/status/1941207673380405310 2025-07-04 18:49:15,drb_ra,url,http://208.94.246.47:2404,#C2 #Remcos,https://x.com/drb_ra/status/1941207694855307717 2025-07-04 18:49:15,drb_ra,ip,208.94.246.47,#C2 #Remcos,https://x.com/drb_ra/status/1941207694855307717 2025-07-04 18:49:19,drb_ra,url,http://124.198.131.57:9792,#C2 #Remcos,https://x.com/drb_ra/status/1941207715583492197 2025-07-04 18:49:19,drb_ra,ip,124.198.131.57,#C2 #Remcos,https://x.com/drb_ra/status/1941207715583492197 2025-07-04 18:49:24,drb_ra,url,http://47.83.173.1:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1941207736362180762 2025-07-04 18:49:24,drb_ra,ip,47.83.173.1,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1941207736362180762 2025-07-04 18:49:29,drb_ra,url,http://13.59.10.58:808,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941207756570231152 2025-07-04 18:49:29,drb_ra,ip,13.59.10.58,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941207756570231152 2025-07-04 18:49:34,drb_ra,url,http://35.90.2.59:18856,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941207777231372562 2025-07-04 18:49:34,drb_ra,ip,35.90.2.59,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941207777231372562 2025-07-04 18:49:39,drb_ra,url,http://196.251.116.62:7777,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941207797645054139 2025-07-04 18:49:44,drb_ra,url,http://196.251.116.62:888,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941207818054533526 2025-07-04 18:49:44,drb_ra,ip,196.251.116.62,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941207818054533526 2025-07-04 18:49:49,drb_ra,url,http://35.194.89.202:143,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941207839298785282 2025-07-04 18:49:54,drb_ra,url,http://47.107.248.162:8888,#C2 #Supershell,https://x.com/drb_ra/status/1941207860895166616 2025-07-04 18:49:54,drb_ra,ip,47.107.248.162,#C2 #Supershell,https://x.com/drb_ra/status/1941207860895166616 2025-07-04 18:49:59,drb_ra,url,http://109.145.253.19:2222,#C2 #Qakbot,https://x.com/drb_ra/status/1941207881975791870 2025-07-04 18:49:59,drb_ra,ip,109.145.253.19,#C2 #Qakbot,https://x.com/drb_ra/status/1941207881975791870 2025-07-04 18:50:04,drb_ra,url,http://46.246.222.215:995,#C2 #Qakbot,https://x.com/drb_ra/status/1941207903488311630 2025-07-04 18:50:04,drb_ra,ip,46.246.222.215,#C2 #Qakbot,https://x.com/drb_ra/status/1941207903488311630 2025-07-04 18:50:09,drb_ra,url,http://189.140.35.239:443,#C2 #Qakbot,https://x.com/drb_ra/status/1941207922882809981 2025-07-04 18:50:09,drb_ra,ip,189.140.35.239,#C2 #Qakbot,https://x.com/drb_ra/status/1941207922882809981 2025-07-04 18:50:14,drb_ra,url,http://144.172.96.219:443,#C2,https://x.com/drb_ra/status/1941207943413981499 2025-07-04 18:50:14,drb_ra,ip,144.172.96.219,#C2,https://x.com/drb_ra/status/1941207943413981499 2025-07-04 18:50:19,drb_ra,url,http://3.249.214.80:445,#C2,https://x.com/drb_ra/status/1941207963403944028 2025-07-04 18:50:23,drb_ra,url,http://195.123.225.126:443,#C2 #Havoc,https://x.com/drb_ra/status/1941207983012315469 2025-07-04 18:50:23,drb_ra,ip,195.123.225.126,#C2 #Havoc,https://x.com/drb_ra/status/1941207983012315469 2025-07-04 18:50:28,drb_ra,url,http://136.144.181.45:443,#C2 #Havoc,https://x.com/drb_ra/status/1941208003883172252 2025-07-04 18:50:33,drb_ra,url,http://136.144.181.45:80,#C2 #Havoc,https://x.com/drb_ra/status/1941208024632394223 2025-07-04 18:50:33,drb_ra,ip,136.144.181.45,#C2 #Havoc,https://x.com/drb_ra/status/1941208024632394223 2025-07-04 18:52:37,drb_ra,url,http://191.233.20.127:2404,#C2 #Remcos,https://x.com/drb_ra/status/1941208542465433688 2025-07-04 18:52:37,drb_ra,ip,191.233.20.127,#C2 #Remcos,https://x.com/drb_ra/status/1941208542465433688 2025-07-04 19:10:45,drb_ra,url,http://107.175.158.208:2082,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213109278171647 2025-07-04 19:10:50,drb_ra,url,http://179.43.186.224:4434,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213130392207814 2025-07-04 19:10:50,drb_ra,ip,179.43.186.224,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213130392207814 2025-07-04 19:10:55,drb_ra,url,http://47.96.224.76:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213150906569124 2025-07-04 19:10:55,drb_ra,ip,47.96.224.76,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213150906569124 2025-07-04 19:11:01,drb_ra,url,http://107.175.158.208:2053,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213172905779588 2025-07-04 19:11:06,drb_ra,url,https://119.167.229.212/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213194829300189 2025-07-04 19:11:06,drb_ra,ip,119.167.229.212,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213194829300189 2025-07-04 19:11:11,drb_ra,url,https://182.247.250.209/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213216333557814 2025-07-04 19:11:11,drb_ra,ip,182.247.250.209,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213216333557814 2025-07-04 19:11:16,drb_ra,url,https://61.170.88.228/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213237699375141 2025-07-04 19:11:16,drb_ra,ip,61.170.88.228,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213237699375141 2025-07-04 19:11:21,drb_ra,url,https://36.25.254.122/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213258951819333 2025-07-04 19:11:21,drb_ra,ip,36.25.254.122,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213258951819333 2025-07-04 19:11:26,drb_ra,url,https://60.211.209.111/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213280124702987 2025-07-04 19:11:26,drb_ra,ip,60.211.209.111,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213280124702987 2025-07-04 19:11:31,drb_ra,url,https://117.187.245.245/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213301586932164 2025-07-04 19:11:31,drb_ra,ip,117.187.245.245,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213301586932164 2025-07-04 19:11:36,drb_ra,url,https://42.202.164.11/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213323137253394 2025-07-04 19:11:36,drb_ra,ip,42.202.164.11,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213323137253394 2025-07-04 19:11:41,drb_ra,url,https://113.201.158.191/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213344129745299 2025-07-04 19:11:41,drb_ra,ip,113.201.158.191,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213344129745299 2025-07-04 19:11:46,drb_ra,url,https://119.96.17.222/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213364857995421 2025-07-04 19:11:46,drb_ra,url,http://175.178.85.21:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213364857995421 2025-07-04 19:11:46,drb_ra,ip,175.178.85.21,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213364857995421 2025-07-04 19:11:46,drb_ra,ip,119.96.17.222,#CobaltStrike #C2,https://x.com/drb_ra/status/1941213364857995421 2025-07-04 20:00:38,SarlackLab,url,http://3.68.56.232:11722,#Njrat #C2,https://x.com/SarlackLab/status/1941225662380990716 2025-07-04 20:00:38,SarlackLab,url,http://35.157.111.131:11722,#Njrat #C2,https://x.com/SarlackLab/status/1941225662380990716 2025-07-04 20:00:38,SarlackLab,ip,35.157.111.131,#Njrat #C2,https://x.com/SarlackLab/status/1941225662380990716 2025-07-04 20:00:58,SarlackLab,url,http://3.126.224.214:11722,#Njrat #C2,https://x.com/SarlackLab/status/1941225745478496702 2025-07-04 21:15:25,marcandrebeaul1,ip,78.111.75.106,#phishing,https://x.com/marcandrebeaul1/status/1941244482382594452 2025-07-04 21:37:03,skocherhan,url,http://116.202.181.52,,https://x.com/skocherhan/status/1941249923678339551 2025-07-04 21:37:03,skocherhan,url,http://116.202.186.71,,https://x.com/skocherhan/status/1941249923678339551 2025-07-04 21:37:03,skocherhan,ip,116.202.181.52,,https://x.com/skocherhan/status/1941249923678339551 2025-07-04 21:37:03,skocherhan,ip,116.202.186.71,,https://x.com/skocherhan/status/1941249923678339551 2025-07-04 21:44:18,skocherhan,md5,4ecf066d1a176d853a1605346d489337,,https://x.com/skocherhan/status/1941251751249956933 2025-07-04 21:52:11,skocherhan,domain,msupdater.com,#C2 #Mythic,https://x.com/skocherhan/status/1941253731628302714 2025-07-04 21:52:11,skocherhan,url,http://msupdater.com,#C2 #Mythic,https://x.com/skocherhan/status/1941253731628302714 2025-07-04 22:00:10,urldna_bot,domain,flugdienstberater.at,#scam #phishing,https://x.com/urldna_bot/status/1941255742868120030 2025-07-04 22:00:10,urldna_bot,url,https://flugdienstberater.at,#scam #phishing,https://x.com/urldna_bot/status/1941255742868120030 2025-07-04 22:05:32,skocherhan,url,http://185.203.241.232/1599513bb2b74043.php,#C2,https://x.com/skocherhan/status/1941257094767968351 2025-07-04 22:05:32,skocherhan,ip,185.203.241.232,#C2,https://x.com/skocherhan/status/1941257094767968351 2025-07-04 22:15:28,skocherhan,md5,f0a9859e14edf3146c95c614d3c92a4e,,https://x.com/skocherhan/status/1941259592165671024 2025-07-04 23:18:57,masaomi346,domain,asvmidialagos.com.br,#phishing,https://x.com/masaomi346/status/1941275570232537238 2025-07-04 23:18:57,masaomi346,url,https://asvmidialagos.com.br/plala.emailverify/Sites/index.html,#phishing,https://x.com/masaomi346/status/1941275570232537238 2025-07-04 23:18:57,masaomi346,url,https://asvmidialagos.com.br/pyla/Sites/index.html,#phishing,https://x.com/masaomi346/status/1941275570232537238 2025-07-04 23:18:57,masaomi346,domain,cpea.so,#phishing,https://x.com/masaomi346/status/1941275570232537238 2025-07-04 23:18:57,masaomi346,url,https://cpea.so/ttt/Sites/index.html,#phishing,https://x.com/masaomi346/status/1941275570232537238 2025-07-04 23:18:57,masaomi346,domain,lintasbabel.com,#phishing,https://x.com/masaomi346/status/1941275570232537238 2025-07-04 23:18:57,masaomi346,url,https://lintasbabel.com/OR/Sites/index.html,#phishing,https://x.com/masaomi346/status/1941275570232537238 2025-07-04 23:24:19,1ZRR4H,domain,feb18.freeddns.org:8848,#Dcrat,https://x.com/1ZRR4H/status/1941276918621643261 2025-07-04 23:24:19,1ZRR4H,url,http://feb18.freeddns.org:8848,#Dcrat,https://x.com/1ZRR4H/status/1941276918621643261 2025-07-05 00:51:38,harugasumi,domain,mufg-arbori.zwnff.cn,#phishing,https://x.com/harugasumi/status/1941298894580904180 2025-07-05 00:51:38,harugasumi,url,https://mufg-arbori.zwnff.cn/RW03120100001/,#phishing,https://x.com/harugasumi/status/1941298894580904180 2025-07-05 01:13:06,skocherhan,domain,maranhaogang.fun,,https://x.com/skocherhan/status/1941304294483042694 2025-07-05 01:13:06,skocherhan,url,http://maranhaogang.fun,,https://x.com/skocherhan/status/1941304294483042694 2025-07-05 01:46:23,PaduckLee,md5,08759d9ea2712d693891c870bbebbde3,#ransomware,https://x.com/PaduckLee/status/1941312673221837250 2025-07-05 02:14:55,skocherhan,md5,4ea03dd6129f91e1b56a38375bb518d1,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,md5,247c48366cacafa85ae4f3d6c5688533,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,md5,e3250c1e488e7e4d519f4a2930ff9f8f,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,url,http://www.whats-in-the-box.org/i7xp,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,domain,whats-in-the-box.org,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,url,http://www.insicilia.today/e5nc,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,domain,insicilia.today,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,domain,asociacia.online,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,url,http://www.93187.xyz/jyeu,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,domain,93187.xyz,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,url,http://www.52ywq.vip/4i87,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,domain,52ywq.vip,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,url,http://www.1183377.app/8z5k,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,domain,1183377.app,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 02:14:55,skocherhan,url,http://www.asociacia.online/jsqu,,https://x.com/skocherhan/status/1941319852389552610 2025-07-05 06:00:08,urldna_bot,domain,lbpproseanhs.web.app,#scam #phishing,https://x.com/urldna_bot/status/1941376529558081693 2025-07-05 06:00:08,urldna_bot,url,https://lbpproseanhs.web.app,#scam #phishing,https://x.com/urldna_bot/status/1941376529558081693 2025-07-05 06:45:56,drb_ra,url,http://111.6.178.95:4506,#Deimos #C2,https://x.com/drb_ra/status/1941388054624862576 2025-07-05 06:45:56,drb_ra,ip,111.6.178.95,#Deimos #C2,https://x.com/drb_ra/status/1941388054624862576 2025-07-05 06:46:01,drb_ra,ip,134.199.166.195,#C2 #Mythic,https://x.com/drb_ra/status/1941388075441193146 2025-07-05 06:46:01,drb_ra,url,http://134.199.166.195:443,#C2 #Mythic,https://x.com/drb_ra/status/1941388075441193146 2025-07-05 06:46:06,drb_ra,url,http://34.61.22.123:7443,#C2 #Mythic,https://x.com/drb_ra/status/1941388096123306232 2025-07-05 06:46:10,drb_ra,url,http://165.232.161.164:9443,#Sliver #C2,https://x.com/drb_ra/status/1941388116776145051 2025-07-05 06:46:10,drb_ra,ip,165.232.161.164,#Sliver #C2,https://x.com/drb_ra/status/1941388116776145051 2025-07-05 06:46:15,drb_ra,url,http://148.253.85.89:31337,#Sliver #C2,https://x.com/drb_ra/status/1941388137185575121 2025-07-05 06:46:15,drb_ra,ip,148.253.85.89,#Sliver #C2,https://x.com/drb_ra/status/1941388137185575121 2025-07-05 06:46:19,drb_ra,url,http://107.172.143.14:31337,#Sliver #C2,https://x.com/drb_ra/status/1941388152926765296 2025-07-05 06:46:25,drb_ra,url,http://107.172.143.14:8888,#Sliver #C2,https://x.com/drb_ra/status/1941388176805032054 2025-07-05 06:46:25,drb_ra,ip,107.172.143.14,#Sliver #C2,https://x.com/drb_ra/status/1941388176805032054 2025-07-05 06:48:09,drb_ra,ip,172.245.152.196,#Remcos #C2,https://x.com/drb_ra/status/1941388615612842366 2025-07-05 06:48:09,drb_ra,url,http://172.245.152.196:27000,#Remcos #C2,https://x.com/drb_ra/status/1941388615612842366 2025-07-05 06:48:18,drb_ra,ip,179.13.2.162,#Remcos #C2,https://x.com/drb_ra/status/1941388651792896205 2025-07-05 06:48:18,drb_ra,url,http://179.13.2.162:2404,#Remcos #C2,https://x.com/drb_ra/status/1941388651792896205 2025-07-05 06:48:25,drb_ra,url,http://45.154.98.16:2404,#Remcos #C2,https://x.com/drb_ra/status/1941388682298028058 2025-07-05 06:48:25,drb_ra,ip,45.154.98.16,#Remcos #C2,https://x.com/drb_ra/status/1941388682298028058 2025-07-05 06:48:29,drb_ra,url,http://84.154.177.136:82,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388696164630635 2025-07-05 06:48:29,drb_ra,ip,84.154.177.136,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388696164630635 2025-07-05 06:48:30,drb_ra,url,http://196.251.86.217:2404,#Remcos #C2,https://x.com/drb_ra/status/1941388700287373763 2025-07-05 06:48:30,drb_ra,ip,196.251.86.217,#Remcos #C2,https://x.com/drb_ra/status/1941388700287373763 2025-07-05 06:48:32,drb_ra,url,http://54.176.63.12:5985,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388711775842543 2025-07-05 06:48:32,drb_ra,ip,54.176.63.12,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388711775842543 2025-07-05 06:48:37,drb_ra,url,http://18.60.233.146:81,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388731329675301 2025-07-05 06:48:42,drb_ra,ip,18.60.233.146,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388751277785521 2025-07-05 06:48:42,drb_ra,url,http://157.250.198.38:80,#C2,https://x.com/drb_ra/status/1941388751063621971 2025-07-05 06:48:42,drb_ra,url,http://18.60.233.146:831,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388751277785521 2025-07-05 06:48:42,drb_ra,ip,157.250.198.38,#C2,https://x.com/drb_ra/status/1941388751063621971 2025-07-05 06:48:47,drb_ra,ip,43.217.97.47,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388771372695857 2025-07-05 06:48:47,drb_ra,url,http://43.217.97.47:7000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941388771372695857 2025-07-05 06:48:51,drb_ra,url,http://104.250.172.30:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1941388791174004883 2025-07-05 06:48:51,drb_ra,ip,104.250.172.30,#AsyncRAT #C2,https://x.com/drb_ra/status/1941388791174004883 2025-07-05 06:48:56,drb_ra,url,http://167.71.219.232:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1941388811457659116 2025-07-05 06:48:56,drb_ra,ip,167.71.219.232,#AsyncRAT #C2,https://x.com/drb_ra/status/1941388811457659116 2025-07-05 06:49:01,drb_ra,url,http://37.60.245.86:587,#C2 #Interactsh,https://x.com/drb_ra/status/1941388831976304786 2025-07-05 06:49:06,drb_ra,url,http://37.60.245.86:465,#C2 #Interactsh,https://x.com/drb_ra/status/1941388852503126040 2025-07-05 06:49:11,drb_ra,url,http://37.60.245.86:443,#C2 #Interactsh,https://x.com/drb_ra/status/1941388873654993239 2025-07-05 06:49:16,drb_ra,url,http://37.60.245.86:80,#C2 #Interactsh,https://x.com/drb_ra/status/1941388893938647119 2025-07-05 06:49:21,drb_ra,url,http://37.60.245.86:25,#C2 #Interactsh,https://x.com/drb_ra/status/1941388914297798828 2025-07-05 06:49:21,drb_ra,ip,37.60.245.86,#C2 #Interactsh,https://x.com/drb_ra/status/1941388914297798828 2025-07-05 06:49:26,drb_ra,ip,74.235.58.46,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1941388935856550133 2025-07-05 06:49:26,drb_ra,url,http://74.235.58.46:80,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1941388935856550133 2025-07-05 06:49:31,drb_ra,url,http://45.74.16.202:50555,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1941388956710687092 2025-07-05 06:49:31,drb_ra,ip,45.74.16.202,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1941388956710687092 2025-07-05 06:49:36,drb_ra,url,http://20.2.161.33:8888,#C2 #Supershell,https://x.com/drb_ra/status/1941388977791172980 2025-07-05 06:49:36,drb_ra,ip,20.2.161.33,#C2 #Supershell,https://x.com/drb_ra/status/1941388977791172980 2025-07-05 06:49:40,drb_ra,url,http://1.12.248.6:8082,#Havoc #C2,https://x.com/drb_ra/status/1941388997760323794 2025-07-05 06:49:45,drb_ra,url,http://104.238.255.142:8080,#Deimos #C2,https://x.com/drb_ra/status/1941389017897148884 2025-07-05 06:49:45,drb_ra,ip,104.238.255.142,#Deimos #C2,https://x.com/drb_ra/status/1941389017897148884 2025-07-05 07:27:59,drb_ra,url,http://124.71.207.28:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398638787428450 2025-07-05 07:27:59,drb_ra,ip,124.71.207.28,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398638787428450 2025-07-05 07:28:04,drb_ra,url,http://1.94.239.203:3333,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398660262265227 2025-07-05 07:28:04,drb_ra,ip,172.24.144.20,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398660262265227 2025-07-05 07:28:09,drb_ra,url,http://192.140.188.178:8089,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398682253090941 2025-07-05 07:28:09,drb_ra,ip,192.140.188.178,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398682253090941 2025-07-05 07:28:15,drb_ra,url,http://1.92.153.104:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398705564942687 2025-07-05 07:28:20,drb_ra,url,http://1.92.153.104:8088,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398725966037463 2025-07-05 07:28:20,drb_ra,ip,10.224.7.115,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941398725966037463 2025-07-05 07:46:46,Mr_Harleyphaz,domain,ihmzsi.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941403364279144585 2025-07-05 07:46:46,Mr_Harleyphaz,url,https://ihmzsi.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941403364279144585 2025-07-05 07:47:51,Mr_Harleyphaz,domain,mirqp.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941403639148662956 2025-07-05 07:47:51,Mr_Harleyphaz,url,https://mirqp.com/index/index/home,#phishing,https://x.com/Mr_Harleyphaz/status/1941403639148662956 2025-07-05 07:48:30,Mr_Harleyphaz,domain,homlaa.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941403800625176640 2025-07-05 07:48:30,Mr_Harleyphaz,url,https://homlaa.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941403800625176640 2025-07-05 07:50:10,Mr_Harleyphaz,domain,nbcoco.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941404218981745073 2025-07-05 07:50:10,Mr_Harleyphaz,url,https://nbcoco.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941404218981745073 2025-07-05 07:52:36,Mr_Harleyphaz,url,https://nbjnst.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941404831996113379 2025-07-05 07:52:36,Mr_Harleyphaz,domain,nbjnst.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941404831996113379 2025-07-05 07:53:30,Mr_Harleyphaz,domain,rxiaarb.fun,#phishing,https://x.com/Mr_Harleyphaz/status/1941405058844983640 2025-07-05 07:53:30,Mr_Harleyphaz,url,https://rxiaarb.fun,#phishing,https://x.com/Mr_Harleyphaz/status/1941405058844983640 2025-07-05 07:54:57,Mr_Harleyphaz,domain,firemena25.online,#phishing,https://x.com/Mr_Harleyphaz/status/1941405423304925220 2025-07-05 07:54:57,Mr_Harleyphaz,url,https://firemena25.online,#phishing,https://x.com/Mr_Harleyphaz/status/1941405423304925220 2025-07-05 07:56:49,Mr_Harleyphaz,domain,ccw-fi.com,#phishing,https://x.com/Mr_Harleyphaz/status/1941405895394722189 2025-07-05 07:56:49,Mr_Harleyphaz,url,https://ccw-fi.com/swap/?gad_source=1&gad_campaignid=22729749551&gbraid=&gclid=,#phishing,https://x.com/Mr_Harleyphaz/status/1941405895394722189 2025-07-05 07:58:24,Mr_Harleyphaz,domain,app.lpor.io,#phishing,https://x.com/Mr_Harleyphaz/status/1941406291676762427 2025-07-05 07:58:24,Mr_Harleyphaz,url,https://app.lpor.io,#phishing,https://x.com/Mr_Harleyphaz/status/1941406291676762427 2025-07-05 07:59:18,Mr_Harleyphaz,domain,blockfixer.xyz,#phishing,https://x.com/Mr_Harleyphaz/status/1941406517653275051 2025-07-05 07:59:18,Mr_Harleyphaz,url,https://blockfixer.xyz,#phishing,https://x.com/Mr_Harleyphaz/status/1941406517653275051 2025-07-05 08:10:50,momomopas,url,http://66.63.187.20:4433,#opendir,https://x.com/momomopas/status/1941409422888272206 2025-07-05 08:10:50,momomopas,ip,66.63.187.20,#opendir,https://x.com/momomopas/status/1941409422888272206 2025-07-05 10:00:07,urldna_bot,url,http://instagram-post-77486qets.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1941436922963890570 2025-07-05 10:00:07,urldna_bot,domain,instagram-post-77486qets.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1941436922963890570 2025-07-05 10:06:02,CyberGhost13337,url,http://alababababa.cloud/cVGvQio6.txt,#malware,https://x.com/CyberGhost13337/status/1941438413821051398 2025-07-05 10:06:02,CyberGhost13337,domain,alababababa.cloud,#malware,https://x.com/CyberGhost13337/status/1941438413821051398 2025-07-05 10:06:02,CyberGhost13337,url,http://sindangkasihnews.com,#malware,https://x.com/CyberGhost13337/status/1941438413821051398 2025-07-05 10:06:02,CyberGhost13337,domain,sindangkasihnews.com,#malware,https://x.com/CyberGhost13337/status/1941438413821051398 2025-07-05 10:17:38,kelly1fernandes,url,http://mirqp.com,#phishing,https://x.com/kelly1fernandes/status/1941441331018203326 2025-07-05 12:00:41,SarlackLab,url,http://3.67.15.169:11722,#C2 #Njrat,https://x.com/SarlackLab/status/1941467267671154859 2025-07-05 12:00:41,SarlackLab,url,http://3.125.188.168:11722,#C2 #Njrat,https://x.com/SarlackLab/status/1941467267671154859 2025-07-05 12:00:59,SarlackLab,url,http://3.124.67.191:11722,#C2 #Njrat,https://x.com/SarlackLab/status/1941467339683160271 2025-07-05 13:27:03,Doctorrotextv,url,https://ccw-fi.com/swap/,#phishing,https://x.com/Doctorrotextv/status/1941489001577525316 2025-07-05 14:00:10,urldna_bot,domain,submit-dispute-form.github.io,#phishing #scam,https://x.com/urldna_bot/status/1941497334442992054 2025-07-05 14:00:10,urldna_bot,url,https://submit-dispute-form.github.io/review/next.html,#phishing #scam,https://x.com/urldna_bot/status/1941497334442992054 2025-07-05 15:57:20,fbgwls245,domain,tzhwmgguyxrg6q3tu4q3gvopcjynrhw6ryx2bdl5ghisdkyunfua5xyd.onion,#ransomware,https://x.com/fbgwls245/status/1941526819171352963 2025-07-05 15:57:20,fbgwls245,url,http://tzhwmgguyxrg6q3tu4q3gvopcjynrhw6ryx2bdl5ghisdkyunfua5xyd.onion,#ransomware,https://x.com/fbgwls245/status/1941526819171352963 2025-07-05 16:59:31,Coolcarlos17,domain,lhavan.myshopify.com,#scam #phishing,https://x.com/Coolcarlos17/status/1941542467834347809 2025-07-05 16:59:31,Coolcarlos17,url,https://lhavan.myshopify.com/products/camerai-intelbras-dupla,#scam #phishing,https://x.com/Coolcarlos17/status/1941542467834347809 2025-07-05 17:00:26,Coolcarlos17,domain,vivahojesuasorte.github.io,#scam #phishing,https://x.com/Coolcarlos17/status/1941542698378469536 2025-07-05 17:00:26,Coolcarlos17,url,https://vivahojesuasorte.github.io/desconto/,#scam #phishing,https://x.com/Coolcarlos17/status/1941542698378469536 2025-07-05 17:01:38,Coolcarlos17,url,https://pedido-hoje.com/hvcred/1/index.html,#phishing #scam,https://x.com/Coolcarlos17/status/1941543003312750727 2025-07-05 17:01:38,Coolcarlos17,domain,pedido-hoje.com,#phishing #scam,https://x.com/Coolcarlos17/status/1941543003312750727 2025-07-05 17:02:50,Coolcarlos17,domain,pay.segurancatransacional.online,#phishing #scam,https://x.com/Coolcarlos17/status/1941543304077901847 2025-07-05 17:02:50,Coolcarlos17,url,https://pay.segurancatransacional.online,#phishing #scam,https://x.com/Coolcarlos17/status/1941543304077901847 2025-07-05 17:04:29,Coolcarlos17,domain,ltaviajapromocol.com,#phishing #scam,https://x.com/Coolcarlos17/status/1941543717380476998 2025-07-05 17:04:29,Coolcarlos17,url,http://ltaviajapromocol.com,#phishing #scam,https://x.com/Coolcarlos17/status/1941543717380476998 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat7.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat7.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat.cfd,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat.cfd,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat.buzz,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat.buzz,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat.live,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrats.vip,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat.live,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat.life,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat.life,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrats.vip,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat8.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat.info,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat9.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat7.com,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat7.com,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat8.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat8.com,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxs-rat.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat8.com,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat.info,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat.club,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxsrat.club,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,domain,craxsrat9.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:24:19,Fact_Finder03,url,http://craxs-rat.shop,,https://x.com/Fact_Finder03/status/1941548708879007865 2025-07-05 17:25:37,Fact_Finder03,url,http://craxs-rat9.com,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,url,http://craxsrat.sbs,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxsrat.sbs,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,url,http://craxsrat.org,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxsrat.org,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,url,http://craxs-rat.cfd,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxs-rat.cfd,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,url,http://craxs-rat.biz,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,url,http://craxsrat-craxs-rat.com,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxs-rat.biz,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxsrat-craxs-rat.com,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxsrat.work,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxs-rat9.com,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,domain,craxs-rat.com,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,url,http://craxsrat.work,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 17:25:37,Fact_Finder03,url,http://craxs-rat.com,,https://x.com/Fact_Finder03/status/1941549037695766716 2025-07-05 18:00:07,urldna_bot,domain,orangeinfos.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1941557720089276507 2025-07-05 18:00:07,urldna_bot,url,https://orangeinfos.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1941557720089276507 2025-07-05 18:00:19,SarlackLab,url,http://mailing-iv.gl.at.ply.gg,#NanoCore #C2,https://x.com/SarlackLab/status/1941557772111192278 2025-07-05 18:00:19,SarlackLab,ip,147.185.221.29,#NanoCore #C2,https://x.com/SarlackLab/status/1941557772111192278 2025-07-05 18:00:19,SarlackLab,url,http://147.185.221.29:60684,#NanoCore #C2,https://x.com/SarlackLab/status/1941557772111192278 2025-07-05 18:00:19,SarlackLab,domain,mailing-iv.gl.at.ply.gg,#NanoCore #C2,https://x.com/SarlackLab/status/1941557772111192278 2025-07-05 18:49:02,JAMESWT_WT,url,http://nexilo.sbs/js/webmail.aruba.it/user/login/retrieve.pendingMsg/aruba.it/mailbox/client.user_id/aruba_cgi/my_acco,,https://x.com/JAMESWT_WT/status/1941570030753481197 2025-07-05 18:49:02,JAMESWT_WT,url,http://nexilo.sbs/js/webmail.aruba.it/user/login/retrieve.pendingMsg/aruba.it/mailbox/client.user_id/aruba_cgi/my_account/index03.htm,#phishing,https://x.com/JAMESWT_WT/status/1941570030753481197 2025-07-05 18:49:02,JAMESWT_WT,domain,nexilo.sbs,,https://x.com/JAMESWT_WT/status/1941570030753481197 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect6.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect10.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect9.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect9.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect8.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect8.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect7.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect7.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect6.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect10.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,quellemutuelle.org,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect5.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect4.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect4.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect3.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect3.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect2.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect2.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect1.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,domain,ms-team-connect1.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://ms-team-connect5.com,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 18:49:44,JAMESWT_WT,url,http://quellemutuelle.org,,https://x.com/JAMESWT_WT/status/1941570206733840479 2025-07-05 20:21:55,1ZRR4H,domain,mallsyoutletsvivo.cl,,https://x.com/1ZRR4H/status/1941593404409786876 2025-07-05 20:21:55,1ZRR4H,url,http://mallsyoutletsvivo.cl,,https://x.com/1ZRR4H/status/1941593404409786876 2025-07-05 21:05:35,skocherhan,domain,vl.io.vn:8006,#opendir,https://x.com/skocherhan/status/1941604395012993130 2025-07-05 21:05:35,skocherhan,url,http://vl.io.vn:8006,#opendir,https://x.com/skocherhan/status/1941604395012993130 2025-07-05 21:05:35,skocherhan,url,http://27.70.224.99,#opendir,https://x.com/skocherhan/status/1941604395012993130 2025-07-05 21:05:35,skocherhan,ip,27.70.224.99,#opendir,https://x.com/skocherhan/status/1941604395012993130 2025-07-05 21:20:13,skocherhan,domain,sviluppo.cucina.it,,https://x.com/skocherhan/status/1941608076441784367 2025-07-05 21:20:13,skocherhan,url,http://sviluppo.cucina.it/images/,,https://x.com/skocherhan/status/1941608076441784367 2025-07-05 21:20:13,skocherhan,domain,meuespacoacabamentos.com.br,,https://x.com/skocherhan/status/1941608076441784367 2025-07-05 21:20:13,skocherhan,url,http://meuespacoacabamentos.com.br/unjcght/SSA1.exe,,https://x.com/skocherhan/status/1941608076441784367 2025-07-05 21:41:59,skocherhan,domain,oakcreekbakers.com,#APT,https://x.com/skocherhan/status/1941613556497076416 2025-07-05 21:41:59,skocherhan,url,http://oakcreekbakers.com,#APT,https://x.com/skocherhan/status/1941613556497076416 2025-07-05 21:47:33,skocherhan,sha256,180c9f2f6d89217cbc1c50dfe27d0d0b59ed0b568da5ffafdd1e7e2488f3f777,,https://x.com/skocherhan/status/1941614955293225217 2025-07-05 22:00:08,urldna_bot,domain,volny33344.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1941618120528892054 2025-07-05 22:00:08,urldna_bot,url,https://volny33344.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1941618120528892054 2025-07-05 23:21:00,catnap707,domain,goo.su,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://goo.su/qbX3e,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,domain,aeeee.eu.cc,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://aeeee.eu.cc,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,domain,sbisec.amuf.me,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://www.sbisec.amuf.me/etgate,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://104.21.16.1,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://104.21.32.1,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://104.21.48.1,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://104.21.64.1,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://104.21.80.1,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:21:00,catnap707,url,http://104.21.96.1,#phishing,https://x.com/catnap707/status/1941638474266001684 2025-07-05 23:44:45,skocherhan,url,http://179.43.176.26/rvZZZb8jrf/index.php,,https://x.com/skocherhan/status/1941644447848042716 2025-07-05 23:44:45,skocherhan,domain,amafiles.net,,https://x.com/skocherhan/status/1941644447848042716 2025-07-05 23:44:45,skocherhan,url,http://amafiles.net/jd8ejdS3VS/index.php,,https://x.com/skocherhan/status/1941644447848042716 2025-07-05 23:44:45,skocherhan,domain,loadsmods.net,,https://x.com/skocherhan/status/1941644447848042716 2025-07-05 23:44:45,skocherhan,url,http://loadsmods.net/5cjZaje843pQ/index.php,,https://x.com/skocherhan/status/1941644447848042716 2025-07-05 23:44:45,skocherhan,ip,179.43.176.26,,https://x.com/skocherhan/status/1941644447848042716 2025-07-05 23:44:45,skocherhan,md5,10cfb27aa1f10d978f1e1f754f955a76,,https://x.com/skocherhan/status/1941644447848042716 2025-07-05 23:44:45,skocherhan,md5,354ec4da1d0ed7388cad27ea115b7bc4,,https://x.com/skocherhan/status/1941644447848042716 2025-07-06 00:11:09,skocherhan,url,http://github.com/echenn1,#Lumma,https://x.com/skocherhan/status/1941651094796439998 2025-07-06 00:11:09,skocherhan,md5,b622a4d1fc262e43c31b35bce18fff34,#Lumma,https://x.com/skocherhan/status/1941651094796439998 2025-07-06 00:19:47,skocherhan,ip,45.156.87.204,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:19:47,skocherhan,ip,54.233.70.171,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:19:47,skocherhan,ip,77.105.161.10,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:19:47,skocherhan,ip,83.143.112.163,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:19:47,skocherhan,ip,85.203.4.232,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:19:47,skocherhan,ip,185.100.157.217,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:19:47,skocherhan,ip,188.212.158.75,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:19:47,skocherhan,ip,198.12.126.169,#Xworm #RAT,https://x.com/skocherhan/status/1941653264505643462 2025-07-06 00:29:30,catnap707,url,http://172.67.131.132,#phishing,https://x.com/catnap707/status/1941655711395786909 2025-07-06 00:29:30,catnap707,url,http://txzsw.com/standard,#phishing,https://x.com/catnap707/status/1941655711395786909 2025-07-06 00:29:30,catnap707,domain,tymone.icu,#phishing,https://x.com/catnap707/status/1941655711395786909 2025-07-06 00:29:30,catnap707,domain,txzsw.com,#phishing,https://x.com/catnap707/status/1941655711395786909 2025-07-06 00:29:30,catnap707,url,http://tymone.icu/Signin.jp/#/,#phishing,https://x.com/catnap707/status/1941655711395786909 2025-07-06 00:32:13,skocherhan,url,http://t.me/pizdenka202020,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://accsrf.top/ziqa,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,domain,accsrf.top,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://steamcommunity.com/profiles/76561199863199067,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://plapwf.top/agnb,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,domain,plapwf.top,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,domain,gizqt.xyz,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://gizqt.xyz/kfjs,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://atrojr.xyz/tosz,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,domain,atrojr.xyz,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://t.me/asvd213321fasdf,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://t.me/yenndbe,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://t.me/sadwq223123asdsad,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://t.me/onepepka,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://t.me/adsvdsadvqwasd,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:32:13,skocherhan,url,http://t.me/heppycathello,,https://x.com/skocherhan/status/1941656396136636839 2025-07-06 00:46:12,skocherhan,domain,news-bix.info,,https://x.com/skocherhan/status/1941659912951468230 2025-07-06 00:46:12,skocherhan,url,http://news-bix.info,,https://x.com/skocherhan/status/1941659912951468230 2025-07-06 00:46:12,skocherhan,domain,us22web.com,,https://x.com/skocherhan/status/1941659912951468230 2025-07-06 00:46:12,skocherhan,url,http://us22web.com,,https://x.com/skocherhan/status/1941659912951468230 2025-07-06 00:46:12,skocherhan,md5,5dea1e48096c50b5e45881b19d31d272,,https://x.com/skocherhan/status/1941659912951468230 2025-07-06 00:46:12,skocherhan,md5,bf132e95e3b6bd65db2079e080882bb8,,https://x.com/skocherhan/status/1941659912951468230 2025-07-06 00:57:48,catnap707,domain,icloud-hourain.tpglzv.cn,#phishing,https://x.com/catnap707/status/1941662832187277755 2025-07-06 00:57:48,catnap707,url,http://icloud-hourain.tpglzv.cn/gvIY2S/,#phishing,https://x.com/catnap707/status/1941662832187277755 2025-07-06 00:57:48,catnap707,url,http://172.67.132.12,#phishing,https://x.com/catnap707/status/1941662832187277755 2025-07-06 01:01:54,skocherhan,domain,anfdfq.pics,#Lumma,https://x.com/skocherhan/status/1941663863931363835 2025-07-06 01:01:54,skocherhan,url,http://anfdfq.pics,#Lumma,https://x.com/skocherhan/status/1941663863931363835 2025-07-06 01:01:54,skocherhan,domain,perkoj.shop,#Lumma,https://x.com/skocherhan/status/1941663863931363835 2025-07-06 01:01:54,skocherhan,url,http://perkoj.shop,#Lumma,https://x.com/skocherhan/status/1941663863931363835 2025-07-06 01:18:27,skocherhan,domain,op.ge.mastermaths.com.sg,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,md5,52052c503cc4182ef5eb4f844386a25a,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,ip,116.202.182.73,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,ip,116.202.184.145,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,url,http://116.202.182.73,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,url,http://107.41.mastermaths.com.sg,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,url,http://op.ge.mastermaths.com.sg,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,url,http://116.202.184.145,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,url,http://t.me/l07tp,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,domain,ds.exifit.eu.org,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,domain,107.41.mastermaths.com.sg,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,url,http://steamcommunity.com/profiles/76561199869630181,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 01:18:27,skocherhan,url,http://ds.exifit.eu.org,#C2,https://x.com/skocherhan/status/1941668028346671387 2025-07-06 02:00:08,urldna_bot,domain,allegrolokalnie.pi-kategorie-ogrod-strona-15.top,#scam #phishing,https://x.com/urldna_bot/status/1941678521572622820 2025-07-06 02:00:08,urldna_bot,url,https://allegrolokalnie.pi-kategorie-ogrod-strona-15.top,#scam #phishing,https://x.com/urldna_bot/status/1941678521572622820 2025-07-06 06:00:07,urldna_bot,domain,gmx-office21047592pqwb.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1941738912960946654 2025-07-06 06:00:07,urldna_bot,url,https://gmx-office21047592pqwb.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1941738912960946654 2025-07-06 07:34:53,harugasumi,domain,aam28.cn,#phishing,https://x.com/harugasumi/status/1941762764483199249 2025-07-06 07:34:53,harugasumi,url,https://aam28.cn,#phishing,https://x.com/harugasumi/status/1941762764483199249 2025-07-06 08:58:01,harugasumi,domain,viewsnet-macier.rbdemy.cn,#phishing,https://x.com/harugasumi/status/1941783682022621463 2025-07-06 08:58:01,harugasumi,url,https://viewsnet-macier.rbdemy.cn/first_jalsuica-default/,#phishing,https://x.com/harugasumi/status/1941783682022621463 2025-07-06 09:01:19,_MannyPrince,url,https://firemena25.online,#phishing,https://x.com/_MannyPrince/status/1941784515791233255 2025-07-06 09:01:19,_MannyPrince,domain,firemena25.online,#phishing,https://x.com/_MannyPrince/status/1941784515791233255 2025-07-06 09:01:22,tristanrecovery,url,https://homlaa.com,#phishing,https://x.com/tristanrecovery/status/1941784527300415629 2025-07-06 09:01:22,tristanrecovery,domain,homlaa.com,#phishing,https://x.com/tristanrecovery/status/1941784527300415629 2025-07-06 09:01:30,_MannyPrince,domain,ccw-fi.com,#phishing,https://x.com/_MannyPrince/status/1941784562255741172 2025-07-06 09:01:30,_MannyPrince,url,https://ccw-fi.com/swap/,#phishing,https://x.com/_MannyPrince/status/1941784562255741172 2025-07-06 09:01:41,_MannyPrince,domain,app.lpor.io,#phishing,https://x.com/_MannyPrince/status/1941784606052598156 2025-07-06 09:01:41,_MannyPrince,url,https://app.lpor.io,#phishing,https://x.com/_MannyPrince/status/1941784606052598156 2025-07-06 09:01:46,tristanrecovery,domain,mirqp.com,#phishing,https://x.com/tristanrecovery/status/1941784628483756336 2025-07-06 09:01:46,tristanrecovery,url,https://mirqp.com/index/index/home,#phishing,https://x.com/tristanrecovery/status/1941784628483756336 2025-07-06 09:01:56,_MannyPrince,domain,blockfixer.xyz,#phishing,https://x.com/_MannyPrince/status/1941784670154170797 2025-07-06 09:01:56,_MannyPrince,url,https://blockfixer.xyz,#phishing,https://x.com/_MannyPrince/status/1941784670154170797 2025-07-06 09:13:33,harugasumi,domain,api.warabiji.cfd,#phishing,https://x.com/harugasumi/status/1941787594876186729 2025-07-06 09:13:33,harugasumi,url,https://api.warabiji.cfd/auth/screen,#phishing,https://x.com/harugasumi/status/1941787594876186729 2025-07-06 09:27:07,harugasumi,url,https://tfik.cn/Login,#phishing,https://x.com/harugasumi/status/1941791008146202882 2025-07-06 09:27:07,harugasumi,domain,tfik.cn,#phishing,https://x.com/harugasumi/status/1941791008146202882 2025-07-06 09:59:26,drb_ra,url,http://51.92.224.227:9042,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941799140322676904 2025-07-06 09:59:26,drb_ra,ip,51.92.224.227,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941799140322676904 2025-07-06 10:00:08,urldna_bot,domain,bt-hdgdfx.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1941799315938124002 2025-07-06 10:00:08,urldna_bot,url,https://bt-hdgdfx.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1941799315938124002 2025-07-06 10:00:30,drb_ra,url,http://206.189.13.43:443,#C2 #Havoc,https://x.com/drb_ra/status/1941799406631576030 2025-07-06 10:00:30,drb_ra,ip,206.189.13.43,#C2 #Havoc,https://x.com/drb_ra/status/1941799406631576030 2025-07-06 10:00:50,drb_ra,ip,120.46.131.34,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799492283437345 2025-07-06 10:00:50,drb_ra,url,http://120.46.131.34:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799492283437345 2025-07-06 10:00:55,drb_ra,domain,cdn-service.assetsforservers404.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799513598910551 2025-07-06 10:00:55,drb_ra,url,https://cdn-service.assetsforservers404.com/ak,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799513598910551 2025-07-06 10:00:55,drb_ra,url,http://185.118.79.75:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799513598910551 2025-07-06 10:00:55,drb_ra,ip,185.118.79.75,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799513598910551 2025-07-06 10:01:00,drb_ra,url,http://64.137.9.118:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799534792749189 2025-07-06 10:01:00,drb_ra,ip,64.137.9.118,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799534792749189 2025-07-06 10:01:05,drb_ra,url,http://101.43.27.138:50001,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799555453895063 2025-07-06 10:01:05,drb_ra,ip,101.43.27.138,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799555453895063 2025-07-06 10:01:10,drb_ra,url,http://196.251.72.214:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799577062871281 2025-07-06 10:01:10,drb_ra,ip,196.251.72.214,#CobaltStrike #C2,https://x.com/drb_ra/status/1941799577062871281 2025-07-06 10:01:15,drb_ra,ip,222.112.82.87,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799598168703350 2025-07-06 10:01:15,drb_ra,url,http://14.36.37.62:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799598168703350 2025-07-06 10:01:15,drb_ra,ip,14.36.37.62,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799598168703350 2025-07-06 10:01:20,drb_ra,url,http://8.134.185.44:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799617588350996 2025-07-06 10:01:25,drb_ra,ip,43.133.177.17,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799638043893914 2025-07-06 10:01:25,drb_ra,url,http://43.133.177.17:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799638043893914 2025-07-06 10:01:30,drb_ra,url,http://139.159.138.76:8000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799658222719038 2025-07-06 10:01:30,drb_ra,ip,139.159.138.76,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799658222719038 2025-07-06 10:01:34,drb_ra,ip,60.204.245.37,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799678598590939 2025-07-06 10:01:34,drb_ra,url,http://60.204.245.37:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799678598590939 2025-07-06 10:01:40,drb_ra,ip,107.172.143.14,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799700518011227 2025-07-06 10:01:40,drb_ra,url,http://107.172.143.14:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799700518011227 2025-07-06 10:01:40,drb_ra,url,https://h.yangthousand.hair/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799700518011227 2025-07-06 10:01:40,drb_ra,domain,h.yangthousand.hair,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799700518011227 2025-07-06 10:01:44,drb_ra,ip,47.120.32.72,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799720382292134 2025-07-06 10:01:44,drb_ra,url,http://47.120.32.72:8081,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799720382292134 2025-07-06 10:01:49,drb_ra,ip,107.175.158.208,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799741404152208 2025-07-06 10:01:49,drb_ra,url,http://107.175.158.208:2086,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799741404152208 2025-07-06 10:01:49,drb_ra,url,https://107.175.158.208/api/3,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799741404152208 2025-07-06 10:01:54,drb_ra,url,http://83.229.120.98:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799762056851877 2025-07-06 10:01:54,drb_ra,ip,83.229.120.98,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799762056851877 2025-07-06 10:01:58,drb_ra,url,http://47.113.217.92:7788,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799777915523427 2025-07-06 10:01:58,drb_ra,ip,47.113.217.92,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799777915523427 2025-07-06 10:02:03,drb_ra,url,http://47.98.151.171:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799798421524752 2025-07-06 10:02:03,drb_ra,ip,47.98.151.171,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799798421524752 2025-07-06 10:02:08,drb_ra,ip,39.104.78.25,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799818692587916 2025-07-06 10:02:08,drb_ra,url,http://39.104.78.25:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1941799818692587916 2025-07-06 10:02:12,drb_ra,url,http://5.188.86.168:55364,#C2,https://x.com/drb_ra/status/1941799837667565734 2025-07-06 10:02:17,drb_ra,ip,194.206.111.213,#C2,https://x.com/drb_ra/status/1941799857313718382 2025-07-06 10:02:17,drb_ra,url,http://194.206.111.213:80,#C2,https://x.com/drb_ra/status/1941799857313718382 2025-07-06 10:02:22,drb_ra,ip,196.251.84.158,#C2 #Remcos,https://x.com/drb_ra/status/1941799876829835304 2025-07-06 10:02:22,drb_ra,url,http://196.251.84.158:5000,#C2 #Remcos,https://x.com/drb_ra/status/1941799876829835304 2025-07-06 10:02:27,drb_ra,ip,185.254.96.17,#C2 #Remcos,https://x.com/drb_ra/status/1941799898279559468 2025-07-06 10:02:27,drb_ra,url,http://185.254.96.17:2404,#C2 #Remcos,https://x.com/drb_ra/status/1941799898279559468 2025-07-06 10:02:32,drb_ra,ip,173.208.206.107,#C2 #Remcos,https://x.com/drb_ra/status/1941799918592475363 2025-07-06 10:02:32,drb_ra,url,http://173.208.206.107:2404,#C2 #Remcos,https://x.com/drb_ra/status/1941799918592475363 2025-07-06 10:02:37,drb_ra,url,http://42.51.42.200:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1941799939643691079 2025-07-06 10:02:37,drb_ra,ip,42.51.42.200,#Reverse_SSH #C2,https://x.com/drb_ra/status/1941799939643691079 2025-07-06 10:02:42,drb_ra,ip,47.96.125.204,#Reverse_SSH #C2,https://x.com/drb_ra/status/1941799960808157373 2025-07-06 10:02:42,drb_ra,url,http://47.96.125.204:80,#Reverse_SSH #C2,https://x.com/drb_ra/status/1941799960808157373 2025-07-06 10:02:47,drb_ra,ip,15.228.192.200,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941799982228455454 2025-07-06 10:02:47,drb_ra,url,http://15.228.192.200:2181,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941799982228455454 2025-07-06 10:02:52,drb_ra,ip,18.199.146.33,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800003581641024 2025-07-06 10:02:52,drb_ra,url,http://18.199.146.33:2375,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800003581641024 2025-07-06 10:02:57,drb_ra,ip,43.218.133.31,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800024402268651 2025-07-06 10:02:57,drb_ra,url,http://43.218.133.31:36673,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800024402268651 2025-07-06 10:03:02,drb_ra,ip,18.60.153.144,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800045243764798 2025-07-06 10:03:02,drb_ra,url,http://18.60.153.144:20547,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800045243764798 2025-07-06 10:03:06,drb_ra,url,http://54.191.179.49:7443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800063149228198 2025-07-06 10:03:06,drb_ra,ip,54.191.179.49,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1941800063149228198 2025-07-06 10:03:10,drb_ra,url,http://185.18.222.241:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800079754461612 2025-07-06 10:03:13,drb_ra,url,http://185.18.222.241:7707,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800093042000198 2025-07-06 10:03:17,drb_ra,url,http://185.18.222.241:6606,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800108711870550 2025-07-06 10:03:17,drb_ra,ip,185.18.222.241,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800108711870550 2025-07-06 10:03:21,drb_ra,url,http://186.169.87.191:4000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800124709052868 2025-07-06 10:03:21,drb_ra,ip,186.169.87.191,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800124709052868 2025-07-06 10:03:25,drb_ra,url,http://79.110.49.56:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800141691711987 2025-07-06 10:03:25,drb_ra,ip,79.110.49.56,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800141691711987 2025-07-06 10:03:28,drb_ra,ip,98.142.247.5,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800154366980448 2025-07-06 10:03:28,drb_ra,url,http://98.142.247.5:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1941800154366980448 2025-07-06 10:03:32,drb_ra,url,http://3.217.56.182:443,#C2 #Interactsh,https://x.com/drb_ra/status/1941800171097997797 2025-07-06 10:03:35,drb_ra,url,http://3.217.56.182:80,#C2 #Interactsh,https://x.com/drb_ra/status/1941800184305885652 2025-07-06 10:03:38,drb_ra,url,http://3.84.182.7:25,#C2 #Interactsh,https://x.com/drb_ra/status/1941800196955857246 2025-07-06 10:03:42,drb_ra,url,http://101.201.210.189:8888,#C2 #Supershell,https://x.com/drb_ra/status/1941800214236451127 2025-07-06 10:03:42,drb_ra,ip,101.201.210.189,#C2 #Supershell,https://x.com/drb_ra/status/1941800214236451127 2025-07-06 10:03:46,drb_ra,ip,121.237.179.18,#C2 #Supershell,https://x.com/drb_ra/status/1941800230996848644 2025-07-06 10:03:46,drb_ra,url,http://121.237.179.18:8888,#C2 #Supershell,https://x.com/drb_ra/status/1941800230996848644 2025-07-06 10:03:50,drb_ra,ip,45.141.26.64,#Dcrat #C2,https://x.com/drb_ra/status/1941800247727939995 2025-07-06 10:03:50,drb_ra,url,http://45.141.26.64:1160,#Dcrat #C2,https://x.com/drb_ra/status/1941800247727939995 2025-07-06 10:03:54,drb_ra,ip,191.112.10.111,#C2 #Qakbot,https://x.com/drb_ra/status/1941800264186450397 2025-07-06 10:03:54,drb_ra,url,http://191.112.10.111:443,#C2 #Qakbot,https://x.com/drb_ra/status/1941800264186450397 2025-07-06 10:03:57,drb_ra,url,http://47.122.95.37:443,#C2 #Havoc,https://x.com/drb_ra/status/1941800276865765678 2025-07-06 10:03:57,drb_ra,ip,47.122.95.37,#C2 #Havoc,https://x.com/drb_ra/status/1941800276865765678 2025-07-06 10:04:01,drb_ra,url,http://74.48.192.2:443,#C2 #Deimos,https://x.com/drb_ra/status/1941800293886226752 2025-07-06 10:04:01,drb_ra,ip,74.48.192.2,#C2 #Deimos,https://x.com/drb_ra/status/1941800293886226752 2025-07-06 10:04:04,drb_ra,ip,65.153.151.40,#C2 #Deimos,https://x.com/drb_ra/status/1941800307186348172 2025-07-06 10:04:04,drb_ra,url,http://65.153.151.40:10011,#C2 #Deimos,https://x.com/drb_ra/status/1941800307186348172 2025-07-06 10:04:08,drb_ra,url,http://182.30.74.101:443,#C2 #Deimos,https://x.com/drb_ra/status/1941800324387213478 2025-07-06 10:04:08,drb_ra,ip,182.30.74.101,#C2 #Deimos,https://x.com/drb_ra/status/1941800324387213478 2025-07-06 10:04:11,drb_ra,url,http://56.136.40.225:443,#C2 #Deimos,https://x.com/drb_ra/status/1941800337020432869 2025-07-06 10:04:11,drb_ra,ip,56.136.40.225,#C2 #Deimos,https://x.com/drb_ra/status/1941800337020432869 2025-07-06 10:04:15,drb_ra,url,http://101.43.220.177:7443,#C2 #Mythic,https://x.com/drb_ra/status/1941800353923572207 2025-07-06 10:04:15,drb_ra,ip,101.43.220.177,#C2 #Mythic,https://x.com/drb_ra/status/1941800353923572207 2025-07-06 10:04:19,drb_ra,url,http://18.213.88.53:7443,#C2 #Mythic,https://x.com/drb_ra/status/1941800370453307853 2025-07-06 10:04:19,drb_ra,ip,18.213.88.53,#C2 #Mythic,https://x.com/drb_ra/status/1941800370453307853 2025-07-06 10:04:22,drb_ra,ip,34.193.45.197,#C2 #Mythic,https://x.com/drb_ra/status/1941800383048786419 2025-07-06 10:04:22,drb_ra,url,http://34.193.45.197:7443,#C2 #Mythic,https://x.com/drb_ra/status/1941800383048786419 2025-07-06 10:04:27,drb_ra,ip,92.118.170.146,#C2 #Sliver,https://x.com/drb_ra/status/1941800403101741143 2025-07-06 10:04:27,drb_ra,url,http://92.118.170.146:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941800403101741143 2025-07-06 10:04:31,drb_ra,ip,196.191.244.137,#C2 #Sliver,https://x.com/drb_ra/status/1941800419899883804 2025-07-06 10:04:31,drb_ra,url,http://196.191.244.137:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941800419899883804 2025-07-06 10:04:34,drb_ra,ip,135.180.4.247,#C2 #Sliver,https://x.com/drb_ra/status/1941800433216790584 2025-07-06 10:04:34,drb_ra,url,http://135.180.4.247:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941800433216790584 2025-07-06 10:04:38,drb_ra,ip,89.213.184.118,#C2 #Sliver,https://x.com/drb_ra/status/1941800450396656111 2025-07-06 10:04:38,drb_ra,url,http://89.213.184.118:50000,#C2 #Sliver,https://x.com/drb_ra/status/1941800450396656111 2025-07-06 10:53:12,drb_ra,url,http://47.92.193.143:4444,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812672615399577 2025-07-06 10:53:12,drb_ra,ip,47.92.193.143,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812672615399577 2025-07-06 10:53:22,drb_ra,url,http://1.94.239.203:9999,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812712893198768 2025-07-06 10:53:35,drb_ra,url,http://117.24.15.81:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812768694288599 2025-07-06 10:53:35,drb_ra,ip,117.24.15.81,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812768694288599 2025-07-06 10:53:41,drb_ra,url,http://47.113.217.92:9999,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812793260364178 2025-07-06 10:53:57,drb_ra,url,http://8.137.14.204:8888,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812859953922544 2025-07-06 10:54:03,drb_ra,url,http://122.51.218.18:4449,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812885312651354 2025-07-06 10:54:03,drb_ra,ip,122.51.218.18,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812885312651354 2025-07-06 10:54:13,drb_ra,url,https://222.112.82.87/cdn/logo.png/resource/favicon.ico/track/ca.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812924554641811 2025-07-06 10:54:13,drb_ra,url,http://222.112.82.87:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1941812924554641811 2025-07-06 11:11:19,drb_ra,url,http://119.91.203.199:88,#CobaltStrike #C2,https://x.com/drb_ra/status/1941817228279566560 2025-07-06 11:11:19,drb_ra,ip,119.91.203.199,#CobaltStrike #C2,https://x.com/drb_ra/status/1941817228279566560 2025-07-06 11:45:35,JAMESWT_WT,domain,sviluppo.cucina.it,,https://x.com/JAMESWT_WT/status/1941825852813029733 2025-07-06 11:45:35,JAMESWT_WT,url,http://sviluppo.cucina.it/images/,,https://x.com/JAMESWT_WT/status/1941825852813029733 2025-07-06 11:45:35,JAMESWT_WT,domain,meuespacoacabamentos.com.br,,https://x.com/JAMESWT_WT/status/1941825852813029733 2025-07-06 11:45:35,JAMESWT_WT,url,http://meuespacoacabamentos.com.br/unjcght/SSA1.exe,,https://x.com/JAMESWT_WT/status/1941825852813029733 2025-07-06 13:27:56,drb_ra,url,https://31.42.177.173/load/pages/index.php/,#C2,https://x.com/drb_ra/status/1941851608767176881 2025-07-06 13:27:56,drb_ra,url,http://195.66.213.157,#C2,https://x.com/drb_ra/status/1941851608767176881 2025-07-06 13:27:56,drb_ra,ip,195.66.213.157,#C2,https://x.com/drb_ra/status/1941851608767176881 2025-07-06 13:27:56,drb_ra,ip,31.42.177.173,#C2,https://x.com/drb_ra/status/1941851608767176881 2025-07-06 14:00:08,urldna_bot,domain,inte-zim-updatey.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1941859714825900415 2025-07-06 14:00:08,urldna_bot,url,https://inte-zim-updatey.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1941859714825900415 2025-07-06 14:07:57,skocherhan,domain,krakenotc.plus,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.plus,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenotc.app,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.app,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenvip.xyz,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenvip.xyz,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenvip.vip,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenvip.vip,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenvip.online,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenvip.online,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenotc.xyz,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.xyz,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenotc.top,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.top,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenotc.net,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.net,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenotc.mobi,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.mobi,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenotc.cool,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.cool,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,domain,krakenotc.best,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:07:57,skocherhan,url,http://krakenotc.best,#phishing,https://x.com/skocherhan/status/1941861680977269135 2025-07-06 14:09:06,skocherhan,url,http://217.156.50.228:8176,#stealer,https://x.com/skocherhan/status/1941861970279358622 2025-07-06 14:09:06,skocherhan,url,http://45.74.19.20:49259,#stealer,https://x.com/skocherhan/status/1941861970279358622 2025-07-06 14:09:06,skocherhan,ip,217.156.50.228,#stealer,https://x.com/skocherhan/status/1941861970279358622 2025-07-06 14:09:06,skocherhan,ip,45.74.19.20,#stealer,https://x.com/skocherhan/status/1941861970279358622 2025-07-06 14:24:47,skocherhan,domain,opendatahsc-gov-ua.online,#opendir,https://x.com/skocherhan/status/1941865917807292710 2025-07-06 14:24:47,skocherhan,url,http://opendatahsc-gov-ua.online,#opendir,https://x.com/skocherhan/status/1941865917807292710 2025-07-06 14:46:05,CyberGhost13337,domain,security-malware.com,#malware #stealer #Lumma,https://x.com/CyberGhost13337/status/1941871276718531063 2025-07-06 14:46:05,CyberGhost13337,url,https://security-malware.com/index.html,#malware #stealer #Lumma,https://x.com/CyberGhost13337/status/1941871276718531063 2025-07-06 14:46:05,CyberGhost13337,domain,aysuinsaat.com,#malware #stealer #Lumma,https://x.com/CyberGhost13337/status/1941871276718531063 2025-07-06 14:46:05,CyberGhost13337,url,http://www.aysuinsaat.com,#malware #stealer #Lumma,https://x.com/CyberGhost13337/status/1941871276718531063 2025-07-06 15:57:54,ShadowOpCode,url,https://github.com/0lopz,#malware,https://x.com/ShadowOpCode/status/1941889353044680923 2025-07-06 16:50:24,skocherhan,domain,krakenvip.me,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenvip.me,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,domain,krakenvip.co,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenvip.co,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,domain,krakenvip.cc,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenvip.cc,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,domain,krakenre.com,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenre.com,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,domain,krakenotc.co,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenotc.co,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,domain,krakenotc.vip,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenotc.vip,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,domain,krakenotc.me,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenotc.me,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,domain,krakenotc.cc,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 16:50:24,skocherhan,url,http://krakenotc.cc,#phishing,https://x.com/skocherhan/status/1941902563906900120 2025-07-06 17:22:18,ReBensk,md5,f634f683a7ea2e28db995f7e52627bef,#malware #Android #Trojan,https://x.com/ReBensk/status/1941910592878682323 2025-07-06 17:44:39,pamircil,url,http://aysuinsaat.com,#LummaStealer,https://x.com/pamircil/status/1941916213468356717 2025-07-06 18:00:10,urldna_bot,domain,bedecked-garrulous-quality.glitch.me,#phishing #scam,https://x.com/urldna_bot/status/1941920120030326969 2025-07-06 18:00:10,urldna_bot,url,https://bedecked-garrulous-quality.glitch.me,#phishing #scam,https://x.com/urldna_bot/status/1941920120030326969 2025-07-06 18:01:22,SarlackLab,url,http://77.172.131.127:19132,#Njrat #C2,https://x.com/SarlackLab/status/1941920422389277124 2025-07-06 18:01:22,SarlackLab,ip,77.172.131.127,#Njrat #C2,https://x.com/SarlackLab/status/1941920422389277124 2025-07-06 18:39:11,SarlackLab,domain,m365.acenm.com,,https://x.com/SarlackLab/status/1941929938568859671 2025-07-06 18:39:11,SarlackLab,url,http://m365.acenm.com,,https://x.com/SarlackLab/status/1941929938568859671 2025-07-06 18:39:11,SarlackLab,domain,exifit.eu.org,,https://x.com/SarlackLab/status/1941929938568859671 2025-07-06 18:39:11,SarlackLab,url,http://exifit.eu.org,,https://x.com/SarlackLab/status/1941929938568859671 2025-07-06 18:39:11,SarlackLab,domain,rubyhall.in.net,,https://x.com/SarlackLab/status/1941929938568859671 2025-07-06 18:39:11,SarlackLab,url,http://rubyhall.in.net,,https://x.com/SarlackLab/status/1941929938568859671 2025-07-06 18:45:14,drb_ra,url,http://139.9.221.114:31337,#C2 #Sliver,https://x.com/drb_ra/status/1941931460476232117 2025-07-06 18:45:14,drb_ra,ip,139.9.221.114,#C2 #Sliver,https://x.com/drb_ra/status/1941931460476232117 2025-07-06 22:00:07,urldna_bot,domain,bancolombia.store,#phishing #scam,https://x.com/urldna_bot/status/1941980505253040331 2025-07-06 22:00:07,urldna_bot,url,http://bancolombia.store,#phishing #scam,https://x.com/urldna_bot/status/1941980505253040331 2025-07-06 22:02:50,fbgwls245,domain,wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/fbgwls245/status/1941981190157639685 2025-07-06 22:02:50,fbgwls245,url,http://wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/fbgwls245/status/1941981190157639685 2025-07-06 22:07:22,catnap707,domain,xemone.icu,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:07:22,catnap707,url,http://xemone.icu/Signin.jp/#/,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:07:22,catnap707,url,http://104.21.16.1,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:07:22,catnap707,url,http://104.21.32.1,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:07:22,catnap707,url,http://104.21.48.1,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:07:22,catnap707,url,http://104.21.64.1,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:07:22,catnap707,url,http://104.21.80.1,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:07:22,catnap707,url,http://104.21.96.1,#phishing,https://x.com/catnap707/status/1941982331641937969 2025-07-06 22:30:24,sicehice,url,http://87.121.84.104:7777,,https://x.com/sicehice/status/1941988126819226015 2025-07-06 22:30:24,sicehice,ip,87.121.84.208,,https://x.com/sicehice/status/1941988126819226015 2025-07-06 22:30:24,sicehice,ip,87.121.84.104,,https://x.com/sicehice/status/1941988126819226015 2025-07-06 22:58:10,skocherhan,domain,liceosavoia.edu.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 22:58:10,skocherhan,url,https://liceosavoia.edu.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 22:58:10,skocherhan,domain,liceoartisticopistoia.edu.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 22:58:10,skocherhan,url,https://liceoartisticopistoia.edu.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 22:58:10,skocherhan,domain,lucianolastrucci.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 22:58:10,skocherhan,url,https://lucianolastrucci.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 22:58:10,skocherhan,domain,fermentolibero.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 22:58:10,skocherhan,url,http://fermentolibero.it,,https://x.com/skocherhan/status/1941995116001943861 2025-07-06 23:01:03,masaomi346,url,https://xemone.icu/Signin.jp/,#phishing,https://x.com/masaomi346/status/1941995841126011239 2025-07-07 00:31:23,catnap707,domain,sazxyus.asia,#phishing,https://x.com/catnap707/status/1942018571263193185 2025-07-07 00:31:23,catnap707,url,http://sazxyus.asia/verify,#phishing,https://x.com/catnap707/status/1942018571263193185 2025-07-07 00:31:23,catnap707,url,http://172.67.208.165,#phishing,https://x.com/catnap707/status/1942018571263193185 2025-07-07 02:00:10,urldna_bot,domain,4950-hsr-it.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942040917327679801 2025-07-07 02:00:10,urldna_bot,url,https://4950-hsr-it.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942040917327679801 2025-07-07 02:09:37,skocherhan,url,http://103.243.26.213:8000,#opendir,https://x.com/skocherhan/status/1942043295292481785 2025-07-07 02:09:37,skocherhan,ip,103.243.26.213,#opendir,https://x.com/skocherhan/status/1942043295292481785 2025-07-07 02:18:10,skocherhan,url,http://178.62.48.123,#Havoc #opendir,https://x.com/skocherhan/status/1942045447515668972 2025-07-07 02:18:10,skocherhan,ip,178.62.48.123,#Havoc #opendir,https://x.com/skocherhan/status/1942045447515668972 2025-07-07 02:27:21,skocherhan,ip,77.231.83.40,#opendir #CobaltStrike,https://x.com/skocherhan/status/1942047759260946712 2025-07-07 02:27:21,skocherhan,ip,188.84.239.125,#opendir #CobaltStrike,https://x.com/skocherhan/status/1942047759260946712 2025-07-07 02:27:21,skocherhan,url,http://77.231.83.40,#opendir #CobaltStrike,https://x.com/skocherhan/status/1942047759260946712 2025-07-07 02:27:21,skocherhan,url,http://188.84.239.125:81,#opendir #CobaltStrike,https://x.com/skocherhan/status/1942047759260946712 2025-07-07 02:35:52,skocherhan,ip,202.107.235.202,#opendir,https://x.com/skocherhan/status/1942049900335640592 2025-07-07 02:35:52,skocherhan,url,http://202.107.235.202:8008/iis/,#opendir,https://x.com/skocherhan/status/1942049900335640592 2025-07-07 02:43:49,skocherhan,url,http://89.197.154.115,#opendir #CobaltStrike,https://x.com/skocherhan/status/1942051899244429381 2025-07-07 02:43:49,skocherhan,ip,89.197.154.115,#opendir #CobaltStrike,https://x.com/skocherhan/status/1942051899244429381 2025-07-07 02:51:09,skocherhan,url,http://81.19.137.134:8080,#opendir,https://x.com/skocherhan/status/1942053746344632411 2025-07-07 02:51:09,skocherhan,ip,81.19.137.134,#opendir,https://x.com/skocherhan/status/1942053746344632411 2025-07-07 03:10:48,skocherhan,url,http://52.55.68.97,#opendir,https://x.com/skocherhan/status/1942058690774778005 2025-07-07 03:10:48,skocherhan,ip,52.55.68.97,#opendir,https://x.com/skocherhan/status/1942058690774778005 2025-07-07 03:15:35,skocherhan,url,http://13.50.225.235,#opendir,https://x.com/skocherhan/status/1942059895110476231 2025-07-07 03:15:35,skocherhan,ip,13.50.225.235,#opendir,https://x.com/skocherhan/status/1942059895110476231 2025-07-07 03:38:37,skocherhan,url,http://github.com/Noxytheguy,,https://x.com/skocherhan/status/1942065692921979324 2025-07-07 05:21:03,catnap707,url,http://104.21.32.1,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,url,http://104.21.16.1,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,url,http://104.21.112.1,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,url,http://phoneverification.sbiverification.asia/jp/#/,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,domain,phoneverification.sbiverification.asia,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,url,http://linktoohdrs.asia,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,domain,linktoohdrs.asia,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,url,http://vyshier.chedmsjsenijp.asia/nbsbica?token=~,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:03,catnap707,domain,vyshier.chedmsjsenijp.asia,#phishing,https://x.com/catnap707/status/1942091471353770034 2025-07-07 05:21:29,skocherhan,ip,45.204.215.42,,https://x.com/skocherhan/status/1942091578106855589 2025-07-07 05:21:29,skocherhan,url,http://45.204.215.42,,https://x.com/skocherhan/status/1942091578106855589 2025-07-07 05:21:29,skocherhan,domain,xiaoshihou13.top,,https://x.com/skocherhan/status/1942091578106855589 2025-07-07 05:21:29,skocherhan,url,http://xiaoshihou13.top,,https://x.com/skocherhan/status/1942091578106855589 2025-07-07 05:31:54,suyog41,md5,ecf26567da5d3738224518153ba7e85e,,https://x.com/suyog41/status/1942094200419627255 2025-07-07 05:38:40,skocherhan,domain,security-malware.com,#malware #stealer #Lumma,https://x.com/skocherhan/status/1942095904065851804 2025-07-07 05:38:40,skocherhan,url,https://security-malware.com/index.html,#malware #stealer #Lumma,https://x.com/skocherhan/status/1942095904065851804 2025-07-07 05:38:40,skocherhan,domain,aysuinsaat.com,#malware #stealer #Lumma,https://x.com/skocherhan/status/1942095904065851804 2025-07-07 05:38:40,skocherhan,url,http://www.aysuinsaat.com,#malware #stealer #Lumma,https://x.com/skocherhan/status/1942095904065851804 2025-07-07 06:00:11,urldna_bot,url,https://sid-check-aktivierenupdates.firebaseapp.com,#scam #phishing,https://x.com/urldna_bot/status/1942101317314371586 2025-07-07 06:00:11,urldna_bot,domain,sid-check-aktivierenupdates.firebaseapp.com,#scam #phishing,https://x.com/urldna_bot/status/1942101317314371586 2025-07-07 06:35:54,yvesago,domain,secure.mailhippo.com,#phishing,https://x.com/yvesago/status/1942110308220166234 2025-07-07 06:35:54,yvesago,url,https://secure.mailhippo.com/portal/FillPubWebForm.aspx?token=hmH0Mczv8iwQsQhKRbFBt55vKzuuXSan0RCCwLnOF%2BA%3D,#phishing,https://x.com/yvesago/status/1942110308220166234 2025-07-07 06:45:15,jh__1995,url,https://posta.vercel.app,#phishing,https://x.com/jh__1995/status/1942112661832942052 2025-07-07 06:45:15,jh__1995,domain,posta.vercel.app,#phishing,https://x.com/jh__1995/status/1942112661832942052 2025-07-07 07:00:42,yvesago,domain,vanlokosa.za.com,#phishing,https://x.com/yvesago/status/1942116549038366742 2025-07-07 07:00:42,yvesago,url,https://vanlokosa.za.com/AC-UNI/,#phishing,https://x.com/yvesago/status/1942116549038366742 2025-07-07 07:00:42,yvesago,ip,46.101.89.163,#phishing,https://x.com/yvesago/status/1942116549038366742 2025-07-07 07:33:52,harugasumi,domain,attachments.zip,,https://x.com/harugasumi/status/1942124896559255839 2025-07-07 07:33:52,harugasumi,url,http://attachments.zip,,https://x.com/harugasumi/status/1942124896559255839 2025-07-07 08:35:31,karol_paciorek,ip,86.106.85.43,#ransomware,https://x.com/karol_paciorek/status/1942140407481000093 2025-07-07 08:46:42,Sh4dow3x3,domain,aruba-fattura24.com,#phishing,https://x.com/Sh4dow3x3/status/1942143225021575175 2025-07-07 08:46:42,Sh4dow3x3,url,http://aruba-fattura24.com,#phishing,https://x.com/Sh4dow3x3/status/1942143225021575175 2025-07-07 09:42:10,Metemcyber,url,https://mastercard-perles.ezqpw.cn/features-benefits/,#phishing,https://x.com/Metemcyber/status/1942157183455789387 2025-07-07 09:42:10,Metemcyber,domain,mastercard-perles.ezqpw.cn,#phishing,https://x.com/Metemcyber/status/1942157183455789387 2025-07-07 09:42:10,Metemcyber,url,http://104.21.38.156,#phishing,https://x.com/Metemcyber/status/1942157183455789387 2025-07-07 09:42:10,Metemcyber,url,http://172.67.168.39,#phishing,https://x.com/Metemcyber/status/1942157183455789387 2025-07-07 09:46:36,masaomi346,domain,h8.oukcaeaonline.com,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 09:46:36,masaomi346,url,https://h8.oukcaeaonline.com/plalajp/Sites/index.html,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 09:46:36,masaomi346,domain,h10.ol-up-ism.com,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 09:46:36,masaomi346,url,https://h10.ol-up-ism.com/plx/Sites/index.html,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 09:46:36,masaomi346,domain,depositoelectrico.com,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 09:46:36,masaomi346,url,https://depositoelectrico.com/supportmail.plala/Sites/index.html,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 09:46:36,masaomi346,domain,nakelgreen.com.ng,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 09:46:36,masaomi346,url,https://nakelgreen.com.ng/or/Sites/index.html,#phishing,https://x.com/masaomi346/status/1942158296326279655 2025-07-07 10:00:09,urldna_bot,url,https://learn--sso--kucoin-t-cdn.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1942161706806841481 2025-07-07 10:00:09,urldna_bot,domain,learn--sso--kucoin-t-cdn.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1942161706806841481 2025-07-07 10:24:10,Metemcyber,domain,74920729x.cn,#phishing,https://x.com/Metemcyber/status/1942167752346919413 2025-07-07 10:24:10,Metemcyber,domain,5md1fy.cn,#phishing,https://x.com/Metemcyber/status/1942167752346919413 2025-07-07 10:24:10,Metemcyber,url,https://5md1fy.cn,#phishing,https://x.com/Metemcyber/status/1942167752346919413 2025-07-07 10:24:10,Metemcyber,url,https://aak77.cn,#phishing,https://x.com/Metemcyber/status/1942167752346919413 2025-07-07 10:24:10,Metemcyber,domain,aak77.cn,#phishing,https://x.com/Metemcyber/status/1942167752346919413 2025-07-07 10:24:10,Metemcyber,url,https://74920729x.cn,#phishing,https://x.com/Metemcyber/status/1942167752346919413 2025-07-07 10:24:56,Metemcyber,domain,aam28.cn,#phishing,https://x.com/Metemcyber/status/1942167944102027761 2025-07-07 10:24:56,Metemcyber,url,https://aam28.cn,#phishing,https://x.com/Metemcyber/status/1942167944102027761 2025-07-07 10:24:56,Metemcyber,domain,amex-choice.accxdy.cn,#phishing,https://x.com/Metemcyber/status/1942167944102027761 2025-07-07 10:24:56,Metemcyber,url,https://amex-choice.accxdy.cn,#phishing,https://x.com/Metemcyber/status/1942167944102027761 2025-07-07 10:24:56,Metemcyber,domain,amex-design.gbnxez.cn,#phishing,https://x.com/Metemcyber/status/1942167944102027761 2025-07-07 10:24:56,Metemcyber,url,https://amex-design.gbnxez.cn,#phishing,https://x.com/Metemcyber/status/1942167944102027761 2025-07-07 10:25:29,Metemcyber,url,https://amex-jectast.jiippm.cn,#phishing,https://x.com/Metemcyber/status/1942168083055124513 2025-07-07 10:25:29,Metemcyber,domain,amex-palule.hlorsl.cn,#phishing,https://x.com/Metemcyber/status/1942168083055124513 2025-07-07 10:25:29,Metemcyber,domain,amex-jectast.jiippm.cn,#phishing,https://x.com/Metemcyber/status/1942168083055124513 2025-07-07 10:25:29,Metemcyber,domain,amex-quasiaire.bytkmn.cn,#phishing,https://x.com/Metemcyber/status/1942168083055124513 2025-07-07 10:25:29,Metemcyber,url,https://amex-quasiaire.bytkmn.cn,#phishing,https://x.com/Metemcyber/status/1942168083055124513 2025-07-07 10:25:29,Metemcyber,url,https://amex-palule.hlorsl.cn,#phishing,https://x.com/Metemcyber/status/1942168083055124513 2025-07-07 10:26:04,Metemcyber,url,https://dj01fr.cn,#phishing,https://x.com/Metemcyber/status/1942168230665273664 2025-07-07 10:26:04,Metemcyber,domain,amex-stultty.uouxjn.cn,#phishing,https://x.com/Metemcyber/status/1942168230665273664 2025-07-07 10:26:04,Metemcyber,url,https://amex-stultty.uouxjn.cn,#phishing,https://x.com/Metemcyber/status/1942168230665273664 2025-07-07 10:26:04,Metemcyber,domain,blruab.cn,#phishing,https://x.com/Metemcyber/status/1942168230665273664 2025-07-07 10:26:04,Metemcyber,url,https://blruab.cn,#phishing,https://x.com/Metemcyber/status/1942168230665273664 2025-07-07 10:26:04,Metemcyber,domain,dj01fr.cn,#phishing,https://x.com/Metemcyber/status/1942168230665273664 2025-07-07 10:26:39,Metemcyber,domain,fgryf.cn,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:26:39,Metemcyber,url,https://fgtqn.cn,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:26:39,Metemcyber,domain,fgtqn.cn,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:26:39,Metemcyber,url,https://fgryf.cn,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:26:39,Metemcyber,ip,43.153.136.29,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:26:39,Metemcyber,url,https://fgxlr.cn,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:26:39,Metemcyber,url,http://43.153.136.29,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:26:39,Metemcyber,domain,fgxlr.cn,#phishing,https://x.com/Metemcyber/status/1942168375322698178 2025-07-07 10:27:16,Metemcyber,url,https://jmcrxa.cn,#phishing,https://x.com/Metemcyber/status/1942168531908587867 2025-07-07 10:27:16,Metemcyber,url,https://ijqznj.cn,#phishing,https://x.com/Metemcyber/status/1942168531908587867 2025-07-07 10:27:16,Metemcyber,domain,jmcrxa.cn,#phishing,https://x.com/Metemcyber/status/1942168531908587867 2025-07-07 10:27:16,Metemcyber,url,https://fjgycw.cn,#phishing,https://x.com/Metemcyber/status/1942168531908587867 2025-07-07 10:27:16,Metemcyber,domain,fjgycw.cn,#phishing,https://x.com/Metemcyber/status/1942168531908587867 2025-07-07 10:27:16,Metemcyber,domain,ijqznj.cn,#phishing,https://x.com/Metemcyber/status/1942168531908587867 2025-07-07 10:27:48,Metemcyber,url,https://kncnw.cn,#phishing,https://x.com/Metemcyber/status/1942168668097683709 2025-07-07 10:27:48,Metemcyber,domain,kncnw.cn,#phishing,https://x.com/Metemcyber/status/1942168668097683709 2025-07-07 10:27:48,Metemcyber,url,https://jy1122.cn,#phishing,https://x.com/Metemcyber/status/1942168668097683709 2025-07-07 10:27:48,Metemcyber,domain,jy1122.cn,#phishing,https://x.com/Metemcyber/status/1942168668097683709 2025-07-07 10:27:48,Metemcyber,url,https://jxnnl.cn,#phishing,https://x.com/Metemcyber/status/1942168668097683709 2025-07-07 10:27:48,Metemcyber,domain,jxnnl.cn,#phishing,https://x.com/Metemcyber/status/1942168668097683709 2025-07-07 10:28:22,Metemcyber,url,https://mianfei97.cn,#phishing,https://x.com/Metemcyber/status/1942168810997645530 2025-07-07 10:28:22,Metemcyber,domain,mianfei97.cn,#phishing,https://x.com/Metemcyber/status/1942168810997645530 2025-07-07 10:28:22,Metemcyber,url,https://lh996.cn,#phishing,https://x.com/Metemcyber/status/1942168810997645530 2025-07-07 10:28:22,Metemcyber,domain,lh996.cn,#phishing,https://x.com/Metemcyber/status/1942168810997645530 2025-07-07 10:28:22,Metemcyber,url,https://ktqjc.cn,#phishing,https://x.com/Metemcyber/status/1942168810997645530 2025-07-07 10:28:22,Metemcyber,domain,ktqjc.cn,#phishing,https://x.com/Metemcyber/status/1942168810997645530 2025-07-07 10:28:58,Metemcyber,url,https://nkfkr.cn,#phishing,https://x.com/Metemcyber/status/1942168959979294803 2025-07-07 10:28:58,Metemcyber,url,https://nkcst.cn,#phishing,https://x.com/Metemcyber/status/1942168959979294803 2025-07-07 10:28:58,Metemcyber,domain,nkfkr.cn,#phishing,https://x.com/Metemcyber/status/1942168959979294803 2025-07-07 10:28:58,Metemcyber,url,https://nkcrc.cn,#phishing,https://x.com/Metemcyber/status/1942168959979294803 2025-07-07 10:28:58,Metemcyber,domain,nkcrc.cn,#phishing,https://x.com/Metemcyber/status/1942168959979294803 2025-07-07 10:28:58,Metemcyber,domain,nkcst.cn,#phishing,https://x.com/Metemcyber/status/1942168959979294803 2025-07-07 10:29:35,Metemcyber,url,https://pcc381.cn,#phishing,https://x.com/Metemcyber/status/1942169116477157673 2025-07-07 10:29:35,Metemcyber,domain,pcc381.cn,#phishing,https://x.com/Metemcyber/status/1942169116477157673 2025-07-07 10:29:35,Metemcyber,url,https://nkgwq.cn,#phishing,https://x.com/Metemcyber/status/1942169116477157673 2025-07-07 10:29:35,Metemcyber,domain,nkfyl.cn,#phishing,https://x.com/Metemcyber/status/1942169116477157673 2025-07-07 10:29:35,Metemcyber,url,https://nkfyl.cn,#phishing,https://x.com/Metemcyber/status/1942169116477157673 2025-07-07 10:29:35,Metemcyber,domain,nkgwq.cn,#phishing,https://x.com/Metemcyber/status/1942169116477157673 2025-07-07 10:30:06,Metemcyber,url,https://pcc782.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:06,Metemcyber,url,https://pcc922.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:06,Metemcyber,domain,pcc782.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:06,Metemcyber,domain,pcc922.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:06,Metemcyber,domain,pcc998.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:06,Metemcyber,url,https://pcc997.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:06,Metemcyber,url,https://pcc998.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:06,Metemcyber,domain,pcc997.cn,#phishing,https://x.com/Metemcyber/status/1942169244084605278 2025-07-07 10:30:38,Metemcyber,domain,qpwjs.cn,#phishing,https://x.com/Metemcyber/status/1942169380668010987 2025-07-07 10:30:38,Metemcyber,url,https://qpwjs.cn,#phishing,https://x.com/Metemcyber/status/1942169380668010987 2025-07-07 10:30:38,Metemcyber,domain,rcicye.cn,#phishing,https://x.com/Metemcyber/status/1942169380668010987 2025-07-07 10:30:38,Metemcyber,url,https://rcicye.cn,#phishing,https://x.com/Metemcyber/status/1942169380668010987 2025-07-07 10:30:38,Metemcyber,domain,ukwuol.cn,#phishing,https://x.com/Metemcyber/status/1942169380668010987 2025-07-07 10:30:38,Metemcyber,url,https://ukwuol.cn,#phishing,https://x.com/Metemcyber/status/1942169380668010987 2025-07-07 10:31:03,Metemcyber,domain,xsdhm.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:31:03,Metemcyber,domain,xrzsd.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:31:03,Metemcyber,domain,xsdnx.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:31:03,Metemcyber,url,https://xrzsd.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:31:03,Metemcyber,domain,zdptb.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:31:03,Metemcyber,url,https://zdptb.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:31:03,Metemcyber,url,https://xsdnx.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:31:03,Metemcyber,url,https://xsdhm.cn,#phishing,https://x.com/Metemcyber/status/1942169484309233929 2025-07-07 10:58:24,c9lab_soc,domain,snapchat.video,#scam #phishing,https://x.com/c9lab_soc/status/1942176366893633607 2025-07-07 10:58:24,c9lab_soc,url,http://snapchat.video,#scam #phishing,https://x.com/c9lab_soc/status/1942176366893633607 2025-07-07 10:58:24,c9lab_soc,domain,youtube-bs.xyz,#scam #phishing,https://x.com/c9lab_soc/status/1942176366893633607 2025-07-07 10:58:24,c9lab_soc,url,http://youtube-bs.xyz,#scam #phishing,https://x.com/c9lab_soc/status/1942176366893633607 2025-07-07 11:00:23,SarlackLab,ip,147.185.221.29,#Njrat #C2,https://x.com/SarlackLab/status/1942176866200174730 2025-07-07 11:00:23,SarlackLab,url,http://147.185.221.29:34904,#Njrat #C2,https://x.com/SarlackLab/status/1942176866200174730 2025-07-07 11:00:23,SarlackLab,domain,got-incurred.gl.at.ply.gg,#Njrat #C2,https://x.com/SarlackLab/status/1942176866200174730 2025-07-07 11:00:23,SarlackLab,url,http://got-incurred.gl.at.ply.gg,#Njrat #C2,https://x.com/SarlackLab/status/1942176866200174730 2025-07-07 11:11:35,fbgwls245,domain,wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/fbgwls245/status/1942179686077112395 2025-07-07 11:11:35,fbgwls245,url,http://wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/fbgwls245/status/1942179686077112395 2025-07-07 11:32:14,JAMESWT_WT,url,http://88.218.93.71,#NetSupport #RAT,https://x.com/JAMESWT_WT/status/1942184882358084048 2025-07-07 11:32:14,JAMESWT_WT,ip,88.218.93.71,#NetSupport #RAT,https://x.com/JAMESWT_WT/status/1942184882358084048 2025-07-07 11:32:14,JAMESWT_WT,md5,dabe4273412d4d8ae67e8bc1786b3eac,#NetSupport #RAT,https://x.com/JAMESWT_WT/status/1942184882358084048 2025-07-07 11:32:14,JAMESWT_WT,md5,7215675bdba98bd30c8e89aafba519de,#NetSupport #RAT,https://x.com/JAMESWT_WT/status/1942184882358084048 2025-07-07 11:44:21,setThreatTitle,domain,craxsratbuy.store,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxstore.shop,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxstore.shop,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxsratbuy.store,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxsrat.work,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxsahnesi.xxx,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxs-rat.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxs-rat-seller.xyz,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxs-rat-seller.xyz,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxsahnesi.xxx,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxs-rat.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxsratandroid.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxsratandroid.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxsrat.sbs,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxs-rat-selller.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxs-rat-selller.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxsrat-craxs-rat.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxsrat-craxs-rat.com,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxsrat.org,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,avscraxs.xyz,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://avscraxs.xyz,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxsrat.sbs,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,url,http://craxsrat.work,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 11:44:21,setThreatTitle,domain,craxsrat.org,,https://x.com/setThreatTitle/status/1942187932468589000 2025-07-07 12:00:31,SarlackLab,url,http://176.46.157.64:1912,#C2 #RedLine,https://x.com/SarlackLab/status/1942191997793476899 2025-07-07 12:00:31,SarlackLab,ip,176.46.157.64,#C2 #RedLine,https://x.com/SarlackLab/status/1942191997793476899 2025-07-07 14:00:09,urldna_bot,domain,xxzzeagana.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942222106122391802 2025-07-07 14:00:09,urldna_bot,url,https://xxzzeagana.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942222106122391802 2025-07-07 14:09:00,TIntel2255,domain,citizenverify-gov.in,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:09:00,TIntel2255,url,http://upi-bhim-gov.in,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:09:00,TIntel2255,domain,upi-bhim-gov.in,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:09:00,TIntel2255,url,http://citizenverify-gov.in,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:09:00,TIntel2255,domain,odessa-gov.in.ua,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:09:00,TIntel2255,url,http://odessa-gov.in.ua,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:09:00,TIntel2255,url,http://nominationdrdo.report,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:09:00,TIntel2255,domain,nominationdrdo.report,#phishing,https://x.com/TIntel2255/status/1942224333256131006 2025-07-07 14:45:43,fbgwls245,domain,payoutsgn7cy6uliwevdqspncjpfxpmzgirwl2au65la7rfs5x3qnbqd.onion,#ransomware,https://x.com/fbgwls245/status/1942233575015039059 2025-07-07 14:45:43,fbgwls245,url,http://payoutsgn7cy6uliwevdqspncjpfxpmzgirwl2au65la7rfs5x3qnbqd.onion,#ransomware,https://x.com/fbgwls245/status/1942233575015039059 2025-07-07 15:00:24,harugasumi,url,https://nhbq6w.top/0zADfe,#phishing,https://x.com/harugasumi/status/1942237267554402764 2025-07-07 15:00:24,harugasumi,domain,nhbq6w.top,#phishing,https://x.com/harugasumi/status/1942237267554402764 2025-07-07 15:00:37,SarlackLab,url,http://3.127.138.57:15761,#C2 #Njrat,https://x.com/SarlackLab/status/1942237324680532222 2025-07-07 15:32:42,skocherhan,url,http://185.163.45.61,#NetSupport,https://x.com/skocherhan/status/1942245396828299652 2025-07-07 15:32:42,skocherhan,ip,94.158.244.161,#NetSupport,https://x.com/skocherhan/status/1942245396828299652 2025-07-07 15:32:42,skocherhan,ip,185.163.45.61,#NetSupport,https://x.com/skocherhan/status/1942245396828299652 2025-07-07 15:32:42,skocherhan,url,http://94.158.245.174,#NetSupport,https://x.com/skocherhan/status/1942245396828299652 2025-07-07 15:32:42,skocherhan,url,http://94.158.244.161,#NetSupport,https://x.com/skocherhan/status/1942245396828299652 2025-07-07 15:32:42,skocherhan,ip,94.158.245.174,#NetSupport,https://x.com/skocherhan/status/1942245396828299652 2025-07-07 15:36:16,skocherhan,ip,45.88.104.5,#NetSupport,https://x.com/skocherhan/status/1942246295399252390 2025-07-07 15:36:16,skocherhan,url,http://45.88.104.5,#NetSupport,https://x.com/skocherhan/status/1942246295399252390 2025-07-07 16:00:18,SarlackLab,url,http://27.147.169.101:9999,#NanoCore #C2,https://x.com/SarlackLab/status/1942252343212343700 2025-07-07 16:00:18,SarlackLab,ip,27.147.169.101,#NanoCore #C2,https://x.com/SarlackLab/status/1942252343212343700 2025-07-07 16:38:13,skocherhan,domain,psw-gov-pk.net,#APT,https://x.com/skocherhan/status/1942261885337833492 2025-07-07 16:38:13,skocherhan,url,http://psw-gov-pk.net,#APT,https://x.com/skocherhan/status/1942261885337833492 2025-07-07 18:00:10,urldna_bot,domain,pub-0c1a56b09e0d486882eda1d2f972fe31.r2.dev,#scam #phishing,https://x.com/urldna_bot/status/1942282506897694794 2025-07-07 18:00:10,urldna_bot,url,http://pub-0c1a56b09e0d486882eda1d2f972fe31.r2.dev/index.html,#scam #phishing,https://x.com/urldna_bot/status/1942282506897694794 2025-07-07 18:00:10,urldna_bot,md5,0c1a56b09e0d486882eda1d2f972fe31,#scam #phishing,https://x.com/urldna_bot/status/1942282506897694794 2025-07-07 18:26:36,drb_ra,ip,43.139.59.122,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289161781665856 2025-07-07 18:26:36,drb_ra,url,http://43.139.59.122:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289161781665856 2025-07-07 18:26:36,drb_ra,url,https://111.230.161.5/hrmregister/corpTrial/get_permission,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289161781665856 2025-07-07 18:26:42,drb_ra,url,https://192.168.50.2/cm,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289184145711369 2025-07-07 18:26:42,drb_ra,url,http://85.175.101.203:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289184145711369 2025-07-07 18:26:42,drb_ra,ip,85.175.101.203,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289184145711369 2025-07-07 18:26:47,drb_ra,ip,111.230.161.5,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289205591433535 2025-07-07 18:26:47,drb_ra,url,http://129.204.130.127:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289205591433535 2025-07-07 18:26:47,drb_ra,ip,129.204.130.127,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289205591433535 2025-07-07 18:26:52,drb_ra,url,http://8.152.99.85:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289226201989121 2025-07-07 18:27:22,drb_ra,url,http://13.38.41.124:20001,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289352324747401 2025-07-07 18:27:22,drb_ra,ip,13.38.41.124,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289352324747401 2025-07-07 18:27:27,drb_ra,url,http://51.20.248.15:23642,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289373388542224 2025-07-07 18:27:27,drb_ra,ip,51.20.248.15,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289373388542224 2025-07-07 18:27:32,drb_ra,url,http://13.233.168.184:26160,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289394406416645 2025-07-07 18:27:32,drb_ra,ip,13.233.168.184,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289394406416645 2025-07-07 18:27:37,drb_ra,url,http://16.24.145.72:7207,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289417621721572 2025-07-07 18:27:37,drb_ra,ip,16.24.145.72,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289417621721572 2025-07-07 18:27:43,drb_ra,ip,35.180.203.168,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289439956332545 2025-07-07 18:27:43,drb_ra,url,http://35.180.203.168:18572,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289439956332545 2025-07-07 18:27:48,drb_ra,url,http://40.176.253.172:45207,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289461414428887 2025-07-07 18:27:48,drb_ra,ip,40.176.253.172,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942289461414428887 2025-07-07 18:28:39,drb_ra,ip,52.167.137.175,#Havoc #C2,https://x.com/drb_ra/status/1942289676917772728 2025-07-07 18:28:39,drb_ra,url,http://52.167.137.175:443,#Havoc #C2,https://x.com/drb_ra/status/1942289676917772728 2025-07-07 18:28:45,drb_ra,url,http://5.181.2.21:1000,#Havoc #C2,https://x.com/drb_ra/status/1942289699751747825 2025-07-07 18:28:49,drb_ra,url,http://5.181.2.21:443,#Havoc #C2,https://x.com/drb_ra/status/1942289720156819735 2025-07-07 18:29:09,drb_ra,ip,179.43.186.224,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289803065594080 2025-07-07 18:29:09,drb_ra,url,http://179.43.186.224:5900,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289803065594080 2025-07-07 18:29:15,drb_ra,ip,117.72.102.110,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289825991672146 2025-07-07 18:29:15,drb_ra,url,http://117.72.102.110:8888,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289825991672146 2025-07-07 18:29:20,drb_ra,ip,189.1.226.116,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289847332295071 2025-07-07 18:29:20,drb_ra,url,http://189.1.226.116:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289847332295071 2025-07-07 18:29:25,drb_ra,url,https://182.247.250.209/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289868744229105 2025-07-07 18:29:25,drb_ra,ip,182.247.250.209,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289868744229105 2025-07-07 18:29:30,drb_ra,ip,117.187.245.245,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289892194558062 2025-07-07 18:29:30,drb_ra,url,https://117.187.245.245/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289892194558062 2025-07-07 18:29:35,drb_ra,url,https://119.96.17.222/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289913145119200 2025-07-07 18:29:35,drb_ra,ip,119.96.17.222,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289913145119200 2025-07-07 18:29:41,drb_ra,ip,113.201.158.191,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289936100495500 2025-07-07 18:29:41,drb_ra,url,https://113.201.158.191/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289936100495500 2025-07-07 18:29:46,drb_ra,url,https://www.enlio.com/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289959076913479 2025-07-07 18:29:46,drb_ra,domain,enlio.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289959076913479 2025-07-07 18:29:52,drb_ra,domain,wss.pet,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289981206323322 2025-07-07 18:29:52,drb_ra,url,https://wss.pet/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942289981206323322 2025-07-07 18:29:57,drb_ra,domain,xcxke.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290002274029595 2025-07-07 18:29:57,drb_ra,url,https://www.xcxke.com/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290002274029595 2025-07-07 18:30:02,drb_ra,url,https://3w.cn/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290023623303385 2025-07-07 18:30:02,drb_ra,domain,3w.cn,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290023623303385 2025-07-07 18:30:06,drb_ra,domain,hassbian.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290040828149893 2025-07-07 18:30:06,drb_ra,url,https://hassbian.com/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290040828149893 2025-07-07 18:30:11,drb_ra,domain,333.cc,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290062047101205 2025-07-07 18:30:11,drb_ra,url,https://www.333.cc/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290062047101205 2025-07-07 18:30:11,drb_ra,url,http://175.178.85.21:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290062047101205 2025-07-07 18:30:11,drb_ra,ip,175.178.85.21,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290062047101205 2025-07-07 18:30:16,drb_ra,url,http://47.92.116.191:9090,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290084457505242 2025-07-07 18:30:16,drb_ra,ip,47.92.116.191,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290084457505242 2025-07-07 18:30:40,drb_ra,url,http://54.177.38.62:1194,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290185644826879 2025-07-07 18:30:40,drb_ra,ip,54.177.38.62,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290185644826879 2025-07-07 18:30:45,drb_ra,url,http://54.199.161.171:35183,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290206755020920 2025-07-07 18:30:45,drb_ra,ip,54.199.161.171,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290206755020920 2025-07-07 18:30:50,drb_ra,ip,54.171.100.90,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290224735818133 2025-07-07 18:30:50,drb_ra,url,http://54.171.100.90:8888,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290224735818133 2025-07-07 18:30:54,drb_ra,url,http://15.160.119.2:1244,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290242029117719 2025-07-07 18:30:54,drb_ra,ip,15.160.119.2,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290242029117719 2025-07-07 18:30:58,drb_ra,ip,18.143.94.16,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290259527475350 2025-07-07 18:30:58,drb_ra,url,http://18.143.94.16:6443,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290259527475350 2025-07-07 18:31:03,drb_ra,ip,13.61.141.59,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290278808969573 2025-07-07 18:31:03,drb_ra,url,http://13.61.141.59:44819,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942290278808969573 2025-07-07 18:31:19,drb_ra,ip,216.126.225.3,#Mythic #C2,https://x.com/drb_ra/status/1942290347511451917 2025-07-07 18:31:19,drb_ra,url,http://216.126.225.3:7443,#Mythic #C2,https://x.com/drb_ra/status/1942290347511451917 2025-07-07 18:33:22,drb_ra,ip,48.220.32.191,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290864996323459 2025-07-07 18:33:22,drb_ra,url,http://48.220.32.191:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290864996323459 2025-07-07 18:33:22,drb_ra,url,https://login.ictstudents.help/ictstudents-get,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290864996323459 2025-07-07 18:33:22,drb_ra,domain,login.ictstudents.help,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290864996323459 2025-07-07 18:33:27,drb_ra,url,http://35.78.222.198:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290882922713560 2025-07-07 18:33:27,drb_ra,ip,35.78.222.198,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290882922713560 2025-07-07 18:33:31,drb_ra,domain,ns2.bsetop.top,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290901419577775 2025-07-07 18:33:31,drb_ra,url,https://ns2.bsetop.top/s/82740874126,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290901419577775 2025-07-07 18:33:31,drb_ra,domain,ns3.bsetop.top,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290901419577775 2025-07-07 18:33:31,drb_ra,url,https://ns3.bsetop.top/s/82740874126,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290901419577775 2025-07-07 18:33:31,drb_ra,url,http://47.237.86.35:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290901419577775 2025-07-07 18:33:31,drb_ra,ip,47.237.86.35,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290901419577775 2025-07-07 18:33:35,drb_ra,url,http://5.188.86.168:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1942290918653960222 2025-07-07 18:45:41,drb_ra,url,http://196.189.21.73:443,#Sliver #C2,https://x.com/drb_ra/status/1942293963945185306 2025-07-07 18:45:41,drb_ra,ip,196.189.21.73,#Sliver #C2,https://x.com/drb_ra/status/1942293963945185306 2025-07-07 18:45:46,drb_ra,url,http://47.245.126.17:31337,#Sliver #C2,https://x.com/drb_ra/status/1942293984539259350 2025-07-07 18:45:46,drb_ra,ip,47.245.126.17,#Sliver #C2,https://x.com/drb_ra/status/1942293984539259350 2025-07-07 18:45:51,drb_ra,ip,184.155.70.172,#Sliver #C2,https://x.com/drb_ra/status/1942294004042809359 2025-07-07 18:45:51,drb_ra,url,http://184.155.70.172:31337,#Sliver #C2,https://x.com/drb_ra/status/1942294004042809359 2025-07-07 18:45:56,drb_ra,ip,45.201.216.189,#Sliver #C2,https://x.com/drb_ra/status/1942294025077137486 2025-07-07 18:45:56,drb_ra,url,http://45.201.216.189:65535,#Sliver #C2,https://x.com/drb_ra/status/1942294025077137486 2025-07-07 18:47:59,drb_ra,ip,77.90.153.204,#AsyncRAT #C2,https://x.com/drb_ra/status/1942294543522750646 2025-07-07 18:47:59,drb_ra,url,http://77.90.153.204:8080,#AsyncRAT #C2,https://x.com/drb_ra/status/1942294543522750646 2025-07-07 18:48:05,drb_ra,ip,176.34.65.125,#Interactsh #C2,https://x.com/drb_ra/status/1942294565345714363 2025-07-07 18:48:05,drb_ra,url,http://176.34.65.125:80,#Interactsh #C2,https://x.com/drb_ra/status/1942294565345714363 2025-07-07 18:48:08,drb_ra,url,http://209.97.150.140:80,#Interactsh #C2,https://x.com/drb_ra/status/1942294580306567423 2025-07-07 18:48:08,drb_ra,ip,209.97.150.140,#Interactsh #C2,https://x.com/drb_ra/status/1942294580306567423 2025-07-07 18:48:14,drb_ra,ip,167.172.17.83,#Interactsh #C2,https://x.com/drb_ra/status/1942294603916349841 2025-07-07 18:48:14,drb_ra,url,http://167.172.17.83:587,#Interactsh #C2,https://x.com/drb_ra/status/1942294603916349841 2025-07-07 18:48:19,drb_ra,ip,34.244.52.54,#Interactsh #C2,https://x.com/drb_ra/status/1942294624015425725 2025-07-07 18:48:19,drb_ra,url,http://34.244.52.54:443,#Interactsh #C2,https://x.com/drb_ra/status/1942294624015425725 2025-07-07 18:48:24,drb_ra,ip,156.246.3.189,#Supershell #C2,https://x.com/drb_ra/status/1942294644609442182 2025-07-07 18:48:24,drb_ra,url,http://156.246.3.189:9397,#Supershell #C2,https://x.com/drb_ra/status/1942294644609442182 2025-07-07 18:48:29,drb_ra,url,http://47.121.130.60:8888,#Supershell #C2,https://x.com/drb_ra/status/1942294665962611100 2025-07-07 18:48:29,drb_ra,ip,47.121.130.60,#Supershell #C2,https://x.com/drb_ra/status/1942294665962611100 2025-07-07 18:48:34,drb_ra,ip,83.110.196.162,#Qakbot #C2,https://x.com/drb_ra/status/1942294686804369610 2025-07-07 18:48:34,drb_ra,url,http://83.110.196.162:443,#Qakbot #C2,https://x.com/drb_ra/status/1942294686804369610 2025-07-07 18:48:39,drb_ra,ip,105.96.53.240,#Qakbot #C2,https://x.com/drb_ra/status/1942294708115398970 2025-07-07 18:48:39,drb_ra,url,http://105.96.53.240:32103,#Qakbot #C2,https://x.com/drb_ra/status/1942294708115398970 2025-07-07 18:48:44,drb_ra,ip,176.44.55.45,#Qakbot #C2,https://x.com/drb_ra/status/1942294729195958349 2025-07-07 18:48:44,drb_ra,url,http://176.44.55.45:995,#Qakbot #C2,https://x.com/drb_ra/status/1942294729195958349 2025-07-07 18:48:49,drb_ra,url,http://184.63.156.132:443,#Qakbot #C2,https://x.com/drb_ra/status/1942294750989537698 2025-07-07 18:48:49,drb_ra,ip,184.63.156.132,#Qakbot #C2,https://x.com/drb_ra/status/1942294750989537698 2025-07-07 18:48:54,drb_ra,url,http://106.14.2.243:443,#C2,https://x.com/drb_ra/status/1942294771747230064 2025-07-07 18:48:54,drb_ra,ip,106.14.2.243,#C2,https://x.com/drb_ra/status/1942294771747230064 2025-07-07 18:48:59,drb_ra,ip,34.245.221.100,#C2,https://x.com/drb_ra/status/1942294792638980346 2025-07-07 18:48:59,drb_ra,url,http://34.245.221.100:445,#C2,https://x.com/drb_ra/status/1942294792638980346 2025-07-07 18:49:04,drb_ra,ip,34.245.118.91,#C2,https://x.com/drb_ra/status/1942294813992444226 2025-07-07 18:49:04,drb_ra,url,http://34.245.118.91:445,#C2,https://x.com/drb_ra/status/1942294813992444226 2025-07-07 18:49:09,drb_ra,ip,110.42.229.59,#Havoc #C2,https://x.com/drb_ra/status/1942294835865522370 2025-07-07 18:49:09,drb_ra,url,http://110.42.229.59:7000,#Havoc #C2,https://x.com/drb_ra/status/1942294835865522370 2025-07-07 18:49:14,drb_ra,ip,52.27.77.62,#Deimos #C2,https://x.com/drb_ra/status/1942294856665075987 2025-07-07 18:49:14,drb_ra,url,http://52.27.77.62:443,#Deimos #C2,https://x.com/drb_ra/status/1942294856665075987 2025-07-07 18:49:19,drb_ra,url,http://182.30.50.169:443,#Deimos #C2,https://x.com/drb_ra/status/1942294878207025466 2025-07-07 18:49:19,drb_ra,ip,182.30.50.169,#Deimos #C2,https://x.com/drb_ra/status/1942294878207025466 2025-07-07 18:49:24,drb_ra,url,http://182.30.42.80:443,#Deimos #C2,https://x.com/drb_ra/status/1942294900071882926 2025-07-07 18:49:24,drb_ra,ip,182.30.42.80,#Deimos #C2,https://x.com/drb_ra/status/1942294900071882926 2025-07-07 18:49:30,drb_ra,url,http://16.64.3.63:443,#Deimos #C2,https://x.com/drb_ra/status/1942294923233091613 2025-07-07 18:49:30,drb_ra,ip,16.64.3.63,#Deimos #C2,https://x.com/drb_ra/status/1942294923233091613 2025-07-07 18:49:35,drb_ra,url,http://88.129.147.201:8080,#Deimos #C2,https://x.com/drb_ra/status/1942294945500418411 2025-07-07 18:49:35,drb_ra,ip,88.129.147.201,#Deimos #C2,https://x.com/drb_ra/status/1942294945500418411 2025-07-07 18:49:41,drb_ra,url,http://161.97.76.244:7443,#Mythic #C2,https://x.com/drb_ra/status/1942294967537275073 2025-07-07 18:49:41,drb_ra,ip,161.97.76.244,#Mythic #C2,https://x.com/drb_ra/status/1942294967537275073 2025-07-07 18:49:46,drb_ra,url,http://102.117.173.10:7443,#Mythic #C2,https://x.com/drb_ra/status/1942294988831760697 2025-07-07 18:49:46,drb_ra,ip,102.117.173.10,#Mythic #C2,https://x.com/drb_ra/status/1942294988831760697 2025-07-07 18:49:51,drb_ra,ip,64.227.189.57,#Mythic #C2,https://x.com/drb_ra/status/1942295010872795260 2025-07-07 18:49:51,drb_ra,url,http://64.227.189.57:7443,#Mythic #C2,https://x.com/drb_ra/status/1942295010872795260 2025-07-07 18:49:56,drb_ra,ip,141.11.1.120,#Mythic #C2,https://x.com/drb_ra/status/1942295032020517147 2025-07-07 18:49:56,drb_ra,url,http://141.11.1.120:7443,#Mythic #C2,https://x.com/drb_ra/status/1942295032020517147 2025-07-07 18:51:59,drb_ra,url,http://85.239.52.249:80,#C2,https://x.com/drb_ra/status/1942295548871975145 2025-07-07 18:51:59,drb_ra,ip,85.239.52.249,#C2,https://x.com/drb_ra/status/1942295548871975145 2025-07-07 18:52:05,drb_ra,url,http://83.136.252.138:443,#C2,https://x.com/drb_ra/status/1942295572225945603 2025-07-07 18:52:05,drb_ra,ip,83.136.252.138,#C2,https://x.com/drb_ra/status/1942295572225945603 2025-07-07 18:52:10,drb_ra,ip,124.198.131.29,#Remcos #C2,https://x.com/drb_ra/status/1942295592652165489 2025-07-07 18:52:10,drb_ra,url,http://124.198.131.29:2404,#Remcos #C2,https://x.com/drb_ra/status/1942295592652165489 2025-07-07 18:52:15,drb_ra,url,http://185.25.50.35:443,#Remcos #C2,https://x.com/drb_ra/status/1942295613992837295 2025-07-07 18:52:15,drb_ra,ip,185.25.50.35,#Remcos #C2,https://x.com/drb_ra/status/1942295613992837295 2025-07-07 18:52:20,drb_ra,url,http://193.31.28.49:5946,#Remcos #C2,https://x.com/drb_ra/status/1942295635811508628 2025-07-07 18:52:20,drb_ra,ip,193.31.28.49,#Remcos #C2,https://x.com/drb_ra/status/1942295635811508628 2025-07-07 18:52:25,drb_ra,url,http://176.46.157.34:8808,#Remcos #C2,https://x.com/drb_ra/status/1942295656749514801 2025-07-07 18:52:30,drb_ra,ip,176.46.157.34,#Remcos #C2,https://x.com/drb_ra/status/1942295677775536238 2025-07-07 18:52:30,drb_ra,url,http://176.46.157.34:2404,#Remcos #C2,https://x.com/drb_ra/status/1942295677775536238 2025-07-07 18:52:35,drb_ra,url,http://172.81.61.168:2404,#Remcos #C2,https://x.com/drb_ra/status/1942295701246877912 2025-07-07 18:52:35,drb_ra,ip,172.81.61.168,#Remcos #C2,https://x.com/drb_ra/status/1942295701246877912 2025-07-07 18:52:41,drb_ra,ip,47.239.211.58,#Reverse_SSH #C2,https://x.com/drb_ra/status/1942295722637856772 2025-07-07 18:52:41,drb_ra,url,http://47.239.211.58:44332,#Reverse_SSH #C2,https://x.com/drb_ra/status/1942295722637856772 2025-07-07 18:52:46,drb_ra,url,http://196.120.15.116:443,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942295743659925794 2025-07-07 18:52:46,drb_ra,ip,196.120.15.116,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942295743659925794 2025-07-07 18:52:49,drb_ra,ip,54.65.51.137,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942295758775939220 2025-07-07 18:52:49,drb_ra,url,http://54.65.51.137:2762,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942295758775939220 2025-07-07 18:52:54,drb_ra,ip,18.208.220.64,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942295780947034224 2025-07-07 18:52:54,drb_ra,url,http://18.208.220.64:50580,#NetSupportRAT #C2,https://x.com/drb_ra/status/1942295780947034224 2025-07-07 19:31:51,skocherhan,domain,supportnetworkteam.top,#phishing,https://x.com/skocherhan/status/1942305579944550819 2025-07-07 19:31:51,skocherhan,url,http://customercarescoinnbase.top,#phishing,https://x.com/skocherhan/status/1942305579944550819 2025-07-07 19:31:51,skocherhan,domain,customercarescoinnbase.top,#phishing,https://x.com/skocherhan/status/1942305579944550819 2025-07-07 19:31:51,skocherhan,url,http://help.invoice-coinbase.com,#phishing,https://x.com/skocherhan/status/1942305579944550819 2025-07-07 19:31:51,skocherhan,domain,help.invoice-coinbase.com,#phishing,https://x.com/skocherhan/status/1942305579944550819 2025-07-07 19:31:51,skocherhan,url,http://supportnetworkteam.top,#phishing,https://x.com/skocherhan/status/1942305579944550819 2025-07-07 20:07:40,skocherhan,domain,tersmoles.com,,https://x.com/skocherhan/status/1942314595806503156 2025-07-07 20:07:40,skocherhan,url,https://tersmoles.com/script.ps1';$w=New-Object,,https://x.com/skocherhan/status/1942314595806503156 2025-07-07 20:19:28,banthisguy9349,ip,45.155.69.26,,https://x.com/banthisguy9349/status/1942317565792899139 2025-07-07 20:19:28,banthisguy9349,url,http://45.155.69.26,,https://x.com/banthisguy9349/status/1942317565792899139 2025-07-07 20:28:02,skocherhan,url,http://lishiming05.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,lishiming07.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,lishiming05.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://lishiming07.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://lishiming04.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://47.239.166.247,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,ip,45.192.216.81,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,ip,47.239.166.247,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://45.192.216.81,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,lishiming04.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://lishiming03.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,lishiming03.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://lishiming02.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,lishiming02.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://lishiming01.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,lishiming01.top,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://paohui.xyz,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,paohui.xyz,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,url,http://caikuba.xyz,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:28:02,skocherhan,domain,caikuba.xyz,,https://x.com/skocherhan/status/1942319721627504691 2025-07-07 20:49:34,drb_ra,url,https://193.37.69.44:443,#C2,https://x.com/drb_ra/status/1942325139020079210 2025-07-07 20:49:34,drb_ra,url,http://193.37.69.44:443,#C2,https://x.com/drb_ra/status/1942325139020079210 2025-07-07 20:49:34,drb_ra,ip,193.37.69.44,#C2,https://x.com/drb_ra/status/1942325139020079210 2025-07-07 21:03:01,skocherhan,url,http://aysuinsaat.com,,https://x.com/skocherhan/status/1942328525136044463 2025-07-07 21:03:01,skocherhan,url,http://security-malware.com,,https://x.com/skocherhan/status/1942328525136044463 2025-07-07 21:08:17,skocherhan,url,http://4car.org/aYb.dof,,https://x.com/skocherhan/status/1942329849814667291 2025-07-07 21:08:17,skocherhan,domain,4car.org,,https://x.com/skocherhan/status/1942329849814667291 2025-07-07 21:08:17,skocherhan,url,http://cloufdlare.com-verification.us.org,,https://x.com/skocherhan/status/1942329849814667291 2025-07-07 21:08:17,skocherhan,domain,cloufdlare.com-verification.us.org,,https://x.com/skocherhan/status/1942329849814667291 2025-07-07 21:14:09,skocherhan,domain,hanabeauty.asia,,https://x.com/skocherhan/status/1942331324578062836 2025-07-07 21:14:09,skocherhan,url,http://hanabeauty.asia,,https://x.com/skocherhan/status/1942331324578062836 2025-07-07 21:14:09,skocherhan,domain,alababababa.cloud,,https://x.com/skocherhan/status/1942331324578062836 2025-07-07 21:14:09,skocherhan,url,http://alababababa.cloud,,https://x.com/skocherhan/status/1942331324578062836 2025-07-07 21:16:55,skocherhan,domain,biggreenegg-sale.com,,https://x.com/skocherhan/status/1942332022179217652 2025-07-07 21:16:55,skocherhan,url,http://biggreenegg-sale.com,,https://x.com/skocherhan/status/1942332022179217652 2025-07-07 21:16:55,skocherhan,domain,blggreenegg.shop,,https://x.com/skocherhan/status/1942332022179217652 2025-07-07 21:16:55,skocherhan,url,http://blggreenegg.shop/xGM.dof,,https://x.com/skocherhan/status/1942332022179217652 2025-07-07 21:25:03,skocherhan,ip,217.138.194.181,,https://x.com/skocherhan/status/1942334069615796531 2025-07-07 21:25:03,skocherhan,url,http://217.138.194.181/s.msi,,https://x.com/skocherhan/status/1942334069615796531 2025-07-07 21:25:03,skocherhan,url,http://18track-orders.shop,,https://x.com/skocherhan/status/1942334069615796531 2025-07-07 21:25:03,skocherhan,domain,18track-orders.shop,,https://x.com/skocherhan/status/1942334069615796531 2025-07-07 21:27:48,drb_ra,url,http://1.92.138.71:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1942334760388321622 2025-07-07 21:27:53,drb_ra,url,http://8.137.151.96:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1942334781762519497 2025-07-07 21:27:58,drb_ra,url,https://114.55.29.53/assets/login_guide.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1942334803648602467 2025-07-07 21:27:58,drb_ra,ip,114.55.29.53,#CobaltStrike #C2,https://x.com/drb_ra/status/1942334803648602467 2025-07-07 21:27:58,drb_ra,url,http://114.55.29.53:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1942334803648602467 2025-07-07 21:28:03,drb_ra,domain,wirelesscdn-download.dingtalk.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942334825756778967 2025-07-07 21:28:03,drb_ra,url,https://wirelesscdn-download.dingtalk.com/assets/login_guide.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942334825756778967 2025-07-07 21:28:03,drb_ra,url,http://114.55.29.53:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942334825756778967 2025-07-07 21:29:28,skocherhan,domain,mexc.com--verification.us.com,#phishing,https://x.com/skocherhan/status/1942335179512811633 2025-07-07 21:29:28,skocherhan,url,http://mexc.com--verification.us.com,#phishing,https://x.com/skocherhan/status/1942335179512811633 2025-07-07 21:32:56,skocherhan,domain,bihance.com--verification.org,,https://x.com/skocherhan/status/1942336050816291217 2025-07-07 21:32:56,skocherhan,url,http://bihance.com--verification.org,,https://x.com/skocherhan/status/1942336050816291217 2025-07-07 21:43:07,skocherhan,domain,cloud-flaer.com,,https://x.com/skocherhan/status/1942338617071788411 2025-07-07 21:43:07,skocherhan,url,http://cloud-flaer.com,,https://x.com/skocherhan/status/1942338617071788411 2025-07-07 21:47:53,catnap707,url,http://172.67.188.220,#phishing,https://x.com/catnap707/status/1942339813342093404 2025-07-07 21:47:53,catnap707,url,http://daiwa.verificationphone.icu/jp/open/#/,#phishing,https://x.com/catnap707/status/1942339813342093404 2025-07-07 21:47:53,catnap707,url,http://daiwa.gazipasaasm.com/verificationdaiwa,#phishing,https://x.com/catnap707/status/1942339813342093404 2025-07-07 21:47:53,catnap707,url,http://ndjseuss.bond,#phishing,https://x.com/catnap707/status/1942339813342093404 2025-07-07 21:47:53,catnap707,domain,ndjseuss.bond,#phishing,https://x.com/catnap707/status/1942339813342093404 2025-07-07 21:47:53,catnap707,domain,daiwa.gazipasaasm.com,#phishing,https://x.com/catnap707/status/1942339813342093404 2025-07-07 21:47:53,catnap707,domain,daiwa.verificationphone.icu,#phishing,https://x.com/catnap707/status/1942339813342093404 2025-07-07 21:50:31,catnap707,domain,dhl-vitrkin.ycvlnj.cn,#phishing,https://x.com/catnap707/status/1942340475945681287 2025-07-07 21:50:31,catnap707,url,http://dhl-vitrkin.ycvlnj.cn/portal_login_exp/getQuoteTab/,#phishing,https://x.com/catnap707/status/1942340475945681287 2025-07-07 21:50:31,catnap707,url,http://172.67.162.70,#phishing,https://x.com/catnap707/status/1942340475945681287 2025-07-07 21:51:50,skocherhan,domain,birdrankbox.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:51:50,skocherhan,url,http://birdrankbox.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:51:50,skocherhan,url,http://reachbirdrank.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:51:50,skocherhan,domain,topbirdrank.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:51:50,skocherhan,url,http://outsourcebridge.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:51:50,skocherhan,domain,outsourcebridge.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:51:50,skocherhan,domain,reachbirdrank.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:51:50,skocherhan,url,http://topbirdrank.com,,https://x.com/skocherhan/status/1942340810546073705 2025-07-07 21:55:17,catnap707,domain,yodobashi-gratible.ehjbla.cn,#phishing,https://x.com/catnap707/status/1942341679379554460 2025-07-07 21:55:17,catnap707,url,http://yodobashi-gratible.ehjbla.cn/login_index/,#phishing,https://x.com/catnap707/status/1942341679379554460 2025-07-07 21:57:55,catnap707,domain,icloud-nausist.thenxt.cn,#phishing,https://x.com/catnap707/status/1942342340217376892 2025-07-07 21:57:55,catnap707,url,http://icloud-nausist.thenxt.cn/gvIY2S/,#phishing,https://x.com/catnap707/status/1942342340217376892 2025-07-07 21:57:55,catnap707,url,http://104.21.48.1,#phishing,https://x.com/catnap707/status/1942342340217376892 2025-07-07 21:57:55,catnap707,url,http://104.21.64.1,#phishing,https://x.com/catnap707/status/1942342340217376892 2025-07-07 21:57:55,catnap707,url,http://104.21.80.1,#phishing,https://x.com/catnap707/status/1942342340217376892 2025-07-07 21:57:55,catnap707,url,http://104.21.96.1,#phishing,https://x.com/catnap707/status/1942342340217376892 2025-07-07 21:59:14,skocherhan,domain,balbharatischool.in,,https://x.com/skocherhan/status/1942342670770171933 2025-07-07 21:59:14,skocherhan,url,http://balbharatischool.in,,https://x.com/skocherhan/status/1942342670770171933 2025-07-07 22:00:10,urldna_bot,domain,bitvavo888.com,#phishing #scam,https://x.com/urldna_bot/status/1942342906246783043 2025-07-07 22:00:10,urldna_bot,url,https://bitvavo888.com/Trade/index/Lang/it-it,#phishing #scam,https://x.com/urldna_bot/status/1942342906246783043 2025-07-07 22:04:54,skocherhan,domain,cloude-fla.com,,https://x.com/skocherhan/status/1942344098821615698 2025-07-07 22:04:54,skocherhan,url,http://cloude-fla.com,,https://x.com/skocherhan/status/1942344098821615698 2025-07-07 22:13:52,skocherhan,domain,biggreenegg-captcha.com,,https://x.com/skocherhan/status/1942346353243230462 2025-07-07 22:13:52,skocherhan,url,http://biggreenegg-captcha.com,,https://x.com/skocherhan/status/1942346353243230462 2025-07-07 22:34:49,skocherhan,domain,pub-992aa27fc7f7497ebe2f613a4855cdb4.r2.dev,,https://x.com/skocherhan/status/1942351627534454950 2025-07-07 22:34:49,skocherhan,url,http://pub-992aa27fc7f7497ebe2f613a4855cdb4.r2.dev/connect/cloudflare.html,,https://x.com/skocherhan/status/1942351627534454950 2025-07-07 22:34:49,skocherhan,domain,quickrack.sbs,,https://x.com/skocherhan/status/1942351627534454950 2025-07-07 22:34:49,skocherhan,url,http://quickrack.sbs/4tgfd.txt,,https://x.com/skocherhan/status/1942351627534454950 2025-07-07 22:34:49,skocherhan,md5,992aa27fc7f7497ebe2f613a4855cdb4,,https://x.com/skocherhan/status/1942351627534454950 2025-07-07 22:44:06,skocherhan,domain,car4u.ca,,https://x.com/skocherhan/status/1942353962293764163 2025-07-07 22:44:06,skocherhan,url,http://car4u.ca,,https://x.com/skocherhan/status/1942353962293764163 2025-07-07 22:51:32,skocherhan,domain,brasil.digitologica.com,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:51:32,skocherhan,url,http://brasil.digitologica.com,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:51:32,skocherhan,domain,cloudflare.digitologica.com,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:51:32,skocherhan,url,http://cloudflare.digitologica.com,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:51:32,skocherhan,domain,clo.digitologica.com,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:51:32,skocherhan,url,http://clo.digitologica.com,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:51:32,skocherhan,url,http://146.103.104.108/port.txt,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:51:32,skocherhan,ip,146.103.104.108,,https://x.com/skocherhan/status/1942355833699880968 2025-07-07 22:58:35,drb_ra,url,http://43.133.64.117:7501,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357606330425575 2025-07-07 22:58:35,drb_ra,ip,43.133.64.117,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357606330425575 2025-07-07 22:58:40,drb_ra,ip,118.112.10.110,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357627800862754 2025-07-07 22:58:42,skocherhan,domain,uploadfile.ru,,https://x.com/skocherhan/status/1942357635514151084 2025-07-07 22:58:42,skocherhan,url,http://uploadfile.ru,,https://x.com/skocherhan/status/1942357635514151084 2025-07-07 22:58:45,drb_ra,ip,61.160.192.88,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357648159952914 2025-07-07 22:58:50,drb_ra,ip,171.43.169.243,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357669005656449 2025-07-07 22:58:55,drb_ra,url,http://47.117.143.185:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357691046711791 2025-07-07 22:58:55,drb_ra,ip,47.117.143.185,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357691046711791 2025-07-07 22:58:55,drb_ra,ip,180.163.146.90,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357691046711791 2025-07-07 22:59:00,drb_ra,url,https://106.42.215.53/cloud-site/header-and-footer/shopping-cart.png,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357712869929401 2025-07-07 22:59:00,drb_ra,ip,106.42.215.53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357712869929401 2025-07-07 22:59:06,drb_ra,url,https://61.241.13.237/cloud-site/header-and-footer/shopping-cart.png,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357735338836291 2025-07-07 22:59:06,drb_ra,ip,61.241.13.237,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357735338836291 2025-07-07 22:59:11,drb_ra,url,https://36.189.205.244/cloud-site/header-and-footer/shopping-cart.png,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357757367407086 2025-07-07 22:59:11,drb_ra,url,http://101.37.175.15:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357757367407086 2025-07-07 22:59:11,drb_ra,ip,101.37.175.15,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357757367407086 2025-07-07 22:59:11,drb_ra,ip,36.189.205.244,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357757367407086 2025-07-07 22:59:16,drb_ra,url,http://119.8.127.123:59981,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357779521626133 2025-07-07 22:59:16,drb_ra,ip,119.8.127.123,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357779521626133 2025-07-07 22:59:21,drb_ra,url,http://143.110.175.226:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357801180725738 2025-07-07 22:59:21,drb_ra,ip,143.110.175.226,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357801180725738 2025-07-07 22:59:27,drb_ra,domain,apiprod.regpad.net,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357823394046301 2025-07-07 22:59:27,drb_ra,url,https://apiprod.regpad.net/checkouts/internal/preloads.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357823394046301 2025-07-07 22:59:27,drb_ra,domain,personal.regpad.net,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357823394046301 2025-07-07 22:59:27,drb_ra,url,https://personal.regpad.net/checkouts/internal/preloads.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357823394046301 2025-07-07 22:59:27,drb_ra,url,http://196.251.87.191:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357823394046301 2025-07-07 22:59:27,drb_ra,ip,196.251.87.191,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942357823394046301 2025-07-08 00:14:54,skocherhan,domain,kitmans.net,#NetSupport,https://x.com/skocherhan/status/1942376813067387018 2025-07-08 00:14:54,skocherhan,url,http://kitmans.net,#NetSupport,https://x.com/skocherhan/status/1942376813067387018 2025-07-08 00:14:54,skocherhan,url,http://5.9.58.91,#NetSupport,https://x.com/skocherhan/status/1942376813067387018 2025-07-08 00:14:54,skocherhan,url,http://147.45.218.43,#NetSupport,https://x.com/skocherhan/status/1942376813067387018 2025-07-08 00:14:54,skocherhan,ip,147.45.218.43,#NetSupport,https://x.com/skocherhan/status/1942376813067387018 2025-07-08 00:44:53,skocherhan,url,http://github.com/lordx1555,#malware,https://x.com/skocherhan/status/1942384357462925629 2025-07-08 00:56:19,skocherhan,url,http://95.179.130.254,#NetSupport,https://x.com/skocherhan/status/1942387234482647139 2025-07-08 00:56:19,skocherhan,ip,95.179.130.254,#NetSupport,https://x.com/skocherhan/status/1942387234482647139 2025-07-08 02:00:07,urldna_bot,domain,att7.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1942403292732023032 2025-07-08 02:00:07,urldna_bot,url,https://att7.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1942403292732023032 2025-07-08 02:08:42,skocherhan,url,http://91.92.46.58,#Lumma,https://x.com/skocherhan/status/1942405452244910237 2025-07-08 02:08:42,skocherhan,ip,91.92.46.58,#Lumma,https://x.com/skocherhan/status/1942405452244910237 2025-07-08 02:46:21,skocherhan,ip,148.66.11.10,,https://x.com/skocherhan/status/1942414925764165899 2025-07-08 02:46:21,skocherhan,url,http://148.66.11.10:5555,,https://x.com/skocherhan/status/1942414925764165899 2025-07-08 02:46:21,skocherhan,url,http://wss.roykdw53.top,,https://x.com/skocherhan/status/1942414925764165899 2025-07-08 02:46:21,skocherhan,domain,wss.roykdw53.top,,https://x.com/skocherhan/status/1942414925764165899 2025-07-08 02:58:25,skocherhan,ip,45.204.199.40,,https://x.com/skocherhan/status/1942417965313327350 2025-07-08 02:58:25,skocherhan,url,http://45.204.199.40,,https://x.com/skocherhan/status/1942417965313327350 2025-07-08 03:12:30,skocherhan,url,http://156.251.30.116,,https://x.com/skocherhan/status/1942421506165813271 2025-07-08 03:12:30,skocherhan,ip,156.251.30.116,,https://x.com/skocherhan/status/1942421506165813271 2025-07-08 03:26:11,skocherhan,domain,whhaatsapp.com,#phishing,https://x.com/skocherhan/status/1942424950314254809 2025-07-08 03:26:11,skocherhan,url,http://whhaatsapp.com,#phishing,https://x.com/skocherhan/status/1942424950314254809 2025-07-08 03:27:24,skocherhan,domain,whatsappdown.net,#phishing,https://x.com/skocherhan/status/1942425256989208902 2025-07-08 03:27:24,skocherhan,url,http://whatsappdown.net,#phishing,https://x.com/skocherhan/status/1942425256989208902 2025-07-08 04:11:11,harugasumi,domain,drient-je01-04.com,#phishing,https://x.com/harugasumi/status/1942436276780818573 2025-07-08 04:11:11,harugasumi,url,https://drient-je01-04.com,#phishing,https://x.com/harugasumi/status/1942436276780818573 2025-07-08 04:11:11,harugasumi,url,https://drient-je05.com/index/client/ops/ib/3210000,#phishing,https://x.com/harugasumi/status/1942436276780818573 2025-07-08 04:11:11,harugasumi,ip,134.122.129.125,#phishing,https://x.com/harugasumi/status/1942436276780818573 2025-07-08 04:11:11,harugasumi,domain,drient-je05.com,#phishing,https://x.com/harugasumi/status/1942436276780818573 2025-07-08 04:15:19,fbgwls245,domain,d4rkd2fybtclo44hss2dpqpw7gmofboxhruax2az3uejw7puxxbpkvqd.onion,#ransomware,https://x.com/fbgwls245/status/1942437314585608451 2025-07-08 04:15:19,fbgwls245,url,http://d4rkd2fybtclo44hss2dpqpw7gmofboxhruax2az3uejw7puxxbpkvqd.onion,#ransomware,https://x.com/fbgwls245/status/1942437314585608451 2025-07-08 04:27:22,skocherhan,domain,ntg.dy20221.com,#malware,https://x.com/skocherhan/status/1942440346434052420 2025-07-08 04:27:22,skocherhan,md5,e1466010ee7e8b2c52d26887fc81e862,#malware,https://x.com/skocherhan/status/1942440346434052420 2025-07-08 04:27:22,skocherhan,url,http://cloud.telegrem.net,#malware,https://x.com/skocherhan/status/1942440346434052420 2025-07-08 04:27:22,skocherhan,domain,cloud.telegrem.net,#malware,https://x.com/skocherhan/status/1942440346434052420 2025-07-08 04:27:22,skocherhan,url,http://telegramcn-qq.com,#malware,https://x.com/skocherhan/status/1942440346434052420 2025-07-08 04:27:22,skocherhan,domain,telegramcn-qq.com,#malware,https://x.com/skocherhan/status/1942440346434052420 2025-07-08 04:27:22,skocherhan,url,http://ntg.dy20221.com,#malware,https://x.com/skocherhan/status/1942440346434052420 2025-07-08 05:41:23,ReBensk,md5,f7e2cbce8c2571b51202277daac4d750,#Trojan #Android #malware,https://x.com/ReBensk/status/1942458976777691292 2025-07-08 05:43:57,Fact_Finder03,ip,217.144.189.8,,https://x.com/Fact_Finder03/status/1942459621458719086 2025-07-08 06:01:09,SarlackLab,url,http://1.1.1.1:53,#C2 #NanoCore,https://x.com/SarlackLab/status/1942463950521528438 2025-07-08 06:02:02,skocherhan,domain,wezgol.click,#opendir #phishing,https://x.com/skocherhan/status/1942464172412797237 2025-07-08 06:02:02,skocherhan,url,http://wezgol.click/css/webmail.aruba.it/user/login/retrieve.pendingMsg/mailbox/aruba.client.user_id/customer.sign_mailaccess/db/index03.htm,#opendir #phishing,https://x.com/skocherhan/status/1942464172412797237 2025-07-08 06:29:44,skocherhan,url,http://www.mslgdkor.xyz/v65o/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,qooqootv16.store,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,url,http://www.qooqootv16.store/kjay/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,mslgdkor.xyz,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,url,http://www.v153cbo9xcl49.buzz/7y0v/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,md5,9ea71585dfe41eca218cfc3b0f0eb71d,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,v153cbo9xcl49.buzz,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,url,http://www.bolaemas88.online/5k0h/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,bolaemas88.online,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,url,http://www.birminghampsych.online/bcnl/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,birminghampsych.online,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,url,http://www.apelow.top/rfmq/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,apelow.top,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,url,http://www.62258.net/vt8q/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,62258.net,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,url,http://www.12345lopkmj.lol/706x/,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:29:44,skocherhan,domain,12345lopkmj.lol,,https://x.com/skocherhan/status/1942471141425041433 2025-07-08 06:45:41,drb_ra,url,http://1.197.72.42:40000,#C2 #Sliver,https://x.com/drb_ra/status/1942475156485521515 2025-07-08 06:47:44,drb_ra,url,http://194.59.31.128:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1942475672632307758 2025-07-08 06:47:44,drb_ra,ip,194.59.31.128,#AsyncRAT #C2,https://x.com/drb_ra/status/1942475672632307758 2025-07-08 06:47:49,drb_ra,url,http://159.203.31.53:587,#C2 #Interactsh,https://x.com/drb_ra/status/1942475693092225469 2025-07-08 06:47:54,drb_ra,url,http://159.203.31.53:80,#C2 #Interactsh,https://x.com/drb_ra/status/1942475712763396332 2025-07-08 06:47:58,drb_ra,ip,159.203.31.53,#C2 #Interactsh,https://x.com/drb_ra/status/1942475732891951569 2025-07-08 06:47:58,drb_ra,url,http://159.203.31.53:25,#C2 #Interactsh,https://x.com/drb_ra/status/1942475732891951569 2025-07-08 06:48:03,drb_ra,url,http://165.227.244.242:587,#C2 #Interactsh,https://x.com/drb_ra/status/1942475753620197481 2025-07-08 06:48:08,drb_ra,url,http://165.227.244.242:465,#C2 #Interactsh,https://x.com/drb_ra/status/1942475774017061265 2025-07-08 06:48:13,drb_ra,url,http://165.227.244.242:25,#C2 #Interactsh,https://x.com/drb_ra/status/1942475795168890976 2025-07-08 06:48:13,drb_ra,ip,165.227.244.242,#C2 #Interactsh,https://x.com/drb_ra/status/1942475795168890976 2025-07-08 06:48:18,drb_ra,url,http://138.197.89.174:587,#C2 #Interactsh,https://x.com/drb_ra/status/1942475816018821569 2025-07-08 06:48:23,drb_ra,url,http://138.197.89.174:443,#C2 #Interactsh,https://x.com/drb_ra/status/1942475837388861648 2025-07-08 06:48:28,drb_ra,url,http://138.197.89.174:25,#C2 #Interactsh,https://x.com/drb_ra/status/1942475858402263069 2025-07-08 06:48:28,drb_ra,ip,138.197.89.174,#C2 #Interactsh,https://x.com/drb_ra/status/1942475858402263069 2025-07-08 06:48:33,drb_ra,url,http://209.38.111.100:25,#C2 #Interactsh,https://x.com/drb_ra/status/1942475878727815225 2025-07-08 06:48:33,drb_ra,ip,209.38.111.100,#C2 #Interactsh,https://x.com/drb_ra/status/1942475878727815225 2025-07-08 06:48:38,drb_ra,url,http://34.231.184.71:443,#C2 #Interactsh,https://x.com/drb_ra/status/1942475899372224783 2025-07-08 06:48:43,drb_ra,ip,34.231.184.71,#C2 #Interactsh,https://x.com/drb_ra/status/1942475919764996320 2025-07-08 06:48:43,drb_ra,url,http://34.231.184.71:80,#C2 #Interactsh,https://x.com/drb_ra/status/1942475919764996320 2025-07-08 06:48:48,drb_ra,url,http://35.188.251.23:25,#C2 #Interactsh,https://x.com/drb_ra/status/1942475940342251943 2025-07-08 06:48:53,drb_ra,url,http://172.86.105.40:80,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1942475960810459171 2025-07-08 06:48:53,drb_ra,ip,172.86.105.40,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1942475960810459171 2025-07-08 06:48:58,drb_ra,url,http://47.96.125.204:40945,#C2 #Supershell,https://x.com/drb_ra/status/1942475981698060582 2025-07-08 06:48:58,drb_ra,ip,47.96.125.204,#C2 #Supershell,https://x.com/drb_ra/status/1942475981698060582 2025-07-08 06:49:02,drb_ra,url,http://68.106.44.135:443,#Qakbot #C2,https://x.com/drb_ra/status/1942476002019418226 2025-07-08 06:49:02,drb_ra,ip,68.106.44.135,#Qakbot #C2,https://x.com/drb_ra/status/1942476002019418226 2025-07-08 06:49:07,drb_ra,url,http://67.71.30.106:2222,#Qakbot #C2,https://x.com/drb_ra/status/1942476021707526145 2025-07-08 06:49:07,drb_ra,ip,67.71.30.106,#Qakbot #C2,https://x.com/drb_ra/status/1942476021707526145 2025-07-08 06:49:12,drb_ra,url,http://128.199.152.169:443,#C2 #Havoc,https://x.com/drb_ra/status/1942476041869472158 2025-07-08 06:49:12,drb_ra,ip,128.199.152.169,#C2 #Havoc,https://x.com/drb_ra/status/1942476041869472158 2025-07-08 06:49:17,drb_ra,ip,159.223.21.58,#C2 #Havoc,https://x.com/drb_ra/status/1942476061867942063 2025-07-08 06:49:17,drb_ra,url,http://159.223.21.58:443,#C2 #Havoc,https://x.com/drb_ra/status/1942476061867942063 2025-07-08 06:49:22,drb_ra,url,http://18.254.197.10:443,#C2 #Deimos,https://x.com/drb_ra/status/1942476082805940572 2025-07-08 06:49:22,drb_ra,ip,18.254.197.10,#C2 #Deimos,https://x.com/drb_ra/status/1942476082805940572 2025-07-08 06:49:27,drb_ra,url,http://178.128.204.138:7443,#Mythic #C2,https://x.com/drb_ra/status/1942476103597150625 2025-07-08 06:49:27,drb_ra,ip,178.128.204.138,#Mythic #C2,https://x.com/drb_ra/status/1942476103597150625 2025-07-08 06:51:30,drb_ra,url,http://121.41.113.184:8443,#C2,https://x.com/drb_ra/status/1942476620968652914 2025-07-08 06:51:30,drb_ra,ip,121.41.113.184,#C2,https://x.com/drb_ra/status/1942476620968652914 2025-07-08 06:51:35,drb_ra,url,http://172.105.24.242:8080,#C2,https://x.com/drb_ra/status/1942476641902453039 2025-07-08 06:51:35,drb_ra,ip,172.105.24.242,#C2,https://x.com/drb_ra/status/1942476641902453039 2025-07-08 06:51:40,drb_ra,url,http://139.162.177.103:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1942476662014116076 2025-07-08 06:51:40,drb_ra,ip,139.162.177.103,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1942476662014116076 2025-07-08 06:51:45,drb_ra,ip,45.154.98.13,#Remcos #C2,https://x.com/drb_ra/status/1942476681706377596 2025-07-08 06:51:45,drb_ra,url,http://45.154.98.13:2404,#Remcos #C2,https://x.com/drb_ra/status/1942476681706377596 2025-07-08 06:51:49,drb_ra,url,http://8.139.5.62:54681,#C2,https://x.com/drb_ra/status/1942476701847396810 2025-07-08 06:51:54,drb_ra,url,http://78.12.5.9:3390,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942476721694912590 2025-07-08 06:51:54,drb_ra,ip,78.12.5.9,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942476721694912590 2025-07-08 06:51:58,drb_ra,url,http://13.38.84.98:50994,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942476737222255024 2025-07-08 06:51:58,drb_ra,ip,13.38.84.98,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942476737222255024 2025-07-08 07:17:26,suyog41,domain,leo-pirna.de,,https://x.com/suyog41/status/1942483146601034173 2025-07-08 07:17:26,suyog41,url,http://leo-pirna.de,,https://x.com/suyog41/status/1942483146601034173 2025-07-08 07:17:26,suyog41,md5,37d095268436344b4a2b8e951c828d68,,https://x.com/suyog41/status/1942483146601034173 2025-07-08 07:42:16,drb_ra,url,http://213.209.150.216:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489395069591921 2025-07-08 07:42:21,drb_ra,url,https://213.209.150.216/jp.css,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489417991741577 2025-07-08 07:42:21,drb_ra,url,http://213.209.150.216:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489417991741577 2025-07-08 07:42:21,drb_ra,ip,213.209.150.216,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489417991741577 2025-07-08 07:42:25,drb_ra,ip,106.53.52.127,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489436203479166 2025-07-08 07:42:25,drb_ra,url,http://106.53.52.127:4433,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489436203479166 2025-07-08 07:42:30,drb_ra,url,http://139.224.44.53:60000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489455916458292 2025-07-08 07:42:30,drb_ra,ip,139.224.44.53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942489455916458292 2025-07-08 09:23:02,drb_ra,url,https://61.245.10.155:443,#C2,https://x.com/drb_ra/status/1942514754498748671 2025-07-08 09:23:02,drb_ra,url,http://61.245.10.155:443,#C2,https://x.com/drb_ra/status/1942514754498748671 2025-07-08 09:23:02,drb_ra,ip,61.245.10.155,#C2,https://x.com/drb_ra/status/1942514754498748671 2025-07-08 09:28:22,c9lab_soc,domain,paypal-checkout.sbs,#scam #phishing,https://x.com/c9lab_soc/status/1942516098316001312 2025-07-08 09:28:22,c9lab_soc,url,http://paypal-checkout.sbs,#scam #phishing,https://x.com/c9lab_soc/status/1942516098316001312 2025-07-08 09:28:22,c9lab_soc,domain,youtube-mp4.net,#scam #phishing,https://x.com/c9lab_soc/status/1942516098316001312 2025-07-08 09:28:22,c9lab_soc,url,http://youtube-mp4.net,#scam #phishing,https://x.com/c9lab_soc/status/1942516098316001312 2025-07-08 09:39:37,ValidinLLC,url,https://pastebin.com/rGWP8Bjj,,https://x.com/ValidinLLC/status/1942518929840058706 2025-07-08 10:00:07,urldna_bot,domain,facebook-watch.pages.dev,#scam #phishing,https://x.com/urldna_bot/status/1942524088162943235 2025-07-08 10:00:07,urldna_bot,url,https://facebook-watch.pages.dev/recover/initiate,#scam #phishing,https://x.com/urldna_bot/status/1942524088162943235 2025-07-08 10:58:00,masaomi346,domain,tspoultryfarming.co.za,#phishing,https://x.com/masaomi346/status/1942538652510519403 2025-07-08 10:58:00,masaomi346,url,https://tspoultryfarming.co.za/pzaa/Sites/index.html,#phishing,https://x.com/masaomi346/status/1942538652510519403 2025-07-08 10:58:00,masaomi346,domain,pousadacantinhodeminas.com.br,#phishing,https://x.com/masaomi346/status/1942538652510519403 2025-07-08 10:58:00,masaomi346,url,https://pousadacantinhodeminas.com.br/Pureways/Sites/index.html,#phishing,https://x.com/masaomi346/status/1942538652510519403 2025-07-08 11:00:42,FABO97662188,domain,llojikartid.com,#malware,https://x.com/FABO97662188/status/1942539335380726093 2025-07-08 11:00:42,FABO97662188,url,http://llojikartid.com,#malware,https://x.com/FABO97662188/status/1942539335380726093 2025-07-08 11:00:42,FABO97662188,domain,wilowiklayd.com,#malware,https://x.com/FABO97662188/status/1942539335380726093 2025-07-08 11:00:42,FABO97662188,url,http://wilowiklayd.com,#malware,https://x.com/FABO97662188/status/1942539335380726093 2025-07-08 11:00:42,FABO97662188,sha256,bff3c05d768803973fd44ad85b7cd765f369534510faa721b726c0f37441f5de,#malware,https://x.com/FABO97662188/status/1942539335380726093 2025-07-08 11:00:42,FABO97662188,sha256,d623b8ef6226cec3e24c55127de873e7839c776bb1a93b57b25fdbea0db68ea2,#malware,https://x.com/FABO97662188/status/1942539335380726093 2025-07-08 11:05:38,JAMESWT_WT,url,http://aliondrifdions.com,,https://x.com/JAMESWT_WT/status/1942540574667493543 2025-07-08 11:05:38,JAMESWT_WT,domain,aliondrifdions.com,,https://x.com/JAMESWT_WT/status/1942540574667493543 2025-07-08 11:05:38,JAMESWT_WT,url,http://gorahripliys.com,,https://x.com/JAMESWT_WT/status/1942540574667493543 2025-07-08 11:05:38,JAMESWT_WT,domain,gorahripliys.com,,https://x.com/JAMESWT_WT/status/1942540574667493543 2025-07-08 11:05:38,JAMESWT_WT,md5,2c2b6ab5549fe70cd9befe1ef5ac63a3,,https://x.com/JAMESWT_WT/status/1942540574667493543 2025-07-08 11:19:38,drb_ra,domain,updatery.ai,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544099870986270 2025-07-08 11:19:38,drb_ra,url,https://updatery.ai/image/,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544099870986270 2025-07-08 11:19:38,drb_ra,url,http://101.43.103.154:2083,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544099870986270 2025-07-08 11:19:38,drb_ra,ip,101.43.103.154,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544099870986270 2025-07-08 11:19:43,drb_ra,url,http://123.60.142.31:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544120565882928 2025-07-08 11:19:43,drb_ra,ip,123.60.142.31,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544120565882928 2025-07-08 11:19:48,drb_ra,ip,39.101.75.126,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544141264773507 2025-07-08 11:19:48,drb_ra,url,http://39.101.75.126:2096,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544141264773507 2025-07-08 11:19:48,drb_ra,domain,tsesec.site,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544141264773507 2025-07-08 11:19:48,drb_ra,url,https://www.tsesec.site/sq.css,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942544141264773507 2025-07-08 11:50:15,harugasumi,domain,pocketcard-hoplie.nimkaq.cn,#phishing,https://x.com/harugasumi/status/1942551802228191517 2025-07-08 11:50:15,harugasumi,url,https://pocketcard-hoplie.nimkaq.cn/netservice/login/,#phishing,https://x.com/harugasumi/status/1942551802228191517 2025-07-08 13:02:28,jh__1995,domain,ital.softr.app,#phishing,https://x.com/jh__1995/status/1942569977904820695 2025-07-08 13:02:28,jh__1995,url,https://ital.softr.app,#phishing,https://x.com/jh__1995/status/1942569977904820695 2025-07-08 13:57:47,fbgwls245,md5,6C4FA3E0EEDB3100F4757BD2172BEC9F,#ransomware,https://x.com/fbgwls245/status/1942583899651203207 2025-07-08 14:00:11,urldna_bot,domain,cmmpmrium.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942584500929675467 2025-07-08 14:00:11,urldna_bot,url,https://cmmpmrium.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942584500929675467 2025-07-08 14:02:20,techworldaleant,domain,it-spid.com,#phishing,https://x.com/techworldaleant/status/1942585045056635341 2025-07-08 14:02:20,techworldaleant,url,http://it-spid.com,#phishing,https://x.com/techworldaleant/status/1942585045056635341 2025-07-08 16:59:54,harugasumi,domain,oeblboytnaddos.6a8ae.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,ip,43.164.133.212,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,url,https://telhocsusliah.24is6.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,domain,telhocsusliah.24is6.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,url,https://oeblboytnaddos.6a8ae.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,url,https://ahhsstkskhfdut.g84e4.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,domain,ialhpirtiyhehtr.mmgu4.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,url,https://eiadeythinngoea.2cqi2.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,domain,eiadeythinngoea.2cqi2.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,domain,ahhsstkskhfdut.g84e4.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 16:59:54,harugasumi,url,https://ialhpirtiyhehtr.mmgu4.com,#phishing,https://x.com/harugasumi/status/1942629728965517813 2025-07-08 17:05:22,skocherhan,url,http://estafetaposb.sbs/posb32l,#phishing,https://x.com/skocherhan/status/1942631103870951459 2025-07-08 17:15:04,skocherhan,url,https://rat.riyajchowdhury.xyz,,https://x.com/skocherhan/status/1942633547799634416 2025-07-08 17:15:04,skocherhan,domain,rat.riyajchowdhury.xyz,,https://x.com/skocherhan/status/1942633547799634416 2025-07-08 17:19:25,skocherhan,url,http://estafetaix.icu,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetatmx.cc,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetai.qpon,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetai.qpon,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetacr.cc,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetacr.cc,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetax.vip,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetax.vip,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetatmx.cc,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetaix.icu,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetaposb.sbs,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetad.com,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetamxig.top,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetamxig.top,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetamxjl.top,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetamxjl.top,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetumrz.top,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,domain,estafetumrz.top,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetaposb.sbs,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:19:25,skocherhan,url,http://estafetad.com,#phishing,https://x.com/skocherhan/status/1942634640273007003 2025-07-08 17:58:25,JRoosen,url,http://wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/JRoosen/status/1942644454634184760 2025-07-08 17:58:25,JRoosen,domain,wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/JRoosen/status/1942644454634184760 2025-07-08 17:58:29,JRoosen,domain,payoutsgn7cy6uliwevdqspncjpfxpmzgirwl2au65la7rfs5x3qnbqd.onion,#ransomware,https://x.com/JRoosen/status/1942644472686231963 2025-07-08 17:58:29,JRoosen,url,http://payoutsgn7cy6uliwevdqspncjpfxpmzgirwl2au65la7rfs5x3qnbqd.onion,#ransomware,https://x.com/JRoosen/status/1942644472686231963 2025-07-08 18:00:09,urldna_bot,domain,atttvcurrently.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942644891055509746 2025-07-08 18:00:09,urldna_bot,url,https://atttvcurrently.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942644891055509746 2025-07-08 18:39:31,SarlackLab,domain,m365.acenm.com,,https://x.com/SarlackLab/status/1942654797124976780 2025-07-08 18:39:31,SarlackLab,url,http://m365.acenm.com,,https://x.com/SarlackLab/status/1942654797124976780 2025-07-08 18:39:31,SarlackLab,domain,exifit.eu.org,,https://x.com/SarlackLab/status/1942654797124976780 2025-07-08 18:39:31,SarlackLab,url,http://exifit.eu.org,,https://x.com/SarlackLab/status/1942654797124976780 2025-07-08 18:39:31,SarlackLab,domain,rubyhall.in.net,,https://x.com/SarlackLab/status/1942654797124976780 2025-07-08 18:39:31,SarlackLab,url,http://rubyhall.in.net,,https://x.com/SarlackLab/status/1942654797124976780 2025-07-08 18:45:57,drb_ra,url,http://54.219.186.229:443,#C2 #Bianlian,https://x.com/drb_ra/status/1942656418009735319 2025-07-08 18:45:57,drb_ra,ip,54.219.186.229,#C2 #Bianlian,https://x.com/drb_ra/status/1942656418009735319 2025-07-08 18:46:02,drb_ra,url,http://88.129.151.109:8080,#C2 #Deimos,https://x.com/drb_ra/status/1942656440566436038 2025-07-08 18:46:02,drb_ra,ip,88.129.151.109,#C2 #Deimos,https://x.com/drb_ra/status/1942656440566436038 2025-07-08 18:48:06,drb_ra,url,http://212.23.222.49:4040,#Remcos #C2,https://x.com/drb_ra/status/1942656957174706180 2025-07-08 18:48:06,drb_ra,ip,212.23.222.49,#Remcos #C2,https://x.com/drb_ra/status/1942656957174706180 2025-07-08 18:48:11,drb_ra,url,http://142.147.97.173:2404,#Remcos #C2,https://x.com/drb_ra/status/1942656979857727564 2025-07-08 18:48:11,drb_ra,ip,142.147.97.173,#Remcos #C2,https://x.com/drb_ra/status/1942656979857727564 2025-07-08 18:48:16,drb_ra,url,http://74.48.78.46:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1942657001022013857 2025-07-08 18:48:16,drb_ra,ip,74.48.78.46,#Reverse_SSH #C2,https://x.com/drb_ra/status/1942657001022013857 2025-07-08 18:48:21,drb_ra,url,http://18.191.218.224:4582,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942657023281188988 2025-07-08 18:48:21,drb_ra,ip,18.191.218.224,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942657023281188988 2025-07-08 18:48:27,drb_ra,url,http://179.95.204.243:9990,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942657046001668216 2025-07-08 18:48:27,drb_ra,ip,179.95.204.243,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942657046001668216 2025-07-08 18:48:33,drb_ra,url,http://16.171.147.206:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1942657071381377108 2025-07-08 18:48:33,drb_ra,ip,16.171.147.206,#AsyncRAT #C2,https://x.com/drb_ra/status/1942657071381377108 2025-07-08 18:48:39,drb_ra,url,http://88.99.61.194:5067,#AsyncRAT #C2,https://x.com/drb_ra/status/1942657096538869895 2025-07-08 18:48:39,drb_ra,ip,88.99.61.194,#AsyncRAT #C2,https://x.com/drb_ra/status/1942657096538869895 2025-07-08 18:48:45,drb_ra,url,http://134.122.183.217:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1942657123386892461 2025-07-08 18:48:45,drb_ra,ip,134.122.183.217,#AsyncRAT #C2,https://x.com/drb_ra/status/1942657123386892461 2025-07-08 18:48:51,drb_ra,url,http://8.149.137.211:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1942657148074278978 2025-07-08 18:48:58,drb_ra,url,http://3.249.103.121:443,#C2 #Interactsh,https://x.com/drb_ra/status/1942657176553808099 2025-07-08 18:49:03,drb_ra,url,http://156.238.243.16:80,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1942657200146575547 2025-07-08 18:49:03,drb_ra,ip,156.238.243.16,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1942657200146575547 2025-07-08 18:49:09,drb_ra,url,http://104.193.69.173:443,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1942657223324262607 2025-07-08 18:49:09,drb_ra,ip,104.193.69.173,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1942657223324262607 2025-07-08 18:49:13,drb_ra,url,http://156.246.3.165:9397,#C2 #Supershell,https://x.com/drb_ra/status/1942657240910958982 2025-07-08 18:49:13,drb_ra,ip,156.246.3.165,#C2 #Supershell,https://x.com/drb_ra/status/1942657240910958982 2025-07-08 18:49:18,drb_ra,url,http://156.246.2.169:9397,#C2 #Supershell,https://x.com/drb_ra/status/1942657263006605495 2025-07-08 18:49:18,drb_ra,ip,156.246.2.169,#C2 #Supershell,https://x.com/drb_ra/status/1942657263006605495 2025-07-08 18:49:24,drb_ra,url,http://156.246.2.166:9397,#C2 #Supershell,https://x.com/drb_ra/status/1942657285089808782 2025-07-08 18:49:24,drb_ra,ip,156.246.2.166,#C2 #Supershell,https://x.com/drb_ra/status/1942657285089808782 2025-07-08 18:49:29,drb_ra,url,http://181.235.10.10:8010,#C2 #Dcrat,https://x.com/drb_ra/status/1942657307294457928 2025-07-08 18:49:29,drb_ra,ip,181.235.10.10,#C2 #Dcrat,https://x.com/drb_ra/status/1942657307294457928 2025-07-08 18:49:34,drb_ra,url,http://94.49.43.20:995,#C2 #Qakbot,https://x.com/drb_ra/status/1942657329171771767 2025-07-08 18:49:34,drb_ra,ip,94.49.43.20,#C2 #Qakbot,https://x.com/drb_ra/status/1942657329171771767 2025-07-08 18:49:40,drb_ra,url,http://159.0.45.255:443,#C2 #Qakbot,https://x.com/drb_ra/status/1942657351363830025 2025-07-08 18:49:40,drb_ra,ip,159.0.45.255,#C2 #Qakbot,https://x.com/drb_ra/status/1942657351363830025 2025-07-08 18:49:45,drb_ra,url,http://45.77.231.137:443,#C2 #Havoc,https://x.com/drb_ra/status/1942657372779856324 2025-07-08 18:49:45,drb_ra,ip,45.77.231.137,#C2 #Havoc,https://x.com/drb_ra/status/1942657372779856324 2025-07-08 18:49:50,drb_ra,url,http://35.180.37.142:443,#C2 #Havoc,https://x.com/drb_ra/status/1942657394854748639 2025-07-08 18:49:50,drb_ra,ip,35.180.37.142,#C2 #Havoc,https://x.com/drb_ra/status/1942657394854748639 2025-07-08 18:49:55,drb_ra,url,http://82.66.75.169:443,#C2 #Havoc,https://x.com/drb_ra/status/1942657417021686123 2025-07-08 18:49:55,drb_ra,ip,82.66.75.169,#C2 #Havoc,https://x.com/drb_ra/status/1942657417021686123 2025-07-08 18:50:00,drb_ra,url,http://27.254.164.212:443,#C2 #Havoc,https://x.com/drb_ra/status/1942657438395605365 2025-07-08 18:50:00,drb_ra,ip,27.254.164.212,#C2 #Havoc,https://x.com/drb_ra/status/1942657438395605365 2025-07-08 19:27:11,skocherhan,md5,95cde7eef14ed25e60629399595d9a03,#APT,https://x.com/skocherhan/status/1942666793153188279 2025-07-08 21:18:48,drb_ra,url,http://49.65.96.18:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942694883124490297 2025-07-08 21:18:48,drb_ra,ip,49.65.96.18,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942694883124490297 2025-07-08 21:45:16,skocherhan,domain,mail.altholzmobel.com,,https://x.com/skocherhan/status/1942701543356051612 2025-07-08 21:45:16,skocherhan,url,http://mail.altholzmobel.com,,https://x.com/skocherhan/status/1942701543356051612 2025-07-08 21:50:59,drb_ra,url,http://34.203.227.204:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1942702983877120486 2025-07-08 21:50:59,drb_ra,ip,34.203.227.204,#CobaltStrike #C2,https://x.com/drb_ra/status/1942702983877120486 2025-07-08 21:51:04,drb_ra,url,http://116.203.96.2:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1942703005301891536 2025-07-08 21:51:04,drb_ra,ip,116.203.96.2,#CobaltStrike #C2,https://x.com/drb_ra/status/1942703005301891536 2025-07-08 21:56:43,skocherhan,domain,coinbaseprom.com,,https://x.com/skocherhan/status/1942704424067191228 2025-07-08 21:56:43,skocherhan,url,http://coinbaseprom.com,,https://x.com/skocherhan/status/1942704424067191228 2025-07-08 21:56:43,skocherhan,domain,nnhood.com,,https://x.com/skocherhan/status/1942704424067191228 2025-07-08 21:56:43,skocherhan,url,http://nnhood.com/789.dof,,https://x.com/skocherhan/status/1942704424067191228 2025-07-08 22:00:14,urldna_bot,domain,amazon-first-project.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1942705311460028420 2025-07-08 22:00:14,urldna_bot,url,https://amazon-first-project.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1942705311460028420 2025-07-08 22:59:29,drb_ra,url,http://18.162.56.61:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720222026182845 2025-07-08 22:59:29,drb_ra,ip,18.162.56.61,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720222026182845 2025-07-08 22:59:34,drb_ra,url,http://115.29.162.71:8088,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720241051787326 2025-07-08 22:59:39,drb_ra,url,http://115.190.147.158:8001,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720262257963208 2025-07-08 22:59:39,drb_ra,ip,115.190.147.158,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720262257963208 2025-07-08 22:59:44,drb_ra,url,http://119.91.235.213:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720282617077803 2025-07-08 22:59:44,drb_ra,ip,119.91.235.213,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720282617077803 2025-07-08 22:59:49,drb_ra,url,http://8.137.80.215:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720303509250158 2025-07-08 22:59:54,drb_ra,url,http://43.136.23.57:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720325310914851 2025-07-08 22:59:54,drb_ra,ip,43.136.23.57,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720325310914851 2025-07-08 22:59:54,drb_ra,ip,193.112.239.170,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720325310914851 2025-07-08 22:59:59,drb_ra,url,http://27.17.188.137:56245,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720347356422553 2025-07-08 22:59:59,drb_ra,ip,27.17.188.137,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720347356422553 2025-07-08 23:00:05,drb_ra,url,http://101.43.62.241:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720370882072995 2025-07-08 23:00:05,drb_ra,ip,101.43.62.241,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720370882072995 2025-07-08 23:00:05,drb_ra,ip,110.40.139.46,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720370882072995 2025-07-08 23:00:11,drb_ra,url,http://39.100.86.107:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720397180334258 2025-07-08 23:00:11,drb_ra,ip,39.100.86.107,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720397180334258 2025-07-08 23:00:16,drb_ra,url,http://106.52.49.247:2096,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720418751590591 2025-07-08 23:00:16,drb_ra,ip,106.52.49.247,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720418751590591 2025-07-08 23:00:21,drb_ra,url,http://115.29.162.71:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720440402866517 2025-07-08 23:00:21,drb_ra,ip,115.29.162.71,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942720440402866517 2025-07-08 23:00:22,SarlackLab,url,http://51.89.166.173:6522,#Njrat #C2,https://x.com/SarlackLab/status/1942720442600395054 2025-07-08 23:00:22,SarlackLab,ip,51.89.166.173,#Njrat #C2,https://x.com/SarlackLab/status/1942720442600395054 2025-07-09 00:28:21,skocherhan,domain,108.8.sarijayaco.my.id,,https://x.com/skocherhan/status/1942742584713150729 2025-07-09 00:28:21,skocherhan,url,http://108.8.sarijayaco.my.id,,https://x.com/skocherhan/status/1942742584713150729 2025-07-09 00:28:21,skocherhan,url,http://t.me/gt77cra,,https://x.com/skocherhan/status/1942742584713150729 2025-07-09 00:34:59,fbgwls245,md5,6C4FA3E0EEDB3100F4757BD2172BEC9F,#ransomware,https://x.com/fbgwls245/status/1942744254532706488 2025-07-09 00:37:48,skocherhan,url,http://github.com/john-wilson25,#malware,https://x.com/skocherhan/status/1942744965744050682 2025-07-09 00:59:32,skocherhan,url,http://141.98.6.34,#Lumma,https://x.com/skocherhan/status/1942750431685251144 2025-07-09 00:59:32,skocherhan,ip,141.98.6.34,#Lumma,https://x.com/skocherhan/status/1942750431685251144 2025-07-09 01:03:33,skocherhan,url,http://77.90.153.129,,https://x.com/skocherhan/status/1942751442068279515 2025-07-09 01:03:33,skocherhan,ip,77.90.153.129,,https://x.com/skocherhan/status/1942751442068279515 2025-07-09 01:11:53,catnap707,url,http://eki-zonship.jmfore.cn/Perosnal_member/,#phishing,https://x.com/catnap707/status/1942753542177186082 2025-07-09 01:11:53,catnap707,url,http://172.67.175.114,#phishing,https://x.com/catnap707/status/1942753542177186082 2025-07-09 01:11:53,catnap707,domain,eki-zonship.jmfore.cn,#phishing,https://x.com/catnap707/status/1942753542177186082 2025-07-09 01:38:29,skocherhan,url,http://latesclsnitr.com,,https://x.com/skocherhan/status/1942760237167202457 2025-07-09 01:38:29,skocherhan,domain,latesclsnitr.com,,https://x.com/skocherhan/status/1942760237167202457 2025-07-09 02:00:08,urldna_bot,domain,xmxmiednfhjg.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1942765684326326445 2025-07-09 02:00:08,urldna_bot,url,https://xmxmiednfhjg.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1942765684326326445 2025-07-09 02:11:04,romonlyht,domain,gcentertainments.com,#phishing,https://x.com/romonlyht/status/1942768434066100226 2025-07-09 02:11:04,romonlyht,ip,116.80.16.2,#phishing,https://x.com/romonlyht/status/1942768434066100226 2025-07-09 02:11:04,romonlyht,url,https://gcentertainments.com/cpadmin/control_panel/imap/?uid=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1942768434066100226 2025-07-09 02:11:04,romonlyht,ip,38.62.233.42,#phishing,https://x.com/romonlyht/status/1942768434066100226 2025-07-09 02:17:18,drb_ra,ip,123.60.142.31,#CobaltStrike #C2,https://x.com/drb_ra/status/1942770003108896875 2025-07-09 02:17:18,drb_ra,url,http://123.60.142.31:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1942770003108896875 2025-07-09 02:17:54,skocherhan,domain,bafybeidvf6tytrspkd4wnvxzs23m3kjr6bfvgszbfwybmmcosl4rrhvuo4.ipfs.w3s.link,#Remcos,https://x.com/skocherhan/status/1942770155425034508 2025-07-09 02:17:54,skocherhan,url,http://bafybeidvf6tytrspkd4wnvxzs23m3kjr6bfvgszbfwybmmcosl4rrhvuo4.ipfs.w3s.link,#Remcos,https://x.com/skocherhan/status/1942770155425034508 2025-07-09 02:17:54,skocherhan,domain,nawatbsc.com,#Remcos,https://x.com/skocherhan/status/1942770155425034508 2025-07-09 02:17:54,skocherhan,url,http://www.nawatbsc.com,#Remcos,https://x.com/skocherhan/status/1942770155425034508 2025-07-09 02:18:28,skocherhan,url,http://github.com/mwona,#malware,https://x.com/skocherhan/status/1942770299256066362 2025-07-09 03:00:49,ThreatBookLabs,url,http://27.102.137.242,#phishing,https://x.com/ThreatBookLabs/status/1942780953849651418 2025-07-09 03:00:49,ThreatBookLabs,ip,27.102.137.242,#phishing,https://x.com/ThreatBookLabs/status/1942780953849651418 2025-07-09 03:54:57,skocherhan,md5,bf795a376233032d05766a396b3d6e08,#Kimsuky,https://x.com/skocherhan/status/1942794577095598101 2025-07-09 03:54:57,skocherhan,md5,56233bac07f4f9c43585e485e70b6169,#Kimsuky,https://x.com/skocherhan/status/1942794577095598101 2025-07-09 03:54:57,skocherhan,md5,ad6104a503b46bf6ea505fe8b3182970,#Kimsuky,https://x.com/skocherhan/status/1942794577095598101 2025-07-09 03:54:57,skocherhan,md5,a523bf5dca0f2a4ace0cf766d9225343,#Kimsuky,https://x.com/skocherhan/status/1942794577095598101 2025-07-09 04:01:04,SarlackLab,domain,natural-hide.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1942796118565253627 2025-07-09 04:01:04,SarlackLab,url,http://147.185.221.30:4322,#C2 #Njrat,https://x.com/SarlackLab/status/1942796118565253627 2025-07-09 04:01:04,SarlackLab,url,http://natural-hide.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1942796118565253627 2025-07-09 04:01:04,SarlackLab,ip,147.185.221.30,#C2 #Njrat,https://x.com/SarlackLab/status/1942796118565253627 2025-07-09 04:18:03,harugasumi,domain,jvfhul.cn,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 04:18:03,harugasumi,url,https://cxfuui.cn/Login,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 04:18:03,harugasumi,domain,cxfuui.cn,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 04:18:03,harugasumi,url,https://jvfhul.cn/Login,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 04:18:03,harugasumi,url,https://rcxvuk.cn/Login,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 04:18:03,harugasumi,url,https://dtceji.cn/Login,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 04:18:03,harugasumi,domain,rcxvuk.cn,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 04:18:03,harugasumi,domain,dtceji.cn,#phishing,https://x.com/harugasumi/status/1942800389730152836 2025-07-09 05:32:33,catnap707,domain,membership-ae.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,url,http://membershipae.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,domain,membershipae.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,url,http://membership-ae.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,url,http://asemembership.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,url,http://aaemembership.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,domain,aemembership.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,domain,aaemembership.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,domain,asemembership.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:32:33,catnap707,url,http://aemembership.com,#phishing,https://x.com/catnap707/status/1942819142006104257 2025-07-09 05:41:49,ReBensk,md5,f0902e4f3184d264b3cb22f0d27b2144,#Android #malware #Trojan,https://x.com/ReBensk/status/1942821472881500354 2025-07-09 05:55:49,yvesago,ip,192.142.53.233,#phishing,https://x.com/yvesago/status/1942824996721529114 2025-07-09 05:55:49,yvesago,url,https://clent.serviceverificationar24.net/dqqrzzar24/,#phishing,https://x.com/yvesago/status/1942824996721529114 2025-07-09 05:55:49,yvesago,domain,links.truthsocial.com,#phishing,https://x.com/yvesago/status/1942824996721529114 2025-07-09 05:55:49,yvesago,domain,clent.serviceverificationar24.net,#phishing,https://x.com/yvesago/status/1942824996721529114 2025-07-09 05:55:49,yvesago,url,https://links.truthsocial.com/link/114769535014816141,#phishing,https://x.com/yvesago/status/1942824996721529114 2025-07-09 06:00:11,urldna_bot,domain,zmmmy.cn,#scam #phishing,https://x.com/urldna_bot/status/1942826094773596625 2025-07-09 06:00:11,urldna_bot,url,https://zmmmy.cn,#scam #phishing,https://x.com/urldna_bot/status/1942826094773596625 2025-07-09 06:00:21,SarlackLab,url,http://brolyx92.duckdns.org,#C2 #Njrat,https://x.com/SarlackLab/status/1942826136188146159 2025-07-09 06:00:21,SarlackLab,ip,192.169.69.26,#C2 #Njrat,https://x.com/SarlackLab/status/1942826136188146159 2025-07-09 06:00:21,SarlackLab,url,http://192.169.69.26:5000,#C2 #Njrat,https://x.com/SarlackLab/status/1942826136188146159 2025-07-09 06:00:21,SarlackLab,domain,brolyx92.duckdns.org,#C2 #Njrat,https://x.com/SarlackLab/status/1942826136188146159 2025-07-09 06:06:52,RakeshKrish12,ip,66.63.187.65,#ransomware #malware,https://x.com/RakeshKrish12/status/1942827777025269959 2025-07-09 06:06:52,RakeshKrish12,domain,ransomed.biz,#ransomware #malware,https://x.com/RakeshKrish12/status/1942827777025269959 2025-07-09 06:06:52,RakeshKrish12,url,http://ransomed.biz,#ransomware #malware,https://x.com/RakeshKrish12/status/1942827777025269959 2025-07-09 06:06:52,RakeshKrish12,ip,213.111.149.87,#ransomware #malware,https://x.com/RakeshKrish12/status/1942827777025269959 2025-07-09 06:06:52,RakeshKrish12,ip,185.254.197.169,#ransomware #malware,https://x.com/RakeshKrish12/status/1942827777025269959 2025-07-09 06:38:48,suyog41,ip,154.8.197.28,#RAT,https://x.com/suyog41/status/1942835812841971844 2025-07-09 06:38:48,suyog41,md5,ab53324694db1355e1aac4083f548351,#RAT,https://x.com/suyog41/status/1942835812841971844 2025-07-09 06:46:38,drb_ra,url,http://158.247.210.164:443,#C2 #Havoc,https://x.com/drb_ra/status/1942837784890200428 2025-07-09 06:46:38,drb_ra,ip,158.247.210.164,#C2 #Havoc,https://x.com/drb_ra/status/1942837784890200428 2025-07-09 06:46:44,drb_ra,url,http://52.63.73.110:443,#C2 #Havoc,https://x.com/drb_ra/status/1942837807514345795 2025-07-09 06:46:44,drb_ra,ip,52.63.73.110,#C2 #Havoc,https://x.com/drb_ra/status/1942837807514345795 2025-07-09 06:46:48,drb_ra,ip,143.110.177.141,#C2 #Havoc,https://x.com/drb_ra/status/1942837827252736498 2025-07-09 06:46:48,drb_ra,url,http://143.110.177.141:443,#C2 #Havoc,https://x.com/drb_ra/status/1942837827252736498 2025-07-09 06:46:53,drb_ra,ip,52.54.67.246,#Deimos #C2,https://x.com/drb_ra/status/1942837848660664718 2025-07-09 06:46:53,drb_ra,url,http://52.54.67.246:443,#Deimos #C2,https://x.com/drb_ra/status/1942837848660664718 2025-07-09 06:46:58,drb_ra,ip,194.102.175.30,#C2 #Mythic,https://x.com/drb_ra/status/1942837867799093705 2025-07-09 06:46:58,drb_ra,url,http://194.102.175.30:7443,#C2 #Mythic,https://x.com/drb_ra/status/1942837867799093705 2025-07-09 06:47:03,drb_ra,url,http://18.162.39.65:7443,#C2 #Mythic,https://x.com/drb_ra/status/1942837888430870787 2025-07-09 06:47:03,drb_ra,ip,18.162.39.65,#C2 #Mythic,https://x.com/drb_ra/status/1942837888430870787 2025-07-09 06:47:08,drb_ra,url,http://5.161.72.36:7443,#C2 #Mythic,https://x.com/drb_ra/status/1942837908622258491 2025-07-09 06:47:13,drb_ra,url,http://18.219.161.203:7443,#C2 #Mythic,https://x.com/drb_ra/status/1942837931258912958 2025-07-09 06:47:13,drb_ra,ip,18.219.161.203,#C2 #Mythic,https://x.com/drb_ra/status/1942837931258912958 2025-07-09 06:47:18,drb_ra,ip,102.117.170.97,#C2 #Mythic,https://x.com/drb_ra/status/1942837953455349772 2025-07-09 06:47:18,drb_ra,url,http://102.117.170.97:7443,#C2 #Mythic,https://x.com/drb_ra/status/1942837953455349772 2025-07-09 06:47:23,drb_ra,ip,51.68.231.231,#C2 #Sliver,https://x.com/drb_ra/status/1942837974410092775 2025-07-09 06:47:23,drb_ra,url,http://51.68.231.231:31337,#C2 #Sliver,https://x.com/drb_ra/status/1942837974410092775 2025-07-09 06:47:28,drb_ra,ip,178.217.98.242,#C2 #Sliver,https://x.com/drb_ra/status/1942837993250628001 2025-07-09 06:47:28,drb_ra,url,http://178.217.98.242:31337,#C2 #Sliver,https://x.com/drb_ra/status/1942837993250628001 2025-07-09 06:47:33,drb_ra,url,http://158.247.210.109:8000,#C2 #Sliver,https://x.com/drb_ra/status/1942838013652001271 2025-07-09 06:47:38,drb_ra,url,http://158.247.210.109:443,#C2 #Sliver,https://x.com/drb_ra/status/1942838033872502838 2025-07-09 06:47:42,drb_ra,url,http://158.247.210.109:80,#C2 #Sliver,https://x.com/drb_ra/status/1942838054110257267 2025-07-09 06:47:47,drb_ra,url,http://158.247.210.109:8095,#C2 #Sliver,https://x.com/drb_ra/status/1942838074490106220 2025-07-09 06:47:52,drb_ra,url,http://158.247.210.109:8554,#C2 #Sliver,https://x.com/drb_ra/status/1942838094954148312 2025-07-09 06:47:57,drb_ra,url,http://158.247.210.109:8443,#C2 #Sliver,https://x.com/drb_ra/status/1942838115565199540 2025-07-09 06:47:57,drb_ra,ip,158.247.210.109,#C2 #Sliver,https://x.com/drb_ra/status/1942838115565199540 2025-07-09 06:48:02,drb_ra,ip,185.194.140.225,#C2 #Sliver,https://x.com/drb_ra/status/1942838136687714513 2025-07-09 06:48:02,drb_ra,url,http://185.194.140.225:8888,#C2 #Sliver,https://x.com/drb_ra/status/1942838136687714513 2025-07-09 06:50:06,drb_ra,ip,118.178.191.92,#C2,https://x.com/drb_ra/status/1942838656118534643 2025-07-09 06:50:06,drb_ra,url,http://118.178.191.92:8443,#C2,https://x.com/drb_ra/status/1942838656118534643 2025-07-09 06:50:11,drb_ra,url,http://62.0.121.162:8080,#C2,https://x.com/drb_ra/status/1942838677090316779 2025-07-09 06:50:11,drb_ra,ip,62.0.121.162,#C2,https://x.com/drb_ra/status/1942838677090316779 2025-07-09 06:50:15,drb_ra,url,http://15.223.69.59:5985,#C2,https://x.com/drb_ra/status/1942838693024436409 2025-07-09 06:50:15,drb_ra,ip,15.223.69.59,#C2,https://x.com/drb_ra/status/1942838693024436409 2025-07-09 06:50:21,drb_ra,url,http://20.5.129.212:8000,#C2,https://x.com/drb_ra/status/1942838717556625743 2025-07-09 06:50:21,drb_ra,ip,20.5.129.212,#C2,https://x.com/drb_ra/status/1942838717556625743 2025-07-09 06:50:26,drb_ra,url,http://196.251.84.172:5000,#C2 #Remcos,https://x.com/drb_ra/status/1942838738582700408 2025-07-09 06:50:26,drb_ra,ip,196.251.84.172,#C2 #Remcos,https://x.com/drb_ra/status/1942838738582700408 2025-07-09 06:50:30,drb_ra,ip,45.94.31.65,#C2 #Remcos,https://x.com/drb_ra/status/1942838758698803452 2025-07-09 06:50:30,drb_ra,url,http://45.94.31.65:53690,#C2 #Remcos,https://x.com/drb_ra/status/1942838758698803452 2025-07-09 06:50:35,drb_ra,url,http://98.130.135.39:5938,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838778546249823 2025-07-09 06:50:35,drb_ra,ip,98.130.135.39,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838778546249823 2025-07-09 06:50:40,drb_ra,url,http://35.180.210.246:49501,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838798158606390 2025-07-09 06:50:45,drb_ra,ip,35.180.210.246,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838819138724236 2025-07-09 06:50:45,drb_ra,url,http://35.180.210.246:1801,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838819138724236 2025-07-09 06:50:50,drb_ra,url,http://40.176.177.0:10261,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838839892234480 2025-07-09 06:50:55,drb_ra,ip,15.237.251.27,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838859999363444 2025-07-09 06:50:55,drb_ra,url,http://15.237.251.27:34673,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1942838859999363444 2025-07-09 06:51:00,drb_ra,ip,128.90.113.151,#C2 #AsyncRAT,https://x.com/drb_ra/status/1942838881042264081 2025-07-09 06:51:00,drb_ra,url,http://128.90.113.151:2000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1942838881042264081 2025-07-09 06:51:04,drb_ra,ip,66.225.254.246,#C2 #AsyncRAT,https://x.com/drb_ra/status/1942838901259018742 2025-07-09 06:51:04,drb_ra,url,http://66.225.254.246:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1942838901259018742 2025-07-09 06:51:11,drb_ra,url,http://49.113.74.167:8888,#C2 #Supershell,https://x.com/drb_ra/status/1942838927548956948 2025-07-09 06:51:11,drb_ra,ip,49.113.74.167,#C2 #Supershell,https://x.com/drb_ra/status/1942838927548956948 2025-07-09 06:51:16,drb_ra,url,http://156.246.2.187:9397,#C2 #Supershell,https://x.com/drb_ra/status/1942838948864352501 2025-07-09 06:51:16,drb_ra,ip,156.246.2.187,#C2 #Supershell,https://x.com/drb_ra/status/1942838948864352501 2025-07-09 06:51:21,drb_ra,url,http://156.246.2.188:9397,#C2 #Supershell,https://x.com/drb_ra/status/1942838970167206184 2025-07-09 06:51:21,drb_ra,ip,156.246.2.188,#C2 #Supershell,https://x.com/drb_ra/status/1942838970167206184 2025-07-09 06:51:26,drb_ra,url,http://156.246.2.185:9397,#C2 #Supershell,https://x.com/drb_ra/status/1942838990370927080 2025-07-09 06:51:26,drb_ra,ip,156.246.2.185,#C2 #Supershell,https://x.com/drb_ra/status/1942838990370927080 2025-07-09 06:51:31,drb_ra,ip,156.246.3.167,#C2 #Supershell,https://x.com/drb_ra/status/1942839011644756205 2025-07-09 06:51:31,drb_ra,url,http://156.246.3.167:9397,#C2 #Supershell,https://x.com/drb_ra/status/1942839011644756205 2025-07-09 06:51:36,drb_ra,ip,179.13.0.54,#Dcrat #C2,https://x.com/drb_ra/status/1942839033132113934 2025-07-09 06:51:36,drb_ra,url,http://179.13.0.54:8081,#Dcrat #C2,https://x.com/drb_ra/status/1942839033132113934 2025-07-09 06:51:40,drb_ra,url,http://45.77.254.96:443,#C2 #Havoc,https://x.com/drb_ra/status/1942839052526293321 2025-07-09 06:51:40,drb_ra,ip,45.77.254.96,#C2 #Havoc,https://x.com/drb_ra/status/1942839052526293321 2025-07-09 06:51:45,drb_ra,url,http://139.84.208.251:443,#C2 #Havoc,https://x.com/drb_ra/status/1942839072688594951 2025-07-09 06:51:45,drb_ra,ip,139.84.208.251,#C2 #Havoc,https://x.com/drb_ra/status/1942839072688594951 2025-07-09 06:51:50,drb_ra,url,http://139.84.216.191:443,#C2 #Havoc,https://x.com/drb_ra/status/1942839092636450937 2025-07-09 06:51:50,drb_ra,ip,139.84.216.191,#C2 #Havoc,https://x.com/drb_ra/status/1942839092636450937 2025-07-09 07:12:04,yvesago,url,https://envoirecommande.service-messageriecloud.com/ar24/,#phishing,https://x.com/yvesago/status/1942844183703654646 2025-07-09 07:12:04,yvesago,domain,envoirecommande.service-messageriecloud.com,#phishing,https://x.com/yvesago/status/1942844183703654646 2025-07-09 07:12:04,yvesago,domain,urlr.me,#phishing,https://x.com/yvesago/status/1942844183703654646 2025-07-09 07:12:04,yvesago,ip,148.135.195.169,#phishing,https://x.com/yvesago/status/1942844183703654646 2025-07-09 07:12:04,yvesago,url,https://urlr.me/aZAmBY,#phishing,https://x.com/yvesago/status/1942844183703654646 2025-07-09 07:31:49,GenThreatLabs,url,http://cs.aktualizaceudaju-unicreditgroup.eu,#phishing,https://x.com/GenThreatLabs/status/1942849156298485892 2025-07-09 07:31:49,GenThreatLabs,domain,cs.aktualizaceudaju-unicreditgroup.eu,#phishing,https://x.com/GenThreatLabs/status/1942849156298485892 2025-07-09 07:34:06,drb_ra,url,http://47.109.140.12:2233,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942849728112144682 2025-07-09 07:34:06,drb_ra,ip,47.109.140.12,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942849728112144682 2025-07-09 07:53:34,suyog41,md5,1d825e867cb0f409dc15d7444d475e86,,https://x.com/suyog41/status/1942854627327709369 2025-07-09 08:00:18,SarlackLab,url,http://196.251.117.171:15230,#NanoCore #C2,https://x.com/SarlackLab/status/1942856324406022272 2025-07-09 08:00:18,SarlackLab,ip,196.251.117.171,#NanoCore #C2,https://x.com/SarlackLab/status/1942856324406022272 2025-07-09 08:00:18,SarlackLab,url,http://nybenspyhost.duckdns.org,#NanoCore #C2,https://x.com/SarlackLab/status/1942856324406022272 2025-07-09 08:00:18,SarlackLab,domain,nybenspyhost.duckdns.org,#NanoCore #C2,https://x.com/SarlackLab/status/1942856324406022272 2025-07-09 09:10:40,JAMESWT_WT,md5,17c5e53b00782ded1b35e7caae4db226,#RAT #NetSupport,https://x.com/JAMESWT_WT/status/1942874033059491898 2025-07-09 10:00:12,urldna_bot,url,https://optimumadminserver.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1942886497503338956 2025-07-09 10:00:12,urldna_bot,domain,optimumadminserver.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1942886497503338956 2025-07-09 10:00:19,SarlackLab,url,http://192.169.69.26:3395,#NanoCore #C2,https://x.com/SarlackLab/status/1942886524858622357 2025-07-09 10:25:03,suyog41,md5,5fc21db8fec77b97d3e86f4dc0ec38ce,#APT,https://x.com/suyog41/status/1942892749822566737 2025-07-09 10:25:03,suyog41,url,http://army-lk.info,#APT,https://x.com/suyog41/status/1942892749822566737 2025-07-09 10:25:03,suyog41,domain,army-lk.info,#APT,https://x.com/suyog41/status/1942892749822566737 2025-07-09 10:58:49,dsasaki5,domain,ucscard-japan-saferkey.icu,#phishing,https://x.com/dsasaki5/status/1942901248090365974 2025-07-09 10:58:49,dsasaki5,url,https://ucscard-japan-saferkey.icu,#phishing,https://x.com/dsasaki5/status/1942901248090365974 2025-07-09 11:07:13,drb_ra,url,http://101.43.62.241:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903359754916195 2025-07-09 11:07:13,drb_ra,ip,101.43.62.241,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903359754916195 2025-07-09 11:07:13,drb_ra,ip,110.40.139.46,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903359754916195 2025-07-09 11:09:16,drb_ra,ip,121.40.86.70,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903876899762627 2025-07-09 11:09:16,drb_ra,url,http://121.40.86.70:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903876899762627 2025-07-09 11:09:21,drb_ra,ip,42.194.224.235,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903899322491055 2025-07-09 11:09:21,drb_ra,url,http://42.194.224.235:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903899322491055 2025-07-09 11:09:21,drb_ra,ip,193.112.239.170,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903899322491055 2025-07-09 11:09:26,drb_ra,url,http://42.193.0.19:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903920193311071 2025-07-09 11:09:26,drb_ra,ip,42.193.0.19,#C2 #CobaltStrike,https://x.com/drb_ra/status/1942903920193311071 2025-07-09 11:09:31,drb_ra,ip,124.70.219.41,#CobaltStrike #C2,https://x.com/drb_ra/status/1942903941395546142 2025-07-09 11:09:31,drb_ra,url,http://124.70.219.41:7070,#CobaltStrike #C2,https://x.com/drb_ra/status/1942903941395546142 2025-07-09 11:15:36,drb_ra,ip,47.245.61.75,#CobaltStrike #C2,https://x.com/drb_ra/status/1942905472375275604 2025-07-09 11:15:36,drb_ra,domain,down5.huorong.cn,#CobaltStrike #C2,https://x.com/drb_ra/status/1942905472375275604 2025-07-09 11:15:36,drb_ra,url,http://47.245.61.75:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1942905472375275604 2025-07-09 11:15:36,drb_ra,url,https://down5.huorong.cn/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1942905472375275604 2025-07-09 11:41:45,sdcyberresearch,domain,jqueri.at,#Magecart,https://x.com/sdcyberresearch/status/1942912053561208948 2025-07-09 11:41:45,sdcyberresearch,url,http://jqueri.at,#Magecart,https://x.com/sdcyberresearch/status/1942912053561208948 2025-07-09 12:20:56,suyog41,md5,f20147b25cf392aee3b8d67146866ba6,,https://x.com/suyog41/status/1942921912859988330 2025-07-09 12:20:56,suyog41,md5,d92864aa744aff18bfdabdecf3d66d7a,,https://x.com/suyog41/status/1942921912859988330 2025-07-09 12:20:56,suyog41,md5,600c115b37044795ee4a697431eb5157,,https://x.com/suyog41/status/1942921912859988330 2025-07-09 12:20:56,suyog41,md5,1593bc2f6fdac35c5fdad7ef8fa72f73,,https://x.com/suyog41/status/1942921912859988330 2025-07-09 12:20:56,suyog41,md5,95f5bdfe752224f3a67e16d3c6e2c89c,,https://x.com/suyog41/status/1942921912859988330 2025-07-09 12:20:56,suyog41,md5,f67a69046b2ecc54b9badaca0b0d2a9c,,https://x.com/suyog41/status/1942921912859988330 2025-07-09 12:20:56,suyog41,md5,af9f4103ac03411f2d072d8aa2d5c9be,,https://x.com/suyog41/status/1942921912859988330 2025-07-09 13:19:53,masaomi346,url,https://aaaequireddomainsad.longmusic.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1942936746532233603 2025-07-09 13:19:53,masaomi346,domain,aaaequireddomainsad.longmusic.com,#phishing,https://x.com/masaomi346/status/1942936746532233603 2025-07-09 13:19:53,masaomi346,url,https://aaaequireddomainsad.faqserv.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1942936746532233603 2025-07-09 13:19:53,masaomi346,url,https://aaaequireddomainsad.dynamic-dns.net/wdsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1942936746532233603 2025-07-09 13:19:53,masaomi346,domain,aaaequireddomainsad.dynamic-dns.net,#phishing,https://x.com/masaomi346/status/1942936746532233603 2025-07-09 13:19:53,masaomi346,domain,aaaequireddomainsad.faqserv.com,#phishing,https://x.com/masaomi346/status/1942936746532233603 2025-07-09 13:20:40,masaomi346,domain,dsadsagawanauthoritati.onedumb.com,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 13:20:40,masaomi346,url,https://dsadsagawanauthoritati.onedumb.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 13:20:40,masaomi346,domain,aaaequireddomainsad.serveusers.com,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 13:20:40,masaomi346,url,https://aaaequireddomainsad.serveusers.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 13:20:40,masaomi346,domain,dsadsagawanauthoritati.sexidude.com,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 13:20:40,masaomi346,url,https://dsadsagawanauthoritati.sexidude.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 13:20:40,masaomi346,domain,dsadsagawanauthoritati.zzux.com,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 13:20:40,masaomi346,url,https://dsadsagawanauthoritati.zzux.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1942936944029389234 2025-07-09 14:00:07,urldna_bot,url,https://kuzzatumrea.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942946875025354930 2025-07-09 14:00:07,urldna_bot,domain,kuzzatumrea.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1942946875025354930 2025-07-09 14:00:18,SarlackLab,url,http://ducktipo.duckdns.org,#NanoCore #C2,https://x.com/SarlackLab/status/1942946921007521945 2025-07-09 14:00:18,SarlackLab,ip,198.23.200.93,#NanoCore #C2,https://x.com/SarlackLab/status/1942946921007521945 2025-07-09 14:00:18,SarlackLab,url,http://198.23.200.93:8634,#NanoCore #C2,https://x.com/SarlackLab/status/1942946921007521945 2025-07-09 14:00:18,SarlackLab,domain,ducktipo.duckdns.org,#NanoCore #C2,https://x.com/SarlackLab/status/1942946921007521945 2025-07-09 14:11:30,harugasumi,domain,drientbnk-je01-06.com,#phishing,https://x.com/harugasumi/status/1942949737512264013 2025-07-09 14:11:30,harugasumi,url,https://drientbnk-je01-06.com,#phishing,https://x.com/harugasumi/status/1942949737512264013 2025-07-09 14:11:30,harugasumi,domain,drient-ja.com,#phishing,https://x.com/harugasumi/status/1942949737512264013 2025-07-09 14:11:30,harugasumi,url,https://drient-ja.com/index/client/ops/ib/3210000,#phishing,https://x.com/harugasumi/status/1942949737512264013 2025-07-09 14:11:30,harugasumi,ip,35.220.174.63,#phishing,https://x.com/harugasumi/status/1942949737512264013 2025-07-09 14:15:43,harugasumi,domain,drientbnk-je0.com,#phishing,https://x.com/harugasumi/status/1942950801384812909 2025-07-09 14:15:43,harugasumi,url,https://drientbnk-je0.com,#phishing,https://x.com/harugasumi/status/1942950801384812909 2025-07-09 14:45:45,volrant136,url,http://snipastexxvvzn.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,domain,snipastexxvvzn.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,url,http://snipastexxvvzm.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,domain,snipastexxvvzm.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,url,http://snipastexxvvzd.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,domain,snipastexxvvzd.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,url,http://snipastexxvvzc.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,url,http://snipastexxvvzb.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,domain,snipastexxvvzb.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,url,http://snipastexxvvza.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,domain,snipastexxvvza.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 14:45:45,volrant136,domain,snipastexxvvzc.top,#phishing,https://x.com/volrant136/status/1942958359302263102 2025-07-09 15:33:44,Sh4dow3x3,domain,coraiseinsurance.life,#phishing,https://x.com/Sh4dow3x3/status/1942970433642385691 2025-07-09 15:33:44,Sh4dow3x3,url,http://coraiseinsurance.life,#phishing,https://x.com/Sh4dow3x3/status/1942970433642385691 2025-07-09 15:33:44,Sh4dow3x3,url,http://159.198.66.166,#phishing,https://x.com/Sh4dow3x3/status/1942970433642385691 2025-07-09 15:33:44,Sh4dow3x3,ip,159.198.66.166,#phishing,https://x.com/Sh4dow3x3/status/1942970433642385691 2025-07-09 15:46:37,fbgwls245,md5,48911618E0C5F740434E3C77F5BF83E2,#ransomware,https://x.com/fbgwls245/status/1942973674140975242 2025-07-09 15:57:01,skocherhan,domain,building360.com.au,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,sha256,954aa858b3bffb8511bc41bc88b07d2b24597c37faf522550e26c9aa3b0d220d,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,domain,servicesauloginsecure.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,url,http://building360.com.au,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,url,http://alejandrodemiguel.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,url,http://servicesauloginsecure.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,url,http://roofing.fbdoors.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,domain,roofing.fbdoors.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,url,http://login.dolunaysajans.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,domain,alejandrodemiguel.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 15:57:01,skocherhan,domain,login.dolunaysajans.com,,https://x.com/skocherhan/status/1942976292506234983 2025-07-09 16:07:01,drb_ra,url,https://down5.huorong.cn/s/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1942978810716295202 2025-07-09 16:11:32,skocherhan,domain,rdap.mastername.ru,,https://x.com/skocherhan/status/1942979945187226104 2025-07-09 16:11:32,skocherhan,url,http://rdap.mastername.ru,,https://x.com/skocherhan/status/1942979945187226104 2025-07-09 16:12:11,skocherhan,md5,009bb71299a4f74fe00cf7b8cd26fdfc,,https://x.com/skocherhan/status/1942980108056404016 2025-07-09 16:35:19,skocherhan,domain,system-update.cloud,#Lumma,https://x.com/skocherhan/status/1942985931813761342 2025-07-09 16:35:19,skocherhan,url,http://updatefilescdn.b-cdn.net,#Lumma,https://x.com/skocherhan/status/1942985931813761342 2025-07-09 16:35:19,skocherhan,url,http://system-update.cloud,#Lumma,https://x.com/skocherhan/status/1942985931813761342 2025-07-09 16:35:19,skocherhan,url,http://update-software.us,#Lumma,https://x.com/skocherhan/status/1942985931813761342 2025-07-09 16:35:19,skocherhan,domain,update-software.us,#Lumma,https://x.com/skocherhan/status/1942985931813761342 2025-07-09 16:35:19,skocherhan,domain,updatefilescdn.b-cdn.net,#Lumma,https://x.com/skocherhan/status/1942985931813761342 2025-07-09 16:48:55,skocherhan,domain,web-telegram.us,#Lumma,https://x.com/skocherhan/status/1942989351710814288 2025-07-09 16:48:55,skocherhan,url,http://web-telegram.us,#Lumma,https://x.com/skocherhan/status/1942989351710814288 2025-07-09 17:28:18,skocherhan,domain,omfghh2442.chickenkiller.com:2409,#Remcos #opendir,https://x.com/skocherhan/status/1942999265841655922 2025-07-09 17:28:18,skocherhan,url,http://omfghh2442.chickenkiller.com:2409,#Remcos #opendir,https://x.com/skocherhan/status/1942999265841655922 2025-07-09 17:28:18,skocherhan,domain,1337smvids.xyz,#Remcos #opendir,https://x.com/skocherhan/status/1942999265841655922 2025-07-09 17:28:18,skocherhan,url,http://1337smvids.xyz/4/,#Remcos #opendir,https://x.com/skocherhan/status/1942999265841655922 2025-07-09 18:00:08,urldna_bot,domain,dancing-naiad-5cfd65.netlify.app,#scam #phishing,https://x.com/urldna_bot/status/1943007274340864392 2025-07-09 18:00:08,urldna_bot,url,http://dancing-naiad-5cfd65.netlify.app,#scam #phishing,https://x.com/urldna_bot/status/1943007274340864392 2025-07-09 18:48:13,drb_ra,url,http://160.250.129.6:8888,#C2 #Supershell,https://x.com/drb_ra/status/1943019375012831726 2025-07-09 18:48:13,drb_ra,ip,160.250.129.6,#C2 #Supershell,https://x.com/drb_ra/status/1943019375012831726 2025-07-09 18:48:19,drb_ra,url,http://156.246.3.168:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019401911083410 2025-07-09 18:48:19,drb_ra,ip,156.246.3.168,#C2 #Supershell,https://x.com/drb_ra/status/1943019401911083410 2025-07-09 18:48:25,drb_ra,url,http://156.246.3.172:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019426007105734 2025-07-09 18:48:25,drb_ra,ip,156.246.3.172,#C2 #Supershell,https://x.com/drb_ra/status/1943019426007105734 2025-07-09 18:48:31,drb_ra,ip,156.246.2.186,#C2 #Supershell,https://x.com/drb_ra/status/1943019451139412008 2025-07-09 18:48:31,drb_ra,url,http://156.246.2.186:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019451139412008 2025-07-09 18:48:37,drb_ra,url,http://156.246.2.189:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019476410052908 2025-07-09 18:48:37,drb_ra,ip,156.246.2.189,#C2 #Supershell,https://x.com/drb_ra/status/1943019476410052908 2025-07-09 18:48:43,drb_ra,url,http://156.246.1.171:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019501722964427 2025-07-09 18:48:43,drb_ra,ip,156.246.1.171,#C2 #Supershell,https://x.com/drb_ra/status/1943019501722964427 2025-07-09 18:48:49,drb_ra,url,http://156.246.3.188:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019529094799491 2025-07-09 18:48:49,drb_ra,ip,156.246.3.188,#C2 #Supershell,https://x.com/drb_ra/status/1943019529094799491 2025-07-09 18:48:56,drb_ra,url,http://156.246.6.184:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019556382900595 2025-07-09 18:48:56,drb_ra,ip,156.246.6.184,#C2 #Supershell,https://x.com/drb_ra/status/1943019556382900595 2025-07-09 18:49:02,drb_ra,url,http://156.246.4.163:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019582710518066 2025-07-09 18:49:02,drb_ra,ip,156.246.4.163,#C2 #Supershell,https://x.com/drb_ra/status/1943019582710518066 2025-07-09 18:49:08,drb_ra,url,http://156.246.3.185:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019607083663486 2025-07-09 18:49:08,drb_ra,ip,156.246.3.185,#C2 #Supershell,https://x.com/drb_ra/status/1943019607083663486 2025-07-09 18:49:15,drb_ra,ip,156.246.3.171,#C2 #Supershell,https://x.com/drb_ra/status/1943019634409771432 2025-07-09 18:49:15,drb_ra,url,http://156.246.3.171:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019634409771432 2025-07-09 18:49:21,drb_ra,ip,156.246.6.166,#C2 #Supershell,https://x.com/drb_ra/status/1943019659625632187 2025-07-09 18:49:21,drb_ra,url,http://156.246.6.166:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019659625632187 2025-07-09 18:49:27,drb_ra,url,http://156.246.3.164:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019685739458703 2025-07-09 18:49:27,drb_ra,ip,156.246.3.164,#C2 #Supershell,https://x.com/drb_ra/status/1943019685739458703 2025-07-09 18:49:32,drb_ra,url,http://156.246.3.187:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019709600874904 2025-07-09 18:49:32,drb_ra,ip,156.246.3.187,#C2 #Supershell,https://x.com/drb_ra/status/1943019709600874904 2025-07-09 18:49:39,drb_ra,url,http://156.246.2.163:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019735295066463 2025-07-09 18:49:39,drb_ra,ip,156.246.2.163,#C2 #Supershell,https://x.com/drb_ra/status/1943019735295066463 2025-07-09 18:49:45,drb_ra,url,http://156.246.0.177:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019761870180509 2025-07-09 18:49:45,drb_ra,ip,156.246.0.177,#C2 #Supershell,https://x.com/drb_ra/status/1943019761870180509 2025-07-09 18:49:51,drb_ra,url,http://156.246.0.190:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019786402767137 2025-07-09 18:49:51,drb_ra,ip,156.246.0.190,#C2 #Supershell,https://x.com/drb_ra/status/1943019786402767137 2025-07-09 18:49:57,drb_ra,url,http://156.246.7.186:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019812508099009 2025-07-09 18:49:57,drb_ra,ip,156.246.7.186,#C2 #Supershell,https://x.com/drb_ra/status/1943019812508099009 2025-07-09 18:50:03,drb_ra,url,http://156.246.0.179:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019838206529615 2025-07-09 18:50:03,drb_ra,ip,156.246.0.179,#C2 #Supershell,https://x.com/drb_ra/status/1943019838206529615 2025-07-09 18:50:09,drb_ra,ip,156.246.2.168,#C2 #Supershell,https://x.com/drb_ra/status/1943019862760264123 2025-07-09 18:50:09,drb_ra,url,http://156.246.2.168:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019862760264123 2025-07-09 18:50:15,drb_ra,url,http://156.246.0.181:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019887703531729 2025-07-09 18:50:15,drb_ra,ip,156.246.0.181,#C2 #Supershell,https://x.com/drb_ra/status/1943019887703531729 2025-07-09 18:50:21,drb_ra,url,http://156.246.5.186:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019912890585529 2025-07-09 18:50:21,drb_ra,ip,156.246.5.186,#C2 #Supershell,https://x.com/drb_ra/status/1943019912890585529 2025-07-09 18:50:27,drb_ra,url,http://156.246.5.187:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019937427050561 2025-07-09 18:50:27,drb_ra,ip,156.246.5.187,#C2 #Supershell,https://x.com/drb_ra/status/1943019937427050561 2025-07-09 18:50:32,drb_ra,url,http://156.246.1.172:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019960697057668 2025-07-09 18:50:32,drb_ra,ip,156.246.1.172,#C2 #Supershell,https://x.com/drb_ra/status/1943019960697057668 2025-07-09 18:50:38,drb_ra,url,http://156.246.5.179:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943019985883852937 2025-07-09 18:50:38,drb_ra,ip,156.246.5.179,#C2 #Supershell,https://x.com/drb_ra/status/1943019985883852937 2025-07-09 18:50:44,drb_ra,url,http://156.246.6.164:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020011422929061 2025-07-09 18:50:44,drb_ra,ip,156.246.6.164,#C2 #Supershell,https://x.com/drb_ra/status/1943020011422929061 2025-07-09 18:50:50,drb_ra,url,http://156.246.4.186:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020035867341246 2025-07-09 18:50:50,drb_ra,ip,156.246.4.186,#C2 #Supershell,https://x.com/drb_ra/status/1943020035867341246 2025-07-09 18:50:57,drb_ra,ip,156.246.1.190,#C2 #Supershell,https://x.com/drb_ra/status/1943020063541322075 2025-07-09 18:50:57,drb_ra,url,http://156.246.1.190:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020063541322075 2025-07-09 18:51:03,drb_ra,url,http://156.246.3.163:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020088426123445 2025-07-09 18:51:03,drb_ra,ip,156.246.3.163,#C2 #Supershell,https://x.com/drb_ra/status/1943020088426123445 2025-07-09 18:51:09,drb_ra,url,http://156.246.3.190:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020112589488583 2025-07-09 18:51:09,drb_ra,ip,156.246.3.190,#C2 #Supershell,https://x.com/drb_ra/status/1943020112589488583 2025-07-09 18:51:15,drb_ra,url,http://156.246.7.188:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020138443477497 2025-07-09 18:51:15,drb_ra,ip,156.246.7.188,#C2 #Supershell,https://x.com/drb_ra/status/1943020138443477497 2025-07-09 18:51:21,drb_ra,url,http://156.246.2.190:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020164695593017 2025-07-09 18:51:21,drb_ra,ip,156.246.2.190,#C2 #Supershell,https://x.com/drb_ra/status/1943020164695593017 2025-07-09 18:51:27,drb_ra,url,http://156.246.3.174:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020189890621727 2025-07-09 18:51:27,drb_ra,ip,156.246.3.174,#C2 #Supershell,https://x.com/drb_ra/status/1943020189890621727 2025-07-09 18:51:34,drb_ra,url,http://156.246.7.172:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943020218436980903 2025-07-09 18:51:34,drb_ra,ip,156.246.7.172,#C2 #Supershell,https://x.com/drb_ra/status/1943020218436980903 2025-07-09 18:51:40,drb_ra,url,http://88.88.255.180:443,#Havoc #C2,https://x.com/drb_ra/status/1943020244898865451 2025-07-09 18:51:40,drb_ra,ip,88.88.255.180,#Havoc #C2,https://x.com/drb_ra/status/1943020244898865451 2025-07-09 18:51:46,drb_ra,ip,185.196.11.206,#Havoc #C2,https://x.com/drb_ra/status/1943020270874153079 2025-07-09 18:51:46,drb_ra,url,http://185.196.11.206:443,#Havoc #C2,https://x.com/drb_ra/status/1943020270874153079 2025-07-09 18:51:53,drb_ra,url,http://138.68.184.166:443,#Havoc #C2,https://x.com/drb_ra/status/1943020298091049097 2025-07-09 18:51:53,drb_ra,ip,138.68.184.166,#Havoc #C2,https://x.com/drb_ra/status/1943020298091049097 2025-07-09 18:51:59,drb_ra,url,http://18.166.178.208:443,#Havoc #C2,https://x.com/drb_ra/status/1943020325387518071 2025-07-09 18:51:59,drb_ra,ip,18.166.178.208,#Havoc #C2,https://x.com/drb_ra/status/1943020325387518071 2025-07-09 18:52:06,drb_ra,url,http://35.73.179.148:443,#Havoc #C2,https://x.com/drb_ra/status/1943020352281444852 2025-07-09 18:52:06,drb_ra,ip,35.73.179.148,#Havoc #C2,https://x.com/drb_ra/status/1943020352281444852 2025-07-09 18:52:11,drb_ra,url,http://195.206.234.38:443,#Bianlian #C2,https://x.com/drb_ra/status/1943020376029893055 2025-07-09 18:52:11,drb_ra,ip,195.206.234.38,#Bianlian #C2,https://x.com/drb_ra/status/1943020376029893055 2025-07-09 18:52:16,drb_ra,url,http://18.252.207.213:443,#Deimos #C2,https://x.com/drb_ra/status/1943020396862665133 2025-07-09 18:52:16,drb_ra,ip,18.252.207.213,#Deimos #C2,https://x.com/drb_ra/status/1943020396862665133 2025-07-09 18:54:18,skocherhan,domain,2rxyt9urhq0bgj.org,,https://x.com/skocherhan/status/1943020907175219494 2025-07-09 18:54:18,skocherhan,url,http://2rxyt9urhq0bgj.org,,https://x.com/skocherhan/status/1943020907175219494 2025-07-09 18:54:18,skocherhan,md5,e1f6546ebc8d9a299c292a540439a62c,,https://x.com/skocherhan/status/1943020907175219494 2025-07-09 18:54:20,drb_ra,ip,85.9.216.81,#C2,https://x.com/drb_ra/status/1943020916491080046 2025-07-09 18:54:20,drb_ra,url,http://85.9.216.81:443,#C2,https://x.com/drb_ra/status/1943020916491080046 2025-07-09 18:54:25,drb_ra,url,http://51.79.165.150:443,#C2,https://x.com/drb_ra/status/1943020938292830337 2025-07-09 18:54:25,drb_ra,ip,51.79.165.150,#C2,https://x.com/drb_ra/status/1943020938292830337 2025-07-09 18:54:31,drb_ra,url,http://194.26.192.183:7070,#Remcos #C2,https://x.com/drb_ra/status/1943020962091282789 2025-07-09 18:54:31,drb_ra,ip,194.26.192.183,#Remcos #C2,https://x.com/drb_ra/status/1943020962091282789 2025-07-09 18:54:37,drb_ra,url,http://194.59.30.27:2404,#Remcos #C2,https://x.com/drb_ra/status/1943020986602750103 2025-07-09 18:54:37,drb_ra,ip,194.59.30.27,#Remcos #C2,https://x.com/drb_ra/status/1943020986602750103 2025-07-09 18:54:43,drb_ra,url,http://54.149.158.27:51200,#NetSupportRAT #C2,https://x.com/drb_ra/status/1943021010573291822 2025-07-09 18:54:48,drb_ra,url,http://54.149.158.27:7000,#NetSupportRAT #C2,https://x.com/drb_ra/status/1943021034514350466 2025-07-09 18:54:48,drb_ra,ip,54.149.158.27,#NetSupportRAT #C2,https://x.com/drb_ra/status/1943021034514350466 2025-07-09 18:54:54,drb_ra,url,http://3.29.58.110:9104,#NetSupportRAT #C2,https://x.com/drb_ra/status/1943021059034239435 2025-07-09 18:55:00,drb_ra,url,http://196.251.86.88:7000,#AsyncRAT #C2,https://x.com/drb_ra/status/1943021083168227813 2025-07-09 18:55:00,drb_ra,ip,196.251.86.88,#AsyncRAT #C2,https://x.com/drb_ra/status/1943021083168227813 2025-07-09 18:55:26,drb_ra,url,http://54.154.51.211:443,#Interactsh #C2,https://x.com/drb_ra/status/1943021194103377922 2025-07-09 18:55:26,drb_ra,ip,54.154.51.211,#Interactsh #C2,https://x.com/drb_ra/status/1943021194103377922 2025-07-09 18:55:32,drb_ra,url,http://3.249.78.208:80,#Interactsh #C2,https://x.com/drb_ra/status/1943021216001880373 2025-07-09 18:55:37,drb_ra,url,http://3.249.112.164:443,#Interactsh #C2,https://x.com/drb_ra/status/1943021238361694323 2025-07-09 18:55:41,drb_ra,ip,34.241.238.102,#Interactsh #C2,https://x.com/drb_ra/status/1943021255134724291 2025-07-09 18:55:41,drb_ra,url,http://34.241.238.102:80,#Interactsh #C2,https://x.com/drb_ra/status/1943021255134724291 2025-07-09 18:55:46,drb_ra,url,http://156.246.6.175:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021277993725967 2025-07-09 18:55:46,drb_ra,ip,156.246.6.175,#Supershell #C2,https://x.com/drb_ra/status/1943021277993725967 2025-07-09 18:55:52,drb_ra,url,http://156.246.4.169:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021300647080447 2025-07-09 18:55:52,drb_ra,ip,156.246.4.169,#Supershell #C2,https://x.com/drb_ra/status/1943021300647080447 2025-07-09 18:55:57,drb_ra,url,http://156.246.7.189:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021323095052542 2025-07-09 18:55:57,drb_ra,ip,156.246.7.189,#Supershell #C2,https://x.com/drb_ra/status/1943021323095052542 2025-07-09 18:56:03,drb_ra,url,http://156.246.6.190:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021348386672798 2025-07-09 18:56:03,drb_ra,ip,156.246.6.190,#Supershell #C2,https://x.com/drb_ra/status/1943021348386672798 2025-07-09 18:56:08,drb_ra,url,http://156.246.4.190:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021370540949985 2025-07-09 18:56:08,drb_ra,ip,156.246.4.190,#Supershell #C2,https://x.com/drb_ra/status/1943021370540949985 2025-07-09 18:56:14,drb_ra,url,http://156.246.3.183:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021393320284240 2025-07-09 18:56:14,drb_ra,ip,156.246.3.183,#Supershell #C2,https://x.com/drb_ra/status/1943021393320284240 2025-07-09 18:56:19,drb_ra,url,http://156.246.3.178:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021416145637641 2025-07-09 18:56:19,drb_ra,ip,156.246.3.178,#Supershell #C2,https://x.com/drb_ra/status/1943021416145637641 2025-07-09 18:56:25,drb_ra,ip,156.246.7.167,#Supershell #C2,https://x.com/drb_ra/status/1943021440527180253 2025-07-09 18:56:25,drb_ra,url,http://156.246.7.167:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021440527180253 2025-07-09 18:56:31,drb_ra,url,http://156.246.3.169:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021465772691940 2025-07-09 18:56:31,drb_ra,ip,156.246.3.169,#Supershell #C2,https://x.com/drb_ra/status/1943021465772691940 2025-07-09 18:56:37,drb_ra,url,http://156.246.2.179:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021490234102159 2025-07-09 18:56:37,drb_ra,ip,156.246.2.179,#Supershell #C2,https://x.com/drb_ra/status/1943021490234102159 2025-07-09 18:56:42,drb_ra,url,http://156.246.3.179:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021512883093581 2025-07-09 18:56:42,drb_ra,ip,156.246.3.179,#Supershell #C2,https://x.com/drb_ra/status/1943021512883093581 2025-07-09 18:56:48,drb_ra,url,http://156.246.0.185:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021538308931869 2025-07-09 18:56:48,drb_ra,ip,156.246.0.185,#Supershell #C2,https://x.com/drb_ra/status/1943021538308931869 2025-07-09 18:56:54,drb_ra,url,http://156.246.0.188:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021562782683460 2025-07-09 18:56:54,drb_ra,ip,156.246.0.188,#Supershell #C2,https://x.com/drb_ra/status/1943021562782683460 2025-07-09 18:57:00,drb_ra,url,http://156.246.3.162:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021585599762608 2025-07-09 18:57:00,drb_ra,ip,156.246.3.162,#Supershell #C2,https://x.com/drb_ra/status/1943021585599762608 2025-07-09 18:57:05,drb_ra,url,http://156.246.1.162:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021609003909403 2025-07-09 18:57:05,drb_ra,ip,156.246.1.162,#Supershell #C2,https://x.com/drb_ra/status/1943021609003909403 2025-07-09 18:57:11,drb_ra,ip,122.51.41.221,#Supershell #C2,https://x.com/drb_ra/status/1943021633192841293 2025-07-09 18:57:11,drb_ra,url,http://122.51.41.221:8888,#Supershell #C2,https://x.com/drb_ra/status/1943021633192841293 2025-07-09 18:57:17,drb_ra,url,http://156.246.3.176:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021656940908664 2025-07-09 18:57:17,drb_ra,ip,156.246.3.176,#Supershell #C2,https://x.com/drb_ra/status/1943021656940908664 2025-07-09 18:57:22,drb_ra,url,http://156.246.7.175:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021679434686764 2025-07-09 18:57:22,drb_ra,ip,156.246.7.175,#Supershell #C2,https://x.com/drb_ra/status/1943021679434686764 2025-07-09 18:57:28,drb_ra,url,http://156.246.1.174:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021702901813437 2025-07-09 18:57:28,drb_ra,ip,156.246.1.174,#Supershell #C2,https://x.com/drb_ra/status/1943021702901813437 2025-07-09 18:57:33,drb_ra,url,http://156.246.7.165:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021726465454447 2025-07-09 18:57:33,drb_ra,ip,156.246.7.165,#Supershell #C2,https://x.com/drb_ra/status/1943021726465454447 2025-07-09 18:57:39,drb_ra,url,http://156.246.2.172:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021749001417209 2025-07-09 18:57:39,drb_ra,ip,156.246.2.172,#Supershell #C2,https://x.com/drb_ra/status/1943021749001417209 2025-07-09 18:57:44,drb_ra,url,http://156.246.3.181:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021771650715862 2025-07-09 18:57:44,drb_ra,ip,156.246.3.181,#Supershell #C2,https://x.com/drb_ra/status/1943021771650715862 2025-07-09 18:57:48,sicehice,ip,220.158.234.135,,https://x.com/sicehice/status/1943021788520419643 2025-07-09 18:57:48,sicehice,md5,190aaa41386089b83db85ef045dc58f0,,https://x.com/sicehice/status/1943021788520419643 2025-07-09 18:57:48,sicehice,url,http://220.158.234.135/x/vigor,,https://x.com/sicehice/status/1943021788520419643 2025-07-09 18:57:48,sicehice,ip,87.121.84.34,,https://x.com/sicehice/status/1943021788520419643 2025-07-09 18:57:50,drb_ra,url,http://156.246.3.166:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021794782527621 2025-07-09 18:57:50,drb_ra,ip,156.246.3.166,#Supershell #C2,https://x.com/drb_ra/status/1943021794782527621 2025-07-09 18:57:55,drb_ra,url,http://156.246.0.170:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021816810741871 2025-07-09 18:57:55,drb_ra,ip,156.246.0.170,#Supershell #C2,https://x.com/drb_ra/status/1943021816810741871 2025-07-09 18:58:01,drb_ra,url,http://156.246.6.182:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021840546619495 2025-07-09 18:58:01,drb_ra,ip,156.246.6.182,#Supershell #C2,https://x.com/drb_ra/status/1943021840546619495 2025-07-09 18:58:06,drb_ra,ip,156.246.3.175,#Supershell #C2,https://x.com/drb_ra/status/1943021862033772762 2025-07-09 18:58:06,drb_ra,url,http://156.246.3.175:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021862033772762 2025-07-09 18:58:11,drb_ra,url,http://156.246.3.180:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021884171300973 2025-07-09 18:58:11,drb_ra,ip,156.246.3.180,#Supershell #C2,https://x.com/drb_ra/status/1943021884171300973 2025-07-09 18:58:16,drb_ra,url,http://156.246.5.188:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021905809641522 2025-07-09 18:58:16,drb_ra,ip,156.246.5.188,#Supershell #C2,https://x.com/drb_ra/status/1943021905809641522 2025-07-09 18:58:22,drb_ra,url,http://156.246.3.173:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021930694762984 2025-07-09 18:58:22,drb_ra,ip,156.246.3.173,#Supershell #C2,https://x.com/drb_ra/status/1943021930694762984 2025-07-09 18:58:27,drb_ra,ip,156.246.4.165,#Supershell #C2,https://x.com/drb_ra/status/1943021952727241139 2025-07-09 18:58:27,drb_ra,url,http://156.246.4.165:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021952727241139 2025-07-09 18:58:33,drb_ra,url,http://156.246.6.168:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021975065993296 2025-07-09 18:58:33,drb_ra,ip,156.246.6.168,#Supershell #C2,https://x.com/drb_ra/status/1943021975065993296 2025-07-09 18:58:38,drb_ra,url,http://156.246.17.42:9397,#Supershell #C2,https://x.com/drb_ra/status/1943021997770084846 2025-07-09 18:58:38,drb_ra,ip,156.246.17.42,#Supershell #C2,https://x.com/drb_ra/status/1943021997770084846 2025-07-09 18:58:43,drb_ra,url,http://156.246.0.162:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022019823411239 2025-07-09 18:58:43,drb_ra,ip,156.246.0.162,#Supershell #C2,https://x.com/drb_ra/status/1943022019823411239 2025-07-09 18:58:49,drb_ra,url,http://156.246.5.172:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022043185975369 2025-07-09 18:58:49,drb_ra,ip,156.246.5.172,#Supershell #C2,https://x.com/drb_ra/status/1943022043185975369 2025-07-09 18:58:54,drb_ra,url,http://156.246.6.178:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022063863619691 2025-07-09 18:58:54,drb_ra,ip,156.246.6.178,#Supershell #C2,https://x.com/drb_ra/status/1943022063863619691 2025-07-09 18:58:59,drb_ra,ip,156.246.3.177,#Supershell #C2,https://x.com/drb_ra/status/1943022084742885778 2025-07-09 18:58:59,drb_ra,url,http://156.246.3.177:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022084742885778 2025-07-09 18:59:03,drb_ra,url,http://156.246.3.182:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022104036937976 2025-07-09 18:59:03,drb_ra,ip,156.246.3.182,#Supershell #C2,https://x.com/drb_ra/status/1943022104036937976 2025-07-09 18:59:07,drb_ra,url,http://156.246.5.181:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022117924012273 2025-07-09 18:59:07,drb_ra,ip,156.246.5.181,#Supershell #C2,https://x.com/drb_ra/status/1943022117924012273 2025-07-09 18:59:11,drb_ra,url,http://156.246.2.165:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022135187841486 2025-07-09 18:59:11,drb_ra,ip,156.246.2.165,#Supershell #C2,https://x.com/drb_ra/status/1943022135187841486 2025-07-09 18:59:15,drb_ra,url,http://156.246.7.169:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022153298739399 2025-07-09 18:59:15,drb_ra,ip,156.246.7.169,#Supershell #C2,https://x.com/drb_ra/status/1943022153298739399 2025-07-09 18:59:20,drb_ra,url,http://156.246.2.162:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022172441559204 2025-07-09 18:59:20,drb_ra,ip,156.246.2.162,#Supershell #C2,https://x.com/drb_ra/status/1943022172441559204 2025-07-09 18:59:24,drb_ra,url,http://156.246.2.164:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022190825296077 2025-07-09 18:59:24,drb_ra,ip,156.246.2.164,#Supershell #C2,https://x.com/drb_ra/status/1943022190825296077 2025-07-09 18:59:29,drb_ra,ip,156.246.0.178,#Supershell #C2,https://x.com/drb_ra/status/1943022209510863026 2025-07-09 18:59:29,drb_ra,url,http://156.246.0.178:9397,#Supershell #C2,https://x.com/drb_ra/status/1943022209510863026 2025-07-09 19:03:39,sicehice,url,http://93.95.115.174/hiddenbin/boatnet.mips,,https://x.com/sicehice/status/1943023259018039793 2025-07-09 19:03:39,sicehice,ip,93.95.115.174,,https://x.com/sicehice/status/1943023259018039793 2025-07-09 20:35:42,500mk500,domain,macpromaster.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://macprohelp.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,macprohelp.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://macproeasy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,macproeasy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://helpyourmac.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,helpyourmac.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://helpmaceasy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,helpmaceasy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://fixmacpro.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,fixmacpro.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,fixmaceasy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://fix-mac-easy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,fix-mac-easy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://151.106.96.4,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,promachelp.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://promachelp.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,promacmaster.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://promacmaster.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,domain,topfixermac.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,ip,151.106.96.4,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://topfixermac.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://fixmaceasy.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:35:42,500mk500,url,http://macpromaster.com,,https://x.com/500mk500/status/1943046425052614902 2025-07-09 20:52:04,drb_ra,ip,139.162.204.37,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943050545742385390 2025-07-09 20:52:04,drb_ra,url,http://139.162.204.37:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943050545742385390 2025-07-09 20:52:16,skocherhan,md5,61451205475311de3b8d21db21f0dde4,#Xworm,https://x.com/skocherhan/status/1943050592844419549 2025-07-09 20:52:16,skocherhan,ip,80.76.49.178,#Xworm,https://x.com/skocherhan/status/1943050592844419549 2025-07-09 20:52:16,skocherhan,url,http://80.76.49.178:7000,#Xworm,https://x.com/skocherhan/status/1943050592844419549 2025-07-09 20:55:56,skocherhan,url,http://93.123.84.204,#Dcrat,https://x.com/skocherhan/status/1943051516778287245 2025-07-09 20:55:56,skocherhan,ip,93.123.84.204,#Dcrat,https://x.com/skocherhan/status/1943051516778287245 2025-07-09 20:59:51,skocherhan,url,http://together-stars.gl.at.ply.gg:5248,,https://x.com/skocherhan/status/1943052504838619301 2025-07-09 20:59:51,skocherhan,md5,6ddc008d1b512f179819974070a2276e,,https://x.com/skocherhan/status/1943052504838619301 2025-07-09 20:59:51,skocherhan,domain,together-stars.gl.at.ply.gg:5248,,https://x.com/skocherhan/status/1943052504838619301 2025-07-09 21:24:02,skocherhan,sha256,391768aca0e962d0a717b0c8ee63037af0a8dcb7f13fa9be8c380cff0436e4dd,,https://x.com/skocherhan/status/1943058588244824225 2025-07-09 21:24:02,skocherhan,domain,u.appw.p-e.kr,,https://x.com/skocherhan/status/1943058588244824225 2025-07-09 21:24:02,skocherhan,url,http://u.appw.p-e.kr/index.php,,https://x.com/skocherhan/status/1943058588244824225 2025-07-09 21:24:02,skocherhan,ip,150.171.27.12,,https://x.com/skocherhan/status/1943058588244824225 2025-07-09 21:24:02,skocherhan,sha256,4ac02dc231f2546ce64335729145db672b5ab01d8943df8a550cc77fc436df14,,https://x.com/skocherhan/status/1943058588244824225 2025-07-09 21:24:02,skocherhan,sha256,d75eae7a38df433a4ac5faca0c70a1634729d884e45d14d306b2078fe0a8e5af,,https://x.com/skocherhan/status/1943058588244824225 2025-07-09 21:25:17,skocherhan,domain,top-fixer.com,,https://x.com/skocherhan/status/1943058902662238521 2025-07-09 21:25:17,skocherhan,url,https://top-fixer.com/?p=141,,https://x.com/skocherhan/status/1943058902662238521 2025-07-09 21:25:17,skocherhan,domain,install.sh,,https://x.com/skocherhan/status/1943058902662238521 2025-07-09 21:25:17,skocherhan,url,http://install.sh,,https://x.com/skocherhan/status/1943058902662238521 2025-07-09 21:43:08,skocherhan,domain,rock-gets.gl.at.ply.gg:38811,,https://x.com/skocherhan/status/1943063396729131309 2025-07-09 21:43:08,skocherhan,url,http://rock-gets.gl.at.ply.gg:38811,,https://x.com/skocherhan/status/1943063396729131309 2025-07-09 21:51:17,catnap707,domain,emeht.cn,#phishing,https://x.com/catnap707/status/1943065446389027238 2025-07-09 21:51:17,catnap707,url,http://emeht.cn/?ytistklkps=dgnsw25,#phishing,https://x.com/catnap707/status/1943065446389027238 2025-07-09 21:51:17,catnap707,domain,dasequireddomainsad.yourtrap.com,#phishing,https://x.com/catnap707/status/1943065446389027238 2025-07-09 21:51:17,catnap707,url,http://dasequireddomainsad.yourtrap.com,#phishing,https://x.com/catnap707/status/1943065446389027238 2025-07-09 21:51:17,catnap707,url,http://165.154.231.7,#phishing,https://x.com/catnap707/status/1943065446389027238 2025-07-09 21:51:17,catnap707,ip,165.154.231.7,#phishing,https://x.com/catnap707/status/1943065446389027238 2025-07-09 21:57:43,skocherhan,url,http://35.161.55.221,,https://x.com/skocherhan/status/1943067065390145717 2025-07-09 21:57:43,skocherhan,ip,35.161.55.221,,https://x.com/skocherhan/status/1943067065390145717 2025-07-09 22:00:13,urldna_bot,domain,xvzxzx.live,#scam #phishing,https://x.com/urldna_bot/status/1943067694237962287 2025-07-09 22:00:13,urldna_bot,url,https://xvzxzx.live/wallets.html,#scam #phishing,https://x.com/urldna_bot/status/1943067694237962287 2025-07-09 22:03:09,skocherhan,url,http://43.156.172.106,,https://x.com/skocherhan/status/1943068432913547572 2025-07-09 22:03:09,skocherhan,ip,43.156.172.106,,https://x.com/skocherhan/status/1943068432913547572 2025-07-09 22:19:46,skocherhan,domain,www-intercativeborkars-us.moomoouscs.dpdns.org,#phishing,https://x.com/skocherhan/status/1943072615318581501 2025-07-09 22:19:46,skocherhan,url,http://www-intercativeborkars-us.moomoouscs.dpdns.org/7cK5mF/,#phishing,https://x.com/skocherhan/status/1943072615318581501 2025-07-09 22:22:00,skocherhan,domain,kxauwdvga.top,#phishing,https://x.com/skocherhan/status/1943073177212424494 2025-07-09 22:22:00,skocherhan,url,http://kxauwdvga.top,#phishing,https://x.com/skocherhan/status/1943073177212424494 2025-07-09 22:37:14,skocherhan,domain,post-kaz.vip,#phishing,https://x.com/skocherhan/status/1943077008306769980 2025-07-09 22:37:14,skocherhan,url,http://post-kaz.vip/it,#phishing,https://x.com/skocherhan/status/1943077008306769980 2025-07-09 22:52:48,drb_ra,domain,scan.daztar.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080927204155799 2025-07-09 22:52:48,drb_ra,url,https://scan.daztar.com/images/20.png,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080927204155799 2025-07-09 22:52:48,drb_ra,url,http://139.162.204.37:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080927204155799 2025-07-09 22:52:53,drb_ra,url,http://47.239.69.149:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080950126035364 2025-07-09 22:52:53,drb_ra,ip,47.239.69.149,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080950126035364 2025-07-09 22:52:59,drb_ra,url,http://124.71.152.57:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080973354020897 2025-07-09 22:52:59,drb_ra,ip,124.71.152.57,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080973354020897 2025-07-09 22:53:05,drb_ra,url,http://42.193.0.19:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943080998301745633 2025-07-09 23:08:54,skocherhan,domain,kazpostes.mom,#phishing,https://x.com/skocherhan/status/1943084981045109097 2025-07-09 23:08:54,skocherhan,url,http://kazpostes.mom/ti,#phishing,https://x.com/skocherhan/status/1943084981045109097 2025-07-10 01:01:53,fbgwls245,domain,wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/fbgwls245/status/1943113412114067457 2025-07-10 01:01:53,fbgwls245,url,http://wugurgyscp5rxpihef5vl6b6m5ont3b6sezhl7boboso2enib2k3q6qd.onion,#ransomware,https://x.com/fbgwls245/status/1943113412114067457 2025-07-10 01:06:02,Metemcyber,domain,etc-materoon.pxiucr.cn,#phishing,https://x.com/Metemcyber/status/1943114454948024764 2025-07-10 01:06:02,Metemcyber,url,https://etc-materoon.pxiucr.cn/Rfuncc1013000extfunc/,#phishing,https://x.com/Metemcyber/status/1943114454948024764 2025-07-10 01:06:02,Metemcyber,url,http://104.21.112.1,#phishing,https://x.com/Metemcyber/status/1943114454948024764 2025-07-10 01:06:02,Metemcyber,url,http://104.21.16.1,#phishing,https://x.com/Metemcyber/status/1943114454948024764 2025-07-10 01:06:02,Metemcyber,url,http://104.21.32.1,#phishing,https://x.com/Metemcyber/status/1943114454948024764 2025-07-10 01:06:09,skocherhan,domain,mobballetc2ec.com,,https://x.com/skocherhan/status/1943114484802896351 2025-07-10 01:06:09,skocherhan,url,http://mobballetc2ec.com,,https://x.com/skocherhan/status/1943114484802896351 2025-07-10 01:19:55,Metemcyber,domain,byxfk.cn,#phishing,https://x.com/Metemcyber/status/1943117952402051148 2025-07-10 01:19:55,Metemcyber,url,https://byxfk.cn/sa1djkljlsd/,#phishing,https://x.com/Metemcyber/status/1943117952402051148 2025-07-10 01:19:55,Metemcyber,domain,kctyk.cn,#phishing,https://x.com/Metemcyber/status/1943117952402051148 2025-07-10 01:19:55,Metemcyber,url,https://kctyk.cn/sa1djkljlsd/,#phishing,https://x.com/Metemcyber/status/1943117952402051148 2025-07-10 01:19:55,Metemcyber,url,http://47.242.61.230,#phishing,https://x.com/Metemcyber/status/1943117952402051148 2025-07-10 01:19:55,Metemcyber,ip,47.242.61.230,#phishing,https://x.com/Metemcyber/status/1943117952402051148 2025-07-10 01:28:49,Metemcyber,domain,trackings-away.bmuday.cn,#phishing,https://x.com/Metemcyber/status/1943120192118362197 2025-07-10 01:28:49,Metemcyber,url,https://trackings-away.bmuday.cn/japeanposder/,#phishing,https://x.com/Metemcyber/status/1943120192118362197 2025-07-10 01:28:49,Metemcyber,url,http://104.21.48.1,#phishing,https://x.com/Metemcyber/status/1943120192118362197 2025-07-10 01:30:49,skocherhan,domain,clerwine.com,,https://x.com/skocherhan/status/1943120693232582844 2025-07-10 01:30:49,skocherhan,url,http://clerwine.com,,https://x.com/skocherhan/status/1943120693232582844 2025-07-10 01:43:56,drb_ra,url,http://115.120.209.195:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943123995576144138 2025-07-10 01:43:56,drb_ra,ip,115.120.209.195,#CobaltStrike #C2,https://x.com/drb_ra/status/1943123995576144138 2025-07-10 01:49:19,skocherhan,domain,jethropc.com,,https://x.com/skocherhan/status/1943125349505864042 2025-07-10 01:49:19,skocherhan,url,http://jethropc.com,,https://x.com/skocherhan/status/1943125349505864042 2025-07-10 01:49:19,skocherhan,md5,9d6c79c0b395cceb83662aa3f7ed0123,,https://x.com/skocherhan/status/1943125349505864042 2025-07-10 01:49:19,skocherhan,sha256,2189aa5be8a01bc29a314c3c3803c2b8131f49a84527c6b0a710b50df661575e,,https://x.com/skocherhan/status/1943125349505864042 2025-07-10 02:00:07,urldna_bot,domain,apples-care-service9p5.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1943128068953940219 2025-07-10 02:00:07,urldna_bot,url,http://apples-care-service9p5.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1943128068953940219 2025-07-10 02:43:40,Cyber_O51NT,domain,ypp-studio.com,#phishing,https://x.com/Cyber_O51NT/status/1943139025247764843 2025-07-10 02:43:40,Cyber_O51NT,url,https://ypp-studio.com,#phishing,https://x.com/Cyber_O51NT/status/1943139025247764843 2025-07-10 04:13:49,skocherhan,domain,ransomed.biz,#ransomware #malware,https://x.com/skocherhan/status/1943161713869607212 2025-07-10 04:13:49,skocherhan,url,http://ransomed.biz,#ransomware #malware,https://x.com/skocherhan/status/1943161713869607212 2025-07-10 04:13:49,skocherhan,ip,213.111.149.87,#ransomware #malware,https://x.com/skocherhan/status/1943161713869607212 2025-07-10 04:13:49,skocherhan,ip,66.63.187.65,#ransomware #malware,https://x.com/skocherhan/status/1943161713869607212 2025-07-10 04:13:49,skocherhan,ip,185.254.197.169,#ransomware #malware,https://x.com/skocherhan/status/1943161713869607212 2025-07-10 05:51:25,Metemcyber,domain,mygas-lapsing.bj9m3r.cn,#phishing,https://x.com/Metemcyber/status/1943186277563797764 2025-07-10 05:51:25,Metemcyber,url,https://mygas-lapsing.bj9m3r.cn/mtgalogin/,#phishing,https://x.com/Metemcyber/status/1943186277563797764 2025-07-10 05:51:25,Metemcyber,url,http://172.67.203.60,#phishing,https://x.com/Metemcyber/status/1943186277563797764 2025-07-10 05:51:25,Metemcyber,url,http://104.21.44.190,#phishing,https://x.com/Metemcyber/status/1943186277563797764 2025-07-10 06:00:10,Metemcyber,domain,eki-zonship.jmfore.cn,#phishing,https://x.com/Metemcyber/status/1943188479099441232 2025-07-10 06:00:10,Metemcyber,url,https://eki-zonship.jmfore.cn/Perosnal_member/,#phishing,https://x.com/Metemcyber/status/1943188479099441232 2025-07-10 06:00:10,Metemcyber,url,http://172.67.175.114,#phishing,https://x.com/Metemcyber/status/1943188479099441232 2025-07-10 06:00:10,Metemcyber,url,http://104.21.17.100,#phishing,https://x.com/Metemcyber/status/1943188479099441232 2025-07-10 06:00:10,urldna_bot,domain,hjdnshu.wixsite.com,#scam #phishing,https://x.com/urldna_bot/status/1943188477320863966 2025-07-10 06:00:10,urldna_bot,url,https://hjdnshu.wixsite.com/my-site,#scam #phishing,https://x.com/urldna_bot/status/1943188477320863966 2025-07-10 06:10:09,Metemcyber,domain,dhl-processical.kldfri.cn,#phishing,https://x.com/Metemcyber/status/1943190988803215773 2025-07-10 06:10:09,Metemcyber,url,https://dhl-processical.kldfri.cn/portal_login_exp/getQuoteTab/,#phishing,https://x.com/Metemcyber/status/1943190988803215773 2025-07-10 06:10:09,Metemcyber,url,http://172.67.212.116,#phishing,https://x.com/Metemcyber/status/1943190988803215773 2025-07-10 06:10:09,Metemcyber,url,http://104.21.16.134,#phishing,https://x.com/Metemcyber/status/1943190988803215773 2025-07-10 06:17:32,Metemcyber,domain,site4-sbisec.erjhkdf.com,#phishing,https://x.com/Metemcyber/status/1943192849799090654 2025-07-10 06:17:32,Metemcyber,url,https://site4-sbisec.erjhkdf.com/pEdHOd/,#phishing,https://x.com/Metemcyber/status/1943192849799090654 2025-07-10 06:17:32,Metemcyber,url,http://172.67.181.179,#phishing,https://x.com/Metemcyber/status/1943192849799090654 2025-07-10 06:17:32,Metemcyber,url,http://104.21.56.86,#phishing,https://x.com/Metemcyber/status/1943192849799090654 2025-07-10 06:48:30,drb_ra,url,http://216.252.238.44:34056,#Havoc #C2,https://x.com/drb_ra/status/1943200639728627988 2025-07-10 06:48:30,drb_ra,ip,216.252.238.44,#Havoc #C2,https://x.com/drb_ra/status/1943200639728627988 2025-07-10 06:48:35,drb_ra,url,http://52.23.67.10:80,#Havoc #C2,https://x.com/drb_ra/status/1943200662168154250 2025-07-10 06:48:35,drb_ra,ip,52.23.67.10,#Havoc #C2,https://x.com/drb_ra/status/1943200662168154250 2025-07-10 06:48:40,drb_ra,url,http://3.141.12.40:443,#Havoc #C2,https://x.com/drb_ra/status/1943200684569948444 2025-07-10 07:05:28,drb_ra,url,http://35.152.252.225:2080,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943204912915009977 2025-07-10 07:05:34,drb_ra,url,http://35.152.252.225:50580,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943204935211856376 2025-07-10 07:05:39,drb_ra,url,http://35.152.252.225:31680,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943204957043183648 2025-07-10 07:05:39,drb_ra,ip,35.152.252.225,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943204957043183648 2025-07-10 07:05:45,drb_ra,url,http://13.245.230.203:17954,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943204980816564576 2025-07-10 07:05:45,drb_ra,ip,13.245.230.203,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943204980816564576 2025-07-10 07:05:50,drb_ra,url,http://54.169.174.87:8880,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943205002639519894 2025-07-10 07:05:50,drb_ra,ip,54.169.174.87,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943205002639519894 2025-07-10 07:05:55,drb_ra,url,http://51.20.181.47:1912,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943205025615909164 2025-07-10 07:05:55,drb_ra,ip,51.20.181.47,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943205025615909164 2025-07-10 07:06:54,drb_ra,url,http://52.211.93.186:80,#C2 #Interactsh,https://x.com/drb_ra/status/1943205269908885751 2025-07-10 07:06:54,drb_ra,ip,52.211.93.186,#C2 #Interactsh,https://x.com/drb_ra/status/1943205269908885751 2025-07-10 07:06:59,drb_ra,url,http://156.246.0.166:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205291824157055 2025-07-10 07:06:59,drb_ra,ip,156.246.0.166,#C2 #Supershell,https://x.com/drb_ra/status/1943205291824157055 2025-07-10 07:07:04,drb_ra,url,http://156.246.0.164:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205314674786372 2025-07-10 07:07:04,drb_ra,ip,156.246.0.164,#C2 #Supershell,https://x.com/drb_ra/status/1943205314674786372 2025-07-10 07:07:10,drb_ra,url,http://156.246.4.182:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205338032812397 2025-07-10 07:07:10,drb_ra,ip,156.246.4.182,#C2 #Supershell,https://x.com/drb_ra/status/1943205338032812397 2025-07-10 07:07:15,drb_ra,url,http://193.58.121.112:8888,#C2 #Supershell,https://x.com/drb_ra/status/1943205360078045415 2025-07-10 07:07:15,drb_ra,ip,193.58.121.112,#C2 #Supershell,https://x.com/drb_ra/status/1943205360078045415 2025-07-10 07:07:20,drb_ra,url,http://156.246.7.185:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205382274338935 2025-07-10 07:07:20,drb_ra,ip,156.246.7.185,#C2 #Supershell,https://x.com/drb_ra/status/1943205382274338935 2025-07-10 07:07:26,drb_ra,url,http://156.246.17.43:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205404726694122 2025-07-10 07:07:26,drb_ra,ip,156.246.17.43,#C2 #Supershell,https://x.com/drb_ra/status/1943205404726694122 2025-07-10 07:07:31,drb_ra,url,http://156.246.4.181:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205427493089284 2025-07-10 07:07:31,drb_ra,ip,156.246.4.181,#C2 #Supershell,https://x.com/drb_ra/status/1943205427493089284 2025-07-10 07:07:36,drb_ra,url,http://156.246.1.181:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205449991368871 2025-07-10 07:07:36,drb_ra,ip,156.246.1.181,#C2 #Supershell,https://x.com/drb_ra/status/1943205449991368871 2025-07-10 07:07:42,drb_ra,url,http://156.246.5.162:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205472464437264 2025-07-10 07:07:42,drb_ra,ip,156.246.5.162,#C2 #Supershell,https://x.com/drb_ra/status/1943205472464437264 2025-07-10 07:07:47,drb_ra,url,http://156.246.5.167:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205495445041439 2025-07-10 07:07:47,drb_ra,ip,156.246.5.167,#C2 #Supershell,https://x.com/drb_ra/status/1943205495445041439 2025-07-10 07:07:53,drb_ra,url,http://156.246.2.178:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205518530494912 2025-07-10 07:07:53,drb_ra,ip,156.246.2.178,#C2 #Supershell,https://x.com/drb_ra/status/1943205518530494912 2025-07-10 07:07:58,drb_ra,url,http://156.246.4.164:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205541423255895 2025-07-10 07:07:58,drb_ra,ip,156.246.4.164,#C2 #Supershell,https://x.com/drb_ra/status/1943205541423255895 2025-07-10 07:08:04,drb_ra,url,http://156.246.6.167:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205564445810922 2025-07-10 07:08:04,drb_ra,ip,156.246.6.167,#C2 #Supershell,https://x.com/drb_ra/status/1943205564445810922 2025-07-10 07:08:09,drb_ra,url,http://156.246.1.186:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205586503393453 2025-07-10 07:08:09,drb_ra,ip,156.246.1.186,#C2 #Supershell,https://x.com/drb_ra/status/1943205586503393453 2025-07-10 07:08:15,drb_ra,url,http://156.246.3.186:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205613787640300 2025-07-10 07:08:15,drb_ra,ip,156.246.3.186,#C2 #Supershell,https://x.com/drb_ra/status/1943205613787640300 2025-07-10 07:08:20,drb_ra,url,http://156.246.6.169:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205634737897691 2025-07-10 07:08:20,drb_ra,ip,156.246.6.169,#C2 #Supershell,https://x.com/drb_ra/status/1943205634737897691 2025-07-10 07:08:26,drb_ra,url,http://156.246.0.173:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205657424851176 2025-07-10 07:08:26,drb_ra,ip,156.246.0.173,#C2 #Supershell,https://x.com/drb_ra/status/1943205657424851176 2025-07-10 07:08:32,drb_ra,url,http://156.246.4.168:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205683219796479 2025-07-10 07:08:32,drb_ra,ip,156.246.4.168,#C2 #Supershell,https://x.com/drb_ra/status/1943205683219796479 2025-07-10 07:08:37,drb_ra,url,http://156.246.2.181:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205706045309348 2025-07-10 07:08:37,drb_ra,ip,156.246.2.181,#C2 #Supershell,https://x.com/drb_ra/status/1943205706045309348 2025-07-10 07:08:43,drb_ra,url,http://156.246.2.177:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205729059442883 2025-07-10 07:08:43,drb_ra,ip,156.246.2.177,#C2 #Supershell,https://x.com/drb_ra/status/1943205729059442883 2025-07-10 07:08:48,drb_ra,url,http://156.246.6.185:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205751880626642 2025-07-10 07:08:48,drb_ra,ip,156.246.6.185,#C2 #Supershell,https://x.com/drb_ra/status/1943205751880626642 2025-07-10 07:08:54,drb_ra,url,http://47.92.206.124:8888,#C2 #Supershell,https://x.com/drb_ra/status/1943205775276376459 2025-07-10 07:08:54,drb_ra,ip,47.92.206.124,#C2 #Supershell,https://x.com/drb_ra/status/1943205775276376459 2025-07-10 07:08:59,drb_ra,url,http://156.246.7.176:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205794855477295 2025-07-10 07:08:59,drb_ra,ip,156.246.7.176,#C2 #Supershell,https://x.com/drb_ra/status/1943205794855477295 2025-07-10 07:09:03,drb_ra,url,http://156.246.4.184:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205813914329114 2025-07-10 07:09:03,drb_ra,ip,156.246.4.184,#C2 #Supershell,https://x.com/drb_ra/status/1943205813914329114 2025-07-10 07:09:08,drb_ra,url,http://156.246.5.183:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205833027747937 2025-07-10 07:09:08,drb_ra,ip,156.246.5.183,#C2 #Supershell,https://x.com/drb_ra/status/1943205833027747937 2025-07-10 07:09:13,drb_ra,url,http://156.246.0.167:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205852992688527 2025-07-10 07:09:13,drb_ra,ip,156.246.0.167,#C2 #Supershell,https://x.com/drb_ra/status/1943205852992688527 2025-07-10 07:09:16,drb_ra,url,http://156.246.0.187:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205867387523432 2025-07-10 07:09:16,drb_ra,ip,156.246.0.187,#C2 #Supershell,https://x.com/drb_ra/status/1943205867387523432 2025-07-10 07:09:21,drb_ra,url,http://156.246.6.189:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205889734767033 2025-07-10 07:09:21,drb_ra,ip,156.246.6.189,#C2 #Supershell,https://x.com/drb_ra/status/1943205889734767033 2025-07-10 07:09:26,drb_ra,url,http://156.246.6.179:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205908189790684 2025-07-10 07:09:26,drb_ra,ip,156.246.6.179,#C2 #Supershell,https://x.com/drb_ra/status/1943205908189790684 2025-07-10 07:09:30,drb_ra,url,http://156.246.6.187:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205927210885343 2025-07-10 07:09:30,drb_ra,ip,156.246.6.187,#C2 #Supershell,https://x.com/drb_ra/status/1943205927210885343 2025-07-10 07:09:35,drb_ra,url,http://156.246.4.183:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205946177573261 2025-07-10 07:09:35,drb_ra,ip,156.246.4.183,#C2 #Supershell,https://x.com/drb_ra/status/1943205946177573261 2025-07-10 07:09:39,drb_ra,url,http://156.246.2.176:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205964796067876 2025-07-10 07:09:39,drb_ra,ip,156.246.2.176,#C2 #Supershell,https://x.com/drb_ra/status/1943205964796067876 2025-07-10 07:09:44,drb_ra,url,http://156.246.0.169:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943205983951413388 2025-07-10 07:09:44,drb_ra,ip,156.246.0.169,#C2 #Supershell,https://x.com/drb_ra/status/1943205983951413388 2025-07-10 07:09:48,drb_ra,url,http://156.246.3.170:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206002817405255 2025-07-10 07:09:48,drb_ra,ip,156.246.3.170,#C2 #Supershell,https://x.com/drb_ra/status/1943206002817405255 2025-07-10 07:09:53,drb_ra,url,http://156.246.6.172:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206021641478647 2025-07-10 07:09:53,drb_ra,ip,156.246.6.172,#C2 #Supershell,https://x.com/drb_ra/status/1943206021641478647 2025-07-10 07:09:56,drb_ra,url,http://156.246.5.176:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206035864383803 2025-07-10 07:09:56,drb_ra,ip,156.246.5.176,#C2 #Supershell,https://x.com/drb_ra/status/1943206035864383803 2025-07-10 07:10:01,drb_ra,url,http://156.246.2.174:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206054235439351 2025-07-10 07:10:01,drb_ra,ip,156.246.2.174,#C2 #Supershell,https://x.com/drb_ra/status/1943206054235439351 2025-07-10 07:10:05,drb_ra,url,http://156.246.2.173:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206073659195407 2025-07-10 07:10:05,drb_ra,ip,156.246.2.173,#C2 #Supershell,https://x.com/drb_ra/status/1943206073659195407 2025-07-10 07:10:10,drb_ra,url,http://156.246.7.162:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206092126703724 2025-07-10 07:10:10,drb_ra,ip,156.246.7.162,#C2 #Supershell,https://x.com/drb_ra/status/1943206092126703724 2025-07-10 07:10:14,drb_ra,url,http://156.246.1.183:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206110908846089 2025-07-10 07:10:14,drb_ra,ip,156.246.1.183,#C2 #Supershell,https://x.com/drb_ra/status/1943206110908846089 2025-07-10 07:10:18,drb_ra,url,http://156.246.3.184:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206129015636311 2025-07-10 07:10:18,drb_ra,ip,156.246.3.184,#C2 #Supershell,https://x.com/drb_ra/status/1943206129015636311 2025-07-10 07:10:23,drb_ra,url,http://156.246.1.166:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206147843854573 2025-07-10 07:10:23,drb_ra,ip,156.246.1.166,#C2 #Supershell,https://x.com/drb_ra/status/1943206147843854573 2025-07-10 07:10:26,drb_ra,url,http://156.246.1.182:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206162549113327 2025-07-10 07:10:26,drb_ra,ip,156.246.1.182,#C2 #Supershell,https://x.com/drb_ra/status/1943206162549113327 2025-07-10 07:10:31,drb_ra,url,http://156.246.4.177:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206181465428091 2025-07-10 07:10:31,drb_ra,ip,156.246.4.177,#C2 #Supershell,https://x.com/drb_ra/status/1943206181465428091 2025-07-10 07:10:35,drb_ra,url,http://156.246.7.173:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206200088150451 2025-07-10 07:10:35,drb_ra,ip,156.246.7.173,#C2 #Supershell,https://x.com/drb_ra/status/1943206200088150451 2025-07-10 07:10:40,drb_ra,url,http://156.246.1.177:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943206218224242724 2025-07-10 07:10:40,drb_ra,ip,156.246.1.177,#C2 #Supershell,https://x.com/drb_ra/status/1943206218224242724 2025-07-10 07:58:57,drb_ra,url,http://104.21.32.1:443,#C2,https://x.com/drb_ra/status/1943218371949937006 2025-07-10 07:59:04,drb_ra,domain,server-web-cdn.vosax32455.workers.dev,#C2,https://x.com/drb_ra/status/1943218399745610145 2025-07-10 07:59:04,drb_ra,url,http://server-web-cdn.vosax32455.workers.dev,#C2,https://x.com/drb_ra/status/1943218399745610145 2025-07-10 07:59:04,drb_ra,url,http://104.21.32.1:80,#C2,https://x.com/drb_ra/status/1943218399745610145 2025-07-10 08:26:40,skocherhan,domain,fixpricemoving.com,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:26:40,skocherhan,url,https://fixpricemoving.com/?p=141,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:26:40,skocherhan,domain,fixups4sale.com,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:26:40,skocherhan,url,https://fixups4sale.com/?p=141,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:26:40,skocherhan,domain,top-halper.com,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:26:40,skocherhan,url,https://top-halper.com/?p=183,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:26:40,skocherhan,domain,macfixhub.com,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:26:40,skocherhan,url,https://macfixhub.com/?p=183,,https://x.com/skocherhan/status/1943225344766427290 2025-07-10 08:50:41,Sh4dow3x3,domain,pagamento-areaarubait.cofferdam.pt,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,url,http://pagamento-areaarubait.cofferdam.pt/staff1/,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,url,http://185.12.116.130,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,url,http://pagamento-areaarubait.cofferdam.pt,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,domain,mlpro-trckr.com,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,url,http://mlpro-trckr.com,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,domain,mystery-box-rush.click,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,url,http://mystery-box-rush.click,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:50:41,Sh4dow3x3,ip,185.12.116.130,#phishing,https://x.com/Sh4dow3x3/status/1943231391338008632 2025-07-10 08:51:26,suyog41,md5,ef1e5823cbce02eb068942ebc39eb308,,https://x.com/suyog41/status/1943231579699970405 2025-07-10 08:51:26,suyog41,md5,279a5b41fe463729be3cb3b51091ef42,,https://x.com/suyog41/status/1943231579699970405 2025-07-10 09:02:38,louismartinox,domain,BullwayPro.com,#phishing,https://x.com/louismartinox/status/1943234398242939039 2025-07-10 09:02:38,louismartinox,url,http://BullwayPro.com,#phishing,https://x.com/louismartinox/status/1943234398242939039 2025-07-10 09:15:15,Mr_Harleyphaz,domain,m.bcbit-ai.cc,#phishing,https://x.com/Mr_Harleyphaz/status/1943237572076990888 2025-07-10 09:15:15,Mr_Harleyphaz,url,http://m.bcbit-ai.cc,#phishing,https://x.com/Mr_Harleyphaz/status/1943237572076990888 2025-07-10 09:16:51,skocherhan,domain,authentication-californiatrustprofile.com,#phishing,https://x.com/skocherhan/status/1943237972939112678 2025-07-10 09:16:51,skocherhan,url,http://authentication-californiatrustprofile.com,#phishing,https://x.com/skocherhan/status/1943237972939112678 2025-07-10 09:28:03,skocherhan,domain,authentication-aa-usprofile.com,#phishing,https://x.com/skocherhan/status/1943240795189805564 2025-07-10 09:28:03,skocherhan,url,http://authentication-aa-usprofile.com,#phishing,https://x.com/skocherhan/status/1943240795189805564 2025-07-10 09:43:58,skocherhan,domain,mywellsprofile-authentication.com,#phishing,https://x.com/skocherhan/status/1943244800292954151 2025-07-10 09:43:58,skocherhan,url,http://mywellsprofile-authentication.com,#phishing,https://x.com/skocherhan/status/1943244800292954151 2025-07-10 09:51:15,ReBensk,md5,589354e49bf91f054425bbdbb615161a,#Android #malware #Trojan,https://x.com/ReBensk/status/1943246631421514015 2025-07-10 09:57:01,skocherhan,domain,mynevada-authenticationsb.com,#phishing,https://x.com/skocherhan/status/1943248084290670772 2025-07-10 09:57:01,skocherhan,url,http://mynevada-authenticationsb.com,#phishing,https://x.com/skocherhan/status/1943248084290670772 2025-07-10 10:07:46,skocherhan,domain,alibaba6secure.com,#phishing,https://x.com/skocherhan/status/1943250787569676488 2025-07-10 10:07:46,skocherhan,url,http://alibaba6secure.com,#phishing,https://x.com/skocherhan/status/1943250787569676488 2025-07-10 10:25:53,skocherhan,url,http://47.236.31.67,,https://x.com/skocherhan/status/1943255349072437725 2025-07-10 10:25:53,skocherhan,url,http://194.233.80.100:80/phuongdonal/go.bat,,https://x.com/skocherhan/status/1943255349072437725 2025-07-10 10:25:53,skocherhan,ip,47.236.31.67,,https://x.com/skocherhan/status/1943255349072437725 2025-07-10 10:25:53,skocherhan,ip,194.233.80.100,,https://x.com/skocherhan/status/1943255349072437725 2025-07-10 10:54:01,drb_ra,url,http://47.245.61.75:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1943262426918515124 2025-07-10 10:54:01,drb_ra,ip,47.245.61.75,#CobaltStrike #C2,https://x.com/drb_ra/status/1943262426918515124 2025-07-10 10:54:33,solostalking,url,http://103.170.89.96,,https://x.com/solostalking/status/1943262562411295136 2025-07-10 10:54:33,solostalking,ip,103.170.89.96,,https://x.com/solostalking/status/1943262562411295136 2025-07-10 11:05:15,skocherhan,domain,jshswl.com,#phishing,https://x.com/skocherhan/status/1943265255724876149 2025-07-10 11:05:15,skocherhan,url,http://jshswl.com/co,#phishing,https://x.com/skocherhan/status/1943265255724876149 2025-07-10 11:21:49,K_N1kolenko,domain,qeel.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1943269424082956315 2025-07-10 11:21:49,K_N1kolenko,url,http://qeel.xyz/gaiw,#LummaStealer,https://x.com/K_N1kolenko/status/1943269424082956315 2025-07-10 11:28:14,drb_ra,url,http://124.71.152.57:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271039678496849 2025-07-10 11:28:14,drb_ra,ip,124.71.152.57,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271039678496849 2025-07-10 11:28:20,drb_ra,url,http://120.48.25.39:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271062583513106 2025-07-10 11:28:20,drb_ra,ip,120.48.25.39,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271062583513106 2025-07-10 11:30:23,drb_ra,url,http://101.200.193.211:8088,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271580416532611 2025-07-10 11:30:23,drb_ra,ip,101.200.193.211,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271580416532611 2025-07-10 11:30:34,drb_ra,url,http://167.160.161.64:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271626574872583 2025-07-10 11:30:34,drb_ra,ip,167.160.161.64,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271626574872583 2025-07-10 11:30:40,drb_ra,url,http://45.192.104.88:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271650071290339 2025-07-10 11:30:40,drb_ra,ip,45.192.104.88,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271650071290339 2025-07-10 11:30:45,drb_ra,url,http://1.15.25.148:9080,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271673148441011 2025-07-10 11:30:51,drb_ra,url,http://172.87.28.47:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271695818637338 2025-07-10 11:30:51,drb_ra,ip,172.87.28.47,#CobaltStrike #C2,https://x.com/drb_ra/status/1943271695818637338 2025-07-10 11:31:04,skocherhan,domain,blolln.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://blolln.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,bouzxme.shop,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://bouzxme.shop,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,cucujxc.shop,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://cucujxc.shop,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,dkkig.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://dkkig.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,dzyzb.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://dzyzb.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,genmkh.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://genmkh.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,lnofi.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://lnofi.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,lodib.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://lodib.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,mincpiu.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://mincpiu.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,domain,ryxpq.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 11:31:04,skocherhan,url,http://ryxpq.xyz,#LummaStealer,https://x.com/skocherhan/status/1943271749610524715 2025-07-10 12:32:41,masaomi346,domain,fotoyvideopixel.com,#phishing,https://x.com/masaomi346/status/1943287258305696086 2025-07-10 12:32:41,masaomi346,url,https://fotoyvideopixel.com//plxplx/Sites/index.html,#phishing,https://x.com/masaomi346/status/1943287258305696086 2025-07-10 12:32:41,masaomi346,domain,elcisnepty.com,#phishing,https://x.com/masaomi346/status/1943287258305696086 2025-07-10 12:32:41,masaomi346,url,https://www.elcisnepty.com//accountchecking1/Sites/index.html,#phishing,https://x.com/masaomi346/status/1943287258305696086 2025-07-10 12:40:42,TeamDreier,domain,dsv-com.sbs,#phishing,https://x.com/TeamDreier/status/1943289276164116615 2025-07-10 12:40:42,TeamDreier,url,https://dsv-com.sbs,#phishing,https://x.com/TeamDreier/status/1943289276164116615 2025-07-10 12:40:42,TeamDreier,domain,DOMAINNAMEDNS.COM,#phishing,https://x.com/TeamDreier/status/1943289276164116615 2025-07-10 12:40:42,TeamDreier,url,https://DOMAINNAMEDNS.COM,#phishing,https://x.com/TeamDreier/status/1943289276164116615 2025-07-10 12:40:42,TeamDreier,ip,101.32.19.137,#phishing,https://x.com/TeamDreier/status/1943289276164116615 2025-07-10 12:59:53,skocherhan,domain,expouav.org,,https://x.com/skocherhan/status/1943294102742650960 2025-07-10 12:59:53,skocherhan,url,http://expouav.org,,https://x.com/skocherhan/status/1943294102742650960 2025-07-10 13:37:06,skocherhan,ip,27.102.137.242,#Kimsuky,https://x.com/skocherhan/status/1943303467118006723 2025-07-10 13:37:06,skocherhan,ip,27.102.138.10,#Kimsuky,https://x.com/skocherhan/status/1943303467118006723 2025-07-10 13:37:06,skocherhan,ip,27.102.138.91,#Kimsuky,https://x.com/skocherhan/status/1943303467118006723 2025-07-10 13:37:06,skocherhan,ip,158.247.236.169,#Kimsuky,https://x.com/skocherhan/status/1943303467118006723 2025-07-10 13:43:46,sdcyberresearch,domain,clearnetfab.net,#Magecart,https://x.com/sdcyberresearch/status/1943305145057448421 2025-07-10 13:43:46,sdcyberresearch,url,http://clearnetfab.net,#Magecart,https://x.com/sdcyberresearch/status/1943305145057448421 2025-07-10 14:00:08,urldna_bot,domain,nouxtot.firebaseapp.com,#scam #phishing,https://x.com/urldna_bot/status/1943309263847194769 2025-07-10 14:00:08,urldna_bot,url,https://nouxtot.firebaseapp.com,#scam #phishing,https://x.com/urldna_bot/status/1943309263847194769 2025-07-10 14:00:19,SarlackLab,url,http://192.169.69.26:49905,#C2 #NanoCore,https://x.com/SarlackLab/status/1943309311658111132 2025-07-10 14:00:19,SarlackLab,ip,192.169.69.26,#C2 #NanoCore,https://x.com/SarlackLab/status/1943309311658111132 2025-07-10 15:46:28,harugasumi,domain,trustowallet.cc,#phishing,https://x.com/harugasumi/status/1943336025495065086 2025-07-10 15:46:28,harugasumi,url,https://trustowallet.cc,#phishing,https://x.com/harugasumi/status/1943336025495065086 2025-07-10 16:13:58,harugasumi,domain,ew2guv.top,#phishing,https://x.com/harugasumi/status/1943342943718543430 2025-07-10 16:13:58,harugasumi,url,https://ew2guv.top/XAMXat,#phishing,https://x.com/harugasumi/status/1943342943718543430 2025-07-10 16:19:18,harugasumi,domain,ct1rjp.top,#phishing,https://x.com/harugasumi/status/1943344288026497154 2025-07-10 16:19:18,harugasumi,url,https://ct1rjp.top/XAMXat,#phishing,https://x.com/harugasumi/status/1943344288026497154 2025-07-10 16:19:18,harugasumi,domain,1bci8ws0.top,#phishing,https://x.com/harugasumi/status/1943344288026497154 2025-07-10 16:19:18,harugasumi,url,https://1bci8ws0.top/XAMXat,#phishing,https://x.com/harugasumi/status/1943344288026497154 2025-07-10 17:28:10,skocherhan,url,https://176.98.185.102,,https://x.com/skocherhan/status/1943361618508693574 2025-07-10 17:28:10,skocherhan,ip,176.98.185.102,,https://x.com/skocherhan/status/1943361618508693574 2025-07-10 17:39:01,skocherhan,domain,complaintguestid6169.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid6169.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,domain,complaintguestid635.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid635.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,domain,complaintguestid64313.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid64313.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,domain,complaintguestid6534.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid6534.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,domain,complaintguestid681.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid681.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,domain,complaintguestid78531.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid78531.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,domain,complaintguestid88531.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid88531.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,domain,complaintguestid98531.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 17:39:01,skocherhan,url,http://complaintguestid98531.com,,https://x.com/skocherhan/status/1943364349675913558 2025-07-10 18:00:09,urldna_bot,domain,svrw12.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1943369666694390039 2025-07-10 18:00:09,urldna_bot,url,https://svrw12.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1943369666694390039 2025-07-10 18:39:30,SarlackLab,domain,m365.acenm.com,,https://x.com/SarlackLab/status/1943379570586993052 2025-07-10 18:39:30,SarlackLab,url,http://m365.acenm.com,,https://x.com/SarlackLab/status/1943379570586993052 2025-07-10 18:39:30,SarlackLab,domain,exifit.eu.org,,https://x.com/SarlackLab/status/1943379570586993052 2025-07-10 18:39:30,SarlackLab,url,http://exifit.eu.org,,https://x.com/SarlackLab/status/1943379570586993052 2025-07-10 18:39:30,SarlackLab,domain,dianqi1.jiayongdianqi.xyz,,https://x.com/SarlackLab/status/1943379570586993052 2025-07-10 18:39:30,SarlackLab,url,http://dianqi1.jiayongdianqi.xyz,,https://x.com/SarlackLab/status/1943379570586993052 2025-07-10 18:46:59,drb_ra,url,http://156.246.7.177:9397,#Supershell #C2,https://x.com/drb_ra/status/1943381453829546118 2025-07-10 18:46:59,drb_ra,ip,156.246.7.177,#Supershell #C2,https://x.com/drb_ra/status/1943381453829546118 2025-07-10 18:47:03,drb_ra,url,http://71.187.162.200:2222,#C2 #Qakbot,https://x.com/drb_ra/status/1943381472313794743 2025-07-10 18:47:03,drb_ra,ip,71.187.162.200,#C2 #Qakbot,https://x.com/drb_ra/status/1943381472313794743 2025-07-10 18:47:11,drb_ra,url,http://13.38.251.136:443,#C2 #Havoc,https://x.com/drb_ra/status/1943381504002003351 2025-07-10 18:47:11,drb_ra,ip,13.38.251.136,#C2 #Havoc,https://x.com/drb_ra/status/1943381504002003351 2025-07-10 18:47:17,drb_ra,url,http://18.144.17.191:443,#C2 #Bianlian,https://x.com/drb_ra/status/1943381530841120931 2025-07-10 18:47:17,drb_ra,ip,18.144.17.191,#C2 #Bianlian,https://x.com/drb_ra/status/1943381530841120931 2025-07-10 18:47:24,drb_ra,url,http://3.31.153.113:443,#C2 #Deimos,https://x.com/drb_ra/status/1943381557890236570 2025-07-10 18:47:31,drb_ra,url,http://52.61.32.132:443,#C2 #Deimos,https://x.com/drb_ra/status/1943381585870422402 2025-07-10 18:47:31,drb_ra,ip,52.61.32.132,#C2 #Deimos,https://x.com/drb_ra/status/1943381585870422402 2025-07-10 18:47:36,drb_ra,url,http://144.126.229.140:7443,#C2 #Mythic,https://x.com/drb_ra/status/1943381610914578896 2025-07-10 18:47:36,drb_ra,ip,144.126.229.140,#C2 #Mythic,https://x.com/drb_ra/status/1943381610914578896 2025-07-10 18:47:42,drb_ra,url,http://52.43.0.86:7443,#C2 #Mythic,https://x.com/drb_ra/status/1943381635996557358 2025-07-10 18:47:42,drb_ra,ip,52.43.0.86,#C2 #Mythic,https://x.com/drb_ra/status/1943381635996557358 2025-07-10 18:47:49,drb_ra,url,http://139.162.166.229:7443,#C2 #Mythic,https://x.com/drb_ra/status/1943381663406231568 2025-07-10 18:47:49,drb_ra,ip,139.162.166.229,#C2 #Mythic,https://x.com/drb_ra/status/1943381663406231568 2025-07-10 18:47:55,drb_ra,url,http://147.93.152.86:7443,#C2 #Mythic,https://x.com/drb_ra/status/1943381690660880795 2025-07-10 18:47:55,drb_ra,ip,147.93.152.86,#C2 #Mythic,https://x.com/drb_ra/status/1943381690660880795 2025-07-10 18:48:02,drb_ra,url,http://104.164.55.75:4443,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1943381718565572847 2025-07-10 18:48:02,drb_ra,ip,104.164.55.75,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1943381718565572847 2025-07-10 18:48:09,drb_ra,url,http://4.232.114.247:443,#Sliver #C2,https://x.com/drb_ra/status/1943381745568534933 2025-07-10 18:48:16,drb_ra,url,http://178.79.137.99:31337,#Sliver #C2,https://x.com/drb_ra/status/1943381775331242331 2025-07-10 18:48:16,drb_ra,ip,178.79.137.99,#Sliver #C2,https://x.com/drb_ra/status/1943381775331242331 2025-07-10 18:48:21,drb_ra,url,http://45.144.137.60:20000,#Sliver #C2,https://x.com/drb_ra/status/1943381796130828476 2025-07-10 18:48:21,drb_ra,ip,45.144.137.60,#Sliver #C2,https://x.com/drb_ra/status/1943381796130828476 2025-07-10 18:48:30,drb_ra,url,http://3.148.173.111:443,#Sliver #C2,https://x.com/drb_ra/status/1943381837176299824 2025-07-10 18:48:38,drb_ra,url,http://80.64.23.9:31337,#Sliver #C2,https://x.com/drb_ra/status/1943381869086609670 2025-07-10 18:48:38,drb_ra,ip,80.64.23.9,#Sliver #C2,https://x.com/drb_ra/status/1943381869086609670 2025-07-10 18:48:46,drb_ra,url,http://45.93.31.132:31337,#Sliver #C2,https://x.com/drb_ra/status/1943381900510318901 2025-07-10 18:48:46,drb_ra,ip,45.93.31.132,#Sliver #C2,https://x.com/drb_ra/status/1943381900510318901 2025-07-10 18:48:54,drb_ra,url,http://13.60.104.211:31337,#Sliver #C2,https://x.com/drb_ra/status/1943381934450643229 2025-07-10 18:48:54,drb_ra,ip,13.60.104.211,#Sliver #C2,https://x.com/drb_ra/status/1943381934450643229 2025-07-10 18:49:01,drb_ra,url,http://64.23.184.180:31337,#Sliver #C2,https://x.com/drb_ra/status/1943381965018681793 2025-07-10 18:49:01,drb_ra,ip,64.23.184.180,#Sliver #C2,https://x.com/drb_ra/status/1943381965018681793 2025-07-10 18:49:08,drb_ra,url,http://77.110.126.70:31337,#Sliver #C2,https://x.com/drb_ra/status/1943381996069118126 2025-07-10 18:49:08,drb_ra,ip,77.110.126.70,#Sliver #C2,https://x.com/drb_ra/status/1943381996069118126 2025-07-10 18:51:13,drb_ra,url,http://23.227.203.246:43211,#C2,https://x.com/drb_ra/status/1943382518213816590 2025-07-10 18:51:13,drb_ra,ip,23.227.203.246,#C2,https://x.com/drb_ra/status/1943382518213816590 2025-07-10 18:51:20,drb_ra,url,http://196.251.81.214:2404,#C2 #Remcos,https://x.com/drb_ra/status/1943382547745898740 2025-07-10 18:51:20,drb_ra,ip,196.251.81.214,#C2 #Remcos,https://x.com/drb_ra/status/1943382547745898740 2025-07-10 18:51:27,drb_ra,url,http://181.206.158.190:3001,#C2 #Remcos,https://x.com/drb_ra/status/1943382577743634631 2025-07-10 18:51:27,drb_ra,ip,181.206.158.190,#C2 #Remcos,https://x.com/drb_ra/status/1943382577743634631 2025-07-10 18:51:34,drb_ra,url,http://100.42.176.116:2404,#C2 #Remcos,https://x.com/drb_ra/status/1943382607770657033 2025-07-10 18:51:34,drb_ra,ip,100.42.176.116,#C2 #Remcos,https://x.com/drb_ra/status/1943382607770657033 2025-07-10 18:51:42,drb_ra,url,http://206.123.145.192:2404,#C2 #Remcos,https://x.com/drb_ra/status/1943382639559225576 2025-07-10 18:51:42,drb_ra,ip,206.123.145.192,#C2 #Remcos,https://x.com/drb_ra/status/1943382639559225576 2025-07-10 18:51:49,drb_ra,url,http://172.65.175.19:443,#C2 #Remcos,https://x.com/drb_ra/status/1943382669242270020 2025-07-10 18:51:56,drb_ra,url,http://209.54.101.159:5002,#C2 #Remcos,https://x.com/drb_ra/status/1943382699835556287 2025-07-10 18:51:56,drb_ra,ip,209.54.101.159,#C2 #Remcos,https://x.com/drb_ra/status/1943382699835556287 2025-07-10 18:52:03,drb_ra,url,http://216.9.224.169:2404,#C2 #Remcos,https://x.com/drb_ra/status/1943382730030387390 2025-07-10 18:52:03,drb_ra,ip,216.9.224.169,#C2 #Remcos,https://x.com/drb_ra/status/1943382730030387390 2025-07-10 18:52:11,drb_ra,url,http://181.131.217.135:5060,#C2 #Remcos,https://x.com/drb_ra/status/1943382760531378229 2025-07-10 18:52:11,drb_ra,ip,181.131.217.135,#C2 #Remcos,https://x.com/drb_ra/status/1943382760531378229 2025-07-10 18:52:16,drb_ra,url,http://196.251.66.228:2404,#C2 #Remcos,https://x.com/drb_ra/status/1943382784032051299 2025-07-10 18:52:16,drb_ra,ip,196.251.66.228,#C2 #Remcos,https://x.com/drb_ra/status/1943382784032051299 2025-07-10 18:52:23,drb_ra,url,http://206.123.152.38:33862,#C2 #Remcos,https://x.com/drb_ra/status/1943382811098124711 2025-07-10 18:52:23,drb_ra,ip,206.123.152.38,#C2 #Remcos,https://x.com/drb_ra/status/1943382811098124711 2025-07-10 18:52:28,drb_ra,url,http://156.246.5.189:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943382833457680753 2025-07-10 18:52:28,drb_ra,ip,156.246.5.189,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943382833457680753 2025-07-10 18:52:34,drb_ra,url,http://128.90.113.253:2000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943382858183131589 2025-07-10 18:52:34,drb_ra,ip,128.90.113.253,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943382858183131589 2025-07-10 18:52:39,drb_ra,url,http://172.94.19.36:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943382881675436361 2025-07-10 18:52:39,drb_ra,ip,172.94.19.36,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943382881675436361 2025-07-10 18:52:45,drb_ra,url,http://74.141.229.91:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943382905100660743 2025-07-10 18:52:45,drb_ra,ip,74.141.229.91,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943382905100660743 2025-07-10 18:52:51,drb_ra,url,http://193.137.209.237:443,#C2 #Interactsh,https://x.com/drb_ra/status/1943382930740645898 2025-07-10 18:52:51,drb_ra,ip,193.137.209.237,#C2 #Interactsh,https://x.com/drb_ra/status/1943382930740645898 2025-07-10 18:52:57,drb_ra,url,http://156.246.1.189:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943382954236903647 2025-07-10 18:52:57,drb_ra,ip,156.246.1.189,#C2 #Supershell,https://x.com/drb_ra/status/1943382954236903647 2025-07-10 18:53:03,drb_ra,url,http://156.246.1.176:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943382979000090665 2025-07-10 18:53:03,drb_ra,ip,156.246.1.176,#C2 #Supershell,https://x.com/drb_ra/status/1943382979000090665 2025-07-10 18:53:08,drb_ra,url,http://156.246.1.173:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943383003335397551 2025-07-10 18:53:08,drb_ra,ip,156.246.1.173,#C2 #Supershell,https://x.com/drb_ra/status/1943383003335397551 2025-07-10 18:53:14,drb_ra,url,http://156.246.17.45:9397,#C2 #Supershell,https://x.com/drb_ra/status/1943383027268112456 2025-07-10 18:53:14,drb_ra,ip,156.246.17.45,#C2 #Supershell,https://x.com/drb_ra/status/1943383027268112456 2025-07-10 18:53:20,drb_ra,url,http://216.107.136.27:8888,#C2 #Supershell,https://x.com/drb_ra/status/1943383050881990716 2025-07-10 18:53:20,drb_ra,ip,216.107.136.27,#C2 #Supershell,https://x.com/drb_ra/status/1943383050881990716 2025-07-10 19:10:19,skocherhan,url,http://36.212.238.69:800,,https://x.com/skocherhan/status/1943387326962438515 2025-07-10 19:10:19,skocherhan,ip,36.212.238.69,,https://x.com/skocherhan/status/1943387326962438515 2025-07-10 20:18:21,skocherhan,domain,bd-govt.info,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:18:21,skocherhan,url,http://bd-govt.info,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:18:21,skocherhan,domain,bd-govt.com,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:18:21,skocherhan,url,http://bd-govt.com,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:18:21,skocherhan,domain,bdgovt.com,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:18:21,skocherhan,url,http://bdgovt.com,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:18:21,skocherhan,domain,brebd-govt-bd.online,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:18:21,skocherhan,url,http://brebd-govt-bd.online,#APT,https://x.com/skocherhan/status/1943404447809315059 2025-07-10 20:57:58,drb_ra,url,https://179.43.186.224:443,#C2,https://x.com/drb_ra/status/1943414416071934057 2025-07-10 20:57:58,drb_ra,url,http://179.43.186.224:443,#C2,https://x.com/drb_ra/status/1943414416071934057 2025-07-10 20:57:58,drb_ra,ip,179.43.186.224,#C2,https://x.com/drb_ra/status/1943414416071934057 2025-07-10 20:58:03,drb_ra,url,http://64.137.9.118:8443,#C2,https://x.com/drb_ra/status/1943414439182467108 2025-07-10 20:58:03,drb_ra,ip,64.137.9.118,#C2,https://x.com/drb_ra/status/1943414439182467108 2025-07-10 21:06:10,drb_ra,url,http://34.203.227.204:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943416481594720309 2025-07-10 21:06:10,drb_ra,ip,34.203.227.204,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943416481594720309 2025-07-10 21:06:26,RedPacketSec,domain,koenigslutter.de,#ransomware,https://x.com/RedPacketSec/status/1943416548191822008 2025-07-10 21:06:26,RedPacketSec,url,http://koenigslutter.de,#ransomware,https://x.com/RedPacketSec/status/1943416548191822008 2025-07-10 21:20:42,skocherhan,url,https://188.166.149.50,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,domain,synlace.ai,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,url,https://synlace.ai,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,domain,mangopay-okta.com,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,url,https://mangopay-okta.com,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,domain,mangopay-atlassian.net,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,url,https://mangopay-atlassian.net,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,domain,alm.gg,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,url,https://alm.gg,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 21:20:42,skocherhan,ip,188.166.149.50,#APT,https://x.com/skocherhan/status/1943420137228612053 2025-07-10 22:00:23,smica83,ip,198.55.98.29,#opendir,https://x.com/smica83/status/1943430125296464177 2025-07-10 22:49:13,skocherhan,domain,walmart.ca,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,url,http://www.walmart.ca/07z2/,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,domain,14382lilliancir.info,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,url,http://www.14382lilliancir.info/47rt/,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,domain,atomicmanager.xyz,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,url,http://www.atomicmanager.xyz/6gvb/,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,domain,bole.asia,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,url,http://www.bole.asia/k7bz/,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,domain,capturemetaverse.xyz,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,url,http://www.capturemetaverse.xyz/uxao/,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,domain,copygamefi.xyz,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,url,http://www.copygamefi.xyz/m4im/,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:49:13,skocherhan,md5,64468891cd7fc5736588761a3655f2b6,,https://x.com/skocherhan/status/1943442412938150374 2025-07-10 22:58:46,drb_ra,url,http://117.72.103.29:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444817222172859 2025-07-10 22:58:46,drb_ra,ip,117.72.103.29,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444817222172859 2025-07-10 22:58:51,drb_ra,url,http://1.117.77.166:6666,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444840047612324 2025-07-10 22:58:57,drb_ra,url,http://213.209.150.214:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444862906335672 2025-07-10 22:58:57,drb_ra,ip,213.209.150.214,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444862906335672 2025-07-10 22:59:03,drb_ra,domain,scan.daztar.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444888307085556 2025-07-10 22:59:03,drb_ra,url,https://scan.daztar.com/images/06.png,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444888307085556 2025-07-10 22:59:03,drb_ra,url,http://139.162.204.37:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444888307085556 2025-07-10 22:59:03,drb_ra,ip,139.162.204.37,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444888307085556 2025-07-10 22:59:09,drb_ra,url,http://47.96.232.45:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444911908622654 2025-07-10 22:59:15,drb_ra,url,http://103.195.188.44:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444938701865377 2025-07-10 22:59:15,drb_ra,ip,103.195.188.44,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444938701865377 2025-07-10 22:59:21,drb_ra,url,http://1.15.25.148:3443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444962625950123 2025-07-10 22:59:26,drb_ra,url,http://103.112.210.25:40080,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444986537873567 2025-07-10 22:59:26,drb_ra,ip,103.112.210.25,#CobaltStrike #C2,https://x.com/drb_ra/status/1943444986537873567 2025-07-10 22:59:32,drb_ra,url,http://47.96.232.45:8081,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445009581187250 2025-07-10 22:59:32,drb_ra,ip,47.96.232.45,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445009581187250 2025-07-10 22:59:38,drb_ra,url,http://47.98.33.163:9443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445034688483535 2025-07-10 22:59:38,drb_ra,ip,47.98.33.163,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445034688483535 2025-07-10 22:59:43,drb_ra,url,http://8.143.2.128:6666,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445057903952267 2025-07-10 22:59:50,drb_ra,url,http://8.148.208.249:8081,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445083778617365 2025-07-10 22:59:55,drb_ra,url,http://101.36.116.222:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445108139135334 2025-07-10 22:59:55,drb_ra,ip,101.36.116.222,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445108139135334 2025-07-10 23:01:59,drb_ra,url,http://47.94.56.36:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445626429009978 2025-07-10 23:01:59,drb_ra,ip,47.94.56.36,#CobaltStrike #C2,https://x.com/drb_ra/status/1943445626429009978 2025-07-11 00:00:18,SarlackLab,url,http://147.185.221.28:54493,#Njrat #C2,https://x.com/SarlackLab/status/1943460302206443939 2025-07-11 00:00:18,SarlackLab,domain,about-source.gl.at.ply.gg,#Njrat #C2,https://x.com/SarlackLab/status/1943460302206443939 2025-07-11 00:00:18,SarlackLab,url,http://about-source.gl.at.ply.gg,#Njrat #C2,https://x.com/SarlackLab/status/1943460302206443939 2025-07-11 00:00:18,SarlackLab,ip,147.185.221.28,#Njrat #C2,https://x.com/SarlackLab/status/1943460302206443939 2025-07-11 00:31:24,romonlyht,domain,kishidade.com,#phishing,https://x.com/romonlyht/status/1943468129050595813 2025-07-11 00:31:24,romonlyht,url,https://www.kishidade.com/login,#phishing,https://x.com/romonlyht/status/1943468129050595813 2025-07-11 00:31:24,romonlyht,url,https://www.kishidade.com,#phishing,https://x.com/romonlyht/status/1943468126945055028 2025-07-11 00:31:24,romonlyht,ip,202.221.0.2,#phishing,https://x.com/romonlyht/status/1943468126945055028 2025-07-11 00:31:24,romonlyht,ip,23.160.193.2,#phishing,https://x.com/romonlyht/status/1943468126945055028 2025-07-11 00:45:21,romonlyht,ip,175.148.97.161,#phishing,https://x.com/romonlyht/status/1943471638051459103 2025-07-11 00:45:21,romonlyht,url,https://aukjasperfiesmryjp.icu/s1VuSF,#phishing,https://x.com/romonlyht/status/1943471638051459103 2025-07-11 00:45:22,romonlyht,domain,aukjasperfiesmryjp.icu,#phishing,https://x.com/romonlyht/status/1943471642354815414 2025-07-11 00:45:22,romonlyht,url,https://aukjasperfiesmryjp.icu/s1VuSF/,#phishing,https://x.com/romonlyht/status/1943471642354815414 2025-07-11 01:01:18,romonlyht,md5,af192ffec3fcee7b82ca758aa1a784b3,#phishing,https://x.com/romonlyht/status/1943475653812326895 2025-07-11 01:01:18,romonlyht,url,http://mlvu.cn/edoyws/uxhlegcp.co.jp,#phishing,https://x.com/romonlyht/status/1943475651710980275 2025-07-11 01:01:18,romonlyht,ip,221.203.67.164,#phishing,https://x.com/romonlyht/status/1943475651710980275 2025-07-11 01:01:18,romonlyht,url,https://www.zmtdzqc.jp%E2%88%95igczkjhl@mlvu.cn/edoyws/uxhlegcp.co.jp,#phishing,https://x.com/romonlyht/status/1943475651710980275 2025-07-11 01:01:18,romonlyht,url,http://mlvu.cn/edoyws/uxhlegcp.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=af192ffec3fcee7b82ca758aa1a784b3,#phishing,https://x.com/romonlyht/status/1943475653812326895 2025-07-11 01:01:18,romonlyht,domain,aaasagawanauthoritati.zzux.com,#phishing,https://x.com/romonlyht/status/1943475655347413265 2025-07-11 01:01:18,romonlyht,domain,mlvu.cn,#phishing,https://x.com/romonlyht/status/1943475653812326895 2025-07-11 01:01:18,romonlyht,domain,zmtdzqc.jp%E2%88%95igczkjhl@mlvu.cn,#phishing,https://x.com/romonlyht/status/1943475653812326895 2025-07-11 01:01:18,romonlyht,url,https://www.zmtdzqc.jp%E2%88%95igczkjhl@mlvu.cn/edoyws/uxhlegcp.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=af192ffec3fcee7b82ca758aa1a784b3,#phishing,https://x.com/romonlyht/status/1943475653812326895 2025-07-11 01:01:18,romonlyht,url,https://aaasagawanauthoritati.zzux.com/visaz/,#phishing,https://x.com/romonlyht/status/1943475655347413265 2025-07-11 01:01:18,romonlyht,url,https://aaasagawanauthoritati.zzux.com/visaz,#phishing,https://x.com/romonlyht/status/1943475655347413265 2025-07-11 01:03:03,romonlyht,md5,3b5bb3771d7cf5f0d7aad0217a7b1167,#phishing,https://x.com/romonlyht/status/1943476095162159393 2025-07-11 01:03:03,romonlyht,domain,avteufgmta.jp%E2%88%95pwavbzyvem@pnyb.cn,#phishing,https://x.com/romonlyht/status/1943476095162159393 2025-07-11 01:03:03,romonlyht,url,http://pnyb.cn/slwnxhgeji/glxum.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=3b5bb3771d7cf5f0d7aad0217a7b1167,#phishing,https://x.com/romonlyht/status/1943476095162159393 2025-07-11 01:03:03,romonlyht,url,http://pnyb.cn/slwnxhgeji/glxum.co.jp,#phishing,https://x.com/romonlyht/status/1943476093706735796 2025-07-11 01:03:03,romonlyht,url,https://www.avteufgmta.jp%E2%88%95pwavbzyvem@pnyb.cn/slwnxhgeji/glxum.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=3b5bb3771d7cf5f0d7aad0217a7b1167,#phishing,https://x.com/romonlyht/status/1943476095162159393 2025-07-11 01:03:03,romonlyht,url,https://www.avteufgmta.jp%E2%88%95pwavbzyvem@pnyb.cn/slwnxhgeji/glxum.co.jp,#phishing,https://x.com/romonlyht/status/1943476093706735796 2025-07-11 01:03:03,romonlyht,ip,112.194.88.207,#phishing,https://x.com/romonlyht/status/1943476093706735796 2025-07-11 01:03:03,romonlyht,domain,pnyb.cn,#phishing,https://x.com/romonlyht/status/1943476095162159393 2025-07-11 01:03:04,romonlyht,ip,165.154.231.234,#phishing,https://x.com/romonlyht/status/1943476097510969838 2025-07-11 01:03:04,romonlyht,url,https://aaasagawanauthoritati.zyns.com/visaz/,#phishing,https://x.com/romonlyht/status/1943476097510969838 2025-07-11 01:03:04,romonlyht,domain,aaasagawanauthoritati.zyns.com,#phishing,https://x.com/romonlyht/status/1943476097510969838 2025-07-11 01:03:04,romonlyht,url,https://aaasagawanauthoritati.zyns.com/visaz,#phishing,https://x.com/romonlyht/status/1943476097510969838 2025-07-11 01:15:51,romonlyht,url,https://tepcoakpbu.com%E2%88%95fmzzmmjk@emeht.cn/?fidovygmyb=l5hefrocq,#phishing,https://x.com/romonlyht/status/1943479314495779270 2025-07-11 01:15:51,romonlyht,ip,116.208.100.251,#phishing,https://x.com/romonlyht/status/1943479314495779270 2025-07-11 01:15:51,romonlyht,url,http://emeht.cn/?fidovygmyb=l5hefrocq,#phishing,https://x.com/romonlyht/status/1943479314495779270 2025-07-11 01:15:51,romonlyht,domain,tepcoakpbu.com%E2%88%95fmzzmmjk@emeht.cn,#phishing,https://x.com/romonlyht/status/1943479314495779270 2025-07-11 01:16:27,romonlyht,domain,emeht.cn,#phishing,https://x.com/romonlyht/status/1943479467940163590 2025-07-11 01:16:27,romonlyht,domain,tepcokhlamhpo.com%E2%88%95xblxxdlbg@emeht.cn,#phishing,https://x.com/romonlyht/status/1943479467940163590 2025-07-11 01:16:27,romonlyht,url,http://emeht.cn/?qlgveca=hujrn5oqx,#phishing,https://x.com/romonlyht/status/1943479467940163590 2025-07-11 01:16:27,romonlyht,url,https://tepcokhlamhpo.com%E2%88%95xblxxdlbg@emeht.cn/?qlgveca=hujrn5oqx,#phishing,https://x.com/romonlyht/status/1943479467940163590 2025-07-11 01:16:27,romonlyht,ip,119.109.87.203,#phishing,https://x.com/romonlyht/status/1943479467940163590 2025-07-11 01:21:04,skocherhan,url,http://medthermography.com,#NetSupportRAT #malware,https://x.com/skocherhan/status/1943480626633470091 2025-07-11 01:21:04,skocherhan,url,http://94.158.245.131,#NetSupportRAT #malware,https://x.com/skocherhan/status/1943480626633470091 2025-07-11 01:21:04,skocherhan,domain,medthermography.com,#NetSupportRAT #malware,https://x.com/skocherhan/status/1943480626633470091 2025-07-11 01:21:04,skocherhan,ip,94.158.245.131,#NetSupportRAT #malware,https://x.com/skocherhan/status/1943480626633470091 2025-07-11 01:38:30,romonlyht,domain,12moves.com,#phishing,https://x.com/romonlyht/status/1943485015381164282 2025-07-11 01:38:30,romonlyht,url,https://12moves.com/login,#phishing,https://x.com/romonlyht/status/1943485015381164282 2025-07-11 01:38:30,romonlyht,url,https://12moves.com/my-apple,#phishing,https://x.com/romonlyht/status/1943485015381164282 2025-07-11 01:38:30,romonlyht,ip,101.110.9.81,#phishing,https://x.com/romonlyht/status/1943485015381164282 2025-07-11 01:38:30,romonlyht,ip,45.8.22.153,#phishing,https://x.com/romonlyht/status/1943485015381164282 2025-07-11 01:39:14,romonlyht,ip,221.128.128.246,#phishing,https://x.com/romonlyht/status/1943485201600123393 2025-07-11 01:39:14,romonlyht,domain,moveappic-storeco.shop,#phishing,https://x.com/romonlyht/status/1943485201600123393 2025-07-11 01:39:14,romonlyht,url,https://moveappic-storeco.shop/idloud/support/,#phishing,https://x.com/romonlyht/status/1943485201600123393 2025-07-11 01:40:02,romonlyht,domain,mostore-appidsco.shop,#phishing,https://x.com/romonlyht/status/1943485402956141048 2025-07-11 01:40:02,romonlyht,url,https://mostore-appidsco.shop/idloud/support/,#phishing,https://x.com/romonlyht/status/1943485402956141048 2025-07-11 01:40:02,romonlyht,ip,95.182.100.57,#phishing,https://x.com/romonlyht/status/1943485402956141048 2025-07-11 01:40:02,romonlyht,ip,154.205.156.127,#phishing,https://x.com/romonlyht/status/1943485402956141048 2025-07-11 01:45:13,skocherhan,domain,gov.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,domain,lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,url,http://presidentsoffice.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,url,http://lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,domain,presidentsoffice.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,domain,cbsl.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,url,http://gov.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,url,http://pubad.gov.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,url,http://cbsl.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:45:13,skocherhan,domain,pubad.gov.lk.mofa-govtpk.net,#APT,https://x.com/skocherhan/status/1943486703714316512 2025-07-11 01:50:44,romonlyht,domain,3ufy2nm1.top,#phishing,https://x.com/romonlyht/status/1943488093778235436 2025-07-11 01:50:44,romonlyht,ip,189.5.85.123,#phishing,https://x.com/romonlyht/status/1943488093778235436 2025-07-11 01:50:44,romonlyht,url,https://3ufy2nm1.top/XAMXat,#phishing,https://x.com/romonlyht/status/1943488093778235436 2025-07-11 01:51:39,romonlyht,url,https://6gsv6fa0.top/XAMXat,#phishing,https://x.com/romonlyht/status/1943488324506915108 2025-07-11 01:51:39,romonlyht,domain,6gsv6fa0.top,#phishing,https://x.com/romonlyht/status/1943488324506915108 2025-07-11 01:51:39,romonlyht,ip,179.106.65.99,#phishing,https://x.com/romonlyht/status/1943488324506915108 2025-07-11 01:51:39,romonlyht,url,https://6gsv6fa0.top/XAMXat/,#phishing,https://x.com/romonlyht/status/1943488324506915108 2025-07-11 01:54:41,Metemcyber,domain,aeon-testwise.dtskw.cn,#phishing,https://x.com/Metemcyber/status/1943489086506876998 2025-07-11 01:54:41,Metemcyber,url,http://172.67.198.90,#phishing,https://x.com/Metemcyber/status/1943489086506876998 2025-07-11 01:54:41,Metemcyber,url,https://aeon-testwise.dtskw.cn/openirt-connect/app/,#phishing,https://x.com/Metemcyber/status/1943489086506876998 2025-07-11 01:54:41,Metemcyber,url,http://104.21.82.75,#phishing,https://x.com/Metemcyber/status/1943489086506876998 2025-07-11 02:00:11,urldna_bot,url,https://currentlymail11.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943490470937493694 2025-07-11 02:00:11,urldna_bot,domain,currentlymail11.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943490470937493694 2025-07-11 02:01:13,Metemcyber,url,https://dhl-minute.qdaozb.cn/portal_login_exp/getQuoteTab/,#phishing,https://x.com/Metemcyber/status/1943490733111160833 2025-07-11 02:01:13,Metemcyber,url,http://172.67.216.33,#phishing,https://x.com/Metemcyber/status/1943490733111160833 2025-07-11 02:01:13,Metemcyber,url,http://104.21.69.253,#phishing,https://x.com/Metemcyber/status/1943490733111160833 2025-07-11 02:01:13,Metemcyber,domain,dhl-minute.qdaozb.cn,#phishing,https://x.com/Metemcyber/status/1943490733111160833 2025-07-11 02:06:39,skocherhan,url,http://azaleacapital.com,#malware,https://x.com/skocherhan/status/1943492099258617917 2025-07-11 02:06:39,skocherhan,domain,azaleacapital.com,#malware,https://x.com/skocherhan/status/1943492099258617917 2025-07-11 02:08:57,drb_ra,url,http://106.52.6.128:801,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943492677250466008 2025-07-11 02:08:57,drb_ra,ip,106.52.6.128,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943492677250466008 2025-07-11 02:09:02,drb_ra,url,http://107.173.19.136:57080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943492700998603202 2025-07-11 02:09:02,drb_ra,ip,107.173.19.136,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943492700998603202 2025-07-11 02:11:06,drb_ra,url,http://34.221.83.3:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493218315747545 2025-07-11 02:11:06,drb_ra,ip,34.221.83.3,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493218315747545 2025-07-11 02:11:06,drb_ra,ip,106.53.147.223,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493218315747545 2025-07-11 02:11:11,drb_ra,url,http://1.94.239.203:1111,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493241136898074 2025-07-11 02:11:17,drb_ra,url,http://47.116.124.49:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493263672959212 2025-07-11 02:11:17,drb_ra,ip,47.116.124.49,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493263672959212 2025-07-11 02:11:23,drb_ra,url,http://59.110.64.250:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493289379832184 2025-07-11 02:11:23,drb_ra,ip,59.110.64.250,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943493289379832184 2025-07-11 02:11:57,Metemcyber,domain,yodobashi-gratible.ehjbla.cn,#phishing,https://x.com/Metemcyber/status/1943493434893009386 2025-07-11 02:11:57,Metemcyber,url,https://yodobashi-gratible.ehjbla.cn/login_index/,#phishing,https://x.com/Metemcyber/status/1943493434893009386 2025-07-11 02:11:57,Metemcyber,url,http://104.21.16.1,#phishing,https://x.com/Metemcyber/status/1943493434893009386 2025-07-11 02:11:57,Metemcyber,url,http://104.21.112.1,#phishing,https://x.com/Metemcyber/status/1943493434893009386 2025-07-11 02:11:57,Metemcyber,url,http://104.21.48.1,#phishing,https://x.com/Metemcyber/status/1943493434893009386 2025-07-11 02:11:57,Metemcyber,url,http://104.21.32.1,#phishing,https://x.com/Metemcyber/status/1943493434893009386 2025-07-11 02:21:09,romonlyht,domain,festivalislacalavera.com,#phishing,https://x.com/romonlyht/status/1943495749393842236 2025-07-11 02:21:09,romonlyht,domain,festivalislacalavera.com%E2%88%95xThPsgsqR%E2%88%95CTSDDya%E2%88%95sxNuGm@jxulkbbg.745730.ne,#phishing,https://x.com/romonlyht/status/1943495747284144380 2025-07-11 02:21:09,romonlyht,url,https://festivalislacalavera.com/tsuruta.hitachi85,#phishing,https://x.com/romonlyht/status/1943495749393842236 2025-07-11 02:21:09,romonlyht,domain,jxulkbbg.745730.ne,#phishing,https://x.com/romonlyht/status/1943495747284144380 2025-07-11 02:21:09,romonlyht,url,http://jxulkbbg.745730.ne,#phishing,https://x.com/romonlyht/status/1943495747284144380 2025-07-11 02:21:09,romonlyht,ip,187.180.186.88,#phishing,https://x.com/romonlyht/status/1943495747284144380 2025-07-11 02:21:09,romonlyht,url,https://festivalislacalavera.com%E2%88%95xThPsgsqR%E2%88%95CTSDDya%E2%88%95sxNuGm@jxulkbbg.745730.ne,#phishing,https://x.com/romonlyht/status/1943495747284144380 2025-07-11 02:22:16,romonlyht,ip,104.255.153.129,#phishing,https://x.com/romonlyht/status/1943496030785540190 2025-07-11 02:22:16,romonlyht,ip,160.251.214.151,#phishing,https://x.com/romonlyht/status/1943496030785540190 2025-07-11 02:22:16,romonlyht,domain,scholarschair.com,#phishing,https://x.com/romonlyht/status/1943496030785540190 2025-07-11 02:22:16,romonlyht,url,https://scholarschair.com/ETGate,#phishing,https://x.com/romonlyht/status/1943496030785540190 2025-07-11 02:22:16,romonlyht,url,https://scholarschair.com/ETGate/,#phishing,https://x.com/romonlyht/status/1943496030785540190 2025-07-11 02:25:10,romonlyht,domain,q8365.cc,#phishing,https://x.com/romonlyht/status/1943496760783184136 2025-07-11 02:25:10,romonlyht,ip,177.85.1.254,#phishing,https://x.com/romonlyht/status/1943496759256477696 2025-07-11 02:25:10,romonlyht,domain,gutierrez-russell-officer.vietby.com,#phishing,https://x.com/romonlyht/status/1943496760783184136 2025-07-11 02:25:10,romonlyht,url,https://gutierrez-russell-officer.vietby.com/mochida_gen_player,#phishing,https://x.com/romonlyht/status/1943496760783184136 2025-07-11 02:25:10,romonlyht,ip,182.16.9.218,#phishing,https://x.com/romonlyht/status/1943496760783184136 2025-07-11 02:25:10,romonlyht,domain,hqjbvy.745730.net,#phishing,https://x.com/romonlyht/status/1943496760783184136 2025-07-11 02:25:10,romonlyht,url,https://q8365.cc/GlSaENdTqu/,#phishing,https://x.com/romonlyht/status/1943496760783184136 2025-07-11 02:25:59,romonlyht,url,https://57zod4.top/Pu4Wdv,#phishing,https://x.com/romonlyht/status/1943496963300929553 2025-07-11 02:25:59,romonlyht,domain,57zod4.top,#phishing,https://x.com/romonlyht/status/1943496963300929553 2025-07-11 02:25:59,romonlyht,ip,187.73.196.187,#phishing,https://x.com/romonlyht/status/1943496963300929553 2025-07-11 02:26:40,romonlyht,domain,f0f25o.top,#phishing,https://x.com/romonlyht/status/1943497136366125519 2025-07-11 02:26:40,romonlyht,url,https://f0f25o.top/Pu4Wdv,#phishing,https://x.com/romonlyht/status/1943497136366125519 2025-07-11 02:26:40,romonlyht,ip,177.126.232.97,#phishing,https://x.com/romonlyht/status/1943497136366125519 2025-07-11 02:50:55,romonlyht,url,http://kzet.cn/?ti,#phishing,https://x.com/romonlyht/status/1943503239653060951 2025-07-11 02:50:55,romonlyht,url,https://fwsw.net%E2%88%95mazqk%E2%88%95vvvamoanja%E2%88%95mkbft%E2%88%95rswyceqspb%E2%88%95lnfnt%E2%88%95uuazfaj%E2%88%95iqfdpwysd@kzet.cn/?ti,#phishing,https://x.com/romonlyht/status/1943503239653060951 2025-07-11 02:50:55,romonlyht,domain,fwsw.net%E2%88%95mazqk%E2%88%95vvvamoanja%E2%88%95mkbft%E2%88%95rswyceqspb%E2%88%95lnfnt%E2%88%95uuazfaj%E2%88%95iqfdpwysd@kzet.cn,#phishing,https://x.com/romonlyht/status/1943503239653060951 2025-07-11 02:50:55,romonlyht,domain,kzet.cn,#phishing,https://x.com/romonlyht/status/1943503239653060951 2025-07-11 02:50:55,romonlyht,url,http://kzet.cn,#phishing,https://x.com/romonlyht/status/1943503239653060951 2025-07-11 02:50:55,romonlyht,ip,106.111.28.59,#phishing,https://x.com/romonlyht/status/1943503237665165353 2025-07-11 02:50:56,romonlyht,url,https://czxsagawanauthoritati.longmusic.com/v1/check,#phishing,https://x.com/romonlyht/status/1943503244015341897 2025-07-11 02:50:56,romonlyht,md5,c73b0085281d2ee04a0d465ca4001e21,#phishing,https://x.com/romonlyht/status/1943503242001817605 2025-07-11 02:50:56,romonlyht,domain,czxsagawanauthoritati.longmusic.com,#phishing,https://x.com/romonlyht/status/1943503242001817605 2025-07-11 02:50:56,romonlyht,url,https://czxsagawanauthoritati.longmusic.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/romonlyht/status/1943503244015341897 2025-07-11 02:50:56,romonlyht,url,https://czxsagawanauthoritati.longmusic.com/wdsoscosmsosmx.jp,#phishing,https://x.com/romonlyht/status/1943503242001817605 2025-07-11 02:54:20,romonlyht,ip,113.231.10.42,#phishing,https://x.com/romonlyht/status/1943504100517441709 2025-07-11 02:54:21,romonlyht,url,http://bcye.cn/?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=b7867117950c3ae69072c77d84c3860d,#phishing,https://x.com/romonlyht/status/1943504104640368817 2025-07-11 02:54:21,romonlyht,url,http://bcye.cn,#phishing,https://x.com/romonlyht/status/1943504102610141341 2025-07-11 02:54:21,romonlyht,domain,bcye.cn,#phishing,https://x.com/romonlyht/status/1943504104640368817 2025-07-11 02:54:21,romonlyht,md5,b7867117950c3ae69072c77d84c3860d,#phishing,https://x.com/romonlyht/status/1943504104640368817 2025-07-11 02:54:22,romonlyht,ip,165.154.231.7,#phishing,https://x.com/romonlyht/status/1943504106292941093 2025-07-11 02:54:22,romonlyht,url,https://wadsaagawanauthoritati.organiccrap.com/wdsoscosmsosmx.jp,#phishing,https://x.com/romonlyht/status/1943504106292941093 2025-07-11 02:54:22,romonlyht,domain,wadsaagawanauthoritati.organiccrap.com,#phishing,https://x.com/romonlyht/status/1943504106292941093 2025-07-11 02:54:22,romonlyht,url,https://wadsaagawanauthoritati.organiccrap.com/wdsoscosmsosmx.jp/,#phishing,https://x.com/romonlyht/status/1943504106292941093 2025-07-11 03:06:42,romonlyht,domain,imemj.cn,#phishing,https://x.com/romonlyht/status/1943507212128915585 2025-07-11 03:06:42,romonlyht,url,https://imemj.cn/Login,#phishing,https://x.com/romonlyht/status/1943507212128915585 2025-07-11 03:06:42,romonlyht,url,https://imemj.cn/Login/,#phishing,https://x.com/romonlyht/status/1943507212128915585 2025-07-11 03:06:42,romonlyht,ip,121.61.161.142,#phishing,https://x.com/romonlyht/status/1943507212128915585 2025-07-11 03:07:37,romonlyht,ip,171.211.48.23,#phishing,https://x.com/romonlyht/status/1943507441435709730 2025-07-11 03:07:37,romonlyht,url,https://qpncx.cn/Login,#phishing,https://x.com/romonlyht/status/1943507441435709730 2025-07-11 03:07:37,romonlyht,url,https://qpncx.cn/Login/,#phishing,https://x.com/romonlyht/status/1943507441435709730 2025-07-11 03:07:37,romonlyht,ip,43.165.180.10,#phishing,https://x.com/romonlyht/status/1943507441435709730 2025-07-11 03:07:37,romonlyht,domain,qpncx.cn,#phishing,https://x.com/romonlyht/status/1943507441435709730 2025-07-11 03:18:43,romonlyht,ip,192.227.146.60,#phishing,https://x.com/romonlyht/status/1943510234250776769 2025-07-11 03:18:43,romonlyht,url,https://www.1aosi8qqag.cyou/?token=aFptTW1GellpUjJObFpqTnlRbU0xb2pPbHhHY3dGbU82QW5hdVVtYnU0MmJwUm1MNHNHUXI1MmF1a,#phishing,https://x.com/romonlyht/status/1943510234250776769 2025-07-11 03:18:43,romonlyht,domain,1aosi8qqag.cyou,#phishing,https://x.com/romonlyht/status/1943510234250776769 2025-07-11 03:18:44,romonlyht,url,https://change-appbill.audiencesupported.com/jp/,#phishing,https://x.com/romonlyht/status/1943510238118002793 2025-07-11 03:18:44,romonlyht,domain,change-appbill.audiencesupported.com,#phishing,https://x.com/romonlyht/status/1943510238118002793 2025-07-11 03:18:44,romonlyht,url,https://change-appbill.audiencesupported.com/jp,#phishing,https://x.com/romonlyht/status/1943510238118002793 2025-07-11 03:49:34,romonlyht,domain,w56w75.top,#phishing,https://x.com/romonlyht/status/1943517998574374942 2025-07-11 03:49:34,romonlyht,url,https://w56w75.top/MjmhISddB,#phishing,https://x.com/romonlyht/status/1943517998574374942 2025-07-11 03:49:34,romonlyht,ip,138.117.210.27,#phishing,https://x.com/romonlyht/status/1943517998574374942 2025-07-11 03:49:34,romonlyht,url,https://w56w75.top/MjmhISddB/,#phishing,https://x.com/romonlyht/status/1943517998574374942 2025-07-11 04:29:06,skocherhan,domain,thetileboutique.in,#NetSupport,https://x.com/skocherhan/status/1943527947043741804 2025-07-11 04:29:06,skocherhan,url,http://thetileboutique.in,#NetSupport,https://x.com/skocherhan/status/1943527947043741804 2025-07-11 04:29:06,skocherhan,url,http://5.181.157.164,#NetSupport,https://x.com/skocherhan/status/1943527947043741804 2025-07-11 04:46:22,skocherhan,url,http://hiwefihwefhijwefjiqwerf.top,#NetSupportRAT,https://x.com/skocherhan/status/1943532295341687044 2025-07-11 04:46:22,skocherhan,domain,hiwefihwefhijwefjiqwerf.top,#NetSupportRAT,https://x.com/skocherhan/status/1943532295341687044 2025-07-11 04:46:22,skocherhan,url,http://5.252.155.14,#NetSupportRAT,https://x.com/skocherhan/status/1943532295341687044 2025-07-11 04:46:22,skocherhan,domain,eikowrftkoweokfweo.xyz,#NetSupportRAT,https://x.com/skocherhan/status/1943532295341687044 2025-07-11 04:46:22,skocherhan,url,http://eikowrftkoweokfweo.xyz,#NetSupportRAT,https://x.com/skocherhan/status/1943532295341687044 2025-07-11 04:55:26,skocherhan,url,http://94.158.244.161,#NetSupportRAT #C2,https://x.com/skocherhan/status/1943534574568456570 2025-07-11 04:55:26,skocherhan,url,http://5.181.159.204,#NetSupportRAT #C2,https://x.com/skocherhan/status/1943534574568456570 2025-07-11 04:55:26,skocherhan,ip,94.158.244.161,#NetSupportRAT #C2,https://x.com/skocherhan/status/1943534574568456570 2025-07-11 05:58:29,skocherhan,url,http://discoveronline.top/kll/buf.js,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 05:58:29,skocherhan,url,http://trendings.top/kll/buf.js,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 05:58:29,skocherhan,domain,trendings.top,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 05:58:29,skocherhan,domain,discoveronline.top,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 05:58:29,skocherhan,url,http://iwine.top/kll/buf.js,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 05:58:29,skocherhan,domain,fragzone.top,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 05:58:29,skocherhan,domain,iwine.top,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 05:58:29,skocherhan,url,http://fragzone.top/kll/buf.js,,https://x.com/skocherhan/status/1943550441306149262 2025-07-11 06:00:08,urldna_bot,domain,gmxxdes.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943550858156773837 2025-07-11 06:00:08,urldna_bot,url,https://gmxxdes.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943550858156773837 2025-07-11 06:00:45,SarlackLab,url,http://178.250.188.181:4226,#RedLine #C2,https://x.com/SarlackLab/status/1943551010686791693 2025-07-11 06:00:45,SarlackLab,ip,178.250.188.181,#RedLine #C2,https://x.com/SarlackLab/status/1943551010686791693 2025-07-11 06:35:47,PrakkiSathwik,domain,indianarmy.nic.in.nominationdrdo.report,#APT #phishing,https://x.com/PrakkiSathwik/status/1943559830385639495 2025-07-11 06:35:47,PrakkiSathwik,url,http://indianarmy.nic.in.nominationdrdo.report/index,#APT #phishing,https://x.com/PrakkiSathwik/status/1943559830385639495 2025-07-11 06:35:47,PrakkiSathwik,md5,2eb008aad8675060c20268d13ff05816,#APT #phishing,https://x.com/PrakkiSathwik/status/1943559830385639495 2025-07-11 06:46:05,drb_ra,ip,54.210.124.204,#C2 #Deimos,https://x.com/drb_ra/status/1943562421546672460 2025-07-11 06:46:05,drb_ra,url,http://54.210.124.204:443,#C2 #Deimos,https://x.com/drb_ra/status/1943562421546672460 2025-07-11 06:46:10,drb_ra,ip,104.248.170.98,#C2 #Mythic,https://x.com/drb_ra/status/1943562444007231556 2025-07-11 06:46:10,drb_ra,url,http://104.248.170.98:7443,#C2 #Mythic,https://x.com/drb_ra/status/1943562444007231556 2025-07-11 06:48:15,drb_ra,ip,13.246.221.95,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943562967519498641 2025-07-11 06:48:15,drb_ra,url,http://13.246.221.95:17778,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943562967519498641 2025-07-11 06:51:53,Metemcyber,url,https://cotvr.cn/Login/,#phishing,https://x.com/Metemcyber/status/1943563882641133983 2025-07-11 06:51:53,Metemcyber,url,http://43.165.180.10,#phishing,https://x.com/Metemcyber/status/1943563882641133983 2025-07-11 06:51:53,Metemcyber,domain,irncw.cn,#phishing,https://x.com/Metemcyber/status/1943563882641133983 2025-07-11 06:51:53,Metemcyber,domain,cotvr.cn,#phishing,https://x.com/Metemcyber/status/1943563882641133983 2025-07-11 06:51:53,Metemcyber,domain,nigvm.cn,#phishing,https://x.com/Metemcyber/status/1943563882641133983 2025-07-11 06:51:53,Metemcyber,url,https://nigvm.cn/Login/,#phishing,https://x.com/Metemcyber/status/1943563882641133983 2025-07-11 06:51:53,Metemcyber,url,https://irncw.cn/Login/,#phishing,https://x.com/Metemcyber/status/1943563882641133983 2025-07-11 06:53:17,drb_ra,url,http://40.192.38.8:48796,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943564231477006804 2025-07-11 06:56:34,drb_ra,ip,46.21.153.146,#C2,https://x.com/drb_ra/status/1943565058187096221 2025-07-11 06:56:34,drb_ra,url,http://46.21.153.146:55555,#C2,https://x.com/drb_ra/status/1943565058187096221 2025-07-11 06:57:20,drb_ra,url,http://80.64.19.165:6002,#C2 #Remcos,https://x.com/drb_ra/status/1943565250919305666 2025-07-11 06:57:20,drb_ra,ip,80.64.19.165,#C2 #Remcos,https://x.com/drb_ra/status/1943565250919305666 2025-07-11 06:57:24,drb_ra,url,http://167.160.161.83:443,#C2 #Remcos,https://x.com/drb_ra/status/1943565269525319932 2025-07-11 06:57:24,drb_ra,ip,167.160.161.83,#C2 #Remcos,https://x.com/drb_ra/status/1943565269525319932 2025-07-11 06:57:28,drb_ra,url,http://70.39.207.17:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943565285245468986 2025-07-11 06:57:28,drb_ra,ip,70.39.207.17,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943565285245468986 2025-07-11 07:00:13,romonlyht,url,https://line.me.support.account.cortalets.com/support,#phishing,https://x.com/romonlyht/status/1943565979629584849 2025-07-11 07:00:13,romonlyht,domain,line.me.support.account.cortalets.com,#phishing,https://x.com/romonlyht/status/1943565979629584849 2025-07-11 07:00:13,romonlyht,ip,45.127.32.97,#phishing,https://x.com/romonlyht/status/1943565979629584849 2025-07-11 07:00:13,romonlyht,ip,150.109.205.196,#phishing,https://x.com/romonlyht/status/1943565979629584849 2025-07-11 07:02:59,drb_ra,url,http://123.11.141.235:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943566672310227431 2025-07-11 07:02:59,drb_ra,ip,123.11.141.235,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943566672310227431 2025-07-11 07:03:04,drb_ra,url,http://216.107.136.27:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943566694716227953 2025-07-11 07:03:04,drb_ra,ip,216.107.136.27,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1943566694716227953 2025-07-11 07:03:09,drb_ra,ip,45.79.217.119,#C2,https://x.com/drb_ra/status/1943566716866367617 2025-07-11 07:03:09,drb_ra,url,http://45.79.217.119:8080,#C2,https://x.com/drb_ra/status/1943566716866367617 2025-07-11 07:03:15,drb_ra,ip,40.192.38.8,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566740430164387 2025-07-11 07:03:15,drb_ra,url,http://40.192.38.8:18246,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566740430164387 2025-07-11 07:03:19,drb_ra,url,http://16.78.22.100:2761,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566757555274030 2025-07-11 07:03:19,drb_ra,ip,16.78.22.100,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566757555274030 2025-07-11 07:03:24,Metemcyber,url,http://172.67.198.40,#phishing,https://x.com/Metemcyber/status/1943566777725915634 2025-07-11 07:03:24,Metemcyber,url,https://m3achq.top/MjmhISddB/,#phishing,https://x.com/Metemcyber/status/1943566777725915634 2025-07-11 07:03:24,Metemcyber,domain,m3achq.top,#phishing,https://x.com/Metemcyber/status/1943566777725915634 2025-07-11 07:03:24,Metemcyber,url,http://104.21.68.198,#phishing,https://x.com/Metemcyber/status/1943566777725915634 2025-07-11 07:03:26,drb_ra,url,http://3.29.67.233:37805,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566787393531929 2025-07-11 07:03:32,drb_ra,url,http://3.29.67.233:2455,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566810638356810 2025-07-11 07:03:37,drb_ra,url,http://13.51.167.29:104,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566833174315327 2025-07-11 07:03:37,drb_ra,ip,13.51.167.29,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566833174315327 2025-07-11 07:03:42,drb_ra,url,http://51.92.218.68:995,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566855408406889 2025-07-11 07:03:42,drb_ra,ip,51.92.218.68,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943566855408406889 2025-07-11 07:03:48,drb_ra,url,http://185.196.10.251:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943566877990469779 2025-07-11 07:03:48,drb_ra,ip,185.196.10.251,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943566877990469779 2025-07-11 07:03:53,drb_ra,ip,24.152.38.198,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943566901424050218 2025-07-11 07:03:53,drb_ra,url,http://24.152.38.198:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943566901424050218 2025-07-11 07:03:59,drb_ra,url,http://159.223.167.169:587,#C2 #Interactsh,https://x.com/drb_ra/status/1943566924857647491 2025-07-11 07:04:05,drb_ra,url,http://159.223.167.169:443,#C2 #Interactsh,https://x.com/drb_ra/status/1943566949130072132 2025-07-11 07:04:10,drb_ra,url,http://159.223.167.169:80,#C2 #Interactsh,https://x.com/drb_ra/status/1943566973708693715 2025-07-11 07:04:16,drb_ra,url,http://159.223.167.169:25,#C2 #Interactsh,https://x.com/drb_ra/status/1943566998115381650 2025-07-11 07:04:16,drb_ra,ip,159.223.167.169,#C2 #Interactsh,https://x.com/drb_ra/status/1943566998115381650 2025-07-11 07:04:22,drb_ra,url,http://138.2.131.93:587,#C2 #Interactsh,https://x.com/drb_ra/status/1943567023285400026 2025-07-11 07:04:28,drb_ra,ip,138.2.131.93,#C2 #Interactsh,https://x.com/drb_ra/status/1943567046475706865 2025-07-11 07:04:28,drb_ra,url,http://138.2.131.93:465,#C2 #Interactsh,https://x.com/drb_ra/status/1943567046475706865 2025-07-11 07:04:33,drb_ra,url,http://196.251.81.62:80,#C2 #Pegasus #Hookbot,https://x.com/drb_ra/status/1943567070211211598 2025-07-11 07:04:33,drb_ra,ip,196.251.81.62,#C2 #Pegasus #Hookbot,https://x.com/drb_ra/status/1943567070211211598 2025-07-11 07:04:39,drb_ra,url,http://154.216.157.83:8888,#C2 #Supershell,https://x.com/drb_ra/status/1943567092319715543 2025-07-11 07:04:39,drb_ra,ip,154.216.157.83,#C2 #Supershell,https://x.com/drb_ra/status/1943567092319715543 2025-07-11 07:04:44,drb_ra,url,http://143.92.62.30:8888,#C2 #Supershell,https://x.com/drb_ra/status/1943567116495732956 2025-07-11 07:04:44,drb_ra,ip,143.92.62.30,#C2 #Supershell,https://x.com/drb_ra/status/1943567116495732956 2025-07-11 07:04:50,drb_ra,ip,193.5.65.154,#C2 #Dcrat,https://x.com/drb_ra/status/1943567137710211238 2025-07-11 07:04:50,drb_ra,url,http://193.5.65.154:7707,#C2 #Dcrat,https://x.com/drb_ra/status/1943567137710211238 2025-07-11 07:07:50,romonlyht,ip,180.126.137.130,#phishing,https://x.com/romonlyht/status/1943567895549874507 2025-07-11 07:22:08,skocherhan,domain,av11.top,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 07:22:08,skocherhan,url,http://www.av11.top/6p0a/,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 07:22:08,skocherhan,domain,augmentingdata.xyz,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 07:22:08,skocherhan,url,http://www.augmentingdata.xyz/yf4t/,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 07:22:08,skocherhan,domain,instantcomputer.xyz,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 07:22:08,skocherhan,url,http://www.instantcomputer.xyz/wo5k/,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 07:22:08,skocherhan,domain,nonamesms.online,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 07:22:08,skocherhan,url,http://www.nonamesms.online/amnv/,#Formbook,https://x.com/skocherhan/status/1943571492219842812 2025-07-11 08:11:27,skocherhan,md5,5a62749a22a35a80fbcaa97e8cb5ab60,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,md5,bf26fd37a486d6ae7a1f7187125b6595,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,md5,dff5a62767a37977ca790dfadb59e47c,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,md5,e81e7dfe298262b6314c76e82a08dd00,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,md5,68b05a65e5b9f53403ed9d086d9bf226,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,md5,a448d9dfc1300d8f18067a0db83defec,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,domain,78451705.xyz,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,url,http://www.596767.top/rdl7/,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,domain,596767.top,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,url,http://www.51580.vip/1onw/,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,domain,51580.vip,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:11:27,skocherhan,url,http://www.78451705.xyz,#Formbook,https://x.com/skocherhan/status/1943583903337349268 2025-07-11 08:27:24,skocherhan,url,http://633525.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,925324.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://683222.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,683222.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://674234.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://925324.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,674234.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://665466.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,665466.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,633525.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,227647.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,476553.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,143553.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://143553.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,226475.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://476553.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://227647.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,domain,379716.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://379716.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:27:24,skocherhan,url,http://226475.vip,#phishing,https://x.com/skocherhan/status/1943587918846575084 2025-07-11 08:58:46,skocherhan,url,http://126675.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,domain,126675.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,url,http://644222.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,domain,644222.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,url,http://062512.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,domain,062512.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,domain,842630.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,domain,275227.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,url,http://33765.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,domain,33765.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,url,http://524312.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,domain,524312.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,url,http://842630.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 08:58:46,skocherhan,url,http://275227.cc,#phishing,https://x.com/skocherhan/status/1943595813281685687 2025-07-11 10:00:15,urldna_bot,url,http://certoetiquetas.com.br/wp-content/conn/GlobalSources/?email=3mail@slurpmail.net,#scam #phishing,https://x.com/urldna_bot/status/1943611284261331156 2025-07-11 10:00:15,urldna_bot,domain,certoetiquetas.com.br,#scam #phishing,https://x.com/urldna_bot/status/1943611284261331156 2025-07-11 10:57:50,suyog41,domain,digitech99.one,,https://x.com/suyog41/status/1943625774558581052 2025-07-11 10:57:50,suyog41,domain,Uniqlo_Interview_Availability_Form.docx.download,,https://x.com/suyog41/status/1943625774558581052 2025-07-11 10:57:50,suyog41,url,http://Uniqlo_Interview_Availability_Form.docx.download,,https://x.com/suyog41/status/1943625774558581052 2025-07-11 10:57:50,suyog41,url,http://digitech99.one,,https://x.com/suyog41/status/1943625774558581052 2025-07-11 10:57:50,suyog41,md5,b1845ccc481adfeb0962383706301205,,https://x.com/suyog41/status/1943625774558581052 2025-07-11 10:59:32,c9lab_soc,domain,google-test.cloud,#phishing #scam,https://x.com/c9lab_soc/status/1943626205715894587 2025-07-11 10:59:32,c9lab_soc,url,http://google-test.cloud,#phishing #scam,https://x.com/c9lab_soc/status/1943626205715894587 2025-07-11 10:59:32,c9lab_soc,domain,dnb-bank.com,#phishing #scam,https://x.com/c9lab_soc/status/1943626205715894587 2025-07-11 10:59:32,c9lab_soc,url,http://dnb-bank.com,#phishing #scam,https://x.com/c9lab_soc/status/1943626205715894587 2025-07-11 10:59:51,c9lab_soc,url,http://capital-one-cds.xyz,#phishing #scam,https://x.com/c9lab_soc/status/1943626283583189093 2025-07-11 10:59:51,c9lab_soc,domain,capital-one-cds.xyz,#phishing #scam,https://x.com/c9lab_soc/status/1943626283583189093 2025-07-11 10:59:51,c9lab_soc,domain,google-chrome.dev,#phishing #scam,https://x.com/c9lab_soc/status/1943626283583189093 2025-07-11 10:59:51,c9lab_soc,url,http://google-chrome.dev,#phishing #scam,https://x.com/c9lab_soc/status/1943626283583189093 2025-07-11 11:06:52,drb_ra,url,https://120.79.162.99/IE9CompatViewList.xml,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628049968185619 2025-07-11 11:06:52,drb_ra,url,http://120.79.162.99:8088,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628049968185619 2025-07-11 11:06:57,drb_ra,url,http://106.53.170.127:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628070398599538 2025-07-11 11:06:57,drb_ra,ip,106.53.170.127,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628070398599538 2025-07-11 11:07:02,drb_ra,url,https://193.112.239.170/hrmregister/corpTrial/get_permission,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628092393619648 2025-07-11 11:07:02,drb_ra,url,http://175.178.77.207:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628092393619648 2025-07-11 11:07:02,drb_ra,ip,175.178.77.207,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628092393619648 2025-07-11 11:07:02,drb_ra,ip,193.112.239.170,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628092393619648 2025-07-11 11:07:06,drb_ra,url,https://139.196.248.134/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628108873003321 2025-07-11 11:07:06,drb_ra,url,http://139.196.248.134:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628108873003321 2025-07-11 11:07:06,drb_ra,ip,139.196.248.134,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628108873003321 2025-07-11 11:07:12,drb_ra,ip,103.214.70.214,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628134831489114 2025-07-11 11:07:12,drb_ra,url,http://103.214.70.214:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628134831489114 2025-07-11 11:07:12,drb_ra,url,https://103.214.70.214/fwlink,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628134831489114 2025-07-11 11:07:18,drb_ra,url,http://120.79.162.99:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628156612567235 2025-07-11 11:07:18,drb_ra,ip,120.79.162.99,#CobaltStrike #C2,https://x.com/drb_ra/status/1943628156612567235 2025-07-11 11:11:22,drb_ra,url,http://123.60.130.187:8065,#CobaltStrike #C2,https://x.com/drb_ra/status/1943629180077277643 2025-07-11 11:11:22,drb_ra,ip,123.60.130.187,#CobaltStrike #C2,https://x.com/drb_ra/status/1943629180077277643 2025-07-11 11:13:25,drb_ra,url,http://8.137.151.96:8011,#CobaltStrike #C2,https://x.com/drb_ra/status/1943629697541148850 2025-07-11 11:22:58,K_N1kolenko,ip,192.3.198.13,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,176.97.212.251,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,146.70.87.178,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,144.172.105.184,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,167.160.161.3,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,31.57.97.217,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,31.57.97.126,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,31.57.97.31,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 11:22:58,K_N1kolenko,ip,45.74.10.206,#RAT #Xworm,https://x.com/K_N1kolenko/status/1943632099526791430 2025-07-11 12:17:34,masaomi346,domain,asherthomas.com.au,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:17:34,masaomi346,url,https://asherthomas.com.au/PLA/Sites/index.html,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:17:34,masaomi346,domain,csiewartschool.org,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:17:34,masaomi346,url,https://csiewartschool.org//AccountUpdate/Sites/index.html,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:17:34,masaomi346,domain,guatemalaavanza.com,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:17:34,masaomi346,url,https://guatemalaavanza.com/Softaccount/Sites/index.html,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:17:34,masaomi346,domain,woodland.net.gr,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:17:34,masaomi346,url,https://woodland.net.gr/Verify/Sites/index.html,#phishing,https://x.com/masaomi346/status/1943645842910372232 2025-07-11 12:26:20,ValidinLLC,url,http://us05zoom.us.com,#BlueNoroff,https://x.com/ValidinLLC/status/1943648048401244489 2025-07-11 12:26:20,ValidinLLC,ip,23.254.247.53,#BlueNoroff,https://x.com/ValidinLLC/status/1943648048401244489 2025-07-11 12:26:20,ValidinLLC,url,http://us05zoom.com,#BlueNoroff,https://x.com/ValidinLLC/status/1943648048401244489 2025-07-11 12:26:20,ValidinLLC,url,http://23.254.247.53,#BlueNoroff,https://x.com/ValidinLLC/status/1943648048401244489 2025-07-11 12:26:20,ValidinLLC,domain,us05zoom.com,#BlueNoroff,https://x.com/ValidinLLC/status/1943648048401244489 2025-07-11 12:26:20,ValidinLLC,domain,us05zoom.us.com,#BlueNoroff,https://x.com/ValidinLLC/status/1943648048401244489 2025-07-11 12:58:38,suyog41,domain,workopportunitiesmarriott.com,,https://x.com/suyog41/status/1943656178044559570 2025-07-11 12:58:38,suyog41,url,http://workopportunitiesmarriott.com,,https://x.com/suyog41/status/1943656178044559570 2025-07-11 12:58:38,suyog41,md5,d7668fe253b6b81a5a1dda96ece84363,,https://x.com/suyog41/status/1943656178044559570 2025-07-11 12:58:38,suyog41,md5,176d89fce36b7097df1120ea0fdab24d,,https://x.com/suyog41/status/1943656178044559570 2025-07-11 13:20:12,threatquery,ip,157.20.182.24,#malware #AsyncRAT #C2,https://x.com/threatquery/status/1943661605775962617 2025-07-11 13:20:12,threatquery,ip,83.48.230.194,#malware #NetSupportRAT #C2,https://x.com/threatquery/status/1943661602328150337 2025-07-11 13:20:13,threatquery,ip,51.48.73.168,#malware #C2,https://x.com/threatquery/status/1943661608573505875 2025-07-11 13:22:30,threatquery,ip,15.161.185.195,#malware #C2,https://x.com/threatquery/status/1943662182895382883 2025-07-11 13:22:30,threatquery,url,http://15.161.185.195,#malware #C2,https://x.com/threatquery/status/1943662182895382883 2025-07-11 13:22:31,threatquery,url,http://146.190.11.128,#malware #C2 #Sliver,https://x.com/threatquery/status/1943662185730707801 2025-07-11 13:22:31,threatquery,ip,146.190.11.128,#malware #C2 #Sliver,https://x.com/threatquery/status/1943662185730707801 2025-07-11 13:24:08,0x6rss,domain,crocoprimecustm.store,,https://x.com/0x6rss/status/1943662593475842279 2025-07-11 13:24:08,0x6rss,url,https://crocoprimecustm.store,,https://x.com/0x6rss/status/1943662593475842279 2025-07-11 13:34:01,skocherhan,sha256,cd454d80b75cbd4b23f9ec4a3e5746e53552f5a2a30c3ea1d5d3215cf41484aa,,https://x.com/skocherhan/status/1943665081163690236 2025-07-11 13:34:34,skocherhan,sha256,70309bf3d2aed946bba51fc3eedb2daa3e8044b60151f0b5c1550831fbc6df17,,https://x.com/skocherhan/status/1943665219554750542 2025-07-11 13:56:59,skocherhan,md5,4fa9f678df14a33e2e5480d63604f811,,https://x.com/skocherhan/status/1943670862319681689 2025-07-11 14:07:05,harugasumi,domain,9lick.me,#phishing,https://x.com/harugasumi/status/1943673401018564975 2025-07-11 14:07:05,harugasumi,url,https://9lick.me/colist1357/sWbZA,#phishing,https://x.com/harugasumi/status/1943673401018564975 2025-07-11 14:27:21,harugasumi,domain,kaochun.cn,#phishing,https://x.com/harugasumi/status/1943678502076625394 2025-07-11 14:27:21,harugasumi,url,https://kaochun.cn,#phishing,https://x.com/harugasumi/status/1943678502076625394 2025-07-11 15:12:42,skocherhan,domain,polservice.info,#APT,https://x.com/skocherhan/status/1943689916463849808 2025-07-11 15:12:42,skocherhan,url,http://polservice.info,#APT,https://x.com/skocherhan/status/1943689916463849808 2025-07-11 15:26:48,fbgwls245,md5,261A9C57A6BA622DCAE1D5B3C9C5F87F,#ransomware,https://x.com/fbgwls245/status/1943693462492020801 2025-07-11 16:04:51,drb_ra,url,http://117.50.163.22:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943703039392534682 2025-07-11 16:04:51,drb_ra,ip,117.50.163.22,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943703039392534682 2025-07-11 16:56:15,ReBensk,md5,391cd817a45c0769f3e3d04927607429,#Trojan #Android #malware,https://x.com/ReBensk/status/1943715976048242862 2025-07-11 17:00:20,SarlackLab,url,http://41.142.139.73:19811,#Njrat #C2,https://x.com/SarlackLab/status/1943717002285142184 2025-07-11 17:00:20,SarlackLab,domain,bokkuvirde.ddns.net,#Njrat #C2,https://x.com/SarlackLab/status/1943717002285142184 2025-07-11 17:00:20,SarlackLab,url,http://bokkuvirde.ddns.net,#Njrat #C2,https://x.com/SarlackLab/status/1943717002285142184 2025-07-11 17:00:20,SarlackLab,ip,41.142.139.73,#Njrat #C2,https://x.com/SarlackLab/status/1943717002285142184 2025-07-11 18:00:10,urldna_bot,domain,solupx.com,#scam #phishing,https://x.com/urldna_bot/status/1943732060197150741 2025-07-11 18:00:10,urldna_bot,url,http://solupx.com/robots.txt,#scam #phishing,https://x.com/urldna_bot/status/1943732060197150741 2025-07-11 18:45:41,drb_ra,url,http://107.189.20.160:1234,#C2 #Sliver,https://x.com/drb_ra/status/1943743514967216452 2025-07-11 18:45:41,drb_ra,ip,107.189.20.160,#C2 #Sliver,https://x.com/drb_ra/status/1943743514967216452 2025-07-11 18:45:48,drb_ra,url,http://106.14.146.206:31337,#C2 #Sliver,https://x.com/drb_ra/status/1943743542796357978 2025-07-11 18:45:48,drb_ra,ip,106.14.146.206,#C2 #Sliver,https://x.com/drb_ra/status/1943743542796357978 2025-07-11 18:45:53,drb_ra,url,http://196.251.66.168:31337,#C2 #Sliver,https://x.com/drb_ra/status/1943743566691344704 2025-07-11 18:45:53,drb_ra,ip,196.251.66.168,#C2 #Sliver,https://x.com/drb_ra/status/1943743566691344704 2025-07-11 18:45:59,drb_ra,url,http://64.227.142.218:31337,#C2 #Sliver,https://x.com/drb_ra/status/1943743591710368098 2025-07-11 18:45:59,drb_ra,ip,64.227.142.218,#C2 #Sliver,https://x.com/drb_ra/status/1943743591710368098 2025-07-11 18:48:03,drb_ra,url,http://15.160.87.249:39116,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943744109476200720 2025-07-11 18:48:03,drb_ra,ip,15.160.87.249,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943744109476200720 2025-07-11 18:48:08,drb_ra,url,http://157.20.182.23:1337,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744130607087663 2025-07-11 18:48:08,drb_ra,ip,157.20.182.23,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744130607087663 2025-07-11 18:48:11,drb_ra,url,http://185.174.101.81:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744145345941873 2025-07-11 18:48:11,drb_ra,ip,185.174.101.81,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744145345941873 2025-07-11 18:48:16,drb_ra,url,http://207.231.105.51:400,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744165315019021 2025-07-11 18:48:16,drb_ra,ip,207.231.105.51,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744165315019021 2025-07-11 18:48:22,drb_ra,url,http://18.194.217.129:20001,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744187704258784 2025-07-11 18:48:22,drb_ra,ip,18.194.217.129,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744187704258784 2025-07-11 18:48:27,drb_ra,url,http://45.141.233.202:6458,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744210751946817 2025-07-11 18:48:27,drb_ra,ip,45.141.233.202,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943744210751946817 2025-07-11 18:48:32,drb_ra,url,http://54.193.233.200:80,#C2 #Interactsh,https://x.com/drb_ra/status/1943744231480177092 2025-07-11 18:48:38,drb_ra,url,http://54.193.233.200:25,#C2 #Interactsh,https://x.com/drb_ra/status/1943744254943154486 2025-07-11 18:48:38,drb_ra,ip,54.193.233.200,#C2 #Interactsh,https://x.com/drb_ra/status/1943744254943154486 2025-07-11 18:48:43,drb_ra,url,http://121.40.35.168:80,#C2 #Interactsh,https://x.com/drb_ra/status/1943744276732445072 2025-07-11 18:48:48,drb_ra,url,http://121.40.35.168:25,#C2 #Interactsh,https://x.com/drb_ra/status/1943744298316362242 2025-07-11 18:48:54,drb_ra,url,http://121.40.35.168:587,#C2 #Interactsh,https://x.com/drb_ra/status/1943744322601418783 2025-07-11 18:48:54,drb_ra,ip,121.40.35.168,#C2 #Interactsh,https://x.com/drb_ra/status/1943744322601418783 2025-07-11 18:48:59,drb_ra,url,http://4.206.217.97:80,#C2 #Interactsh,https://x.com/drb_ra/status/1943744344239845396 2025-07-11 18:49:04,drb_ra,url,http://38.12.25.18:8877,#C2 #Supershell,https://x.com/drb_ra/status/1943744365471355284 2025-07-11 18:49:04,drb_ra,ip,38.12.25.18,#C2 #Supershell,https://x.com/drb_ra/status/1943744365471355284 2025-07-11 18:49:09,drb_ra,url,http://47.98.216.119:8888,#C2 #Supershell,https://x.com/drb_ra/status/1943744386434564235 2025-07-11 18:49:09,drb_ra,ip,47.98.216.119,#C2 #Supershell,https://x.com/drb_ra/status/1943744386434564235 2025-07-11 18:49:14,drb_ra,url,http://188.4.206.249:995,#C2 #Qakbot,https://x.com/drb_ra/status/1943744408500789729 2025-07-11 18:49:14,drb_ra,ip,188.4.206.249,#C2 #Qakbot,https://x.com/drb_ra/status/1943744408500789729 2025-07-11 18:49:20,drb_ra,url,http://70.31.125.225:2222,#C2 #Qakbot,https://x.com/drb_ra/status/1943744431124803874 2025-07-11 18:49:20,drb_ra,ip,70.31.125.225,#C2 #Qakbot,https://x.com/drb_ra/status/1943744431124803874 2025-07-11 18:49:25,drb_ra,url,http://191.112.11.201:443,#C2 #Qakbot,https://x.com/drb_ra/status/1943744452331217281 2025-07-11 18:49:25,drb_ra,ip,191.112.11.201,#C2 #Qakbot,https://x.com/drb_ra/status/1943744452331217281 2025-07-11 18:49:30,drb_ra,url,http://54.78.19.6:445,#C2,https://x.com/drb_ra/status/1943744473114071299 2025-07-11 18:49:30,drb_ra,ip,54.78.19.6,#C2,https://x.com/drb_ra/status/1943744473114071299 2025-07-11 18:49:34,drb_ra,url,http://206.176.160.150:443,#C2,https://x.com/drb_ra/status/1943744493464789423 2025-07-11 18:49:34,drb_ra,ip,206.176.160.150,#C2,https://x.com/drb_ra/status/1943744493464789423 2025-07-11 18:49:40,drb_ra,url,http://201.92.134.212:8081,#Havoc #C2,https://x.com/drb_ra/status/1943744515291971898 2025-07-11 18:49:40,drb_ra,ip,201.92.134.212,#Havoc #C2,https://x.com/drb_ra/status/1943744515291971898 2025-07-11 18:49:44,drb_ra,url,http://206.189.32.112:443,#Havoc #C2,https://x.com/drb_ra/status/1943744535701410080 2025-07-11 18:49:44,drb_ra,ip,206.189.32.112,#Havoc #C2,https://x.com/drb_ra/status/1943744535701410080 2025-07-11 18:49:50,drb_ra,url,http://172.233.60.182:22222,#Deimos #C2,https://x.com/drb_ra/status/1943744556790415642 2025-07-11 18:49:50,drb_ra,ip,172.233.60.182,#Deimos #C2,https://x.com/drb_ra/status/1943744556790415642 2025-07-11 18:51:53,drb_ra,url,http://3.82.94.251:8080,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1943745074384216118 2025-07-11 18:51:58,drb_ra,url,http://45.138.16.30:1024,#C2 #Remcos,https://x.com/drb_ra/status/1943745096450535484 2025-07-11 18:51:58,drb_ra,ip,45.138.16.30,#C2 #Remcos,https://x.com/drb_ra/status/1943745096450535484 2025-07-11 18:52:02,drb_ra,url,http://156.244.56.241:8080,#C2,https://x.com/drb_ra/status/1943745111969464740 2025-07-11 18:52:02,drb_ra,ip,156.244.56.241,#C2,https://x.com/drb_ra/status/1943745111969464740 2025-07-11 18:52:08,drb_ra,url,http://16.26.53.53:37892,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745138057990397 2025-07-11 18:52:08,drb_ra,ip,16.26.53.53,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745138057990397 2025-07-11 18:52:13,drb_ra,url,http://13.36.167.50:50308,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745158882681048 2025-07-11 18:52:13,drb_ra,ip,13.36.167.50,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745158882681048 2025-07-11 18:52:18,drb_ra,url,http://18.231.106.229:2701,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745179615207737 2025-07-11 18:52:18,drb_ra,ip,18.231.106.229,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745179615207737 2025-07-11 18:52:22,drb_ra,url,http://56.124.127.146:26090,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745195448615395 2025-07-11 18:52:22,drb_ra,ip,56.124.127.146,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943745195448615395 2025-07-11 20:40:56,drb_ra,url,https://115.175.40.126:50001,#C2,https://x.com/drb_ra/status/1943772517987938559 2025-07-11 20:40:56,drb_ra,url,http://115.175.40.126:50001,#C2,https://x.com/drb_ra/status/1943772517987938559 2025-07-11 20:40:56,drb_ra,ip,115.175.40.126,#C2,https://x.com/drb_ra/status/1943772517987938559 2025-07-11 21:00:23,threatquery,url,http://191.112.11.201,#Qakbot #malware #C2,https://x.com/threatquery/status/1943777413076316367 2025-07-11 21:00:23,threatquery,url,http://70.31.125.225,#Qakbot #malware #C2,https://x.com/threatquery/status/1943777410920394887 2025-07-11 21:00:24,threatquery,url,http://188.4.206.249,#Qakbot #malware #C2,https://x.com/threatquery/status/1943777414942691409 2025-07-11 21:19:40,skocherhan,url,https://18.117.173.7,,https://x.com/skocherhan/status/1943782266045706672 2025-07-11 21:19:40,skocherhan,domain,kennedywilsoninc.com,,https://x.com/skocherhan/status/1943782266045706672 2025-07-11 21:19:40,skocherhan,url,https://kennedywilsoninc.com,,https://x.com/skocherhan/status/1943782266045706672 2025-07-11 21:19:40,skocherhan,ip,18.117.173.7,,https://x.com/skocherhan/status/1943782266045706672 2025-07-11 21:21:11,drb_ra,url,http://47.252.32.38:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1943782646489751665 2025-07-11 21:21:11,drb_ra,ip,47.252.32.38,#CobaltStrike #C2,https://x.com/drb_ra/status/1943782646489751665 2025-07-11 21:23:06,skocherhan,url,http://109.230.231.17,,https://x.com/skocherhan/status/1943783130009338279 2025-07-11 21:26:32,James_inthe_box,url,http://109.230.231.17/199/creambestpeopleswithbetterbutturgulamchickenwithbestforme.vbe,#Xworm,https://x.com/James_inthe_box/status/1943783994811986095 2025-07-11 21:26:32,James_inthe_box,ip,109.230.231.17,#Xworm,https://x.com/James_inthe_box/status/1943783994811986095 2025-07-11 22:00:09,urldna_bot,domain,drsangitareddy.com,#scam #phishing,https://x.com/urldna_bot/status/1943792455184248943 2025-07-11 22:00:09,urldna_bot,url,https://drsangitareddy.com/Linkedin-china/mnman/images/jquery-validaition/src/,#scam #phishing,https://x.com/urldna_bot/status/1943792455184248943 2025-07-11 22:20:52,BrainLoonx,domain,Surfapp.us,#phishing,https://x.com/BrainLoonx/status/1943797665008934914 2025-07-11 22:20:52,BrainLoonx,url,http://Surfapp.us,#phishing,https://x.com/BrainLoonx/status/1943797665008934914 2025-07-12 00:00:12,urldna_bot,domain,mooskkkioy.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943822663505326267 2025-07-12 00:00:12,urldna_bot,url,https://mooskkkioy.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943822663505326267 2025-07-12 00:48:41,harugasumi,domain,driect-jabnjk04.com,#phishing,https://x.com/harugasumi/status/1943834867902689582 2025-07-12 00:48:41,harugasumi,url,https://driect-jabnjk04.com,#phishing,https://x.com/harugasumi/status/1943834867902689582 2025-07-12 01:00:19,SarlackLab,url,http://196.251.71.173:7788,#Njrat #C2,https://x.com/SarlackLab/status/1943837795950170407 2025-07-12 01:00:19,SarlackLab,ip,196.251.71.173,#Njrat #C2,https://x.com/SarlackLab/status/1943837795950170407 2025-07-12 01:14:06,fbgwls245,md5,261A9C57A6BA622DCAE1D5B3C9C5F87F,#ransomware,https://x.com/fbgwls245/status/1943841260877623515 2025-07-12 02:00:08,urldna_bot,url,https://cee940kjtjt7emfk8mfjr848mrmfn97rjj09rm.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943852846379618707 2025-07-12 02:00:08,urldna_bot,domain,cee940kjtjt7emfk8mfjr848mrmfn97rjj09rm.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943852846379618707 2025-07-12 02:34:55,harugasumi,ip,35.220.174.63,#phishing,https://x.com/harugasumi/status/1943861601414918312 2025-07-12 02:34:55,harugasumi,url,https://driect-jabnjk.com,#phishing,https://x.com/harugasumi/status/1943861601414918312 2025-07-12 02:34:55,harugasumi,domain,driect-jabnjk01-08.com,#phishing,https://x.com/harugasumi/status/1943861601414918312 2025-07-12 02:34:55,harugasumi,url,https://driect-jabnjk01-08.com,#phishing,https://x.com/harugasumi/status/1943861601414918312 2025-07-12 02:34:55,harugasumi,domain,driect-jabnjk.com,#phishing,https://x.com/harugasumi/status/1943861601414918312 2025-07-12 04:00:10,urldna_bot,domain,coinbaselogindesk.blogspot.am,#phishing #scam,https://x.com/urldna_bot/status/1943883056642699666 2025-07-12 04:00:10,urldna_bot,url,http://coinbaselogindesk.blogspot.am,#phishing #scam,https://x.com/urldna_bot/status/1943883056642699666 2025-07-12 06:00:06,urldna_bot,domain,youdaiioxh.top,#scam #phishing,https://x.com/urldna_bot/status/1943913237767954700 2025-07-12 06:00:06,urldna_bot,url,https://youdaiioxh.top,#scam #phishing,https://x.com/urldna_bot/status/1943913237767954700 2025-07-12 08:00:10,urldna_bot,url,https://gerador-deminimoedas.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943943452699263093 2025-07-12 08:00:10,urldna_bot,domain,gerador-deminimoedas.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1943943452699263093 2025-07-12 08:35:09,drb_ra,ip,44.201.219.171,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1943952256727962066 2025-07-12 08:35:09,drb_ra,url,http://44.201.219.171:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1943952256727962066 2025-07-12 08:35:14,drb_ra,url,http://16.176.59.216:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1943952277229768733 2025-07-12 08:35:14,drb_ra,ip,16.176.59.216,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1943952277229768733 2025-07-12 08:35:20,drb_ra,url,http://196.251.117.33:80,#C2,https://x.com/drb_ra/status/1943952303138255141 2025-07-12 08:35:20,drb_ra,ip,196.251.117.33,#C2,https://x.com/drb_ra/status/1943952303138255141 2025-07-12 08:35:26,drb_ra,url,http://205.209.99.87:5555,#C2 #Remcos,https://x.com/drb_ra/status/1943952325988552927 2025-07-12 08:35:26,drb_ra,ip,205.209.99.87,#C2 #Remcos,https://x.com/drb_ra/status/1943952325988552927 2025-07-12 08:35:31,drb_ra,ip,144.172.108.70,#C2,https://x.com/drb_ra/status/1943952347140362456 2025-07-12 08:35:31,drb_ra,url,http://144.172.108.70:8080,#C2,https://x.com/drb_ra/status/1943952347140362456 2025-07-12 08:35:34,drb_ra,ip,18.142.251.30,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952363280044481 2025-07-12 08:35:34,drb_ra,url,http://18.142.251.30:2628,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952363280044481 2025-07-12 08:35:40,drb_ra,url,http://35.180.255.4:2456,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952385522430138 2025-07-12 08:35:45,drb_ra,url,http://35.180.255.4:26306,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952407412584591 2025-07-12 08:35:50,drb_ra,url,http://35.180.255.4:20256,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952428342145096 2025-07-12 08:35:50,drb_ra,ip,35.180.255.4,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952428342145096 2025-07-12 08:35:55,drb_ra,url,http://18.163.238.189:13325,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952450915860915 2025-07-12 08:35:55,drb_ra,ip,18.163.238.189,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952450915860915 2025-07-12 08:36:01,drb_ra,url,http://88.17.115.11:443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952472755560505 2025-07-12 08:36:01,drb_ra,ip,88.17.115.11,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1943952472755560505 2025-07-12 08:36:04,drb_ra,ip,196.251.113.10,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943952488731758641 2025-07-12 08:36:04,drb_ra,url,http://196.251.113.10:1000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943952488731758641 2025-07-12 08:36:11,drb_ra,url,http://94.130.241.163:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943952516305072485 2025-07-12 08:36:11,drb_ra,ip,94.130.241.163,#C2 #AsyncRAT,https://x.com/drb_ra/status/1943952516305072485 2025-07-12 08:36:16,drb_ra,url,http://3.254.48.72:445,#C2,https://x.com/drb_ra/status/1943952539625590890 2025-07-12 08:36:22,drb_ra,url,http://52.215.189.95:445,#C2,https://x.com/drb_ra/status/1943952560835981543 2025-07-12 08:36:22,drb_ra,ip,52.215.189.95,#C2,https://x.com/drb_ra/status/1943952560835981543 2025-07-12 08:36:27,drb_ra,url,http://194.48.248.102:7443,#Mythic #C2,https://x.com/drb_ra/status/1943952582067572977 2025-07-12 08:36:27,drb_ra,ip,194.48.248.102,#Mythic #C2,https://x.com/drb_ra/status/1943952582067572977 2025-07-12 08:36:32,drb_ra,url,http://1.197.72.113:40000,#Sliver #C2,https://x.com/drb_ra/status/1943952603504603212 2025-07-12 08:36:37,drb_ra,ip,36.137.179.7,#Sliver #C2,https://x.com/drb_ra/status/1943952624614617138 2025-07-12 08:36:37,drb_ra,url,http://36.137.179.7:20000,#Sliver #C2,https://x.com/drb_ra/status/1943952624614617138 2025-07-12 08:36:42,drb_ra,ip,114.55.29.53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943952647859458200 2025-07-12 08:36:42,drb_ra,url,http://114.55.29.53:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943952647859458200 2025-07-12 08:36:42,drb_ra,domain,opt.doubao.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943952647859458200 2025-07-12 08:36:42,drb_ra,url,https://opt.doubao.com/assets/login_guide.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943952647859458200 2025-07-12 10:00:09,urldna_bot,domain,logon--ledgar-sso--help.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1943973646587797699 2025-07-12 10:00:09,urldna_bot,url,https://logon--ledgar-sso--help.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1943973646587797699 2025-07-12 10:18:54,masaomi346,url,https://wasdsagawanauthoritati.myddns.com/wddsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1943978366937575875 2025-07-12 10:18:54,masaomi346,domain,wasdsagawanauthoritati.myddns.com,#phishing,https://x.com/masaomi346/status/1943978366937575875 2025-07-12 10:18:54,masaomi346,url,https://wasdsagawanauthoritati.longmusic.com/wddsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1943978366937575875 2025-07-12 10:18:54,masaomi346,domain,wasdsagawanauthoritati.longmusic.com,#phishing,https://x.com/masaomi346/status/1943978366937575875 2025-07-12 10:18:54,masaomi346,url,https://wasdsagawanauthoritati.freeddns.com/wddsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1943978366937575875 2025-07-12 10:18:54,masaomi346,domain,wasdsagawanauthoritati.freeddns.com,#phishing,https://x.com/masaomi346/status/1943978366937575875 2025-07-12 10:20:04,masaomi346,domain,wasdsagawanauthoritati.yourtrap.com,#phishing,https://x.com/masaomi346/status/1943978658923790536 2025-07-12 10:20:04,masaomi346,url,https://wasdsagawanauthoritati.yourtrap.com/wddsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1943978658923790536 2025-07-12 10:20:04,masaomi346,domain,wasdsagawanauthoritati.otzo.com,#phishing,https://x.com/masaomi346/status/1943978658923790536 2025-07-12 10:20:04,masaomi346,url,https://wasdsagawanauthoritati.mrslove.com/wddsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1943978658923790536 2025-07-12 10:20:04,masaomi346,domain,wasdsagawanauthoritati.mrslove.com,#phishing,https://x.com/masaomi346/status/1943978658923790536 2025-07-12 10:20:04,masaomi346,url,https://wasdsagawanauthoritati.otzo.com/wddsoscosmsosmx.jp/,#phishing,https://x.com/masaomi346/status/1943978658923790536 2025-07-12 10:55:28,drb_ra,ip,103.38.81.125,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943987568481325068 2025-07-12 10:55:28,drb_ra,url,http://103.38.81.125:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943987568481325068 2025-07-12 10:55:33,drb_ra,url,https://1.94.105.198/api/v2/user/config,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943987590698287112 2025-07-12 10:55:33,drb_ra,url,http://1.94.105.198:9443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943987590698287112 2025-07-12 10:55:38,drb_ra,url,http://121.40.86.70:8088,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943987611485286866 2025-07-12 10:55:38,drb_ra,ip,121.40.86.70,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943987611485286866 2025-07-12 10:55:38,drb_ra,ip,115.29.162.71,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943987611485286866 2025-07-12 10:57:42,drb_ra,ip,39.99.227.179,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988129330831619 2025-07-12 10:57:42,drb_ra,url,http://39.99.227.179:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988129330831619 2025-07-12 10:57:47,drb_ra,url,https://map.nlscmap.com/fsk/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988153196409240 2025-07-12 10:57:47,drb_ra,url,http://103.131.189.36:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988153196409240 2025-07-12 10:57:47,drb_ra,domain,map.nlscmap.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988153196409240 2025-07-12 10:57:47,drb_ra,ip,103.131.189.36,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988153196409240 2025-07-12 10:57:53,drb_ra,ip,192.144.170.96,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988174575087635 2025-07-12 10:57:53,drb_ra,url,http://192.144.170.96:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988174575087635 2025-07-12 10:57:58,drb_ra,url,http://120.24.241.109:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988195835670928 2025-07-12 10:57:58,drb_ra,ip,120.24.241.109,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988195835670928 2025-07-12 10:58:03,drb_ra,url,http://154.82.68.142:12617,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988216983347244 2025-07-12 10:58:03,drb_ra,ip,154.82.68.142,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988216983347244 2025-07-12 10:58:08,drb_ra,url,http://1.94.98.11:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943988238227570921 2025-07-12 11:17:23,novograttzz,domain,harvestfinancer.com,#malware #phishing #scam,https://x.com/novograttzz/status/1943993082266923094 2025-07-12 11:17:23,novograttzz,url,https://harvestfinancer.com,#malware #phishing #scam,https://x.com/novograttzz/status/1943993082266923094 2025-07-12 11:22:18,drb_ra,url,http://103.131.189.36:4433,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943994322397126968 2025-07-12 11:22:18,drb_ra,url,https://103.131.189.36/fsk/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943994322397126968 2025-07-12 11:22:24,drb_ra,url,http://39.105.6.249:9998,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943994344551113167 2025-07-12 11:22:24,drb_ra,ip,39.105.6.249,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943994344551113167 2025-07-12 11:24:27,drb_ra,url,https://1.92.137.130/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943994863696957706 2025-07-12 11:24:27,drb_ra,url,http://1.92.137.130:20014,#C2 #CobaltStrike,https://x.com/drb_ra/status/1943994863696957706 2025-07-12 12:00:07,urldna_bot,domain,orangevocale13.wixsite.com,#scam #phishing,https://x.com/urldna_bot/status/1944003838148587785 2025-07-12 12:00:07,urldna_bot,url,http://orangevocale13.wixsite.com/my-site/,#scam #phishing,https://x.com/urldna_bot/status/1944003838148587785 2025-07-12 12:00:33,SarlackLab,domain,mbc2.no-ip.biz,#C2 #Njrat,https://x.com/SarlackLab/status/1944003945103253614 2025-07-12 12:00:33,SarlackLab,url,http://mbc2.no-ip.biz,#C2 #Njrat,https://x.com/SarlackLab/status/1944003945103253614 2025-07-12 13:48:37,fbgwls245,md5,505D23C7A66A02239056AC3CFED24132,#ransomware,https://x.com/fbgwls245/status/1944031142929477726 2025-07-12 15:00:15,SarlackLab,domain,flokii.us,#C2 #Lokibot,https://x.com/SarlackLab/status/1944049168684621860 2025-07-12 15:00:15,SarlackLab,url,http://flokii.us,#C2 #Lokibot,https://x.com/SarlackLab/status/1944049168684621860 2025-07-12 16:00:08,urldna_bot,domain,tsm.surge.sh,#scam #phishing,https://x.com/urldna_bot/status/1944064241343799510 2025-07-12 16:00:08,urldna_bot,url,https://tsm.surge.sh,#scam #phishing,https://x.com/urldna_bot/status/1944064241343799510 2025-07-12 18:00:07,urldna_bot,domain,metamak-logi-us.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1944094437128163780 2025-07-12 18:00:07,urldna_bot,url,https://metamak-logi-us.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1944094437128163780 2025-07-12 18:39:25,SarlackLab,domain,exifit.eu.org,,https://x.com/SarlackLab/status/1944104327049576835 2025-07-12 18:39:25,SarlackLab,url,http://exifit.eu.org,,https://x.com/SarlackLab/status/1944104327049576835 2025-07-12 18:39:25,SarlackLab,domain,m365.acenm.com,,https://x.com/SarlackLab/status/1944104327049576835 2025-07-12 18:39:25,SarlackLab,url,http://m365.acenm.com,,https://x.com/SarlackLab/status/1944104327049576835 2025-07-12 18:46:34,drb_ra,url,http://88.234.25.245:443,#C2 #Qakbot,https://x.com/drb_ra/status/1944106124695023827 2025-07-12 18:46:34,drb_ra,ip,88.234.25.245,#C2 #Qakbot,https://x.com/drb_ra/status/1944106124695023827 2025-07-12 18:46:39,drb_ra,url,http://54.195.36.210:445,#C2,https://x.com/drb_ra/status/1944106144793780446 2025-07-12 18:46:39,drb_ra,ip,54.195.36.210,#C2,https://x.com/drb_ra/status/1944106144793780446 2025-07-12 18:46:44,drb_ra,ip,54.195.52.245,#C2,https://x.com/drb_ra/status/1944106166902231319 2025-07-12 18:46:44,drb_ra,url,http://54.195.52.245:445,#C2,https://x.com/drb_ra/status/1944106166902231319 2025-07-12 18:46:50,drb_ra,url,http://34.55.124.146:443,#Sliver #C2,https://x.com/drb_ra/status/1944106189945557381 2025-07-12 18:46:55,drb_ra,url,http://88.218.0.89:31337,#Sliver #C2,https://x.com/drb_ra/status/1944106213538422948 2025-07-12 18:46:55,drb_ra,ip,88.218.0.89,#Sliver #C2,https://x.com/drb_ra/status/1944106213538422948 2025-07-12 18:47:01,drb_ra,url,http://92.112.53.88:31337,#Sliver #C2,https://x.com/drb_ra/status/1944106237743820814 2025-07-12 18:47:01,drb_ra,ip,92.112.53.88,#Sliver #C2,https://x.com/drb_ra/status/1944106237743820814 2025-07-12 18:47:07,drb_ra,url,http://178.128.228.79:31337,#Sliver #C2,https://x.com/drb_ra/status/1944106261475148197 2025-07-12 18:47:07,drb_ra,ip,178.128.228.79,#Sliver #C2,https://x.com/drb_ra/status/1944106261475148197 2025-07-12 18:47:12,drb_ra,url,http://195.58.34.114:8888,#Sliver #C2,https://x.com/drb_ra/status/1944106283394547955 2025-07-12 18:47:17,drb_ra,ip,195.58.34.114,#Sliver #C2,https://x.com/drb_ra/status/1944106305746051122 2025-07-12 18:47:17,drb_ra,url,http://195.58.34.114:31337,#Sliver #C2,https://x.com/drb_ra/status/1944106305746051122 2025-07-12 18:49:21,drb_ra,url,http://94.237.120.76:9999,#C2,https://x.com/drb_ra/status/1944106823033753807 2025-07-12 18:49:21,drb_ra,ip,94.237.120.76,#C2,https://x.com/drb_ra/status/1944106823033753807 2025-07-12 18:49:26,drb_ra,ip,213.209.150.161,#Remcos #C2,https://x.com/drb_ra/status/1944106844332437781 2025-07-12 18:49:26,drb_ra,url,http://213.209.150.161:2404,#Remcos #C2,https://x.com/drb_ra/status/1944106844332437781 2025-07-12 18:49:30,drb_ra,ip,77.90.153.167,#Remcos #C2,https://x.com/drb_ra/status/1944106860778561705 2025-07-12 18:49:30,drb_ra,url,http://77.90.153.167:2404,#Remcos #C2,https://x.com/drb_ra/status/1944106860778561705 2025-07-12 18:49:33,drb_ra,ip,216.250.252.62,#Remcos #C2,https://x.com/drb_ra/status/1944106875840078248 2025-07-12 18:49:33,drb_ra,url,http://216.250.252.62:2404,#Remcos #C2,https://x.com/drb_ra/status/1944106875840078248 2025-07-12 18:49:38,drb_ra,url,http://18.183.141.66:2000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944106897780420801 2025-07-12 18:49:44,drb_ra,ip,18.183.141.66,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944106919569871191 2025-07-12 18:49:44,drb_ra,url,http://18.183.141.66:9200,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944106919569871191 2025-07-12 18:49:49,drb_ra,ip,54.187.89.54,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944106941455728712 2025-07-12 18:49:49,drb_ra,url,http://54.187.89.54:18138,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944106941455728712 2025-07-12 18:49:55,drb_ra,url,http://3.25.173.252:2053,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944106966009172409 2025-07-12 18:50:00,drb_ra,url,http://193.164.6.92:3002,#C2 #AsyncRAT,https://x.com/drb_ra/status/1944106988490592371 2025-07-12 18:50:00,drb_ra,ip,193.164.6.92,#C2 #AsyncRAT,https://x.com/drb_ra/status/1944106988490592371 2025-07-12 18:50:05,drb_ra,url,http://165.22.224.250:11088,#C2 #AsyncRAT,https://x.com/drb_ra/status/1944107010988920858 2025-07-12 18:50:05,drb_ra,ip,165.22.224.250,#C2 #AsyncRAT,https://x.com/drb_ra/status/1944107010988920858 2025-07-12 18:50:11,drb_ra,url,http://38.12.25.16:8877,#C2 #Supershell,https://x.com/drb_ra/status/1944107034325954701 2025-07-12 18:50:11,drb_ra,ip,38.12.25.16,#C2 #Supershell,https://x.com/drb_ra/status/1944107034325954701 2025-07-12 19:12:02,skocherhan,md5,ae0912ba4a5bff3f3543f5f393446adb,,https://x.com/skocherhan/status/1944112531997684194 2025-07-12 20:00:10,urldna_bot,domain,protonme1.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944124646715990446 2025-07-12 20:00:10,urldna_bot,url,https://protonme1.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944124646715990446 2025-07-12 21:00:03,threatquery,url,http://91.84.102.219,#C2 #malware,https://x.com/threatquery/status/1944139718683205818 2025-07-12 21:00:03,threatquery,ip,91.84.102.219,#C2 #malware,https://x.com/threatquery/status/1944139718683205818 2025-07-12 21:00:04,threatquery,url,http://159.223.120.36,#C2 #malware #Xworm,https://x.com/threatquery/status/1944139722718077122 2025-07-12 21:00:04,threatquery,ip,159.223.120.36,#C2 #malware #Xworm,https://x.com/threatquery/status/1944139722718077122 2025-07-12 21:00:04,threatquery,url,http://164.132.75.20,#C2 #malware #Xworm,https://x.com/threatquery/status/1944139720792920113 2025-07-12 21:00:04,threatquery,ip,164.132.75.20,#C2 #malware #Xworm,https://x.com/threatquery/status/1944139720792920113 2025-07-12 22:00:39,urldna_bot,domain,pub-43322d50f37946a4abafe95ce495016c.r2.dev,#phishing #scam,https://x.com/urldna_bot/status/1944154966295244916 2025-07-12 22:00:39,urldna_bot,url,http://pub-43322d50f37946a4abafe95ce495016c.r2.dev/index.html,#phishing #scam,https://x.com/urldna_bot/status/1944154966295244916 2025-07-12 22:00:39,urldna_bot,md5,43322d50f37946a4abafe95ce495016c,#phishing #scam,https://x.com/urldna_bot/status/1944154966295244916 2025-07-13 00:00:09,urldna_bot,domain,delivery-website.pages.dev,#phishing #scam,https://x.com/urldna_bot/status/1944185041703080208 2025-07-13 00:00:09,urldna_bot,url,https://delivery-website.pages.dev,#phishing #scam,https://x.com/urldna_bot/status/1944185041703080208 2025-07-13 01:00:26,SarlackLab,url,http://49.228.131.157:6760,#C2 #Njrat,https://x.com/SarlackLab/status/1944200209417773078 2025-07-13 01:00:26,SarlackLab,domain,xntryz.thddns.net,#C2 #Njrat,https://x.com/SarlackLab/status/1944200209417773078 2025-07-13 01:00:26,SarlackLab,url,http://xntryz.thddns.net,#C2 #Njrat,https://x.com/SarlackLab/status/1944200209417773078 2025-07-13 01:00:26,SarlackLab,ip,49.228.131.157,#C2 #Njrat,https://x.com/SarlackLab/status/1944200209417773078 2025-07-13 01:01:18,SarlackLab,url,http://12r123df-29575.portmap.host,#C2 #Njrat,https://x.com/SarlackLab/status/1944200430172385693 2025-07-13 01:01:18,SarlackLab,ip,193.161.193.99,#C2 #Njrat,https://x.com/SarlackLab/status/1944200430172385693 2025-07-13 01:01:18,SarlackLab,domain,12r123df-29575.portmap.host,#C2 #Njrat,https://x.com/SarlackLab/status/1944200430172385693 2025-07-13 01:01:18,SarlackLab,url,http://193.161.193.99:29575,#C2 #Njrat,https://x.com/SarlackLab/status/1944200430172385693 2025-07-13 01:13:11,CarlyGriggs13,domain,deloreanlabs.world,#phishing,https://x.com/CarlyGriggs13/status/1944203419964547391 2025-07-13 01:13:11,CarlyGriggs13,url,http://deloreanlabs.world,#phishing,https://x.com/CarlyGriggs13/status/1944203419964547391 2025-07-13 01:13:57,CarlyGriggs13,domain,oweth.top,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944203614685139063 2025-07-13 01:13:57,CarlyGriggs13,url,http://oweth.top,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944203614685139063 2025-07-13 01:14:26,CarlyGriggs13,url,http://checker.mangonetw.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944203733690135009 2025-07-13 01:14:26,CarlyGriggs13,domain,checker.mangonetw.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944203733690135009 2025-07-13 02:00:07,urldna_bot,domain,xayevu.pages.dev,#scam #phishing,https://x.com/urldna_bot/status/1944215231145652681 2025-07-13 02:00:07,urldna_bot,url,https://xayevu.pages.dev/index.html,#scam #phishing,https://x.com/urldna_bot/status/1944215231145652681 2025-07-13 02:42:18,CarlyGriggs13,domain,101x.info,#phishing,https://x.com/CarlyGriggs13/status/1944225847067414798 2025-07-13 02:42:18,CarlyGriggs13,url,http://101x.info,#phishing,https://x.com/CarlyGriggs13/status/1944225847067414798 2025-07-13 02:42:35,CarlyGriggs13,domain,1inch.io-api-v2-connect.com,#phishing,https://x.com/CarlyGriggs13/status/1944225920052867292 2025-07-13 02:42:35,CarlyGriggs13,url,http://1inch.io-api-v2-connect.com/swap.html,#phishing,https://x.com/CarlyGriggs13/status/1944225920052867292 2025-07-13 02:42:59,CarlyGriggs13,domain,1inch.io-chain-defi-app.com,#phishing,https://x.com/CarlyGriggs13/status/1944226016723161161 2025-07-13 02:42:59,CarlyGriggs13,url,http://1inch.io-chain-defi-app.com/swap.html,#phishing,https://x.com/CarlyGriggs13/status/1944226016723161161 2025-07-13 02:43:19,CarlyGriggs13,url,http://1inch.io-chain-web-v3-app.com/swap.html,#phishing,https://x.com/CarlyGriggs13/status/1944226104123810277 2025-07-13 02:43:19,CarlyGriggs13,domain,1inch.io-chain-web-v3-app.com,#phishing,https://x.com/CarlyGriggs13/status/1944226104123810277 2025-07-13 02:58:20,CarlyGriggs13,url,http://amlcrypt.net,#phishing,https://x.com/CarlyGriggs13/status/1944229882679931284 2025-07-13 02:58:20,CarlyGriggs13,domain,amlcrypt.net,#phishing,https://x.com/CarlyGriggs13/status/1944229882679931284 2025-07-13 02:58:47,CarlyGriggs13,url,http://angrydynomiteslab.app-sw.com,#phishing,https://x.com/CarlyGriggs13/status/1944229996211343535 2025-07-13 02:58:47,CarlyGriggs13,domain,angrydynomiteslab.app-sw.com,#phishing,https://x.com/CarlyGriggs13/status/1944229996211343535 2025-07-13 02:59:06,CarlyGriggs13,url,http://app-katana-network.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944230075328516391 2025-07-13 02:59:06,CarlyGriggs13,domain,app-katana-network.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944230075328516391 2025-07-13 02:59:21,CarlyGriggs13,domain,app-unsivap.org,#phishing,https://x.com/CarlyGriggs13/status/1944230139316859347 2025-07-13 02:59:21,CarlyGriggs13,url,http://app-unsivap.org/offer.php,#phishing,https://x.com/CarlyGriggs13/status/1944230139316859347 2025-07-13 02:59:46,CarlyGriggs13,domain,app.aawve.com,#phishing,https://x.com/CarlyGriggs13/status/1944230244107620567 2025-07-13 02:59:46,CarlyGriggs13,url,http://app.aawve.com/dashboard/?gad_campaignid=22715493294&gad_source=1&gbraid=0AAAAAp..,#phishing,https://x.com/CarlyGriggs13/status/1944230244107620567 2025-07-13 03:00:05,CarlyGriggs13,domain,app.bebop.cc,#phishing,https://x.com/CarlyGriggs13/status/1944230324071792935 2025-07-13 03:00:05,CarlyGriggs13,url,http://app.bebop.cc,#phishing,https://x.com/CarlyGriggs13/status/1944230324071792935 2025-07-13 03:00:30,CarlyGriggs13,domain,app.estatex-claim.live,#phishing,https://x.com/CarlyGriggs13/status/1944230425141944585 2025-07-13 03:00:30,CarlyGriggs13,url,http://app.estatex-claim.live,#phishing,https://x.com/CarlyGriggs13/status/1944230425141944585 2025-07-13 03:00:53,CarlyGriggs13,domain,app.grandlline.world,#phishing,https://x.com/CarlyGriggs13/status/1944230522437153117 2025-07-13 03:00:53,CarlyGriggs13,url,http://app.grandlline.world,#phishing,https://x.com/CarlyGriggs13/status/1944230522437153117 2025-07-13 03:01:21,CarlyGriggs13,domain,app.nodego.asia,#phishing,https://x.com/CarlyGriggs13/status/1944230638858514752 2025-07-13 03:01:21,CarlyGriggs13,url,http://app.nodego.asia,#phishing,https://x.com/CarlyGriggs13/status/1944230638858514752 2025-07-13 03:01:44,CarlyGriggs13,url,http://app.swapx-x.fi,#phishing,https://x.com/CarlyGriggs13/status/1944230738112463064 2025-07-13 03:01:44,CarlyGriggs13,domain,app.swapx-x.fi,#phishing,https://x.com/CarlyGriggs13/status/1944230738112463064 2025-07-13 03:02:06,CarlyGriggs13,url,http://app.thorrswap.finance,#phishing,https://x.com/CarlyGriggs13/status/1944230828491346358 2025-07-13 03:02:06,CarlyGriggs13,domain,app.thorrswap.finance,#phishing,https://x.com/CarlyGriggs13/status/1944230828491346358 2025-07-13 03:02:21,CarlyGriggs13,domain,app.thorwsap.finance,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944230892760682827 2025-07-13 03:02:21,CarlyGriggs13,url,http://app.thorwsap.finance,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944230892760682827 2025-07-13 03:02:38,CarlyGriggs13,url,http://apps-celus.zone,#phishing,https://x.com/CarlyGriggs13/status/1944230963682189556 2025-07-13 03:02:38,CarlyGriggs13,domain,apps-celus.zone,#phishing,https://x.com/CarlyGriggs13/status/1944230963682189556 2025-07-13 03:02:56,CarlyGriggs13,domain,arena-allocation.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944231039700021476 2025-07-13 03:02:56,CarlyGriggs13,url,http://arena-allocation.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944231039700021476 2025-07-13 03:03:13,CarlyGriggs13,url,http://arpanetwork-register.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944231112697688573 2025-07-13 03:03:13,CarlyGriggs13,domain,arpanetwork-register.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944231112697688573 2025-07-13 03:03:23,fbgwls245,md5,505D23C7A66A02239056AC3CFED24132,#ransomware,https://x.com/fbgwls245/status/1944231154238005264 2025-07-13 03:03:38,CarlyGriggs13,domain,authbtcbull.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944231215432663094 2025-07-13 03:03:38,CarlyGriggs13,url,http://authbtcbull.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944231215432663094 2025-07-13 03:16:28,harugasumi,domain,etc-vadcy.cwtwu.cn,#phishing,https://x.com/harugasumi/status/1944234445688779198 2025-07-13 03:16:28,harugasumi,url,https://etc-vadcy.cwtwu.cn/Rfuncc1013000extfunc/,#phishing,https://x.com/harugasumi/status/1944234445688779198 2025-07-13 03:16:55,CarlyGriggs13,domain,claim.tripleogames.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944234556829139450 2025-07-13 03:16:55,CarlyGriggs13,url,http://claim.tripleogames.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944234556829139450 2025-07-13 03:17:37,CarlyGriggs13,domain,claimcryptorewards-bonus.us,#phishing,https://x.com/CarlyGriggs13/status/1944234732553691471 2025-07-13 03:17:37,CarlyGriggs13,url,http://claimcryptorewards-bonus.us,#phishing,https://x.com/CarlyGriggs13/status/1944234732553691471 2025-07-13 03:17:58,CarlyGriggs13,url,http://claims.eclipsle.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944234821997203578 2025-07-13 03:17:58,CarlyGriggs13,domain,claims.eclipsle.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944234821997203578 2025-07-13 03:18:19,CarlyGriggs13,domain,claims.humanitiy.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944234910459605022 2025-07-13 03:18:19,CarlyGriggs13,url,http://claims.humanitiy.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944234910459605022 2025-07-13 03:18:40,CarlyGriggs13,url,http://claimseclipse.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944235000028860647 2025-07-13 03:18:40,CarlyGriggs13,domain,claimseclipse.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944235000028860647 2025-07-13 03:19:22,CarlyGriggs13,domain,colnbase.cloud,#phishing,https://x.com/CarlyGriggs13/status/1944235175283433859 2025-07-13 03:19:22,CarlyGriggs13,url,http://colnbase.cloud,#phishing,https://x.com/CarlyGriggs13/status/1944235175283433859 2025-07-13 03:19:42,CarlyGriggs13,domain,coqinu.quest,#phishing,https://x.com/CarlyGriggs13/status/1944235260377477369 2025-07-13 03:19:42,CarlyGriggs13,url,http://coqinu.quest,#phishing,https://x.com/CarlyGriggs13/status/1944235260377477369 2025-07-13 03:20:03,CarlyGriggs13,domain,corkclaim.cloud,#phishing,https://x.com/CarlyGriggs13/status/1944235344968179819 2025-07-13 03:20:03,CarlyGriggs13,url,http://corkclaim.cloud,#phishing,https://x.com/CarlyGriggs13/status/1944235344968179819 2025-07-13 03:20:25,CarlyGriggs13,url,https://create-swapraydium.typedream.app,#phishing,https://x.com/CarlyGriggs13/status/1944235437280964677 2025-07-13 03:20:25,CarlyGriggs13,domain,create-swapraydium.typedream.app,#phishing,https://x.com/CarlyGriggs13/status/1944235437280964677 2025-07-13 03:20:49,CarlyGriggs13,domain,cryptotaxup.com,#phishing,https://x.com/CarlyGriggs13/status/1944235538065571870 2025-07-13 03:20:49,CarlyGriggs13,url,http://cryptotaxup.com,#phishing,https://x.com/CarlyGriggs13/status/1944235538065571870 2025-07-13 03:21:15,CarlyGriggs13,url,http://cryptowideweb.com,#phishing,https://x.com/CarlyGriggs13/status/1944235649088819467 2025-07-13 03:21:15,CarlyGriggs13,domain,cryptowideweb.com,#phishing,https://x.com/CarlyGriggs13/status/1944235649088819467 2025-07-13 03:21:38,CarlyGriggs13,domain,cryptsupport.com,#phishing,https://x.com/CarlyGriggs13/status/1944235744706412837 2025-07-13 03:21:38,CarlyGriggs13,url,http://cryptsupport.com,#phishing,https://x.com/CarlyGriggs13/status/1944235744706412837 2025-07-13 03:22:44,CarlyGriggs13,domain,curve.flnance.cldf-4app.top,#phishing,https://x.com/CarlyGriggs13/status/1944236023946351054 2025-07-13 03:22:44,CarlyGriggs13,url,http://curve.flnance.cldf-4app.top,#phishing,https://x.com/CarlyGriggs13/status/1944236023946351054 2025-07-13 03:24:10,CarlyGriggs13,url,http://dapp-hyperswap.network,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944236383960281159 2025-07-13 03:24:10,CarlyGriggs13,domain,dapp-hyperswap.network,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944236383960281159 2025-07-13 03:39:31,CarlyGriggs13,domain,ethereal-governance.com,#phishing,https://x.com/CarlyGriggs13/status/1944240245601398861 2025-07-13 03:39:31,CarlyGriggs13,url,http://ethereal-governance.com,#phishing,https://x.com/CarlyGriggs13/status/1944240245601398861 2025-07-13 03:40:06,CarlyGriggs13,domain,ethrestaking.websignup.org,#phishing,https://x.com/CarlyGriggs13/status/1944240391269539867 2025-07-13 03:40:06,CarlyGriggs13,url,http://ethrestaking.websignup.org,#phishing,https://x.com/CarlyGriggs13/status/1944240391269539867 2025-07-13 03:40:31,CarlyGriggs13,domain,ethwin.vip,#phishing,https://x.com/CarlyGriggs13/status/1944240495665827845 2025-07-13 03:40:31,CarlyGriggs13,url,http://ethwin.vip,#phishing,https://x.com/CarlyGriggs13/status/1944240495665827845 2025-07-13 03:41:03,CarlyGriggs13,domain,fairdrops.world,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944240632467161402 2025-07-13 03:41:03,CarlyGriggs13,url,http://fairdrops.world,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944240632467161402 2025-07-13 03:41:29,CarlyGriggs13,domain,flagispending.com,#phishing,https://x.com/CarlyGriggs13/status/1944240739442979267 2025-07-13 03:41:29,CarlyGriggs13,url,http://flagispending.com,#phishing,https://x.com/CarlyGriggs13/status/1944240739442979267 2025-07-13 03:41:45,CarlyGriggs13,url,http://folks-finance.vercel.app,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944240806446989744 2025-07-13 03:41:45,CarlyGriggs13,domain,folks-finance.vercel.app,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944240806446989744 2025-07-13 03:42:07,CarlyGriggs13,url,http://fragmetics.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944240899875086472 2025-07-13 03:42:07,CarlyGriggs13,domain,fragmetics.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944240899875086472 2025-07-13 03:42:33,CarlyGriggs13,url,http://fuel-register.quest,#phishing,https://x.com/CarlyGriggs13/status/1944241008968880443 2025-07-13 03:42:33,CarlyGriggs13,domain,fuel-register.quest,#phishing,https://x.com/CarlyGriggs13/status/1944241008968880443 2025-07-13 03:42:56,CarlyGriggs13,url,http://getxaut.today,#phishing,https://x.com/CarlyGriggs13/status/1944241107241427134 2025-07-13 03:42:56,CarlyGriggs13,domain,getxaut.today,#phishing,https://x.com/CarlyGriggs13/status/1944241107241427134 2025-07-13 03:43:21,CarlyGriggs13,url,http://gold-get.today,#phishing,https://x.com/CarlyGriggs13/status/1944241209389592884 2025-07-13 03:43:21,CarlyGriggs13,domain,gold-get.today,#phishing,https://x.com/CarlyGriggs13/status/1944241209389592884 2025-07-13 03:43:46,CarlyGriggs13,url,http://gorbagana-chain.com,#phishing,https://x.com/CarlyGriggs13/status/1944241315161473415 2025-07-13 03:43:46,CarlyGriggs13,domain,gorbagana-chain.com,#phishing,https://x.com/CarlyGriggs13/status/1944241315161473415 2025-07-13 03:44:05,CarlyGriggs13,url,http://gtaviairdrop.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944241395809890741 2025-07-13 03:44:05,CarlyGriggs13,domain,gtaviairdrop.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944241395809890741 2025-07-13 03:57:55,CarlyGriggs13,url,http://luckiestmint13.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944244876817657954 2025-07-13 03:57:55,CarlyGriggs13,domain,luckiestmint13.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944244876817657954 2025-07-13 03:58:18,CarlyGriggs13,url,http://luckiestmint14.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944244973764759553 2025-07-13 03:58:18,CarlyGriggs13,domain,luckiestmint14.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944244973764759553 2025-07-13 03:58:44,CarlyGriggs13,domain,luckiestmint15.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245080405291116 2025-07-13 03:58:44,CarlyGriggs13,url,http://luckiestmint15.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245080405291116 2025-07-13 03:59:01,CarlyGriggs13,url,http://luckiestmint16.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245152463077884 2025-07-13 03:59:01,CarlyGriggs13,domain,luckiestmint16.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245152463077884 2025-07-13 03:59:24,CarlyGriggs13,domain,luckiestmint17.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245250492436866 2025-07-13 03:59:24,CarlyGriggs13,url,http://luckiestmint17.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245250492436866 2025-07-13 03:59:49,CarlyGriggs13,domain,luckiestmint18.vercel.app,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944245352795648292 2025-07-13 03:59:49,CarlyGriggs13,url,http://luckiestmint18.vercel.app,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944245352795648292 2025-07-13 04:00:09,urldna_bot,domain,btsitehtfg.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944245437935784048 2025-07-13 04:00:09,urldna_bot,url,https://btsitehtfg.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944245437935784048 2025-07-13 04:00:13,CarlyGriggs13,domain,luckiestmint19.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245456042668104 2025-07-13 04:00:13,CarlyGriggs13,url,http://luckiestmint19.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245456042668104 2025-07-13 04:00:29,CarlyGriggs13,url,http://luckiestmint2.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245523990688231 2025-07-13 04:00:29,CarlyGriggs13,domain,luckiestmint2.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245523990688231 2025-07-13 04:02:02,CarlyGriggs13,domain,luckiestmint6.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245913943232811 2025-07-13 04:02:02,CarlyGriggs13,url,http://luckiestmint6.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944245913943232811 2025-07-13 04:03:40,CarlyGriggs13,url,http://lukc.io,#phishing,https://x.com/CarlyGriggs13/status/1944246325010104742 2025-07-13 04:03:40,CarlyGriggs13,domain,lukc.io,#phishing,https://x.com/CarlyGriggs13/status/1944246325010104742 2025-07-13 04:04:03,CarlyGriggs13,url,http://meetup.bittensor-ai.us,#phishing,https://x.com/CarlyGriggs13/status/1944246420741017876 2025-07-13 04:04:03,CarlyGriggs13,domain,meetup.bittensor-ai.us,#phishing,https://x.com/CarlyGriggs13/status/1944246420741017876 2025-07-13 04:04:19,CarlyGriggs13,domain,migrate-whiterock.co,#phishing,https://x.com/CarlyGriggs13/status/1944246487564550511 2025-07-13 04:04:19,CarlyGriggs13,url,http://migrate-whiterock.co,#phishing,https://x.com/CarlyGriggs13/status/1944246487564550511 2025-07-13 04:08:21,CarlyGriggs13,url,http://nodego.asia,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944247502993338445 2025-07-13 04:08:21,CarlyGriggs13,domain,nodego.asia,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944247502993338445 2025-07-13 04:16:14,CarlyGriggs13,domain,prague-prize.com,#phishing,https://x.com/CarlyGriggs13/status/1944249486559064414 2025-07-13 04:16:14,CarlyGriggs13,url,http://prague-prize.com,#phishing,https://x.com/CarlyGriggs13/status/1944249486559064414 2025-07-13 04:16:29,CarlyGriggs13,url,http://processing-app.netlify.app,#phishing,https://x.com/CarlyGriggs13/status/1944249547775238431 2025-07-13 04:16:29,CarlyGriggs13,domain,processing-app.netlify.app,#phishing,https://x.com/CarlyGriggs13/status/1944249547775238431 2025-07-13 04:17:15,CarlyGriggs13,url,http://proposal-shadow.net,#phishing,https://x.com/CarlyGriggs13/status/1944249741497258487 2025-07-13 04:17:15,CarlyGriggs13,domain,proposal-shadow.net,#phishing,https://x.com/CarlyGriggs13/status/1944249741497258487 2025-07-13 04:20:46,CarlyGriggs13,url,http://pumpbtcxyz.com,#phishing,https://x.com/CarlyGriggs13/status/1944250627799810060 2025-07-13 04:20:46,CarlyGriggs13,domain,pumpbtcxyz.com,#phishing,https://x.com/CarlyGriggs13/status/1944250627799810060 2025-07-13 04:21:04,CarlyGriggs13,domain,pumpfunsol.co,#phishing,https://x.com/CarlyGriggs13/status/1944250700608704785 2025-07-13 04:21:04,CarlyGriggs13,url,https://pumpfunsol.co,#phishing,https://x.com/CarlyGriggs13/status/1944250700608704785 2025-07-13 04:21:20,CarlyGriggs13,domain,raydium-exchange.org,#phishing,https://x.com/CarlyGriggs13/status/1944250768921444465 2025-07-13 04:21:20,CarlyGriggs13,url,https://raydium-exchange.org,#phishing,https://x.com/CarlyGriggs13/status/1944250768921444465 2025-07-13 04:21:40,CarlyGriggs13,url,https://raydium-io-swap.github.io,#phishing,https://x.com/CarlyGriggs13/status/1944250852211868120 2025-07-13 04:21:40,CarlyGriggs13,domain,raydium-io-swap.github.io,#phishing,https://x.com/CarlyGriggs13/status/1944250852211868120 2025-07-13 04:22:04,CarlyGriggs13,domain,raydiumi.com,#phishing,https://x.com/CarlyGriggs13/status/1944250952233758857 2025-07-13 04:22:04,CarlyGriggs13,url,https://raydiumi.com,#phishing,https://x.com/CarlyGriggs13/status/1944250952233758857 2025-07-13 04:22:24,CarlyGriggs13,domain,raydiumsol.com,#phishing,https://x.com/CarlyGriggs13/status/1944251036530602240 2025-07-13 04:22:24,CarlyGriggs13,url,https://raydiumsol.com,#phishing,https://x.com/CarlyGriggs13/status/1944251036530602240 2025-07-13 04:22:49,CarlyGriggs13,domain,rc0fi-reward.my,#phishing,https://x.com/CarlyGriggs13/status/1944251141472047129 2025-07-13 04:22:49,CarlyGriggs13,url,http://rc0fi-reward.my,#phishing,https://x.com/CarlyGriggs13/status/1944251141472047129 2025-07-13 04:23:14,CarlyGriggs13,domain,register-onbeam.network,#phishing,https://x.com/CarlyGriggs13/status/1944251245725716866 2025-07-13 04:23:14,CarlyGriggs13,url,http://register-onbeam.network,#phishing,https://x.com/CarlyGriggs13/status/1944251245725716866 2025-07-13 04:23:32,CarlyGriggs13,url,http://registers-humanity.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944251322624053249 2025-07-13 04:23:32,CarlyGriggs13,domain,registers-humanity.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944251322624053249 2025-07-13 04:23:56,CarlyGriggs13,domain,registers-imf.quest,#phishing,https://x.com/CarlyGriggs13/status/1944251421865513405 2025-07-13 04:23:56,CarlyGriggs13,url,http://registers-imf.quest,#phishing,https://x.com/CarlyGriggs13/status/1944251421865513405 2025-07-13 04:24:20,CarlyGriggs13,url,http://registration-gradient.network,#phishing,https://x.com/CarlyGriggs13/status/1944251524281925778 2025-07-13 04:24:20,CarlyGriggs13,domain,registration-gradient.network,#phishing,https://x.com/CarlyGriggs13/status/1944251524281925778 2025-07-13 04:25:02,CarlyGriggs13,url,http://reward-zeuscoin.co,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944251702137237914 2025-07-13 04:25:02,CarlyGriggs13,domain,reward-zeuscoin.co,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944251702137237914 2025-07-13 04:27:51,CarlyGriggs13,url,https://sale.pumps.network,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944252408529347013 2025-07-13 04:27:51,CarlyGriggs13,domain,sale.pumps.network,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944252408529347013 2025-07-13 04:31:18,skocherhan,ip,77.105.164.95,,https://x.com/skocherhan/status/1944253277954011377 2025-07-13 04:31:18,skocherhan,domain,admin.extra-book3.com,,https://x.com/skocherhan/status/1944253277954011377 2025-07-13 04:31:18,skocherhan,url,http://admin.extra-book3.com,,https://x.com/skocherhan/status/1944253277954011377 2025-07-13 04:31:18,skocherhan,url,http://77.105.164.95/s/59ed1342-898f-4455-a521-dc4b737b6aea,,https://x.com/skocherhan/status/1944253277954011377 2025-07-13 04:31:18,skocherhan,url,http://booking.extranethelpid612.com,,https://x.com/skocherhan/status/1944253277954011377 2025-07-13 04:31:18,skocherhan,domain,booking.extranethelpid612.com,,https://x.com/skocherhan/status/1944253277954011377 2025-07-13 04:37:16,CarlyGriggs13,url,http://supervese.co,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944254780030828554 2025-07-13 04:37:16,CarlyGriggs13,domain,supervese.co,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944254780030828554 2025-07-13 04:37:42,skocherhan,url,https://146.70.87.184,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,url,https://account.www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,domain,www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,url,https://sso.www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,url,https://www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,domain,ssoo.www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,url,https://ssoo.www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,domain,sso.www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,ip,146.70.87.184,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:42,skocherhan,domain,account.www-mlcrosoft.com,,https://x.com/skocherhan/status/1944254887283380554 2025-07-13 04:37:45,skocherhan,url,http://sso.mcicrosoft.com,,https://x.com/skocherhan/status/1944254902563180894 2025-07-13 04:37:45,skocherhan,domain,sso.microsoff.net,,https://x.com/skocherhan/status/1944254902563180894 2025-07-13 04:37:45,skocherhan,url,http://sso.microsoff.net,,https://x.com/skocherhan/status/1944254902563180894 2025-07-13 04:37:45,skocherhan,domain,sso.mcicrosoft.com,,https://x.com/skocherhan/status/1944254902563180894 2025-07-13 04:39:32,CarlyGriggs13,url,http://testnet.humanitiy.xyz/dashboard/,#phishing,https://x.com/CarlyGriggs13/status/1944255349596225563 2025-07-13 04:39:32,CarlyGriggs13,domain,testnet.humanitiy.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944255349596225563 2025-07-13 04:39:52,CarlyGriggs13,url,http://testnet.humanitiye.xyz/dashboard/,#phishing,https://x.com/CarlyGriggs13/status/1944255433037717533 2025-07-13 04:39:52,CarlyGriggs13,domain,testnet.humanitiye.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944255433037717533 2025-07-13 04:40:12,CarlyGriggs13,url,http://theajack.github.io/disable-devtool/404.html?h=enter-server.com,#phishing,https://x.com/CarlyGriggs13/status/1944255518924489062 2025-07-13 04:40:12,CarlyGriggs13,domain,theajack.github.io,#phishing,https://x.com/CarlyGriggs13/status/1944255518924489062 2025-07-13 04:40:54,CarlyGriggs13,url,http://tornadocash.onl,#phishing,https://x.com/CarlyGriggs13/status/1944255692107321531 2025-07-13 04:40:54,CarlyGriggs13,domain,tornadocash.onl,#phishing,https://x.com/CarlyGriggs13/status/1944255692107321531 2025-07-13 04:41:13,CarlyGriggs13,url,http://ultrashiledpro.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944255774953230830 2025-07-13 04:41:13,CarlyGriggs13,domain,ultrashiledpro.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944255774953230830 2025-07-13 04:41:29,CarlyGriggs13,url,http://unisocks-nft.xyz/checker/,#phishing,https://x.com/CarlyGriggs13/status/1944255840690585760 2025-07-13 04:41:29,CarlyGriggs13,domain,unisocks-nft.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944255840690585760 2025-07-13 04:44:25,CarlyGriggs13,url,http://uniswap.org-connectv2-wailet.com/on.html,#phishing,https://x.com/CarlyGriggs13/status/1944256576686043571 2025-07-13 04:44:25,CarlyGriggs13,domain,uniswap.org-connectv2-wailet.com,#phishing,https://x.com/CarlyGriggs13/status/1944256576686043571 2025-07-13 04:46:19,CarlyGriggs13,url,http://unlswap.org-api-fast-wallet.com/inon.php,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944257054694072739 2025-07-13 04:46:19,CarlyGriggs13,domain,unlswap.org-api-fast-wallet.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944257054694072739 2025-07-13 04:48:20,CarlyGriggs13,domain,v1-hyperliquid.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944257563606102180 2025-07-13 04:48:20,CarlyGriggs13,url,http://v1-hyperliquid.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944257563606102180 2025-07-13 04:53:08,CarlyGriggs13,url,http://www.external.centenlix.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944258773423439889 2025-07-13 04:53:08,CarlyGriggs13,domain,external.centenlix.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944258773423439889 2025-07-13 04:56:11,CarlyGriggs13,domain,web.dapp-protocol.com,#phishing,https://x.com/CarlyGriggs13/status/1944259538330238984 2025-07-13 04:56:11,CarlyGriggs13,url,http://www.web.dapp-protocol.com,#phishing,https://x.com/CarlyGriggs13/status/1944259538330238984 2025-07-13 04:56:28,CarlyGriggs13,url,http://www.web.triasone-m.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944259612472967644 2025-07-13 04:56:28,CarlyGriggs13,domain,web.triasone-m.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944259612472967644 2025-07-13 04:56:53,CarlyGriggs13,domain,x2-trump.io,#phishing,https://x.com/CarlyGriggs13/status/1944259715707679137 2025-07-13 04:56:53,CarlyGriggs13,url,https://x2-trump.io,#phishing,https://x.com/CarlyGriggs13/status/1944259715707679137 2025-07-13 04:57:20,CarlyGriggs13,domain,xcn-sushi.my,#phishing,https://x.com/CarlyGriggs13/status/1944259829607936218 2025-07-13 04:57:20,CarlyGriggs13,url,http://xcn-sushi.my,#phishing,https://x.com/CarlyGriggs13/status/1944259829607936218 2025-07-13 04:57:37,CarlyGriggs13,domain,yala-finance.network,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944259899006849214 2025-07-13 04:57:37,CarlyGriggs13,url,http://yala-finance.network,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944259899006849214 2025-07-13 04:57:56,CarlyGriggs13,domain,yazaebalsya.net,#phishing,https://x.com/CarlyGriggs13/status/1944259979386507619 2025-07-13 04:57:56,CarlyGriggs13,url,http://yazaebalsya.net,#phishing,https://x.com/CarlyGriggs13/status/1944259979386507619 2025-07-13 04:58:39,CarlyGriggs13,domain,zap.ceo,#phishing,https://x.com/CarlyGriggs13/status/1944260160509120749 2025-07-13 04:58:39,CarlyGriggs13,url,http://zap.ceo,#phishing,https://x.com/CarlyGriggs13/status/1944260160509120749 2025-07-13 04:58:56,CarlyGriggs13,domain,zeuscoin-rewards.co,#phishing,https://x.com/CarlyGriggs13/status/1944260230952444038 2025-07-13 04:58:56,CarlyGriggs13,url,http://zeuscoin-rewards.co,#phishing,https://x.com/CarlyGriggs13/status/1944260230952444038 2025-07-13 04:59:13,CarlyGriggs13,domain,zkverify.app-web4.com,#phishing,https://x.com/CarlyGriggs13/status/1944260303186714933 2025-07-13 04:59:13,CarlyGriggs13,url,http://zkverify.app-web4.com,#phishing,https://x.com/CarlyGriggs13/status/1944260303186714933 2025-07-13 04:59:40,CarlyGriggs13,url,https://piako-finance.com,#phishing,https://x.com/CarlyGriggs13/status/1944260417578315973 2025-07-13 04:59:40,CarlyGriggs13,domain,piako-finance.com,#phishing,https://x.com/CarlyGriggs13/status/1944260417578315973 2025-07-13 04:59:58,CarlyGriggs13,url,https://gasstruelley.com,#phishing,https://x.com/CarlyGriggs13/status/1944260492702228635 2025-07-13 04:59:58,CarlyGriggs13,domain,gasstruelley.com,#phishing,https://x.com/CarlyGriggs13/status/1944260492702228635 2025-07-13 05:00:16,CarlyGriggs13,domain,globalforg.org,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944260565188149286 2025-07-13 05:00:16,CarlyGriggs13,url,https://globalforg.org,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944260565188149286 2025-07-13 05:00:35,CarlyGriggs13,url,https://401k.raydium-drop.live/airdrop/,#phishing,https://x.com/CarlyGriggs13/status/1944260647845290422 2025-07-13 05:00:35,CarlyGriggs13,domain,401k.raydium-drop.live,#phishing,https://x.com/CarlyGriggs13/status/1944260647845290422 2025-07-13 05:01:01,CarlyGriggs13,url,https://gacor12.com,#phishing,https://x.com/CarlyGriggs13/status/1944260756838789208 2025-07-13 05:01:01,CarlyGriggs13,domain,gacor12.com,#phishing,https://x.com/CarlyGriggs13/status/1944260756838789208 2025-07-13 05:01:19,CarlyGriggs13,domain,gacorlek12.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944260832495370614 2025-07-13 05:01:19,CarlyGriggs13,url,https://gacorlek12.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944260832495370614 2025-07-13 05:02:54,CarlyGriggs13,url,https://pub-9e0941be2dbe4b4db8ae1075803a2cfc.r2.dev/slotwin138.html,#phishing,https://x.com/CarlyGriggs13/status/1944261227942752280 2025-07-13 05:02:54,CarlyGriggs13,domain,pub-9e0941be2dbe4b4db8ae1075803a2cfc.r2.dev,#phishing,https://x.com/CarlyGriggs13/status/1944261227942752280 2025-07-13 05:02:54,CarlyGriggs13,md5,9e0941be2dbe4b4db8ae1075803a2cfc,#phishing,https://x.com/CarlyGriggs13/status/1944261227942752280 2025-07-13 05:11:42,skocherhan,domain,check-host.net,,https://x.com/skocherhan/status/1944263445643174378 2025-07-13 05:11:42,skocherhan,url,https://check-host.net/check-report/2989264bk1b2,,https://x.com/skocherhan/status/1944263445643174378 2025-07-13 05:14:40,skocherhan,domain,asksoft.net,#opendir #malware,https://x.com/skocherhan/status/1944264190434156742 2025-07-13 05:14:40,skocherhan,url,https://asksoft.net/Download/,#opendir #malware,https://x.com/skocherhan/status/1944264190434156742 2025-07-13 05:15:02,skocherhan,domain,ftp.zx.net.nz,#opendir #malware,https://x.com/skocherhan/status/1944264281920249941 2025-07-13 05:15:02,skocherhan,url,https://ftp.zx.net.nz/pub/archive/ftp.rarlab.com/rar/,#opendir #malware,https://x.com/skocherhan/status/1944264281920249941 2025-07-13 05:16:20,skocherhan,domain,irai.com,#opendir #malware,https://x.com/skocherhan/status/1944264611290841093 2025-07-13 05:16:20,skocherhan,url,http://www.irai.com/pp/,#opendir #malware,https://x.com/skocherhan/status/1944264611290841093 2025-07-13 05:16:29,skocherhan,url,http://193.219.28.148/packages/simtelnet/win95/network/,#opendir #malware,https://x.com/skocherhan/status/1944264648288579685 2025-07-13 05:16:29,skocherhan,ip,193.219.28.148,#opendir #malware,https://x.com/skocherhan/status/1944264648288579685 2025-07-13 05:16:45,CarlyGriggs13,url,https://anti-bot.org,#phishing,https://x.com/CarlyGriggs13/status/1944264713308717119 2025-07-13 05:16:45,CarlyGriggs13,domain,anti-bot.org,#phishing,https://x.com/CarlyGriggs13/status/1944264713308717119 2025-07-13 05:17:11,CarlyGriggs13,url,https://land-app5.top,#phishing,https://x.com/CarlyGriggs13/status/1944264826437407091 2025-07-13 05:17:11,CarlyGriggs13,domain,land-app5.top,#phishing,https://x.com/CarlyGriggs13/status/1944264826437407091 2025-07-13 05:17:37,CarlyGriggs13,domain,registers-world.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944264933384106444 2025-07-13 05:17:37,CarlyGriggs13,url,https://registers-world.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944264933384106444 2025-07-13 05:18:01,CarlyGriggs13,domain,magic.eden-nft.cc,#phishing,https://x.com/CarlyGriggs13/status/1944265034831737135 2025-07-13 05:18:01,CarlyGriggs13,url,https://magic.eden-nft.cc,#phishing,https://x.com/CarlyGriggs13/status/1944265034831737135 2025-07-13 05:18:24,CarlyGriggs13,url,https://lenvopro.com,#phishing,https://x.com/CarlyGriggs13/status/1944265128599278049 2025-07-13 05:18:24,CarlyGriggs13,domain,lenvopro.com,#phishing,https://x.com/CarlyGriggs13/status/1944265128599278049 2025-07-13 05:28:44,skocherhan,ip,167.160.161.12,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://ineyay.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,ineyay.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://shfsz.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,callbacywo.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,sldnys.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,resdcv.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://ravisrq.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://callbacywo.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://resdcv.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,ravisrq.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://sldnys.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,anzkb.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://anzkb.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,shfsz.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://clirujf.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,negqjcj.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,clirujf.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,mindlevqtg.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://mindlevqtg.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://horavd.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://assixny.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://negqjcj.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://167.160.161.12,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,url,http://heryam.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,assixny.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,heryam.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:28:44,skocherhan,domain,horavd.xyz,,https://x.com/skocherhan/status/1944267731995361735 2025-07-13 05:57:54,CarlyGriggs13,domain,str-event.io,#phishing,https://x.com/CarlyGriggs13/status/1944275071238828405 2025-07-13 05:57:54,CarlyGriggs13,url,https://str-event.io,#phishing,https://x.com/CarlyGriggs13/status/1944275071238828405 2025-07-13 06:00:09,urldna_bot,domain,emel-botom.online,#phishing #scam,https://x.com/urldna_bot/status/1944275639025979796 2025-07-13 06:00:09,urldna_bot,url,https://emel-botom.online,#phishing #scam,https://x.com/urldna_bot/status/1944275639025979796 2025-07-13 06:08:25,CarlyGriggs13,domain,hyperswaps.io,#phishing,https://x.com/CarlyGriggs13/status/1944277715844047049 2025-07-13 06:08:25,CarlyGriggs13,url,https://hyperswaps.io,#phishing,https://x.com/CarlyGriggs13/status/1944277715844047049 2025-07-13 06:18:44,CarlyGriggs13,domain,logs.majesticbank.de,#phishing,https://x.com/CarlyGriggs13/status/1944280315905622226 2025-07-13 06:18:44,CarlyGriggs13,url,https://logs.majesticbank.de,#phishing,https://x.com/CarlyGriggs13/status/1944280315905622226 2025-07-13 06:19:01,CarlyGriggs13,url,https://roblox.com.am/users/5025572827/profile,#phishing,https://x.com/CarlyGriggs13/status/1944280387355570278 2025-07-13 06:19:01,CarlyGriggs13,domain,roblox.com.am,#phishing,https://x.com/CarlyGriggs13/status/1944280387355570278 2025-07-13 06:19:21,CarlyGriggs13,url,https://roblox.com.mu/users/3530366660/profile,#phishing,https://x.com/CarlyGriggs13/status/1944280469580726658 2025-07-13 06:19:21,CarlyGriggs13,domain,roblox.com.mu,#phishing,https://x.com/CarlyGriggs13/status/1944280469580726658 2025-07-13 06:32:58,CarlyGriggs13,domain,dapps-cloud.live,#phishing,https://x.com/CarlyGriggs13/status/1944283896939421815 2025-07-13 06:32:58,CarlyGriggs13,url,https://dapps-cloud.live,#phishing,https://x.com/CarlyGriggs13/status/1944283896939421815 2025-07-13 06:33:15,CarlyGriggs13,domain,apexcrypbit.pro,#phishing,https://x.com/CarlyGriggs13/status/1944283968326553957 2025-07-13 06:33:15,CarlyGriggs13,url,https://apexcrypbit.pro,#phishing,https://x.com/CarlyGriggs13/status/1944283968326553957 2025-07-13 06:33:39,CarlyGriggs13,domain,block-dags.info,#phishing,https://x.com/CarlyGriggs13/status/1944284069086306357 2025-07-13 06:33:39,CarlyGriggs13,url,https://block-dags.info,#phishing,https://x.com/CarlyGriggs13/status/1944284069086306357 2025-07-13 06:34:07,CarlyGriggs13,url,https://btcbull-token.net,#phishing,https://x.com/CarlyGriggs13/status/1944284183964110952 2025-07-13 06:34:07,CarlyGriggs13,domain,btcbull-token.net,#phishing,https://x.com/CarlyGriggs13/status/1944284183964110952 2025-07-13 06:34:23,CarlyGriggs13,domain,bdag-distribution.xyz,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944284254176780788 2025-07-13 06:34:23,CarlyGriggs13,url,https://bdag-distribution.xyz,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944284254176780788 2025-07-13 06:34:47,CarlyGriggs13,url,https://claim.block-dags.info,#phishing,https://x.com/CarlyGriggs13/status/1944284354152165501 2025-07-13 06:34:47,CarlyGriggs13,domain,claim.block-dags.info,#phishing,https://x.com/CarlyGriggs13/status/1944284354152165501 2025-07-13 06:35:02,CarlyGriggs13,domain,claim.mindsofpepe.org,#phishing,https://x.com/CarlyGriggs13/status/1944284414709531066 2025-07-13 06:35:02,CarlyGriggs13,url,https://claim.mindsofpepe.org,#phishing,https://x.com/CarlyGriggs13/status/1944284414709531066 2025-07-13 06:35:21,CarlyGriggs13,url,https://solaxytokens.info,#phishing,https://x.com/CarlyGriggs13/status/1944284496406204727 2025-07-13 06:35:21,CarlyGriggs13,domain,solaxytokens.info,#phishing,https://x.com/CarlyGriggs13/status/1944284496406204727 2025-07-13 06:35:36,CarlyGriggs13,domain,solaxytoken.help,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944284560721613153 2025-07-13 06:35:36,CarlyGriggs13,url,https://solaxytoken.help,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944284560721613153 2025-07-13 06:42:34,CarlyGriggs13,url,http://adnexis.com,#phishing,https://x.com/CarlyGriggs13/status/1944286313139597482 2025-07-13 06:42:34,CarlyGriggs13,domain,adnexis.com,#phishing,https://x.com/CarlyGriggs13/status/1944286313139597482 2025-07-13 06:42:54,CarlyGriggs13,url,https://alcon-share.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944286396413276216 2025-07-13 06:42:54,CarlyGriggs13,domain,alcon-share.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944286396413276216 2025-07-13 06:43:15,CarlyGriggs13,domain,apexionminers.com,#phishing,https://x.com/CarlyGriggs13/status/1944286482992079308 2025-07-13 06:43:15,CarlyGriggs13,url,https://apexionminers.com,#phishing,https://x.com/CarlyGriggs13/status/1944286482992079308 2025-07-13 06:43:37,CarlyGriggs13,domain,app.tradeorb.org,#phishing,https://x.com/CarlyGriggs13/status/1944286574482477080 2025-07-13 06:43:37,CarlyGriggs13,url,http://app.tradeorb.org,#phishing,https://x.com/CarlyGriggs13/status/1944286574482477080 2025-07-13 06:43:55,CarlyGriggs13,domain,americanexpresssshiping.com,#phishing,https://x.com/CarlyGriggs13/status/1944286651796045862 2025-07-13 06:43:55,CarlyGriggs13,url,http://americanexpresssshiping.com,#phishing,https://x.com/CarlyGriggs13/status/1944286651796045862 2025-07-13 06:44:11,CarlyGriggs13,url,http://believediamond.com,#phishing,https://x.com/CarlyGriggs13/status/1944286717613420617 2025-07-13 06:44:11,CarlyGriggs13,domain,believediamond.com,#phishing,https://x.com/CarlyGriggs13/status/1944286717613420617 2025-07-13 06:44:27,CarlyGriggs13,url,https://bitgette.com,#phishing,https://x.com/CarlyGriggs13/status/1944286787863539803 2025-07-13 06:44:27,CarlyGriggs13,domain,bitgette.com,#phishing,https://x.com/CarlyGriggs13/status/1944286787863539803 2025-07-13 06:44:46,CarlyGriggs13,url,https://bitvaultguard.com,#phishing,https://x.com/CarlyGriggs13/status/1944286866359914840 2025-07-13 06:44:46,CarlyGriggs13,domain,bitvaultguard.com,#phishing,https://x.com/CarlyGriggs13/status/1944286866359914840 2025-07-13 06:45:08,CarlyGriggs13,url,https://findmobile.lk,#phishing,https://x.com/CarlyGriggs13/status/1944286958387085334 2025-07-13 06:45:08,CarlyGriggs13,domain,findmobile.lk,#phishing,https://x.com/CarlyGriggs13/status/1944286958387085334 2025-07-13 06:45:30,CarlyGriggs13,domain,fianzotrust.com,#phishing,https://x.com/CarlyGriggs13/status/1944287050301128709 2025-07-13 06:45:30,CarlyGriggs13,url,https://fianzotrust.com,#phishing,https://x.com/CarlyGriggs13/status/1944287050301128709 2025-07-13 06:47:39,drb_ra,ip,157.20.182.24,#AsyncRAT #C2,https://x.com/drb_ra/status/1944287591752495118 2025-07-13 06:47:39,drb_ra,url,http://157.20.182.24:1337,#AsyncRAT #C2,https://x.com/drb_ra/status/1944287591752495118 2025-07-13 06:47:44,drb_ra,url,http://64.225.78.100:80,#C2 #Interactsh,https://x.com/drb_ra/status/1944287612786946171 2025-07-13 06:47:48,drb_ra,url,http://64.225.78.100:25,#C2 #Interactsh,https://x.com/drb_ra/status/1944287628070633821 2025-07-13 06:47:55,drb_ra,ip,64.225.78.100,#C2 #Interactsh,https://x.com/drb_ra/status/1944287656474488975 2025-07-13 06:47:55,drb_ra,url,http://64.225.78.100:443,#C2 #Interactsh,https://x.com/drb_ra/status/1944287656474488975 2025-07-13 06:48:00,drb_ra,url,http://3.23.56.70:465,#C2 #Interactsh,https://x.com/drb_ra/status/1944287677999714576 2025-07-13 06:48:05,drb_ra,url,http://3.23.56.70:443,#C2 #Interactsh,https://x.com/drb_ra/status/1944287699411607753 2025-07-13 06:48:10,drb_ra,url,http://3.23.56.70:80,#C2 #Interactsh,https://x.com/drb_ra/status/1944287721431744932 2025-07-13 06:48:15,drb_ra,url,http://72.133.241.6:2083,#Qakbot #C2,https://x.com/drb_ra/status/1944287743019794511 2025-07-13 06:48:15,drb_ra,ip,72.133.241.6,#Qakbot #C2,https://x.com/drb_ra/status/1944287743019794511 2025-07-13 06:48:20,drb_ra,ip,144.172.96.98,#Havoc #C2,https://x.com/drb_ra/status/1944287763962245193 2025-07-13 06:48:20,drb_ra,url,http://144.172.96.98:443,#Havoc #C2,https://x.com/drb_ra/status/1944287763962245193 2025-07-13 06:48:25,drb_ra,ip,45.152.84.192,#Havoc #C2,https://x.com/drb_ra/status/1944287784988008896 2025-07-13 06:48:25,drb_ra,url,http://45.152.84.192:443,#Havoc #C2,https://x.com/drb_ra/status/1944287784988008896 2025-07-13 06:48:30,drb_ra,url,http://147.93.137.12:443,#Havoc #C2,https://x.com/drb_ra/status/1944287806139838717 2025-07-13 06:48:30,drb_ra,ip,147.93.137.12,#Havoc #C2,https://x.com/drb_ra/status/1944287806139838717 2025-07-13 06:48:34,drb_ra,ip,216.245.184.59,#Havoc #C2,https://x.com/drb_ra/status/1944287821398708638 2025-07-13 06:48:34,drb_ra,url,http://216.245.184.59:8443,#Havoc #C2,https://x.com/drb_ra/status/1944287821398708638 2025-07-13 06:48:38,drb_ra,ip,193.37.212.74,#Deimos #C2,https://x.com/drb_ra/status/1944287837567791497 2025-07-13 06:48:38,drb_ra,url,http://193.37.212.74:443,#Deimos #C2,https://x.com/drb_ra/status/1944287837567791497 2025-07-13 06:50:42,drb_ra,ip,198.16.128.192,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1944288360329064651 2025-07-13 06:50:42,drb_ra,url,http://198.16.128.192:8888,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1944288360329064651 2025-07-13 06:50:48,drb_ra,url,http://208.94.246.62:2404,#C2 #Remcos,https://x.com/drb_ra/status/1944288383045406890 2025-07-13 06:50:48,drb_ra,ip,208.94.246.62,#C2 #Remcos,https://x.com/drb_ra/status/1944288383045406890 2025-07-13 06:50:52,drb_ra,ip,38.207.178.172,#C2,https://x.com/drb_ra/status/1944288399613210911 2025-07-13 06:50:52,drb_ra,url,http://38.207.178.172:8002,#C2,https://x.com/drb_ra/status/1944288399613210911 2025-07-13 06:50:57,drb_ra,ip,13.233.99.139,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288421146476822 2025-07-13 06:50:57,drb_ra,url,http://13.233.99.139:58194,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288421146476822 2025-07-13 06:51:02,drb_ra,ip,179.95.201.82,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288443367874800 2025-07-13 06:51:02,drb_ra,url,http://179.95.201.82:9990,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288443367874800 2025-07-13 06:51:07,drb_ra,url,http://51.17.184.103:8090,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288464519700664 2025-07-13 06:51:12,drb_ra,ip,51.17.184.103,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288486296555584 2025-07-13 06:51:12,drb_ra,url,http://51.17.184.103:3390,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288486296555584 2025-07-13 06:51:18,drb_ra,url,http://51.84.57.233:4093,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288508199194655 2025-07-13 06:51:23,drb_ra,url,http://51.84.57.233:2443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288529447563333 2025-07-13 06:51:27,drb_ra,ip,51.84.57.233,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288545595695585 2025-07-13 06:51:27,drb_ra,url,http://51.84.57.233:443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944288545595695585 2025-07-13 06:51:32,drb_ra,ip,128.90.113.149,#AsyncRAT #C2,https://x.com/drb_ra/status/1944288566365794585 2025-07-13 06:51:32,drb_ra,url,http://128.90.113.149:5000,#AsyncRAT #C2,https://x.com/drb_ra/status/1944288566365794585 2025-07-13 06:57:24,CarlyGriggs13,domain,autotrade247.pro,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944290044065267955 2025-07-13 06:57:24,CarlyGriggs13,url,https://autotrade247.pro,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944290044065267955 2025-07-13 06:57:47,CarlyGriggs13,url,https://avalooinsuranceservices.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944290139842150596 2025-07-13 06:57:47,CarlyGriggs13,domain,avalooinsuranceservices.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944290139842150596 2025-07-13 06:58:07,CarlyGriggs13,domain,avillion-venture.com,#phishing,https://x.com/CarlyGriggs13/status/1944290226081608039 2025-07-13 06:58:07,CarlyGriggs13,url,https://avillion-venture.com,#phishing,https://x.com/CarlyGriggs13/status/1944290226081608039 2025-07-13 06:58:29,CarlyGriggs13,url,https://autotrade247.pro.1stcapitalunion.org,#phishing,https://x.com/CarlyGriggs13/status/1944290318255280428 2025-07-13 06:58:29,CarlyGriggs13,domain,autotrade247.pro.1stcapitalunion.org,#phishing,https://x.com/CarlyGriggs13/status/1944290318255280428 2025-07-13 06:58:47,CarlyGriggs13,domain,avironcapital.ltd.kryptpilot.com,#phishing,https://x.com/CarlyGriggs13/status/1944290393727652175 2025-07-13 06:58:47,CarlyGriggs13,url,https://avironcapital.ltd.kryptpilot.com,#phishing,https://x.com/CarlyGriggs13/status/1944290393727652175 2025-07-13 06:59:06,CarlyGriggs13,domain,axbonigroup.testdev.sbs,#phishing,https://x.com/CarlyGriggs13/status/1944290472815734918 2025-07-13 06:59:06,CarlyGriggs13,url,https://axbonigroup.testdev.sbs,#phishing,https://x.com/CarlyGriggs13/status/1944290472815734918 2025-07-13 06:59:27,CarlyGriggs13,url,https://axeethical.com,#phishing,https://x.com/CarlyGriggs13/status/1944290559884988725 2025-07-13 06:59:27,CarlyGriggs13,domain,axeethical.com,#phishing,https://x.com/CarlyGriggs13/status/1944290559884988725 2025-07-13 06:59:46,CarlyGriggs13,domain,axiscapitalsholdings.com,#phishing,https://x.com/CarlyGriggs13/status/1944290639195083249 2025-07-13 06:59:46,CarlyGriggs13,url,https://axiscapitalsholdings.com,#phishing,https://x.com/CarlyGriggs13/status/1944290639195083249 2025-07-13 07:00:07,CarlyGriggs13,domain,axisassociate.com,#phishing,https://x.com/CarlyGriggs13/status/1944290727871017031 2025-07-13 07:00:07,CarlyGriggs13,url,https://axisassociate.com,#phishing,https://x.com/CarlyGriggs13/status/1944290727871017031 2025-07-13 07:00:30,CarlyGriggs13,url,https://axiscapitalsholdings.com.exceltradepoint.com,#phishing,https://x.com/CarlyGriggs13/status/1944290826286141760 2025-07-13 07:00:30,CarlyGriggs13,domain,axiscapitalsholdings.com.exceltradepoint.com,#phishing,https://x.com/CarlyGriggs13/status/1944290826286141760 2025-07-13 07:00:50,CarlyGriggs13,url,https://assetempowerment.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944290907597008936 2025-07-13 07:00:50,CarlyGriggs13,domain,assetempowerment.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944290907597008936 2025-07-13 07:01:07,CarlyGriggs13,url,https://autopremiertrade.com,#phishing,https://x.com/CarlyGriggs13/status/1944290978921161164 2025-07-13 07:01:07,CarlyGriggs13,domain,autopremiertrade.com,#phishing,https://x.com/CarlyGriggs13/status/1944290978921161164 2025-07-13 07:01:26,CarlyGriggs13,domain,assetscommercebank.com,#phishing,https://x.com/CarlyGriggs13/status/1944291060374810900 2025-07-13 07:01:26,CarlyGriggs13,url,https://assetscommercebank.com,#phishing,https://x.com/CarlyGriggs13/status/1944291060374810900 2025-07-13 07:01:54,CarlyGriggs13,domain,assig.youngwebpage.org,#phishing,https://x.com/CarlyGriggs13/status/1944291175831417164 2025-07-13 07:01:54,CarlyGriggs13,url,https://assig.youngwebpage.org,#phishing,https://x.com/CarlyGriggs13/status/1944291175831417164 2025-07-13 07:03:34,CarlyGriggs13,domain,atonic-trades.com,#phishing,https://x.com/CarlyGriggs13/status/1944291594833739812 2025-07-13 07:03:34,CarlyGriggs13,url,https://atonic-trades.com,#phishing,https://x.com/CarlyGriggs13/status/1944291594833739812 2025-07-13 07:04:00,CarlyGriggs13,domain,atonic-trades.com.admincgpb.info,#phishing,https://x.com/CarlyGriggs13/status/1944291706595119268 2025-07-13 07:04:00,CarlyGriggs13,url,https://atonic-trades.com.admincgpb.info,#phishing,https://x.com/CarlyGriggs13/status/1944291706595119268 2025-07-13 07:04:24,CarlyGriggs13,domain,asiapaymentcenter.com,#phishing,https://x.com/CarlyGriggs13/status/1944291805534539860 2025-07-13 07:04:24,CarlyGriggs13,url,https://asiapaymentcenter.com,#phishing,https://x.com/CarlyGriggs13/status/1944291805534539860 2025-07-13 07:04:41,CarlyGriggs13,url,https://asox-towerbank.com,#phishing,https://x.com/CarlyGriggs13/status/1944291878611853580 2025-07-13 07:04:41,CarlyGriggs13,domain,asox-towerbank.com,#phishing,https://x.com/CarlyGriggs13/status/1944291878611853580 2025-07-13 07:05:02,CarlyGriggs13,url,https://atalyreitslimited.com,#phishing,https://x.com/CarlyGriggs13/status/1944291965463371973 2025-07-13 07:05:02,CarlyGriggs13,domain,atalyreitslimited.com,#phishing,https://x.com/CarlyGriggs13/status/1944291965463371973 2025-07-13 07:05:18,CarlyGriggs13,domain,aspicorn.testdev.sbs,#phishing,https://x.com/CarlyGriggs13/status/1944292032576430533 2025-07-13 07:05:18,CarlyGriggs13,url,https://aspicorn.testdev.sbs,#phishing,https://x.com/CarlyGriggs13/status/1944292032576430533 2025-07-13 07:05:41,CarlyGriggs13,url,https://aubblimited.org,#phishing,https://x.com/CarlyGriggs13/status/1944292129540370910 2025-07-13 07:05:41,CarlyGriggs13,domain,aubblimited.org,#phishing,https://x.com/CarlyGriggs13/status/1944292129540370910 2025-07-13 07:06:01,CarlyGriggs13,url,https://astec.creativ.click,#phishing,https://x.com/CarlyGriggs13/status/1944292212767932918 2025-07-13 07:06:01,CarlyGriggs13,domain,astec.creativ.click,#phishing,https://x.com/CarlyGriggs13/status/1944292212767932918 2025-07-13 07:06:18,CarlyGriggs13,url,https://auth.fleuribnk.com/login/,#phishing,https://x.com/CarlyGriggs13/status/1944292283446440163 2025-07-13 07:06:18,CarlyGriggs13,domain,auth.fleuribnk.com,#phishing,https://x.com/CarlyGriggs13/status/1944292283446440163 2025-07-13 07:06:39,CarlyGriggs13,domain,aureusx.org,#phishing,https://x.com/CarlyGriggs13/status/1944292371984003308 2025-07-13 07:06:39,CarlyGriggs13,url,https://aureusx.org,#phishing,https://x.com/CarlyGriggs13/status/1944292371984003308 2025-07-13 07:07:04,CarlyGriggs13,domain,assignment.smartcapitaltrades.org,#phishing,https://x.com/CarlyGriggs13/status/1944292475838910891 2025-07-13 07:07:04,CarlyGriggs13,url,https://assignment.smartcapitaltrades.org/global/en/index.html,#phishing,https://x.com/CarlyGriggs13/status/1944292475838910891 2025-07-13 08:00:08,urldna_bot,url,http://junomaihhfgfghyt.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944305832524460149 2025-07-13 08:00:08,urldna_bot,domain,junomaihhfgfghyt.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944305832524460149 2025-07-13 08:36:05,drb_ra,url,http://47.108.63.64:7787,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944314877419409847 2025-07-13 08:36:05,drb_ra,ip,47.108.63.64,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944314877419409847 2025-07-13 10:00:10,urldna_bot,domain,pastitogelsgp.com,#scam #phishing,https://x.com/urldna_bot/status/1944336039327207572 2025-07-13 10:00:10,urldna_bot,url,http://pastitogelsgp.com,#scam #phishing,https://x.com/urldna_bot/status/1944336039327207572 2025-07-13 10:46:47,drb_ra,url,http://8.137.157.191:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347771516961116 2025-07-13 10:46:53,drb_ra,url,http://106.55.138.214:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347795357307154 2025-07-13 10:46:53,drb_ra,ip,106.55.138.214,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347795357307154 2025-07-13 10:46:53,drb_ra,ip,111.230.161.5,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347795357307154 2025-07-13 10:46:57,drb_ra,url,https://108.186.255.117/IE9CompatViewList.xml,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347812390441183 2025-07-13 10:46:57,drb_ra,url,http://108.186.255.117:896,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347812390441183 2025-07-13 10:46:57,drb_ra,ip,108.186.255.117,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347812390441183 2025-07-13 10:47:03,drb_ra,url,http://27.17.158.66:56245,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347837573001231 2025-07-13 10:47:03,drb_ra,ip,27.17.158.66,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347837573001231 2025-07-13 10:47:08,drb_ra,ip,114.132.180.69,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347860977234362 2025-07-13 10:47:08,drb_ra,ip,193.112.239.170,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347860977234362 2025-07-13 10:47:08,drb_ra,url,http://114.132.180.69:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347860977234362 2025-07-13 10:47:14,drb_ra,url,https://101.132.131.225/c/msdownload/update/others/2021/10/Ig1qBxnKiLIDHf-tnWRTivJh4pI,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347885237088727 2025-07-13 10:47:14,drb_ra,url,http://101.132.131.225:11011,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347885237088727 2025-07-13 10:47:14,drb_ra,ip,101.132.131.225,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347885237088727 2025-07-13 10:47:19,drb_ra,url,http://8.137.157.191:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944347907089441196 2025-07-13 10:49:23,drb_ra,url,https://ongmanibeimeihong.microsolt.org/wp-admin,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348427367694805 2025-07-13 10:49:23,drb_ra,domain,ongmanibeimeihong.microsolt.org,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348427367694805 2025-07-13 10:49:23,drb_ra,ip,101.43.136.183,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348427367694805 2025-07-13 10:49:23,drb_ra,url,http://101.43.136.183:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348427367694805 2025-07-13 10:49:29,drb_ra,url,https://home.33893306.xyz/j.ad,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348449849106937 2025-07-13 10:49:29,drb_ra,domain,home.33893306.xyz,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348449849106937 2025-07-13 10:49:29,drb_ra,url,http://121.61.109.25:444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348449849106937 2025-07-13 10:49:29,drb_ra,ip,121.61.109.25,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944348449849106937 2025-07-13 11:19:40,drb_ra,url,http://185.244.0.116:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944356047482683885 2025-07-13 11:19:40,drb_ra,ip,185.244.0.116,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944356047482683885 2025-07-13 11:19:44,drb_ra,url,http://101.35.95.220:21081,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944356064431952269 2025-07-13 11:19:44,drb_ra,ip,101.35.95.220,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944356064431952269 2025-07-13 12:20:38,CarlyGriggs13,domain,apexprotransit.com,#phishing,https://x.com/CarlyGriggs13/status/1944371389709816148 2025-07-13 12:20:38,CarlyGriggs13,url,https://apexprotransit.com,#phishing,https://x.com/CarlyGriggs13/status/1944371389709816148 2025-07-13 12:21:06,CarlyGriggs13,domain,algo-toolkits.com,#phishing,https://x.com/CarlyGriggs13/status/1944371508576424379 2025-07-13 12:21:06,CarlyGriggs13,url,https://algo-toolkits.com,#phishing,https://x.com/CarlyGriggs13/status/1944371508576424379 2025-07-13 12:21:28,CarlyGriggs13,url,https://allenoveryukllp.com,#phishing,https://x.com/CarlyGriggs13/status/1944371596963004564 2025-07-13 12:21:28,CarlyGriggs13,domain,allenoveryukllp.com,#phishing,https://x.com/CarlyGriggs13/status/1944371596963004564 2025-07-13 12:21:48,CarlyGriggs13,domain,allventurehub.com,#phishing,https://x.com/CarlyGriggs13/status/1944371684607193353 2025-07-13 12:21:48,CarlyGriggs13,url,https://allventurehub.com,#phishing,https://x.com/CarlyGriggs13/status/1944371684607193353 2025-07-13 12:22:05,CarlyGriggs13,domain,alpha-financeltd.com,#phishing,https://x.com/CarlyGriggs13/status/1944371754408821036 2025-07-13 12:22:05,CarlyGriggs13,url,https://alpha-financeltd.com,#phishing,https://x.com/CarlyGriggs13/status/1944371754408821036 2025-07-13 12:22:33,CarlyGriggs13,url,https://alphacrestglobal.com,#phishing,https://x.com/CarlyGriggs13/status/1944371873082474593 2025-07-13 12:22:33,CarlyGriggs13,domain,alphacrestglobal.com,#phishing,https://x.com/CarlyGriggs13/status/1944371873082474593 2025-07-13 12:22:55,CarlyGriggs13,url,https://alphafi.live,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944371963096420710 2025-07-13 12:22:55,CarlyGriggs13,domain,alphafi.live,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944371963096420710 2025-07-13 12:23:22,CarlyGriggs13,url,https://alphacaptrustandvaults.com,#phishing,https://x.com/CarlyGriggs13/status/1944372077034680513 2025-07-13 12:23:22,CarlyGriggs13,domain,alphacaptrustandvaults.com,#phishing,https://x.com/CarlyGriggs13/status/1944372077034680513 2025-07-13 12:23:50,CarlyGriggs13,domain,amaoilandgas.co.uk,#phishing,https://x.com/CarlyGriggs13/status/1944372195053940996 2025-07-13 12:23:50,CarlyGriggs13,url,https://amaoilandgas.co.uk,#phishing,https://x.com/CarlyGriggs13/status/1944372195053940996 2025-07-13 12:24:15,CarlyGriggs13,domain,amagaholdings.org,#phishing,https://x.com/CarlyGriggs13/status/1944372299211129328 2025-07-13 12:24:15,CarlyGriggs13,url,https://amagaholdings.org/login,#phishing,https://x.com/CarlyGriggs13/status/1944372299211129328 2025-07-13 12:24:37,CarlyGriggs13,url,https://alstonltd.com,#phishing,https://x.com/CarlyGriggs13/status/1944372392366579811 2025-07-13 12:24:37,CarlyGriggs13,domain,alstonltd.com,#phishing,https://x.com/CarlyGriggs13/status/1944372392366579811 2025-07-13 12:24:58,CarlyGriggs13,url,https://alfaminefx.pro,#phishing,https://x.com/CarlyGriggs13/status/1944372480933494983 2025-07-13 12:24:58,CarlyGriggs13,domain,alfaminefx.pro,#phishing,https://x.com/CarlyGriggs13/status/1944372480933494983 2025-07-13 12:25:21,CarlyGriggs13,domain,alfaqirlaundry.com,#phishing,https://x.com/CarlyGriggs13/status/1944372577457041707 2025-07-13 12:25:21,CarlyGriggs13,url,https://alfaqirlaundry.com,#phishing,https://x.com/CarlyGriggs13/status/1944372577457041707 2025-07-13 12:25:47,CarlyGriggs13,domain,alhpatrademarket.com,#phishing,https://x.com/CarlyGriggs13/status/1944372686131540288 2025-07-13 12:25:47,CarlyGriggs13,url,https://alhpatrademarket.com,#phishing,https://x.com/CarlyGriggs13/status/1944372686131540288 2025-07-13 12:26:10,CarlyGriggs13,domain,allinonecashback.world,#phishing,https://x.com/CarlyGriggs13/status/1944372783531614352 2025-07-13 12:26:10,CarlyGriggs13,url,https://allinonecashback.world,#phishing,https://x.com/CarlyGriggs13/status/1944372783531614352 2025-07-13 12:26:33,CarlyGriggs13,url,https://allinonecashback.world.americanbullies.store,#phishing,https://x.com/CarlyGriggs13/status/1944372876154400993 2025-07-13 12:26:33,CarlyGriggs13,domain,allinonecashback.world.americanbullies.store,#phishing,https://x.com/CarlyGriggs13/status/1944372876154400993 2025-07-13 12:26:52,CarlyGriggs13,url,https://allinonetrack.site,#phishing,https://x.com/CarlyGriggs13/status/1944372958106890423 2025-07-13 12:26:52,CarlyGriggs13,domain,allinonetrack.site,#phishing,https://x.com/CarlyGriggs13/status/1944372958106890423 2025-07-13 12:27:13,CarlyGriggs13,domain,altmatrics.com.arllentrades.com,#phishing,https://x.com/CarlyGriggs13/status/1944373047944700101 2025-07-13 12:27:13,CarlyGriggs13,url,https://altmatrics.com.arllentrades.com,#phishing,https://x.com/CarlyGriggs13/status/1944373047944700101 2025-07-13 12:27:31,CarlyGriggs13,domain,altscoinsinvestpro.com,#phishing,https://x.com/CarlyGriggs13/status/1944373121928089644 2025-07-13 12:27:31,CarlyGriggs13,url,https://altscoinsinvestpro.com,#phishing,https://x.com/CarlyGriggs13/status/1944373121928089644 2025-07-13 12:27:48,CarlyGriggs13,url,https://alphatrustholdings.com,#phishing,https://x.com/CarlyGriggs13/status/1944373192933478561 2025-07-13 12:27:48,CarlyGriggs13,domain,alphatrustholdings.com,#phishing,https://x.com/CarlyGriggs13/status/1944373192933478561 2025-07-13 12:28:25,CarlyGriggs13,domain,americassmartlogistic.com.unitedpharmacystores.com,#phishing,https://x.com/CarlyGriggs13/status/1944373349854986382 2025-07-13 12:28:25,CarlyGriggs13,url,https://americassmartlogistic.com.unitedpharmacystores.com,#phishing,https://x.com/CarlyGriggs13/status/1944373349854986382 2025-07-13 12:53:51,CarlyGriggs13,url,https://zyptoxchange.com/dashboard.php,#phishing,https://x.com/CarlyGriggs13/status/1944379748534063197 2025-07-13 12:53:51,CarlyGriggs13,domain,zyptoxchange.com,#phishing,https://x.com/CarlyGriggs13/status/1944379748534063197 2025-07-13 12:54:11,CarlyGriggs13,domain,btc-live.com,#phishing,https://x.com/CarlyGriggs13/status/1944379833053560949 2025-07-13 12:54:11,CarlyGriggs13,url,http://btc-live.com,#phishing,https://x.com/CarlyGriggs13/status/1944379833053560949 2025-07-13 12:54:35,CarlyGriggs13,url,https://mstrbtc.us,#phishing,https://x.com/CarlyGriggs13/status/1944379933163163790 2025-07-13 12:54:35,CarlyGriggs13,domain,mstrbtc.us,#phishing,https://x.com/CarlyGriggs13/status/1944379933163163790 2025-07-13 12:54:59,CarlyGriggs13,domain,api.ilovenft.fr,#phishing,https://x.com/CarlyGriggs13/status/1944380032899518538 2025-07-13 12:54:59,CarlyGriggs13,url,https://api.ilovenft.fr/EASDASDLJHOSFDFKLSN,#phishing,https://x.com/CarlyGriggs13/status/1944380032899518538 2025-07-13 12:55:19,CarlyGriggs13,domain,hedera-rewards.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944380117880394074 2025-07-13 12:55:19,CarlyGriggs13,url,https://hedera-rewards.com/verify,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944380117880394074 2025-07-13 12:56:10,CarlyGriggs13,domain,voirmaclasse.espion.cc,#phishing,https://x.com/CarlyGriggs13/status/1944380330061758610 2025-07-13 12:56:10,CarlyGriggs13,url,https://voirmaclasse.espion.cc,#phishing,https://x.com/CarlyGriggs13/status/1944380330061758610 2025-07-13 12:56:28,CarlyGriggs13,url,https://btc-live25.com,#phishing,https://x.com/CarlyGriggs13/status/1944380405815120341 2025-07-13 12:56:28,CarlyGriggs13,domain,btc-live25.com,#phishing,https://x.com/CarlyGriggs13/status/1944380405815120341 2025-07-13 12:56:46,CarlyGriggs13,domain,xmrwallet.com,#phishing,https://x.com/CarlyGriggs13/status/1944380482688332110 2025-07-13 12:56:46,CarlyGriggs13,url,https://www.xmrwallet.com/app.html#/login.html,#phishing,https://x.com/CarlyGriggs13/status/1944380482688332110 2025-07-13 12:57:12,CarlyGriggs13,domain,msmw91kg.pages.dev,#phishing,https://x.com/CarlyGriggs13/status/1944380592470040729 2025-07-13 12:57:12,CarlyGriggs13,url,https://msmw91kg.pages.dev/eedb0d38-f534-4ce5-ae55-df91c02bf38a?uuid=eedb0d38-f534-4ce5-ae55-df91c02bf38a,#phishing,https://x.com/CarlyGriggs13/status/1944380592470040729 2025-07-13 14:00:08,urldna_bot,url,https://msportbonus201bus.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944396429474070619 2025-07-13 14:00:08,urldna_bot,domain,msportbonus201bus.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944396429474070619 2025-07-13 14:41:40,CarlyGriggs13,domain,foundation-coredao.com,#phishing,https://x.com/CarlyGriggs13/status/1944406880681406565 2025-07-13 14:41:40,CarlyGriggs13,url,https://foundation-coredao.com/captcha/,#phishing,https://x.com/CarlyGriggs13/status/1944406880681406565 2025-07-13 14:49:59,CarlyGriggs13,domain,safewebfix.com,#phishing,https://x.com/CarlyGriggs13/status/1944408972695364004 2025-07-13 14:49:59,CarlyGriggs13,url,https://www.safewebfix.com/user/form.php?issue=MM,#phishing,https://x.com/CarlyGriggs13/status/1944408972695364004 2025-07-13 15:24:27,skocherhan,url,http://healthylivinggg.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,educatorshub.org,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://funjaki.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,christiansingleswebsite.org,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://buahkita.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,barangberkah.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://barangberkah.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,healthylivinggg.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://christiansingleswebsite.org,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://educatorshub.org,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,funjaki.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://outsourcebridge.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,buahkita.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://animefields.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,online-sportspiele.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://online-sportspiele.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,sindangkasihnews.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,animefields.site,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,abbeysorchids.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://abbeysorchids.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,domain,outsourcebridge.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:24:27,skocherhan,url,http://sindangkasihnews.com,,https://x.com/skocherhan/status/1944417646599918050 2025-07-13 15:38:23,skocherhan,domain,crocoprimecustm.store,,https://x.com/skocherhan/status/1944421156506714594 2025-07-13 15:38:23,skocherhan,url,https://crocoprimecustm.store,,https://x.com/skocherhan/status/1944421156506714594 2025-07-13 16:00:11,urldna_bot,domain,cash-thrust.live,#phishing #scam,https://x.com/urldna_bot/status/1944426640152383783 2025-07-13 16:00:11,urldna_bot,url,http://cash-thrust.live/mortgage/better-mortgage-review,#phishing #scam,https://x.com/urldna_bot/status/1944426640152383783 2025-07-13 16:03:02,CarlyGriggs13,domain,detectca.easysol.net,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944427359207121380 2025-07-13 16:03:02,CarlyGriggs13,url,https://detectca.easysol.net/detectca/scripts/l46p76nmAJPkUtXL4JCzsT9Fe3uflf/detect.js,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944427359207121380 2025-07-13 16:17:47,skocherhan,domain,logincdn.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,domain,ftp.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,url,http://ftp.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,url,http://logincdn.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,domain,outlook.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,md5,cca039482a104d5d9b04bd2e20f6bb64,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,url,http://cca039482a104d5d9b04bd2e20f6bb64.apm.us-west-2.aws.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,domain,usa.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,url,http://usa.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,domain,cca039482a104d5d9b04bd2e20f6bb64.apm.us-west-2.aws.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:17:47,skocherhan,url,http://outlook.msicrosoft.com,,https://x.com/skocherhan/status/1944431070679625844 2025-07-13 16:51:41,Fact_Finder03,md5,2d4f5e46ac40bb2189cfdc375d388c25,#ransomware,https://x.com/Fact_Finder03/status/1944439600551809056 2025-07-13 16:54:52,skocherhan,domain,agenciacrabli.com,#opendir #NetSupport,https://x.com/skocherhan/status/1944440400585875794 2025-07-13 16:54:52,skocherhan,url,http://agenciacrabli.com/1,#opendir #NetSupport,https://x.com/skocherhan/status/1944440400585875794 2025-07-13 17:05:30,CarlyGriggs13,url,https://sleamcoommnunlty.com/poi2789829842981099842010929489209180924,#phishing,https://x.com/CarlyGriggs13/status/1944443077235507680 2025-07-13 17:05:30,CarlyGriggs13,domain,sleamcoommnunlty.com,#phishing,https://x.com/CarlyGriggs13/status/1944443077235507680 2025-07-13 17:18:21,skocherhan,url,http://5.181.159.203,#opendir #NetSupport,https://x.com/skocherhan/status/1944446313455641056 2025-07-13 17:49:50,skocherhan,url,http://judahshop.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,ip,185.163.45.61,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,domain,judahshop.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,url,http://mylybnews.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,domain,intellegrationllc.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,url,http://kangekatenda.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,domain,kangekatenda.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,domain,marianoforgovernor.org,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,url,http://185.163.45.61,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,domain,mylybnews.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,url,http://marianoforgovernor.org,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 17:49:50,skocherhan,url,http://intellegrationllc.com,,https://x.com/skocherhan/status/1944454237016010904 2025-07-13 18:00:10,urldna_bot,url,http://snapchat.googleaccount.inovaperf.me,#phishing #scam,https://x.com/urldna_bot/status/1944456836419043687 2025-07-13 18:00:10,urldna_bot,domain,snapchat.googleaccount.inovaperf.me,#phishing #scam,https://x.com/urldna_bot/status/1944456836419043687 2025-07-13 18:04:54,CarlyGriggs13,domain,sonieclabz.com,#phishing,https://x.com/CarlyGriggs13/status/1944458027106795574 2025-07-13 18:04:54,CarlyGriggs13,url,https://sonieclabz.com,#phishing,https://x.com/CarlyGriggs13/status/1944458027106795574 2025-07-13 18:05:21,CarlyGriggs13,domain,en-live-ledgeer-docs.me-page.com,#phishing,https://x.com/CarlyGriggs13/status/1944458140852080737 2025-07-13 18:05:21,CarlyGriggs13,url,https://en-live-ledgeer-docs.me-page.com/en-us,#phishing,https://x.com/CarlyGriggs13/status/1944458140852080737 2025-07-13 18:05:39,CarlyGriggs13,domain,en-trezor.io,#phishing,https://x.com/CarlyGriggs13/status/1944458216362188966 2025-07-13 18:05:39,CarlyGriggs13,url,https://en-trezor.io,#phishing,https://x.com/CarlyGriggs13/status/1944458216362188966 2025-07-13 18:06:14,CarlyGriggs13,domain,mtaesskileiunz.webflow.io,#phishing,https://x.com/CarlyGriggs13/status/1944458360687907255 2025-07-13 18:06:14,CarlyGriggs13,url,https://mtaesskileiunz.webflow.io,#phishing,https://x.com/CarlyGriggs13/status/1944458360687907255 2025-07-13 18:21:14,skocherhan,domain,2beinflow.com,#NetSupport,https://x.com/skocherhan/status/1944462138179047803 2025-07-13 18:21:14,skocherhan,url,http://2beinflow.com,#NetSupport,https://x.com/skocherhan/status/1944462138179047803 2025-07-13 18:22:47,skocherhan,url,http://dop.ziplink.in,,https://x.com/skocherhan/status/1944462526361763902 2025-07-13 18:22:47,skocherhan,domain,dop.ziplink.in,,https://x.com/skocherhan/status/1944462526361763902 2025-07-13 18:22:47,skocherhan,url,http://ziplink.in,,https://x.com/skocherhan/status/1944462526361763902 2025-07-13 18:22:47,skocherhan,domain,ziplink.in,,https://x.com/skocherhan/status/1944462526361763902 2025-07-13 18:27:13,CarlyGriggs13,url,https://exodus-v2.com,#phishing,https://x.com/CarlyGriggs13/status/1944463644118671757 2025-07-13 18:27:13,CarlyGriggs13,domain,exodus-v2.com,#phishing,https://x.com/CarlyGriggs13/status/1944463644118671757 2025-07-13 18:45:56,drb_ra,url,http://4.197.155.50:31337,#C2 #Sliver,https://x.com/drb_ra/status/1944468351373513094 2025-07-13 18:46:00,drb_ra,url,http://209.38.66.239:31337,#C2 #Sliver,https://x.com/drb_ra/status/1944468371476553928 2025-07-13 18:46:00,drb_ra,ip,209.38.66.239,#C2 #Sliver,https://x.com/drb_ra/status/1944468371476553928 2025-07-13 18:46:05,drb_ra,ip,91.221.190.28,#C2 #Sliver,https://x.com/drb_ra/status/1944468391516885439 2025-07-13 18:46:05,drb_ra,url,http://91.221.190.28:31337,#C2 #Sliver,https://x.com/drb_ra/status/1944468391516885439 2025-07-13 18:46:09,drb_ra,url,http://43.250.175.68:31337,#C2 #Sliver,https://x.com/drb_ra/status/1944468407115719030 2025-07-13 18:46:09,drb_ra,ip,43.250.175.68,#C2 #Sliver,https://x.com/drb_ra/status/1944468407115719030 2025-07-13 18:46:14,drb_ra,url,http://51.38.140.83:31337,#C2 #Sliver,https://x.com/drb_ra/status/1944468428141502576 2025-07-13 18:46:18,drb_ra,url,http://51.38.140.83:8888,#C2 #Sliver,https://x.com/drb_ra/status/1944468443530727658 2025-07-13 18:46:18,drb_ra,ip,51.38.140.83,#C2 #Sliver,https://x.com/drb_ra/status/1944468443530727658 2025-07-13 18:48:21,drb_ra,url,http://13.213.19.51:4839,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944468960608399780 2025-07-13 18:48:21,drb_ra,ip,13.213.19.51,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1944468960608399780 2025-07-13 18:48:26,drb_ra,url,http://98.142.247.3:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1944468982138089843 2025-07-13 18:48:26,drb_ra,ip,98.142.247.3,#C2 #AsyncRAT,https://x.com/drb_ra/status/1944468982138089843 2025-07-13 18:48:31,drb_ra,url,http://82.153.217.192:443,#C2 #Interactsh,https://x.com/drb_ra/status/1944469002199158836 2025-07-13 18:48:34,drb_ra,url,http://82.153.217.192:587,#C2 #Interactsh,https://x.com/drb_ra/status/1944469016833368095 2025-07-13 18:48:34,drb_ra,ip,82.153.217.192,#C2 #Interactsh,https://x.com/drb_ra/status/1944469016833368095 2025-07-13 18:48:39,drb_ra,url,http://189.228.171.242:995,#C2 #Qakbot,https://x.com/drb_ra/status/1944469036806316444 2025-07-13 18:48:39,drb_ra,ip,189.228.171.242,#C2 #Qakbot,https://x.com/drb_ra/status/1944469036806316444 2025-07-13 18:48:45,drb_ra,url,http://94.49.37.25:995,#C2 #Qakbot,https://x.com/drb_ra/status/1944469060978409498 2025-07-13 18:48:49,drb_ra,ip,94.49.37.25,#C2 #Qakbot,https://x.com/drb_ra/status/1944469080637133195 2025-07-13 18:48:49,drb_ra,url,http://94.49.37.25:443,#C2 #Qakbot,https://x.com/drb_ra/status/1944469080637133195 2025-07-13 18:48:55,drb_ra,ip,217.165.61.172,#C2 #Qakbot,https://x.com/drb_ra/status/1944469102346584466 2025-07-13 18:48:55,drb_ra,url,http://217.165.61.172:443,#C2 #Qakbot,https://x.com/drb_ra/status/1944469102346584466 2025-07-13 18:49:00,drb_ra,ip,213.209.150.225,#Havoc #C2,https://x.com/drb_ra/status/1944469123343462759 2025-07-13 18:49:00,drb_ra,url,http://213.209.150.225:443,#Havoc #C2,https://x.com/drb_ra/status/1944469123343462759 2025-07-13 18:49:05,drb_ra,url,http://172.233.44.144:443,#Havoc #C2,https://x.com/drb_ra/status/1944469144293822791 2025-07-13 18:49:05,drb_ra,ip,172.233.44.144,#Havoc #C2,https://x.com/drb_ra/status/1944469144293822791 2025-07-13 18:49:10,drb_ra,url,http://3.85.192.21:443,#Havoc #C2,https://x.com/drb_ra/status/1944469164900380769 2025-07-13 18:49:26,skocherhan,sha256,69e0a286d789a2b7010e93d7b003d184c60fd0931933f925618785197db659c6,,https://x.com/skocherhan/status/1944469234785845350 2025-07-13 18:51:13,drb_ra,ip,85.117.242.173,#C2 #Remcos,https://x.com/drb_ra/status/1944469682817241147 2025-07-13 18:51:13,drb_ra,url,http://85.117.242.173:2404,#C2 #Remcos,https://x.com/drb_ra/status/1944469682817241147 2025-07-13 19:00:31,SarlackLab,ip,81.109.131.3,#C2 #Njrat,https://x.com/SarlackLab/status/1944472024924950832 2025-07-13 19:00:31,SarlackLab,url,http://81.109.131.3:928,#C2 #Njrat,https://x.com/SarlackLab/status/1944472024924950832 2025-07-13 19:19:18,skocherhan,url,http://tciflusa.org,#NetSupport,https://x.com/skocherhan/status/1944476750227902938 2025-07-13 19:19:18,skocherhan,url,http://94.158.245.132,#NetSupport,https://x.com/skocherhan/status/1944476750227902938 2025-07-13 19:19:18,skocherhan,domain,tciflusa.org,#NetSupport,https://x.com/skocherhan/status/1944476750227902938 2025-07-13 19:19:18,skocherhan,ip,94.158.245.132,#NetSupport,https://x.com/skocherhan/status/1944476750227902938 2025-07-13 19:46:01,skocherhan,sha256,238a4f3c6f80164fbed446aaa1d311baed4827f7a4952cd0d367d83242fbfa9d,#malware,https://x.com/skocherhan/status/1944483475169612266 2025-07-13 19:53:15,skocherhan,url,http://43.226.78.44:8000,,https://x.com/skocherhan/status/1944485293182394372 2025-07-13 19:53:15,skocherhan,md5,b2524709c9b62c107eaa1235db37cbdb,,https://x.com/skocherhan/status/1944485293182394372 2025-07-13 19:53:15,skocherhan,ip,43.226.78.44,,https://x.com/skocherhan/status/1944485293182394372 2025-07-13 20:00:07,urldna_bot,domain,optimum8799.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944487021130510416 2025-07-13 20:00:07,urldna_bot,url,https://optimum8799.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944487021130510416 2025-07-13 20:00:57,skocherhan,ip,120.78.149.238,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:00:57,skocherhan,domain,apex.down.listw.top,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:00:57,skocherhan,ip,120.79.66.71,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:00:57,skocherhan,url,http://120.78.149.238:12368,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:00:57,skocherhan,domain,apex.rep.listw.top,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:00:57,skocherhan,url,http://apex.rep.listw.top,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:00:57,skocherhan,url,http://apex.down.listw.top,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:00:57,skocherhan,url,http://120.79.66.71:8081,,https://x.com/skocherhan/status/1944487230954766670 2025-07-13 20:36:07,skocherhan,url,https://pub-7e56d4c343434b84a758275c5e67a5fc.r2.dev/Tax_Return_2025_pdf.msi,,https://x.com/skocherhan/status/1944496082471297190 2025-07-13 20:36:07,skocherhan,md5,7e56d4c343434b84a758275c5e67a5fc,,https://x.com/skocherhan/status/1944496082471297190 2025-07-13 20:36:07,skocherhan,domain,pub-7e56d4c343434b84a758275c5e67a5fc.r2.dev,,https://x.com/skocherhan/status/1944496082471297190 2025-07-13 20:39:51,skocherhan,url,http://github.com/nnnnnalm22,,https://x.com/skocherhan/status/1944497023052628084 2025-07-13 21:00:04,threatquery,ip,79.215.191.81,#C2 #AsyncRAT #malware,https://x.com/threatquery/status/1944502110013300831 2025-07-13 21:00:04,threatquery,url,http://79.215.191.81,#C2 #AsyncRAT #malware,https://x.com/threatquery/status/1944502110013300831 2025-07-13 21:00:05,threatquery,ip,206.233.249.153,#C2 #AsyncRAT #malware,https://x.com/threatquery/status/1944502113830060397 2025-07-13 21:00:05,threatquery,url,http://206.233.249.153,#C2 #AsyncRAT #malware,https://x.com/threatquery/status/1944502113830060397 2025-07-13 21:00:05,threatquery,url,http://45.204.211.49,#C2 #AsyncRAT #malware,https://x.com/threatquery/status/1944502112148181051 2025-07-13 21:00:05,threatquery,ip,45.204.211.49,#C2 #AsyncRAT #malware,https://x.com/threatquery/status/1944502112148181051 2025-07-13 21:12:45,1ZRR4H,sha256,6ce0e2df1698a965627bd7afa2cf58a86cdb3cc691a150b0ad0e19eaa49c0481,#opendir,https://x.com/1ZRR4H/status/1944505298728702147 2025-07-13 21:12:45,1ZRR4H,sha256,28e318a9ed1580a14ef9b6a71d6a0ec5031aae9d2b748b2ed70c67cfa24a85b4,#opendir,https://x.com/1ZRR4H/status/1944505298728702147 2025-07-13 21:12:45,1ZRR4H,ip,148.135.120.162,#opendir,https://x.com/1ZRR4H/status/1944505298728702147 2025-07-13 21:12:45,1ZRR4H,url,http://148.135.120.162:8443,#opendir,https://x.com/1ZRR4H/status/1944505298728702147 2025-07-13 21:18:31,skocherhan,url,http://chinavipjobs.com,,https://x.com/skocherhan/status/1944506751208050774 2025-07-13 21:18:31,skocherhan,domain,chinavipjobs.com,,https://x.com/skocherhan/status/1944506751208050774 2025-07-13 21:25:59,drb_ra,url,https://45.76.172.9/www/handle/doc,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944508629811663327 2025-07-13 21:25:59,drb_ra,url,http://194.102.104.25:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944508629811663327 2025-07-13 21:25:59,drb_ra,ip,194.102.104.25,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944508629811663327 2025-07-13 21:25:59,drb_ra,ip,45.76.172.9,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944508629811663327 2025-07-13 22:00:08,urldna_bot,domain,chasefraudprevention.com,#scam #phishing,https://x.com/urldna_bot/status/1944517223587914017 2025-07-13 22:00:08,urldna_bot,url,http://chasefraudprevention.com/login/,#scam #phishing,https://x.com/urldna_bot/status/1944517223587914017 2025-07-13 22:29:45,louismartinox,domain,Coinbridge.me,#scam,https://x.com/louismartinox/status/1944524676828647892 2025-07-13 22:29:45,louismartinox,url,http://Coinbridge.me,#scam,https://x.com/louismartinox/status/1944524676828647892 2025-07-13 23:06:33,drb_ra,url,http://38.12.36.139:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533939928064446 2025-07-13 23:06:33,drb_ra,ip,38.12.36.139,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533939928064446 2025-07-13 23:06:38,drb_ra,url,http://159.75.155.46:2096,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533961796890814 2025-07-13 23:06:38,drb_ra,ip,159.75.155.46,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533961796890814 2025-07-13 23:06:43,drb_ra,url,http://23.80.81.218:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533982802215196 2025-07-13 23:06:43,drb_ra,ip,23.80.81.218,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533982802215196 2025-07-13 23:06:47,drb_ra,url,http://193.37.69.42:4432,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533999130460364 2025-07-13 23:06:47,drb_ra,ip,193.37.69.42,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944533999130460364 2025-07-13 23:06:54,drb_ra,url,http://47.245.61.75:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944534027261936063 2025-07-13 23:06:54,drb_ra,ip,47.245.61.75,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944534027261936063 2025-07-13 23:09:10,CarlyGriggs13,domain,trxbridge.org,#phishing,https://x.com/CarlyGriggs13/status/1944534598374896121 2025-07-13 23:09:10,CarlyGriggs13,url,https://trxbridge.org,#phishing,https://x.com/CarlyGriggs13/status/1944534598374896121 2025-07-13 23:29:45,masaomi346,domain,apple.wgquan.com,#phishing,https://x.com/masaomi346/status/1944539778650914936 2025-07-13 23:29:45,masaomi346,url,https://www.apple.wgquan.com/ap/gnin/opnid/apple/jp/,#phishing,https://x.com/masaomi346/status/1944539778650914936 2025-07-14 00:00:11,urldna_bot,domain,new.atsspb.ru,#scam #phishing,https://x.com/urldna_bot/status/1944547435696566320 2025-07-14 00:00:11,urldna_bot,url,https://new.atsspb.ru,#scam #phishing,https://x.com/urldna_bot/status/1944547435696566320 2025-07-14 01:22:14,catnap707,domain,moveid-storesco.shop,#phishing,https://x.com/catnap707/status/1944568084473557499 2025-07-14 01:22:14,catnap707,url,http://moveid-storesco.shop/idloud/support,#phishing,https://x.com/catnap707/status/1944568084473557499 2025-07-14 01:22:14,catnap707,url,http://95.182.100.57,#phishing,https://x.com/catnap707/status/1944568084473557499 2025-07-14 01:22:14,catnap707,ip,95.182.100.57,#phishing,https://x.com/catnap707/status/1944568084473557499 2025-07-14 01:22:17,fbgwls245,md5,505D23C7A66A02239056AC3CFED24132,#ransomware,https://x.com/fbgwls245/status/1944568098138607978 2025-07-14 01:44:16,catnap707,url,http://9mcs5he7.top/Pu4Wdv,#phishing,https://x.com/catnap707/status/1944573628647088182 2025-07-14 01:44:16,catnap707,domain,9mcs5he7.top,#phishing,https://x.com/catnap707/status/1944573628647088182 2025-07-14 01:44:16,catnap707,url,http://172.67.176.218,#phishing,https://x.com/catnap707/status/1944573628647088182 2025-07-14 01:47:12,catnap707,url,http://www.apple.wgquan.com/ap/gnin/opnid/apple/jp,#phishing,https://x.com/catnap707/status/1944574366894985691 2025-07-14 01:47:12,catnap707,url,http://134.122.150.31,#phishing,https://x.com/catnap707/status/1944574366894985691 2025-07-14 01:47:12,catnap707,ip,134.122.150.31,#phishing,https://x.com/catnap707/status/1944574366894985691 2025-07-14 01:47:12,catnap707,domain,apple.wgquan.com,#phishing,https://x.com/catnap707/status/1944574366894985691 2025-07-14 02:00:09,urldna_bot,url,https://ma1gicmailup4ate.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944577626187727172 2025-07-14 02:00:09,urldna_bot,domain,ma1gicmailup4ate.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944577626187727172 2025-07-14 02:07:05,romonlyht,ip,211.1.226.32,#phishing,https://x.com/romonlyht/status/1944579370125021483 2025-07-14 02:07:05,romonlyht,ip,110.238.64.211,#phishing,https://x.com/romonlyht/status/1944579370125021483 2025-07-14 02:07:05,romonlyht,url,http://bqbq.de/gjgkhfiy/index.html?uid=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1944579372171833569 2025-07-14 02:07:05,romonlyht,ip,202.61.198.34,#phishing,https://x.com/romonlyht/status/1944579372171833569 2025-07-14 02:07:05,romonlyht,url,https://bqbq.de/gjgkhfiy/index.html?uid=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1944579374105428249 2025-07-14 02:07:05,romonlyht,url,https://bqbq.de/gjgkhfiy/bot.php,#phishing,https://x.com/romonlyht/status/1944579374105428249 2025-07-14 02:07:05,romonlyht,domain,bqbq.de,#phishing,https://x.com/romonlyht/status/1944579374105428249 2025-07-14 02:08:25,skocherhan,domain,sta.mehe.gov.lb,,https://x.com/skocherhan/status/1944579707925590256 2025-07-14 02:08:25,skocherhan,url,https://sta.mehe.gov.lb/login.aspx,,https://x.com/skocherhan/status/1944579707925590256 2025-07-14 02:19:12,skocherhan,sha256,7d514021c472e6e17f587ed30555d3f120653e6c7f8dc25d2331514b92ffd7bc,#APT,https://x.com/skocherhan/status/1944582422864990470 2025-07-14 02:40:53,romonlyht,ip,221.128.128.202,#phishing,https://x.com/romonlyht/status/1944587876668489957 2025-07-14 02:40:53,romonlyht,url,https://moveid-storesco.shop/idloud/support/,#phishing,https://x.com/romonlyht/status/1944587876668489957 2025-07-14 02:40:53,romonlyht,url,https://moveid-storesco.shop/idloud/support,#phishing,https://x.com/romonlyht/status/1944587876668489957 2025-07-14 02:41:57,romonlyht,url,https://moveic-storesco.shop/idloud/support,#phishing,https://x.com/romonlyht/status/1944588148635472244 2025-07-14 02:41:57,romonlyht,ip,221.128.128.108,#phishing,https://x.com/romonlyht/status/1944588148635472244 2025-07-14 02:41:58,romonlyht,url,https://moveic-storesco.shop/idloud/support/,#phishing,https://x.com/romonlyht/status/1944588150531322242 2025-07-14 02:41:58,romonlyht,domain,moveic-storesco.shop,#phishing,https://x.com/romonlyht/status/1944588150531322242 2025-07-14 02:42:51,romonlyht,url,https://re-saves.com/login,#phishing,https://x.com/romonlyht/status/1944588372602958136 2025-07-14 02:42:51,romonlyht,ip,170.205.30.9,#phishing,https://x.com/romonlyht/status/1944588372602958136 2025-07-14 02:42:51,romonlyht,url,https://re-saves.com/apple-ids,#phishing,https://x.com/romonlyht/status/1944588372602958136 2025-07-14 02:42:51,romonlyht,ip,101.110.9.81,#phishing,https://x.com/romonlyht/status/1944588372602958136 2025-07-14 02:42:51,romonlyht,domain,re-saves.com,#phishing,https://x.com/romonlyht/status/1944588372602958136 2025-07-14 02:54:09,romonlyht,domain,gdujcxt.nqyso.cn,#phishing,https://x.com/romonlyht/status/1944591216022032605 2025-07-14 02:54:09,romonlyht,url,https://rakutenuygufikr.com%E2%88%95serxkynl@gdujcxt.nqyso.cn/4p4mb/1ck44.co.jp,#phishing,https://x.com/romonlyht/status/1944591216022032605 2025-07-14 02:54:09,romonlyht,domain,rakutenuygufikr.com%E2%88%95serxkynl@gdujcxt.nqyso.cn,#phishing,https://x.com/romonlyht/status/1944591216022032605 2025-07-14 02:54:09,romonlyht,url,http://gdujcxt.nqyso.cn/4p4mb/1ck44.co.jp,#phishing,https://x.com/romonlyht/status/1944591216022032605 2025-07-14 02:54:09,romonlyht,ip,218.86.73.47,#phishing,https://x.com/romonlyht/status/1944591216022032605 2025-07-14 02:55:25,romonlyht,ip,120.43.35.183,#phishing,https://x.com/romonlyht/status/1944591535393411132 2025-07-14 02:55:25,romonlyht,domain,rakutenjlthvgzk.com%E2%88%95ybjbjd@vfylenj.ahuqh.cn,#phishing,https://x.com/romonlyht/status/1944591535393411132 2025-07-14 02:55:25,romonlyht,url,https://rakutenjlthvgzk.com%E2%88%95ybjbjd@vfylenj.ahuqh.cn/1g9gng5p3/nfwxy.co.jp,#phishing,https://x.com/romonlyht/status/1944591535393411132 2025-07-14 02:55:25,romonlyht,domain,vfylenj.ahuqh.cn,#phishing,https://x.com/romonlyht/status/1944591535393411132 2025-07-14 02:55:25,romonlyht,url,http://vfylenj.ahuqh.cn/1g9gng5p3/nfwxy.co.jp,#phishing,https://x.com/romonlyht/status/1944591535393411132 2025-07-14 02:55:26,romonlyht,url,https://sssagawanauthoritati.mefound.com/letianx/,#phishing,https://x.com/romonlyht/status/1944591540330086682 2025-07-14 02:55:26,romonlyht,domain,sssagawanauthoritati.mefound.com,#phishing,https://x.com/romonlyht/status/1944591540330086682 2025-07-14 03:06:56,romonlyht,ip,116.208.102.170,#phishing,https://x.com/romonlyht/status/1944594434051477840 2025-07-14 03:06:57,romonlyht,domain,e907b0be.cn,#phishing,https://x.com/romonlyht/status/1944594436039848173 2025-07-14 03:06:57,romonlyht,url,http://e907b0be.cn/scqhgilgwj.co.jp,#phishing,https://x.com/romonlyht/status/1944594436039848173 2025-07-14 03:08:39,romonlyht,ip,114.233.71.54,#phishing,https://x.com/romonlyht/status/1944594866853515586 2025-07-14 03:08:40,romonlyht,url,https://sdaequidasreddomainsad.mrbonus.com/anazx/,#phishing,https://x.com/romonlyht/status/1944594870414250494 2025-07-14 03:08:40,romonlyht,domain,sdaequidasreddomainsad.mrbonus.com,#phishing,https://x.com/romonlyht/status/1944594870414250494 2025-07-14 03:08:40,romonlyht,ip,165.154.231.234,#phishing,https://x.com/romonlyht/status/1944594870414250494 2025-07-14 03:42:16,romonlyht,domain,yrxtgyjooj.tyalg.cn,#phishing,https://x.com/romonlyht/status/1944603327536546233 2025-07-14 03:42:16,romonlyht,ip,120.34.156.9,#phishing,https://x.com/romonlyht/status/1944603323962683617 2025-07-14 03:42:16,romonlyht,url,http://yrxtgyjooj.tyalg.cn/ysnebnqh.co.jp,#phishing,https://x.com/romonlyht/status/1944603327536546233 2025-07-14 03:44:21,romonlyht,ip,202.110.0.167,#phishing,https://x.com/romonlyht/status/1944603850700128306 2025-07-14 03:44:22,romonlyht,url,http://eadnpsn.ghneq.cn/tlcitpcp.co.jp,#phishing,https://x.com/romonlyht/status/1944603854005305846 2025-07-14 03:44:22,romonlyht,domain,eadnpsn.ghneq.cn,#phishing,https://x.com/romonlyht/status/1944603854005305846 2025-07-14 03:44:22,romonlyht,url,https://oooequireddomainsad.zzux.com/docomox,#phishing,https://x.com/romonlyht/status/1944603854005305846 2025-07-14 03:44:23,romonlyht,url,https://oooequireddomainsad.zzux.com/docomox/,#phishing,https://x.com/romonlyht/status/1944603856488546474 2025-07-14 03:44:23,romonlyht,domain,oooequireddomainsad.zzux.com,#phishing,https://x.com/romonlyht/status/1944603856488546474 2025-07-14 03:51:40,romonlyht,ip,131.100.73.121,#phishing,https://x.com/romonlyht/status/1944605693136507342 2025-07-14 03:51:40,romonlyht,url,https://gaianotes.com%E2%88%95RdovdmuRE%E2%88%95QJiApjLW%E2%88%95rvlilphTd@1vva.pw/92nv2,#phishing,https://x.com/romonlyht/status/1944605693136507342 2025-07-14 03:51:40,romonlyht,url,http://1vva.pw/92nv2,#phishing,https://x.com/romonlyht/status/1944605693136507342 2025-07-14 03:51:40,romonlyht,domain,gaianotes.com%E2%88%95RdovdmuRE%E2%88%95QJiApjLW%E2%88%95rvlilphTd@1vva.pw,#phishing,https://x.com/romonlyht/status/1944605693136507342 2025-07-14 03:51:40,romonlyht,domain,1vva.pw,#phishing,https://x.com/romonlyht/status/1944605693136507342 2025-07-14 04:00:09,urldna_bot,url,https://sallyaln12243927.activehosted.com,#scam #phishing,https://x.com/urldna_bot/status/1944607827256803541 2025-07-14 04:00:09,urldna_bot,domain,sallyaln12243927.activehosted.com,#scam #phishing,https://x.com/urldna_bot/status/1944607827256803541 2025-07-14 04:05:06,romonlyht,ip,216.118.240.234,#phishing,https://x.com/romonlyht/status/1944609071442591834 2025-07-14 04:05:06,romonlyht,url,https://www.n8b8m.cc/?token=PT13WWhoek00STJObEp6TWpkelkyVVRZNm9UYWlObk82QW5hdVVtYnU0MmJwUm1MNHNHUXI1MmF1a1dia,#phishing,https://x.com/romonlyht/status/1944609071442591834 2025-07-14 04:05:06,romonlyht,domain,n8b8m.cc,#phishing,https://x.com/romonlyht/status/1944609071442591834 2025-07-14 04:05:07,romonlyht,domain,sbveryimport-servc.ykv97j5r.com,#phishing,https://x.com/romonlyht/status/1944609075473600709 2025-07-14 04:05:07,romonlyht,url,https://sbveryimport-servc.ykv97j5r.com/jp,#phishing,https://x.com/romonlyht/status/1944609075473600709 2025-07-14 04:05:07,romonlyht,url,https://sbveryimport-servc.ykv97j5r.com/jp/,#phishing,https://x.com/romonlyht/status/1944609075473600709 2025-07-14 04:17:24,romonlyht,url,http://usksd.bfkkse.cn/jdfqaqrjf/rbcisqfuix.co.jp,#phishing,https://x.com/romonlyht/status/1944612168894218652 2025-07-14 04:17:24,romonlyht,domain,usksd.bfkkse.cn,#phishing,https://x.com/romonlyht/status/1944612168894218652 2025-07-14 04:17:24,romonlyht,ip,113.223.28.200,#phishing,https://x.com/romonlyht/status/1944612168894218652 2025-07-14 04:17:24,romonlyht,url,https://www.vnxhbqvxhv.jp%E2%88%95tcpoionl@usksd.bfkkse.cn/jdfqaqrjf/rbcisqfuix.co.jp,#phishing,https://x.com/romonlyht/status/1944612168894218652 2025-07-14 04:17:24,romonlyht,domain,vnxhbqvxhv.jp%E2%88%95tcpoionl@usksd.bfkkse.cn,#phishing,https://x.com/romonlyht/status/1944612168894218652 2025-07-14 04:17:26,romonlyht,domain,sssagawanauthoritati.mrbasic.com,#phishing,https://x.com/romonlyht/status/1944612175693140428 2025-07-14 04:17:26,romonlyht,url,https://sssagawanauthoritati.mrbasic.com/visaz,#phishing,https://x.com/romonlyht/status/1944612175693140428 2025-07-14 04:17:26,romonlyht,url,https://sssagawanauthoritati.mrbasic.com/visaz/,#phishing,https://x.com/romonlyht/status/1944612175693140428 2025-07-14 04:18:43,romonlyht,url,http://zrowc.bfkkse.cn/fwvqh/zilgldw.co.jp,#phishing,https://x.com/romonlyht/status/1944612500110205242 2025-07-14 04:18:43,romonlyht,url,https://www.ktclithhz.jp%E2%88%95rakknjoqbh@zrowc.bfkkse.cn/fwvqh/zilgldw.co.jp,#phishing,https://x.com/romonlyht/status/1944612500110205242 2025-07-14 04:18:43,romonlyht,domain,ktclithhz.jp%E2%88%95rakknjoqbh@zrowc.bfkkse.cn,#phishing,https://x.com/romonlyht/status/1944612500110205242 2025-07-14 04:18:43,romonlyht,domain,zrowc.bfkkse.cn,#phishing,https://x.com/romonlyht/status/1944612500110205242 2025-07-14 04:18:45,romonlyht,url,https://aaasagawanauthoritati.zyns.com/visaz/,#phishing,https://x.com/romonlyht/status/1944612505831219336 2025-07-14 04:18:45,romonlyht,domain,aaasagawanauthoritati.zyns.com,#phishing,https://x.com/romonlyht/status/1944612505831219336 2025-07-14 04:32:45,romonlyht,url,https://masterexaah.com%E2%88%95yudmddrl@piyjssok.ydhgxr.cn/dystvi=vwfkswz1/14s85rgk4.co.jp,#phishing,https://x.com/romonlyht/status/1944616030325858770 2025-07-14 04:32:45,romonlyht,url,http://piyjssok.ydhgxr.cn/dystvi=vwfkswz1/14s85rgk4.co.jp,#phishing,https://x.com/romonlyht/status/1944616030325858770 2025-07-14 04:32:45,romonlyht,ip,218.6.104.44,#phishing,https://x.com/romonlyht/status/1944616030325858770 2025-07-14 04:32:46,romonlyht,domain,masterexaah.com%E2%88%95yudmddrl@piyjssok.ydhgxr.cn,#phishing,https://x.com/romonlyht/status/1944616035459682396 2025-07-14 04:32:46,romonlyht,url,https://masterexaah.com%E2%88%95yudmddrl@piyjssok.ydhgxr.cn/dystvi=vwfkswz1/14s85rgk4.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=0f594e4f15ceb2bfab6743a3806805aa,#phishing,https://x.com/romonlyht/status/1944616035459682396 2025-07-14 04:32:46,romonlyht,domain,piyjssok.ydhgxr.cn,#phishing,https://x.com/romonlyht/status/1944616035459682396 2025-07-14 04:32:46,romonlyht,url,http://piyjssok.ydhgxr.cn/dystvi=vwfkswz1/14s85rgk4.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=0f594e4f15ceb2bfab6743a3806805aa,#phishing,https://x.com/romonlyht/status/1944616035459682396 2025-07-14 04:32:46,romonlyht,md5,0f594e4f15ceb2bfab6743a3806805aa,#phishing,https://x.com/romonlyht/status/1944616035459682396 2025-07-14 04:32:47,romonlyht,url,https://sdaequidasreddomainsad.yourtrap.com/wanshidasda,#phishing,https://x.com/romonlyht/status/1944616037510689279 2025-07-14 04:32:47,romonlyht,domain,sdaequidasreddomainsad.yourtrap.com,#phishing,https://x.com/romonlyht/status/1944616037510689279 2025-07-14 04:32:47,romonlyht,url,https://sdaequidasreddomainsad.yourtrap.com/wanshidasda/,#phishing,https://x.com/romonlyht/status/1944616037510689279 2025-07-14 04:33:06,skocherhan,ip,45.125.59.118,,https://x.com/skocherhan/status/1944616118536012179 2025-07-14 04:33:06,skocherhan,url,http://45.125.59.118,,https://x.com/skocherhan/status/1944616118536012179 2025-07-14 04:36:31,romonlyht,url,http://pdkapsao.hoanur.cn/frf=wu734ui,#phishing,https://x.com/romonlyht/status/1944616979173949804 2025-07-14 04:36:31,romonlyht,ip,27.29.148.213,#phishing,https://x.com/romonlyht/status/1944616979173949804 2025-07-14 04:36:31,romonlyht,url,https://mastergasstf.com%E2%88%95bqbgqdai@pdkapsao.hoanur.cn/frf=wu734ui,#phishing,https://x.com/romonlyht/status/1944616979173949804 2025-07-14 04:36:32,romonlyht,url,http://pdkapsao.hoanur.cn/frf=wu734ui8/3jnxk1dyi7.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=532ac976b4c5a911ca72305938e0d5aa,#phishing,https://x.com/romonlyht/status/1944616983057813933 2025-07-14 04:36:32,romonlyht,domain,pdkapsao.hoanur.cn,#phishing,https://x.com/romonlyht/status/1944616983057813933 2025-07-14 04:36:32,romonlyht,md5,532ac976b4c5a911ca72305938e0d5aa,#phishing,https://x.com/romonlyht/status/1944616983057813933 2025-07-14 04:36:32,romonlyht,url,https://mastergasstf.com%E2%88%95bqbgqdai@pdkapsao.hoanur.cn/frf=wu734ui8/3jnxk1dyi7.co.jp?timezone=Asia%2FTokyo&lang=ja&platform=iPhone&signed=QXNpYS9Ub2t5b2phaVBob25l&session_token=532ac976b4c5a911ca72305938e0d5aa,#phishing,https://x.com/romonlyht/status/1944616983057813933 2025-07-14 04:36:32,romonlyht,domain,mastergasstf.com%E2%88%95bqbgqdai@pdkapsao.hoanur.cn,#phishing,https://x.com/romonlyht/status/1944616983057813933 2025-07-14 04:52:00,romonlyht,domain,9x09f0blyiuu.1ukl4sj7.top,#phishing,https://x.com/romonlyht/status/1944620873639776362 2025-07-14 04:52:00,romonlyht,url,https://kx8qhc.top/Xc1nFj/,#phishing,https://x.com/romonlyht/status/1944620875577434233 2025-07-14 04:52:00,romonlyht,url,https://9x09f0blyiuu.1ukl4sj7.top/token?token=pNUdrJIptqlE3XmYRd7,#phishing,https://x.com/romonlyht/status/1944620873639776362 2025-07-14 04:52:00,romonlyht,ip,177.152.99.233,#phishing,https://x.com/romonlyht/status/1944620873639776362 2025-07-14 04:52:00,romonlyht,domain,kx8qhc.top,#phishing,https://x.com/romonlyht/status/1944620875577434233 2025-07-14 04:52:00,romonlyht,url,https://kx8qhc.top/v1/check?t=1752468123023,#phishing,https://x.com/romonlyht/status/1944620875577434233 2025-07-14 04:52:00,romonlyht,url,https://kx8qhc.top/Xc1nFj?t=1752468123023,#phishing,https://x.com/romonlyht/status/1944620875577434233 2025-07-14 04:54:04,romonlyht,ip,128.201.154.187,#phishing,https://x.com/romonlyht/status/1944621394329047354 2025-07-14 04:54:04,romonlyht,domain,08qjfphnpyiu.1agj6tl4.top,#phishing,https://x.com/romonlyht/status/1944621394329047354 2025-07-14 04:54:04,romonlyht,url,https://08qjfphnpyiu.1agj6tl4.top/token?token=f130bJVjoluuYFcVj1Z,#phishing,https://x.com/romonlyht/status/1944621394329047354 2025-07-14 04:54:05,romonlyht,domain,1nzj1gv9.top,#phishing,https://x.com/romonlyht/status/1944621400385552710 2025-07-14 04:54:05,romonlyht,url,https://1nzj1gv9.top/Xc1nFj?t=1752468449786,#phishing,https://x.com/romonlyht/status/1944621400385552710 2025-07-14 04:54:05,romonlyht,url,https://1nzj1gv9.top/v1/check?t=1752468449786,#phishing,https://x.com/romonlyht/status/1944621400385552710 2025-07-14 04:54:05,romonlyht,url,https://1nzj1gv9.top/Xc1nFj/,#phishing,https://x.com/romonlyht/status/1944621400385552710 2025-07-14 05:06:54,romonlyht,url,https://t.co/HSvgvR4sTf?id=4283934195820114220-9013,#phishing,https://x.com/romonlyht/status/1944624625939579307 2025-07-14 05:06:54,romonlyht,ip,209.87.158.196,#phishing,https://x.com/romonlyht/status/1944624625939579307 2025-07-14 05:06:55,romonlyht,domain,bitsquareassist.digital,#phishing,https://x.com/romonlyht/status/1944624629458584008 2025-07-14 05:06:55,romonlyht,url,https://bitsquareassist.digital/com.php,#phishing,https://x.com/romonlyht/status/1944624627587956819 2025-07-14 05:06:55,romonlyht,url,https://bitsquareassist.digital/sess5332054611,#phishing,https://x.com/romonlyht/status/1944624627587956819 2025-07-14 05:06:55,romonlyht,domain,mcm365.xyz,#phishing,https://x.com/romonlyht/status/1944624627587956819 2025-07-14 05:06:55,romonlyht,url,https://mcm365.xyz/wp-includes/Requests/,#phishing,https://x.com/romonlyht/status/1944624627587956819 2025-07-14 05:06:55,romonlyht,url,https://bitsquareassist.digital/sess5332054611/,#phishing,https://x.com/romonlyht/status/1944624629458584008 2025-07-14 05:08:17,skocherhan,domain,abtsi.com,,https://x.com/skocherhan/status/1944624974318449135 2025-07-14 05:08:17,skocherhan,url,http://abtsi.com,,https://x.com/skocherhan/status/1944624974318449135 2025-07-14 05:08:17,skocherhan,domain,smithenv.com,,https://x.com/skocherhan/status/1944624974318449135 2025-07-14 05:08:17,skocherhan,url,http://smithenv.com,,https://x.com/skocherhan/status/1944624974318449135 2025-07-14 06:00:08,urldna_bot,url,https://webmail-telkomsa-net-mail-login-op.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944638020159693019 2025-07-14 06:00:08,urldna_bot,domain,webmail-telkomsa-net-mail-login-op.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944638020159693019 2025-07-14 06:04:40,catnap707,url,http://sbi-official.homsteart.icu/jp/,#phishing,https://x.com/catnap707/status/1944639160545063024 2025-07-14 06:04:40,catnap707,domain,sbi-official.homsteart.icu,#phishing,https://x.com/catnap707/status/1944639160545063024 2025-07-14 06:04:40,catnap707,url,http://mersinescortbayanlar.com/co.jp,#phishing,https://x.com/catnap707/status/1944639160545063024 2025-07-14 06:04:40,catnap707,url,http://172.67.137.34,#phishing,https://x.com/catnap707/status/1944639160545063024 2025-07-14 06:04:40,catnap707,domain,mersinescortbayanlar.com,#phishing,https://x.com/catnap707/status/1944639160545063024 2025-07-14 06:23:01,drb_ra,url,https://106.42.215.53/archive/static/images/common/phone.svg,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944643777940873308 2025-07-14 06:23:01,drb_ra,url,http://101.37.175.15:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944643777940873308 2025-07-14 06:23:01,drb_ra,ip,101.37.175.15,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944643777940873308 2025-07-14 06:23:01,drb_ra,ip,106.42.215.53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944643777940873308 2025-07-14 06:23:06,drb_ra,url,http://85.175.101.203:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944643800304898173 2025-07-14 06:25:10,drb_ra,ip,85.175.101.203,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944644319131967778 2025-07-14 06:25:10,drb_ra,url,https://192.168.50.2/zOMGAPT,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944644319131967778 2025-07-14 06:25:10,drb_ra,url,http://85.175.101.203:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944644319131967778 2025-07-14 06:40:57,skocherhan,url,http://193.143.1.216,#NetSupport,https://x.com/skocherhan/status/1944648293729898823 2025-07-14 06:40:57,skocherhan,ip,193.143.1.216,#NetSupport,https://x.com/skocherhan/status/1944648293729898823 2025-07-14 06:40:57,skocherhan,domain,resetis.com,#NetSupport,https://x.com/skocherhan/status/1944648293729898823 2025-07-14 06:40:57,skocherhan,url,http://resetis.com,#NetSupport,https://x.com/skocherhan/status/1944648293729898823 2025-07-14 06:47:07,skocherhan,md5,e2af9a35e0e16f0d99d46626a8270b2d,#NetSupport,https://x.com/skocherhan/status/1944649845978865879 2025-07-14 06:47:07,skocherhan,url,http://45.147.196.90,#NetSupport,https://x.com/skocherhan/status/1944649845978865879 2025-07-14 06:47:07,skocherhan,ip,45.147.196.90,#NetSupport,https://x.com/skocherhan/status/1944649845978865879 2025-07-14 06:47:18,drb_ra,ip,51.211.214.44,#Qakbot #C2,https://x.com/drb_ra/status/1944649892523036919 2025-07-14 06:47:18,drb_ra,url,http://51.211.214.44:995,#Qakbot #C2,https://x.com/drb_ra/status/1944649892523036919 2025-07-14 06:47:22,drb_ra,url,http://108.130.154.20:445,#C2,https://x.com/drb_ra/status/1944649908046209130 2025-07-14 06:47:22,drb_ra,ip,108.130.154.20,#C2,https://x.com/drb_ra/status/1944649908046209130 2025-07-14 06:47:26,drb_ra,url,http://45.38.20.86:443,#Havoc #C2,https://x.com/drb_ra/status/1944649923212750925 2025-07-14 06:47:26,drb_ra,ip,45.38.20.86,#Havoc #C2,https://x.com/drb_ra/status/1944649923212750925 2025-07-14 06:47:29,drb_ra,ip,61.4.109.87,#Havoc #C2,https://x.com/drb_ra/status/1944649938345886167 2025-07-14 06:47:29,drb_ra,url,http://61.4.109.87:443,#Havoc #C2,https://x.com/drb_ra/status/1944649938345886167 2025-07-14 06:47:34,drb_ra,ip,78.40.111.172,#Deimos #C2,https://x.com/drb_ra/status/1944649958893777402 2025-07-14 06:47:34,drb_ra,url,http://78.40.111.172:2083,#Deimos #C2,https://x.com/drb_ra/status/1944649958893777402 2025-07-14 06:47:39,drb_ra,ip,154.26.238.180,#Deimos #C2,https://x.com/drb_ra/status/1944649980389548420 2025-07-14 06:47:39,drb_ra,url,http://154.26.238.180:1983,#Deimos #C2,https://x.com/drb_ra/status/1944649980389548420 2025-07-14 06:47:45,drb_ra,ip,123.55.209.30,#Sliver #C2,https://x.com/drb_ra/status/1944650002594177207 2025-07-14 06:47:45,drb_ra,url,http://123.55.209.30:40000,#Sliver #C2,https://x.com/drb_ra/status/1944650002594177207 2025-07-14 06:49:48,drb_ra,url,http://196.251.117.110:2404,#Remcos #C2,https://x.com/drb_ra/status/1944650519584092341 2025-07-14 06:49:48,drb_ra,ip,196.251.117.110,#Remcos #C2,https://x.com/drb_ra/status/1944650519584092341 2025-07-14 06:49:53,drb_ra,url,http://216.250.250.246:8080,#Remcos #C2,https://x.com/drb_ra/status/1944650541130244411 2025-07-14 06:49:57,drb_ra,url,http://216.250.250.246:443,#Remcos #C2,https://x.com/drb_ra/status/1944650556502396979 2025-07-14 06:49:57,drb_ra,ip,216.250.250.246,#Remcos #C2,https://x.com/drb_ra/status/1944650556502396979 2025-07-14 06:50:02,drb_ra,ip,212.115.41.175,#Remcos #C2,https://x.com/drb_ra/status/1944650577595486450 2025-07-14 06:50:02,drb_ra,url,http://212.115.41.175:16465,#Remcos #C2,https://x.com/drb_ra/status/1944650577595486450 2025-07-14 06:50:07,drb_ra,url,http://45.144.214.51:7084,#Remcos #C2,https://x.com/drb_ra/status/1944650599057830195 2025-07-14 06:50:07,drb_ra,ip,45.144.214.51,#Remcos #C2,https://x.com/drb_ra/status/1944650599057830195 2025-07-14 06:50:11,drb_ra,url,http://8.149.141.15:47486,#C2,https://x.com/drb_ra/status/1944650614845165816 2025-07-14 06:50:17,drb_ra,url,http://43.201.51.47:119,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650641638391863 2025-07-14 06:50:17,drb_ra,ip,43.201.51.47,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650641638391863 2025-07-14 06:50:21,drb_ra,url,http://13.208.185.26:119,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650657224384526 2025-07-14 06:50:21,drb_ra,ip,13.208.185.26,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650657224384526 2025-07-14 06:50:27,drb_ra,url,http://3.96.210.38:501,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650683166179669 2025-07-14 06:50:32,drb_ra,url,http://3.80.186.71:1961,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650705043673559 2025-07-14 06:50:38,drb_ra,url,http://16.51.57.139:15976,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650728888299708 2025-07-14 06:50:38,drb_ra,ip,16.51.57.139,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650728888299708 2025-07-14 06:50:43,drb_ra,url,http://3.10.205.17:9999,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650750467961244 2025-07-14 06:50:48,drb_ra,url,http://3.10.205.17:1099,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650771787661544 2025-07-14 06:50:53,drb_ra,url,http://54.241.95.108:5986,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650793098887662 2025-07-14 06:50:53,drb_ra,ip,54.241.95.108,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650793098887662 2025-07-14 06:50:58,drb_ra,ip,16.24.171.193,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650815441965530 2025-07-14 06:50:58,drb_ra,url,http://16.24.171.193:2456,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650815441965530 2025-07-14 06:51:04,drb_ra,url,http://40.176.229.93:20546,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650838028296380 2025-07-14 06:51:04,drb_ra,ip,40.176.229.93,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650838028296380 2025-07-14 06:51:09,drb_ra,url,http://52.47.127.136:6827,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650859251376517 2025-07-14 06:51:09,drb_ra,ip,52.47.127.136,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944650859251376517 2025-07-14 06:51:14,drb_ra,url,http://128.90.106.135:2000,#AsyncRAT #C2,https://x.com/drb_ra/status/1944650880457883660 2025-07-14 06:51:14,drb_ra,ip,128.90.106.135,#AsyncRAT #C2,https://x.com/drb_ra/status/1944650880457883660 2025-07-14 06:51:17,drb_ra,ip,128.90.113.125,#AsyncRAT #C2,https://x.com/drb_ra/status/1944650895410553252 2025-07-14 06:51:17,drb_ra,url,http://128.90.113.125:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1944650895410553252 2025-07-14 06:53:21,drb_ra,url,http://193.149.176.112:4321,#C2,https://x.com/drb_ra/status/1944651412148732081 2025-07-14 06:53:21,drb_ra,ip,193.149.176.112,#C2,https://x.com/drb_ra/status/1944651412148732081 2025-07-14 06:53:26,drb_ra,url,http://162.199.182.209:8080,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1944651435141960073 2025-07-14 06:53:26,drb_ra,ip,162.199.182.209,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1944651435141960073 2025-07-14 07:00:21,SarlackLab,url,http://198.55.98.186:1912,#C2 #RedLine,https://x.com/SarlackLab/status/1944653174041661676 2025-07-14 07:00:21,SarlackLab,ip,198.55.98.186,#C2 #RedLine,https://x.com/SarlackLab/status/1944653174041661676 2025-07-14 07:19:18,JAMESWT_WT,domain,agenciacrabli.com,#NetSupport #opendir,https://x.com/JAMESWT_WT/status/1944657941946044431 2025-07-14 07:19:18,JAMESWT_WT,url,http://5.181.159.203,#NetSupport #opendir,https://x.com/JAMESWT_WT/status/1944657941946044431 2025-07-14 07:19:18,JAMESWT_WT,url,http://agenciacrabli.com/1,#NetSupport #opendir,https://x.com/JAMESWT_WT/status/1944657941946044431 2025-07-14 08:33:50,CarlyGriggs13,domain,token.pump-x.fun,#phishing,https://x.com/CarlyGriggs13/status/1944676699590766964 2025-07-14 08:33:50,CarlyGriggs13,url,https://token.pump-x.fun/$1,#phishing,https://x.com/CarlyGriggs13/status/1944676699590766964 2025-07-14 08:45:17,CarlyGriggs13,url,https://atomic-wallet.digital,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944679581182759283 2025-07-14 08:45:17,CarlyGriggs13,domain,atomic-wallet.digital,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944679581182759283 2025-07-14 08:46:20,CarlyGriggs13,domain,atomicwallet.si,#phishing,https://x.com/CarlyGriggs13/status/1944679848040931612 2025-07-14 08:46:20,CarlyGriggs13,url,https://atomicwallet.si,#phishing,https://x.com/CarlyGriggs13/status/1944679848040931612 2025-07-14 08:46:48,CarlyGriggs13,domain,syncprotocol-v3.world,#phishing,https://x.com/CarlyGriggs13/status/1944679962084253831 2025-07-14 08:46:48,CarlyGriggs13,url,https://syncprotocol-v3.world,#phishing,https://x.com/CarlyGriggs13/status/1944679962084253831 2025-07-14 08:47:13,CarlyGriggs13,domain,dodo-swap.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944680068493480039 2025-07-14 08:47:13,CarlyGriggs13,url,https://dodo-swap.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944680068493480039 2025-07-14 08:47:34,CarlyGriggs13,domain,xn--unksw-5ved1b8fie.obscurion.it.com,#phishing,https://x.com/CarlyGriggs13/status/1944680158528741499 2025-07-14 08:47:34,CarlyGriggs13,url,https://xn--unksw-5ved1b8fie.obscurion.it.com,#phishing,https://x.com/CarlyGriggs13/status/1944680158528741499 2025-07-14 08:47:55,CarlyGriggs13,url,https://jdihnasipadangnampol.pages.dev/OSG138,#phishing,https://x.com/CarlyGriggs13/status/1944680243903545531 2025-07-14 08:47:55,CarlyGriggs13,domain,jdihnasipadangnampol.pages.dev,#phishing,https://x.com/CarlyGriggs13/status/1944680243903545531 2025-07-14 08:49:16,JAMESWT_WT,md5,ec0df04e3acb6f4390e9b29fcfc38089,#RAT #NetSupport,https://x.com/JAMESWT_WT/status/1944680584640627019 2025-07-14 08:56:03,CarlyGriggs13,url,https://degenbase-tips.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944682292779081837 2025-07-14 08:56:03,CarlyGriggs13,domain,degenbase-tips.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944682292779081837 2025-07-14 09:07:40,JAMESWT_WT,md5,063bfce7fb427ee570868706c367b6fc,#NetSupport,https://x.com/JAMESWT_WT/status/1944685213982101650 2025-07-14 09:07:40,JAMESWT_WT,ip,176.65.140.160,#NetSupport,https://x.com/JAMESWT_WT/status/1944685213982101650 2025-07-14 09:34:32,skocherhan,domain,bashupload.com,,https://x.com/skocherhan/status/1944691977947099398 2025-07-14 09:34:32,skocherhan,url,http://bashupload.com,,https://x.com/skocherhan/status/1944691977947099398 2025-07-14 09:37:43,skocherhan,domain,rustyquill.top,#APT,https://x.com/skocherhan/status/1944692777977033036 2025-07-14 09:37:43,skocherhan,url,https://rustyquill.top/shw/the-magnus-protoco1.jpg,#APT,https://x.com/skocherhan/status/1944692777977033036 2025-07-14 09:46:44,CarlyGriggs13,domain,rarible.com-nft.shop,#phishing,https://x.com/CarlyGriggs13/status/1944695047280037911 2025-07-14 09:46:44,CarlyGriggs13,url,https://rarible.com-nft.shop/en/?utm_source=bing_original_site=successfully&utm_source=bing&utm_medium=cpc&utm_term=trading_p,#phishing,https://x.com/CarlyGriggs13/status/1944695047280037911 2025-07-14 09:47:03,CarlyGriggs13,url,http://strategy-labs.io,#phishing,https://x.com/CarlyGriggs13/status/1944695128163074101 2025-07-14 09:47:03,CarlyGriggs13,domain,strategy-labs.io,#phishing,https://x.com/CarlyGriggs13/status/1944695128163074101 2025-07-14 10:00:10,urldna_bot,url,https://ac-besanconmmse.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944698426509144391 2025-07-14 10:00:10,urldna_bot,domain,ac-besanconmmse.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944698426509144391 2025-07-14 10:05:23,JAMESWT_WT,md5,4fa9f678df14a33e2e5480d63604f811,,https://x.com/JAMESWT_WT/status/1944699740521640052 2025-07-14 10:06:07,JAMESWT_WT,domain,sldnys.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,anzkb.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,resdcv.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://resdcv.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,ravisrq.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://clirujf.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://ravisrq.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://assixny.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,callbacywo.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://ineyay.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,negqjcj.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://sldnys.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,clirujf.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,assixny.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://callbacywo.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,heryam.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://horavd.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://167.160.161.12,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://anzkb.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,ineyay.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,ip,167.160.161.12,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://shfsz.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,shfsz.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,mindlevqtg.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://heryam.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,domain,horavd.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://mindlevqtg.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:06:07,JAMESWT_WT,url,http://negqjcj.xyz,,https://x.com/JAMESWT_WT/status/1944699925784080833 2025-07-14 10:07:20,CarlyGriggs13,url,https://aml-view.com,#phishing,https://x.com/CarlyGriggs13/status/1944700231649546580 2025-07-14 10:07:20,CarlyGriggs13,domain,aml-view.com,#phishing,https://x.com/CarlyGriggs13/status/1944700231649546580 2025-07-14 10:24:25,c9lab_soc,url,http://new-binance.com,#scam #phishing,https://x.com/c9lab_soc/status/1944704528692969778 2025-07-14 10:24:25,c9lab_soc,domain,new-binance.com,#scam #phishing,https://x.com/c9lab_soc/status/1944704528692969778 2025-07-14 10:28:11,CarlyGriggs13,url,https://seedcolor.com,#phishing,https://x.com/CarlyGriggs13/status/1944705478086287418 2025-07-14 10:28:11,CarlyGriggs13,domain,seedcolor.com,#phishing,https://x.com/CarlyGriggs13/status/1944705478086287418 2025-07-14 10:48:54,CarlyGriggs13,domain,aavu.co.com,#phishing,https://x.com/CarlyGriggs13/status/1944710690234646852 2025-07-14 10:48:54,CarlyGriggs13,url,https://aavu.co.com/?gad_source=1&gad_campaignid=22790099473&gbraid=0AAAAApGref0lb-bbL9jDM1gxpi9BsnAOM&gclid=CjwKCAjw1dLDBhBoEiwAQNRiQe9VStz6TBtM9PTw72RQXZn0ojgLbgUNKw5-w75t4e0kvJrCpfpNphoCN_8QAvD_BwE,#phishing,https://x.com/CarlyGriggs13/status/1944710690234646852 2025-07-14 10:58:42,drb_ra,ip,34.221.83.3,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713158142103857 2025-07-14 10:58:42,drb_ra,url,http://34.221.83.3:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713158142103857 2025-07-14 10:58:47,drb_ra,url,http://113.46.198.202:3333,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713177628872761 2025-07-14 10:58:47,drb_ra,ip,113.46.198.202,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713177628872761 2025-07-14 10:58:51,drb_ra,url,http://8.130.191.106:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713194213101835 2025-07-14 10:58:58,drb_ra,url,http://117.72.96.48:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713223590047909 2025-07-14 10:58:58,drb_ra,ip,117.72.96.48,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713223590047909 2025-07-14 10:59:03,drb_ra,url,http://47.122.119.55:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713246381859236 2025-07-14 10:59:03,drb_ra,ip,47.122.119.55,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713246381859236 2025-07-14 10:59:09,drb_ra,url,http://123.207.41.216:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713269643481577 2025-07-14 10:59:09,drb_ra,ip,123.207.41.216,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713269643481577 2025-07-14 10:59:09,drb_ra,url,https://123.207.41.216/IE9CompatViewList.xml,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713269643481577 2025-07-14 10:59:14,drb_ra,url,http://113.45.7.54:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713292401848468 2025-07-14 10:59:14,drb_ra,ip,113.45.7.54,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713292401848468 2025-07-14 10:59:19,drb_ra,url,http://47.109.45.147:23072,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713314413514979 2025-07-14 10:59:19,drb_ra,ip,47.109.45.147,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713314413514979 2025-07-14 10:59:23,CarlyGriggs13,url,https://america25.org,#phishing,https://x.com/CarlyGriggs13/status/1944713330750276023 2025-07-14 10:59:23,CarlyGriggs13,domain,america25.org,#phishing,https://x.com/CarlyGriggs13/status/1944713330750276023 2025-07-14 11:01:23,drb_ra,ip,155.94.172.165,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713832833683584 2025-07-14 11:01:23,drb_ra,url,http://155.94.172.165:9090,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713832833683584 2025-07-14 11:01:29,drb_ra,ip,123.60.153.36,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713856900555107 2025-07-14 11:01:29,drb_ra,url,http://123.60.153.36:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713856900555107 2025-07-14 11:01:29,drb_ra,url,https://deepseek.syoik.com/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713856900555107 2025-07-14 11:01:29,drb_ra,domain,deepseek.syoik.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713856900555107 2025-07-14 11:01:33,drb_ra,ip,122.51.235.217,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713873405133287 2025-07-14 11:01:33,drb_ra,url,http://122.51.235.217:8066,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713873405133287 2025-07-14 11:01:38,drb_ra,url,http://81.70.221.86:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713894926090262 2025-07-14 11:01:38,drb_ra,ip,81.70.221.86,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944713894926090262 2025-07-14 11:10:42,JRoosen,url,http://brrewsh.org,,https://x.com/JRoosen/status/1944716176644296893 2025-07-14 11:10:42,JRoosen,url,http://raw.brrewsh.org,,https://x.com/JRoosen/status/1944716176644296893 2025-07-14 11:10:42,JRoosen,domain,raw.brrewsh.org,,https://x.com/JRoosen/status/1944716176644296893 2025-07-14 11:10:42,JRoosen,domain,brrewsh.org,,https://x.com/JRoosen/status/1944716176644296893 2025-07-14 11:15:47,drb_ra,url,http://115.190.8.204:4567,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944717457249230925 2025-07-14 11:15:47,drb_ra,ip,115.190.8.204,#C2 #CobaltStrike,https://x.com/drb_ra/status/1944717457249230925 2025-07-14 11:22:08,Metemcyber,url,https://sagawa-priv.aumvat.cn/login_show/,#phishing,https://x.com/Metemcyber/status/1944719055161810974 2025-07-14 11:22:08,Metemcyber,url,http://104.21.53.250,#phishing,https://x.com/Metemcyber/status/1944719055161810974 2025-07-14 11:22:08,Metemcyber,domain,sagawa-priv.aumvat.cn,#phishing,https://x.com/Metemcyber/status/1944719055161810974 2025-07-14 11:22:08,Metemcyber,url,http://172.67.221.33,#phishing,https://x.com/Metemcyber/status/1944719055161810974 2025-07-14 11:27:42,Metemcyber,url,http://104.21.28.33,#phishing,https://x.com/Metemcyber/status/1944720457078587554 2025-07-14 11:27:42,Metemcyber,url,http://172.67.170.58,#phishing,https://x.com/Metemcyber/status/1944720457078587554 2025-07-14 11:27:42,Metemcyber,domain,mastercard-whoot.tbhuti.cn,#phishing,https://x.com/Metemcyber/status/1944720457078587554 2025-07-14 11:27:42,Metemcyber,url,https://mastercard-whoot.tbhuti.cn/features-benefits/,#phishing,https://x.com/Metemcyber/status/1944720457078587554 2025-07-14 11:38:29,abuse_ch,ip,77.90.153.31,#RAT,https://x.com/abuse_ch/status/1944723170499473900 2025-07-14 11:59:23,Metemcyber,url,https://gcoak.cn,#phishing,https://x.com/Metemcyber/status/1944728428265230610 2025-07-14 11:59:23,Metemcyber,url,https://gypoe.cn,#phishing,https://x.com/Metemcyber/status/1944728428265230610 2025-07-14 11:59:23,Metemcyber,url,https://fppzj.cn,#phishing,https://x.com/Metemcyber/status/1944728428265230610 2025-07-14 11:59:23,Metemcyber,domain,gcoak.cn,#phishing,https://x.com/Metemcyber/status/1944728428265230610 2025-07-14 11:59:23,Metemcyber,domain,fppzj.cn,#phishing,https://x.com/Metemcyber/status/1944728428265230610 2025-07-14 11:59:23,Metemcyber,domain,gypoe.cn,#phishing,https://x.com/Metemcyber/status/1944728428265230610 2025-07-14 12:00:02,Metemcyber,url,https://kaomiao.cn,#phishing,https://x.com/Metemcyber/status/1944728594217152570 2025-07-14 12:00:02,Metemcyber,domain,kaochun.cn,#phishing,https://x.com/Metemcyber/status/1944728594217152570 2025-07-14 12:00:02,Metemcyber,url,https://kaochun.cn,#phishing,https://x.com/Metemcyber/status/1944728594217152570 2025-07-14 12:00:02,Metemcyber,domain,kaoden.cn,#phishing,https://x.com/Metemcyber/status/1944728594217152570 2025-07-14 12:00:02,Metemcyber,url,https://kaoden.cn,#phishing,https://x.com/Metemcyber/status/1944728594217152570 2025-07-14 12:00:02,Metemcyber,domain,kaomiao.cn,#phishing,https://x.com/Metemcyber/status/1944728594217152570 2025-07-14 12:00:07,urldna_bot,ip,43.130.2.171,#scam #phishing,https://x.com/urldna_bot/status/1944728614689284542 2025-07-14 12:00:07,urldna_bot,url,https://43.130.2.171/ServiceLogin,#scam #phishing,https://x.com/urldna_bot/status/1944728614689284542 2025-07-14 12:00:30,SarlackLab,url,http://134.255.234.40:4782,#C2 #Njrat,https://x.com/SarlackLab/status/1944728711271444862 2025-07-14 12:00:30,SarlackLab,ip,134.255.234.40,#C2 #Njrat,https://x.com/SarlackLab/status/1944728711271444862 2025-07-14 12:00:31,Metemcyber,url,https://svutt.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,domain,zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,domain,svutt.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,url,https://kjdbx.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,url,https://nunshang.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,url,http://43.167.237.204,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,domain,nunshang.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,domain,kjdbx.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,ip,43.167.237.204,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:00:31,Metemcyber,url,https://zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1944728715323380154 2025-07-14 12:02:50,TLP_R3D,ip,185.39.19.164,,https://x.com/TLP_R3D/status/1944729295823286597 2025-07-14 12:02:50,TLP_R3D,ip,193.105.134.245,,https://x.com/TLP_R3D/status/1944729295823286597 2025-07-14 12:02:50,TLP_R3D,ip,103.71.22.245,,https://x.com/TLP_R3D/status/1944729295823286597 2025-07-14 12:02:50,TLP_R3D,ip,94.159.113.197,,https://x.com/TLP_R3D/status/1944729295823286597 2025-07-14 12:57:53,masaomi346,url,https://sejaura.com/pzaz/Sites/index.html,#phishing,https://x.com/masaomi346/status/1944743152562344231 2025-07-14 12:57:53,masaomi346,url,https://jdcomp.com.ar/Softaccount/Sites/index.html,#phishing,https://x.com/masaomi346/status/1944743152562344231 2025-07-14 12:57:53,masaomi346,domain,jdcomp.com.ar,#phishing,https://x.com/masaomi346/status/1944743152562344231 2025-07-14 12:57:53,masaomi346,domain,sejaura.com,#phishing,https://x.com/masaomi346/status/1944743152562344231 2025-07-14 13:00:43,CarlyGriggs13,url,https://mytonwalleet.app,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944743865207886087 2025-07-14 13:00:43,CarlyGriggs13,domain,mytonwalleet.app,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944743865207886087 2025-07-14 13:28:26,JAMESWT_WT,md5,aae2dc571d7b3e56dc1c3e0fd47dfda9,#NetSupport,https://x.com/JAMESWT_WT/status/1944750838896861488 2025-07-14 13:28:26,JAMESWT_WT,md5,bd0169d22417ba4bdbb6f5c644ceadf3,#NetSupport,https://x.com/JAMESWT_WT/status/1944750838896861488 2025-07-14 13:28:26,JAMESWT_WT,ip,45.142.193.119,#NetSupport,https://x.com/JAMESWT_WT/status/1944750838896861488 2025-07-14 13:31:32,CarlyGriggs13,domain,steamcommunvty.com,#phishing,https://x.com/CarlyGriggs13/status/1944751620098596965 2025-07-14 13:31:32,CarlyGriggs13,url,http://steamcommunvty.com/gift-card/734653,#phishing,https://x.com/CarlyGriggs13/status/1944751620098596965 2025-07-14 13:31:58,CarlyGriggs13,domain,tradebotmdito.com,#phishing,https://x.com/CarlyGriggs13/status/1944751729636958351 2025-07-14 13:31:58,CarlyGriggs13,url,https://tradebotmdito.com/tradeoffernew/new/partner=1756525/token=RTxFn6318/,#phishing,https://x.com/CarlyGriggs13/status/1944751729636958351 2025-07-14 13:32:14,CarlyGriggs13,url,https://u.to/VZpPIg,#phishing,https://x.com/CarlyGriggs13/status/1944751795282088408 2025-07-14 13:32:14,CarlyGriggs13,domain,u.to,#phishing,https://x.com/CarlyGriggs13/status/1944751795282088408 2025-07-14 13:34:28,James_inthe_box,url,http://www.ambiopharmconsultingltd.com:1515/is-ready,,https://x.com/James_inthe_box/status/1944752356228493518 2025-07-14 13:34:28,James_inthe_box,domain,ambiopharmconsultingltd.com:1515,,https://x.com/James_inthe_box/status/1944752356228493518 2025-07-14 14:00:10,urldna_bot,domain,vrwebmailsys.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944758824998412397 2025-07-14 14:00:10,urldna_bot,url,https://vrwebmailsys.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944758824998412397 2025-07-14 14:54:01,CarlyGriggs13,domain,noderesolvelive.pages.dev,#phishing,https://x.com/CarlyGriggs13/status/1944772375356092796 2025-07-14 14:54:01,CarlyGriggs13,url,https://noderesolvelive.pages.dev/walletpage,#phishing,https://x.com/CarlyGriggs13/status/1944772375356092796 2025-07-14 15:15:43,CarlyGriggs13,url,https://www.wallettools.org/recovery-check/,#phishing,https://x.com/CarlyGriggs13/status/1944777837765861538 2025-07-14 15:15:43,CarlyGriggs13,domain,wallettools.org,#phishing,https://x.com/CarlyGriggs13/status/1944777837765861538 2025-07-14 15:17:29,CarlyGriggs13,url,https://www.cryptorecovery.io,#phishing,https://x.com/CarlyGriggs13/status/1944778284836807148 2025-07-14 15:17:29,CarlyGriggs13,domain,cryptorecovery.io,#phishing,https://x.com/CarlyGriggs13/status/1944778284836807148 2025-07-14 15:17:45,CarlyGriggs13,url,https://wallet-recovery-service.com,#phishing,https://x.com/CarlyGriggs13/status/1944778350238511590 2025-07-14 15:17:45,CarlyGriggs13,domain,wallet-recovery-service.com,#phishing,https://x.com/CarlyGriggs13/status/1944778350238511590 2025-07-14 15:27:11,CarlyGriggs13,domain,recovermywallet.org,#phishing,https://x.com/CarlyGriggs13/status/1944780724415918576 2025-07-14 15:27:11,CarlyGriggs13,url,https://recovermywallet.org,#phishing,https://x.com/CarlyGriggs13/status/1944780724415918576 2025-07-14 15:27:29,CarlyGriggs13,url,https://reclaimbit.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944780800282579261 2025-07-14 15:27:29,CarlyGriggs13,domain,reclaimbit.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944780800282579261 2025-07-14 15:27:50,CarlyGriggs13,domain,crypto-wallet-recovery.com,#phishing,https://x.com/CarlyGriggs13/status/1944780886655860742 2025-07-14 15:27:50,CarlyGriggs13,url,https://crypto-wallet-recovery.com/terms.php,#phishing,https://x.com/CarlyGriggs13/status/1944780886655860742 2025-07-14 15:28:07,CarlyGriggs13,url,https://ai-seedfinder.com,#phishing,https://x.com/CarlyGriggs13/status/1944780960592986418 2025-07-14 15:28:07,CarlyGriggs13,domain,ai-seedfinder.com,#phishing,https://x.com/CarlyGriggs13/status/1944780960592986418 2025-07-14 15:37:18,urldna_bot,domain,ton-org.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1944783271717478698 2025-07-14 15:37:18,urldna_bot,url,https://ton-org.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1944783271717478698 2025-07-14 15:37:29,CarlyGriggs13,url,https://lookesmiste.azurewebsites.net,#phishing,https://x.com/CarlyGriggs13/status/1944783317179551945 2025-07-14 15:37:29,CarlyGriggs13,domain,lookesmiste.azurewebsites.net,#phishing,https://x.com/CarlyGriggs13/status/1944783317179551945 2025-07-14 15:37:49,CarlyGriggs13,url,https://rewallet.de/en/,#phishing,https://x.com/CarlyGriggs13/status/1944783401371705819 2025-07-14 15:37:49,CarlyGriggs13,url,https://rewallet.de/en/#about-us,#phishing,https://x.com/CarlyGriggs13/status/1944783401371705819 2025-07-14 15:37:49,CarlyGriggs13,domain,rewallet.de,#phishing,https://x.com/CarlyGriggs13/status/1944783401371705819 2025-07-14 15:38:17,CarlyGriggs13,url,https://en-ledger-help.me-page.com/en-us,#phishing,https://x.com/CarlyGriggs13/status/1944783515192594646 2025-07-14 15:38:17,CarlyGriggs13,domain,en-ledger-help.me-page.com,#phishing,https://x.com/CarlyGriggs13/status/1944783515192594646 2025-07-14 15:38:27,urldna_bot,url,http://prueba.cpuul.com/Myqov/au/,#phishing #scam,https://x.com/urldna_bot/status/1944783559752855966 2025-07-14 15:38:27,urldna_bot,domain,prueba.cpuul.com,#phishing #scam,https://x.com/urldna_bot/status/1944783559752855966 2025-07-14 15:48:10,CarlyGriggs13,domain,botnetcryptorecovery.com,#phishing,https://x.com/CarlyGriggs13/status/1944786004587540927 2025-07-14 15:48:10,CarlyGriggs13,url,https://botnetcryptorecovery.com,#phishing,https://x.com/CarlyGriggs13/status/1944786004587540927 2025-07-14 15:48:30,CarlyGriggs13,url,https://portal-ledger-com-en.me-page.com/en-us,#phishing,https://x.com/CarlyGriggs13/status/1944786088456802633 2025-07-14 15:48:30,CarlyGriggs13,domain,portal-ledger-com-en.me-page.com,#phishing,https://x.com/CarlyGriggs13/status/1944786088456802633 2025-07-14 15:48:46,CarlyGriggs13,domain,recovermycrypto.com,#phishing,https://x.com/CarlyGriggs13/status/1944786157411148049 2025-07-14 15:48:46,CarlyGriggs13,url,https://recovermycrypto.com,#phishing,https://x.com/CarlyGriggs13/status/1944786157411148049 2025-07-14 15:58:31,CarlyGriggs13,domain,cryptorecovery.us,#phishing,https://x.com/CarlyGriggs13/status/1944788607983665262 2025-07-14 15:58:31,CarlyGriggs13,url,https://www.cryptorecovery.us,#phishing,https://x.com/CarlyGriggs13/status/1944788607983665262 2025-07-14 15:58:57,CarlyGriggs13,url,https://steamscommrunity.com/105349428,#phishing,https://x.com/CarlyGriggs13/status/1944788719589896228 2025-07-14 15:58:57,CarlyGriggs13,domain,steamscommrunity.com,#phishing,https://x.com/CarlyGriggs13/status/1944788719589896228 2025-07-14 16:00:05,urldna_bot,url,https://wealthguaranteed.org,#scam #phishing,https://x.com/urldna_bot/status/1944789001568653647 2025-07-14 16:00:05,urldna_bot,domain,wealthguaranteed.org,#scam #phishing,https://x.com/urldna_bot/status/1944789001568653647 2025-07-14 16:09:11,CarlyGriggs13,url,https://centralsmartsyncing.pages.dev,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944791292162007472 2025-07-14 16:09:11,CarlyGriggs13,domain,centralsmartsyncing.pages.dev,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944791292162007472 2025-07-14 16:09:35,CarlyGriggs13,domain,dappsynchronizer.us,#phishing,https://x.com/CarlyGriggs13/status/1944791394926665868 2025-07-14 16:09:35,CarlyGriggs13,url,https://dappsynchronizer.us,#phishing,https://x.com/CarlyGriggs13/status/1944791394926665868 2025-07-14 16:09:54,CarlyGriggs13,domain,rectification-dappsprotocol.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944791475771875728 2025-07-14 16:09:54,CarlyGriggs13,url,https://rectification-dappsprotocol.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944791475771875728 2025-07-14 16:10:19,CarlyGriggs13,domain,swapchaindapps.com,#phishing,https://x.com/CarlyGriggs13/status/1944791577408188571 2025-07-14 16:10:19,CarlyGriggs13,url,https://swapchaindapps.com,#phishing,https://x.com/CarlyGriggs13/status/1944791577408188571 2025-07-14 16:10:40,CarlyGriggs13,domain,defimigration.com,#phishing,https://x.com/CarlyGriggs13/status/1944791667761885607 2025-07-14 16:10:40,CarlyGriggs13,url,https://www.defimigration.com,#phishing,https://x.com/CarlyGriggs13/status/1944791667761885607 2025-07-14 16:10:57,CarlyGriggs13,url,https://zillswift.pages.dev,#phishing,https://x.com/CarlyGriggs13/status/1944791738431803791 2025-07-14 16:10:57,CarlyGriggs13,domain,zillswift.pages.dev,#phishing,https://x.com/CarlyGriggs13/status/1944791738431803791 2025-07-14 16:11:13,CarlyGriggs13,domain,multiwallet.ai,#phishing,https://x.com/CarlyGriggs13/status/1944791805477662772 2025-07-14 16:11:13,CarlyGriggs13,url,https://multiwallet.ai,#phishing,https://x.com/CarlyGriggs13/status/1944791805477662772 2025-07-14 16:11:37,CarlyGriggs13,url,http://swapchaindaps.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944791903846711516 2025-07-14 16:11:37,CarlyGriggs13,domain,swapchaindaps.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944791903846711516 2025-07-14 16:11:59,CarlyGriggs13,domain,exoudsweb3-en-us.teachable.com,#phishing,https://x.com/CarlyGriggs13/status/1944791999288062067 2025-07-14 16:11:59,CarlyGriggs13,url,https://exoudsweb3-en-us.teachable.com/p/home,#phishing,https://x.com/CarlyGriggs13/status/1944791999288062067 2025-07-14 16:17:57,skocherhan,md5,70d92e2b00ec6702e17e266b7742bbab,,https://x.com/skocherhan/status/1944793498898530612 2025-07-14 16:18:02,Fact_Finder03,ip,66.78.40.36,#stealer,https://x.com/Fact_Finder03/status/1944793522755809706 2025-07-14 16:19:28,drb_ra,ip,120.79.64.164,#CobaltStrike #C2,https://x.com/drb_ra/status/1944793882136371629 2025-07-14 16:19:28,drb_ra,url,http://120.79.64.164:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944793882136371629 2025-07-14 16:19:28,drb_ra,domain,video.mca.gov.cn,#CobaltStrike #C2,https://x.com/drb_ra/status/1944793882136371629 2025-07-14 16:19:28,drb_ra,url,https://video.mca.gov.cn/public/asset/font/script.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1944793882136371629 2025-07-14 16:19:34,drb_ra,ip,49.119.131.31,#CobaltStrike #C2,https://x.com/drb_ra/status/1944793904991056147 2025-07-14 16:19:34,drb_ra,url,https://49.119.131.31/common/advertisement/Fixed/float/smile.svg,#CobaltStrike #C2,https://x.com/drb_ra/status/1944793904991056147 2025-07-14 16:21:20,CarlyGriggs13,url,https://0g-faucet.j-node.net,#phishing,https://x.com/CarlyGriggs13/status/1944794352934408282 2025-07-14 16:21:20,CarlyGriggs13,domain,0g-faucet.j-node.net,#phishing,https://x.com/CarlyGriggs13/status/1944794352934408282 2025-07-14 16:21:38,CarlyGriggs13,domain,6rbcc.com,#phishing,https://x.com/CarlyGriggs13/status/1944794424992477643 2025-07-14 16:21:38,CarlyGriggs13,url,https://6rbcc.com,#phishing,https://x.com/CarlyGriggs13/status/1944794424992477643 2025-07-14 16:22:00,CarlyGriggs13,domain,prorealvision.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944794519829885077 2025-07-14 16:22:00,CarlyGriggs13,url,https://prorealvision.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944794519829885077 2025-07-14 16:22:26,CarlyGriggs13,url,https://www.texturecraft.org,#phishing,https://x.com/CarlyGriggs13/status/1944794626247803203 2025-07-14 16:22:26,CarlyGriggs13,domain,texturecraft.org,#phishing,https://x.com/CarlyGriggs13/status/1944794626247803203 2025-07-14 16:22:47,CarlyGriggs13,url,https://startrealvision.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944794717528404052 2025-07-14 16:22:47,CarlyGriggs13,domain,startrealvision.com,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944794717528404052 2025-07-14 16:42:52,CarlyGriggs13,url,http://accessrevoke4.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944799769794109723 2025-07-14 16:42:52,CarlyGriggs13,domain,accessrevoke4.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944799769794109723 2025-07-14 16:43:08,CarlyGriggs13,domain,migrate-solaxy.com,#phishing,https://x.com/CarlyGriggs13/status/1944799838836580581 2025-07-14 16:43:08,CarlyGriggs13,url,http://migrate-solaxy.com,#phishing,https://x.com/CarlyGriggs13/status/1944799838836580581 2025-07-14 16:43:28,CarlyGriggs13,domain,portalbridge.app,#phishing,https://x.com/CarlyGriggs13/status/1944799920025678071 2025-07-14 16:43:28,CarlyGriggs13,url,http://portalbridge.app,#phishing,https://x.com/CarlyGriggs13/status/1944799920025678071 2025-07-14 16:43:45,CarlyGriggs13,url,http://solaxxclaim13.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944799993182707733 2025-07-14 16:43:45,CarlyGriggs13,domain,solaxxclaim13.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944799993182707733 2025-07-14 16:44:09,CarlyGriggs13,domain,claims-caldera.foundation,#phishing,https://x.com/CarlyGriggs13/status/1944800092478648672 2025-07-14 16:44:09,CarlyGriggs13,url,http://claims-caldera.foundation,#phishing,https://x.com/CarlyGriggs13/status/1944800092478648672 2025-07-14 16:44:29,CarlyGriggs13,url,http://metawinner.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800175177757139 2025-07-14 16:44:29,CarlyGriggs13,domain,metawinner.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800175177757139 2025-07-14 16:44:46,CarlyGriggs13,domain,rpdcnodeupdate.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800248028668039 2025-07-14 16:44:46,CarlyGriggs13,url,http://rpdcnodeupdate.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800248028668039 2025-07-14 16:45:02,CarlyGriggs13,url,http://receive.invoice-coinbase.com,#phishing,https://x.com/CarlyGriggs13/status/1944800316555247641 2025-07-14 16:45:02,CarlyGriggs13,domain,receive.invoice-coinbase.com,#phishing,https://x.com/CarlyGriggs13/status/1944800316555247641 2025-07-14 16:45:28,CarlyGriggs13,url,http://www.401krevshare.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800424172593582 2025-07-14 16:45:28,CarlyGriggs13,domain,401krevshare.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800424172593582 2025-07-14 16:45:52,CarlyGriggs13,domain,demo.zamma.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800525859348748 2025-07-14 16:45:52,CarlyGriggs13,url,http://demo.zamma.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800525859348748 2025-07-14 16:46:13,CarlyGriggs13,domain,eciipsee.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800614849929465 2025-07-14 16:46:13,CarlyGriggs13,url,http://eciipsee.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800614849929465 2025-07-14 16:46:34,CarlyGriggs13,domain,snapshot-npc.co,#phishing,https://x.com/CarlyGriggs13/status/1944800703051944437 2025-07-14 16:46:34,CarlyGriggs13,url,http://snapshot-npc.co,#phishing,https://x.com/CarlyGriggs13/status/1944800703051944437 2025-07-14 16:46:55,CarlyGriggs13,url,http://www.48clubreward.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800789815259378 2025-07-14 16:46:55,CarlyGriggs13,domain,48clubreward.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944800789815259378 2025-07-14 16:47:16,CarlyGriggs13,url,http://dappsync.sharepool.in,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944800878315065389 2025-07-14 16:47:16,CarlyGriggs13,domain,dappsync.sharepool.in,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944800878315065389 2025-07-14 16:47:37,CarlyGriggs13,domain,celsiusdistribution.tellancollections.co.ke,#phishing,https://x.com/CarlyGriggs13/status/1944800966844272800 2025-07-14 16:47:37,CarlyGriggs13,url,http://www.celsiusdistribution.tellancollections.co.ke,#phishing,https://x.com/CarlyGriggs13/status/1944800966844272800 2025-07-14 16:48:02,CarlyGriggs13,url,http://www.estatex.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944801068606435559 2025-07-14 16:48:02,CarlyGriggs13,domain,estatex.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944801068606435559 2025-07-14 16:48:20,CarlyGriggs13,url,http://hyperions.network,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944801145370665130 2025-07-14 16:48:20,CarlyGriggs13,domain,hyperions.network,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944801145370665130 2025-07-14 16:48:46,CarlyGriggs13,url,http://www.soldrop.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944801254258999764 2025-07-14 16:48:46,CarlyGriggs13,domain,soldrop.w3claim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944801254258999764 2025-07-14 16:58:02,BlinkzSec,sha256,db363fbb2d07563f1618a8316dffe9ed8ac4ab3ac079926d4979ee6e5d8cb4df,#malware,https://x.com/BlinkzSec/status/1944803587302768937 2025-07-14 16:59:40,JAMESWT_WT,ip,45.144.212.172,,https://x.com/JAMESWT_WT/status/1944803999070208079 2025-07-14 16:59:40,JAMESWT_WT,url,http://45.144.212.172,,https://x.com/JAMESWT_WT/status/1944803999070208079 2025-07-14 16:59:40,JAMESWT_WT,ip,147.124.216.228,,https://x.com/JAMESWT_WT/status/1944803999070208079 2025-07-14 16:59:40,JAMESWT_WT,domain,jegjav.duckdns.org,,https://x.com/JAMESWT_WT/status/1944803999070208079 2025-07-14 16:59:40,JAMESWT_WT,url,http://147.124.216.228,,https://x.com/JAMESWT_WT/status/1944803999070208079 2025-07-14 16:59:40,JAMESWT_WT,url,http://jegjav.duckdns.org,,https://x.com/JAMESWT_WT/status/1944803999070208079 2025-07-14 17:00:23,soursecc,url,https://valorantidn.duckdns.org/verify.php,,https://x.com/soursecc/status/1944804178364084276 2025-07-14 17:00:23,soursecc,domain,valorantidn.duckdns.org,,https://x.com/soursecc/status/1944804178364084276 2025-07-14 17:00:23,soursecc,url,https://valorantid.ikwb.com/verify.php,,https://x.com/soursecc/status/1944804178364084276 2025-07-14 17:00:23,soursecc,domain,valorantid.ikwb.com,,https://x.com/soursecc/status/1944804178364084276 2025-07-14 17:05:02,CarlyGriggs13,domain,athgiveaway.live,#phishing,https://x.com/CarlyGriggs13/status/1944805347631260090 2025-07-14 17:05:02,CarlyGriggs13,url,http://athgiveaway.live,#phishing,https://x.com/CarlyGriggs13/status/1944805347631260090 2025-07-14 17:05:42,CarlyGriggs13,url,http://plasmaxpl.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944805516334530826 2025-07-14 17:05:42,CarlyGriggs13,domain,plasmaxpl.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944805516334530826 2025-07-14 17:06:09,CarlyGriggs13,url,https://quickswap.excharnge.com/swap/?gad_source=1&gad_campaignid=22785395023&gbraid=0AAAABAJAp62CjU-EiHKFshjcDdimgXSMX&gclid=EAIaIQobChMIwdz4kee8jgMVxAWiAx1FMhhHEAAYASAAEgKLI_D_BwE,#phishing,https://x.com/CarlyGriggs13/status/1944805627928203598 2025-07-14 17:06:09,CarlyGriggs13,domain,quickswap.excharnge.com,#phishing,https://x.com/CarlyGriggs13/status/1944805627928203598 2025-07-14 17:06:33,CarlyGriggs13,domain,shibax.org,#phishing,https://x.com/CarlyGriggs13/status/1944805731795890341 2025-07-14 17:06:33,CarlyGriggs13,url,http://shibax.org,#phishing,https://x.com/CarlyGriggs13/status/1944805731795890341 2025-07-14 17:06:51,CarlyGriggs13,url,https://token-pump.live,#phishing,https://x.com/CarlyGriggs13/status/1944805805821198576 2025-07-14 17:06:51,CarlyGriggs13,domain,token-pump.live,#phishing,https://x.com/CarlyGriggs13/status/1944805805821198576 2025-07-14 17:07:09,CarlyGriggs13,domain,xn--48jwg6c9b.site,#phishing,https://x.com/CarlyGriggs13/status/1944805880072995136 2025-07-14 17:07:09,CarlyGriggs13,url,https://xn--48jwg6c9b.site/toyol/tv/?id_ID=SLOTWIN138%20LOGIN,#phishing,https://x.com/CarlyGriggs13/status/1944805880072995136 2025-07-14 17:07:26,CarlyGriggs13,domain,xn--uk-8kc8dc5je88mxa.xn--hgbtthuk-16gb5cdcb7ltako4dwte1a346bdb1275leaed.app-s2.eu.com,#phishing,https://x.com/CarlyGriggs13/status/1944805952873500786 2025-07-14 17:07:26,CarlyGriggs13,url,https://xn--uk-8kc8dc5je88mxa.xn--hgbtthuk-16gb5cdcb7ltako4dwte1a346bdb1275leaed.app-s2.eu.com/?gad_source=1&gad_campaignid=22785395023&gbraid=0AAAABAJAp62CjU-EiHKFshjcDdimgXSMX&gclid=EAIaIQobChMIwdz4kee8jgMVxAWiAx1FMhhHEAAYASAAEgKLI_D_BwE,#phishing,https://x.com/CarlyGriggs13/status/1944805952873500786 2025-07-14 17:27:11,CarlyGriggs13,url,https://faceit.premseason.com,#phishing,https://x.com/CarlyGriggs13/status/1944810922750419313 2025-07-14 17:27:11,CarlyGriggs13,domain,faceit.premseason.com,#phishing,https://x.com/CarlyGriggs13/status/1944810922750419313 2025-07-14 17:27:37,CarlyGriggs13,domain,faceit.discordconnects.com,#phishing,https://x.com/CarlyGriggs13/status/1944811032762843242 2025-07-14 17:27:37,CarlyGriggs13,url,https://faceit.discordconnects.com/game.html?game=leagues5v5&skill_level=all&game_type_2=5vs5&source=faceit,#phishing,https://x.com/CarlyGriggs13/status/1944811032762843242 2025-07-14 17:38:01,CarlyGriggs13,domain,vitrualsl.io,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944813649534615586 2025-07-14 17:38:01,CarlyGriggs13,url,https://vitrualsl.io,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944813649534615586 2025-07-14 17:38:19,CarlyGriggs13,domain,my.aixoninvestment.com,#phishing,https://x.com/CarlyGriggs13/status/1944813726151889310 2025-07-14 17:38:19,CarlyGriggs13,url,https://my.aixoninvestment.com,#phishing,https://x.com/CarlyGriggs13/status/1944813726151889310 2025-07-14 17:48:42,CarlyGriggs13,url,https://cow-swop.org,#phishing,https://x.com/CarlyGriggs13/status/1944816338414788883 2025-07-14 17:48:42,CarlyGriggs13,domain,cow-swop.org,#phishing,https://x.com/CarlyGriggs13/status/1944816338414788883 2025-07-14 17:50:17,CarlyGriggs13,url,https://faceit.zeropoint-cs.com,#phishing,https://x.com/CarlyGriggs13/status/1944816734155743399 2025-07-14 17:50:17,CarlyGriggs13,domain,faceit.zeropoint-cs.com,#phishing,https://x.com/CarlyGriggs13/status/1944816734155743399 2025-07-14 17:50:32,CarlyGriggs13,url,https://cow.dao-swap.cc,#phishing,https://x.com/CarlyGriggs13/status/1944816800782221749 2025-07-14 17:50:32,CarlyGriggs13,domain,cow.dao-swap.cc,#phishing,https://x.com/CarlyGriggs13/status/1944816800782221749 2025-07-14 17:51:25,CarlyGriggs13,domain,cow-swap-v2.com,#phishing,https://x.com/CarlyGriggs13/status/1944817022199583217 2025-07-14 17:51:25,CarlyGriggs13,url,https://www.cow-swap-v2.com,#phishing,https://x.com/CarlyGriggs13/status/1944817022199583217 2025-07-14 17:51:28,JAMESWT_WT,ip,45.134.26.74,,https://x.com/JAMESWT_WT/status/1944817032161120389 2025-07-14 17:51:51,CarlyGriggs13,domain,v2-cow.net,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944817131599626672 2025-07-14 17:51:51,CarlyGriggs13,url,https://v2-cow.net,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944817131599626672 2025-07-14 17:52:18,CarlyGriggs13,domain,cow.dao-swap.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944817244015386942 2025-07-14 17:52:18,CarlyGriggs13,url,https://cow.dao-swap.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944817244015386942 2025-07-14 17:53:58,CarlyGriggs13,domain,cow.swap-main.net,#phishing,https://x.com/CarlyGriggs13/status/1944817664448164311 2025-07-14 17:53:58,CarlyGriggs13,url,https://cow.swap-main.net/en/?utm_source=bing_original_site=successfully&utm_source=bing&utm_medium=cpc&utm_term=trading_p,#phishing,https://x.com/CarlyGriggs13/status/1944817664448164311 2025-07-14 18:00:09,urldna_bot,domain,shgdhdwr.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944819220329427123 2025-07-14 18:00:09,urldna_bot,url,https://shgdhdwr.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1944819220329427123 2025-07-14 18:10:05,CarlyGriggs13,url,https://www.htinvestm.com,#phishing,https://x.com/CarlyGriggs13/status/1944821719455109364 2025-07-14 18:10:05,CarlyGriggs13,domain,htinvestm.com,#phishing,https://x.com/CarlyGriggs13/status/1944821719455109364 2025-07-14 18:30:32,CarlyGriggs13,domain,caratsite.cc,#phishing,https://x.com/CarlyGriggs13/status/1944826863886418213 2025-07-14 18:30:32,CarlyGriggs13,url,https://caratsite.cc/#/login,#phishing,https://x.com/CarlyGriggs13/status/1944826863886418213 2025-07-14 18:30:57,CarlyGriggs13,domain,drop-pump.fun,#phishing,https://x.com/CarlyGriggs13/status/1944826969947832331 2025-07-14 18:30:57,CarlyGriggs13,url,https://drop-pump.fun,#phishing,https://x.com/CarlyGriggs13/status/1944826969947832331 2025-07-14 18:31:24,CarlyGriggs13,url,https://pump-presale.org/$1,#phishing,https://x.com/CarlyGriggs13/status/1944827083516981473 2025-07-14 18:31:24,CarlyGriggs13,domain,pump-presale.org,#phishing,https://x.com/CarlyGriggs13/status/1944827083516981473 2025-07-14 18:31:44,CarlyGriggs13,domain,xvbf.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944827168757784728 2025-07-14 18:31:44,CarlyGriggs13,url,https://xvbf.xyz/h5-account?code=9366,#phishing,https://x.com/CarlyGriggs13/status/1944827168757784728 2025-07-14 18:39:28,SarlackLab,url,http://m365.acenm.com,,https://x.com/SarlackLab/status/1944829113543385204 2025-07-14 18:39:28,SarlackLab,domain,m365.acenm.com,,https://x.com/SarlackLab/status/1944829113543385204 2025-07-14 18:39:28,SarlackLab,domain,exifit.eu.org,,https://x.com/SarlackLab/status/1944829113543385204 2025-07-14 18:39:28,SarlackLab,url,http://exifit.eu.org,,https://x.com/SarlackLab/status/1944829113543385204 2025-07-14 18:41:01,CarlyGriggs13,url,https://cloud-web-ledger-en.me-page.com/en-us,#phishing,https://x.com/CarlyGriggs13/status/1944829502669955327 2025-07-14 18:41:01,CarlyGriggs13,domain,cloud-web-ledger-en.me-page.com,#phishing,https://x.com/CarlyGriggs13/status/1944829502669955327 2025-07-14 18:41:21,CarlyGriggs13,domain,portal-ledger-com-learn.me-page.com,#phishing,https://x.com/CarlyGriggs13/status/1944829585566093765 2025-07-14 18:41:21,CarlyGriggs13,url,https://portal-ledger-com-learn.me-page.com/en-us,#phishing,https://x.com/CarlyGriggs13/status/1944829585566093765 2025-07-14 18:46:16,drb_ra,ip,54.159.89.14,#Deimos #C2,https://x.com/drb_ra/status/1944830825712787610 2025-07-14 18:46:16,drb_ra,url,http://54.159.89.14:443,#Deimos #C2,https://x.com/drb_ra/status/1944830825712787610 2025-07-14 18:46:22,drb_ra,url,http://51.161.119.101:7443,#Mythic #C2,https://x.com/drb_ra/status/1944830849184137461 2025-07-14 18:46:22,drb_ra,ip,51.161.119.101,#Mythic #C2,https://x.com/drb_ra/status/1944830849184137461 2025-07-14 18:46:27,drb_ra,url,http://35.186.174.238:7443,#Mythic #C2,https://x.com/drb_ra/status/1944830870352715865 2025-07-14 18:46:32,drb_ra,ip,192.227.236.198,#Sliver #C2,https://x.com/drb_ra/status/1944830891605278766 2025-07-14 18:46:32,drb_ra,url,http://192.227.236.198:31337,#Sliver #C2,https://x.com/drb_ra/status/1944830891605278766 2025-07-14 18:46:37,drb_ra,url,http://178.132.0.217:8888,#Sliver #C2,https://x.com/drb_ra/status/1944830912417431567 2025-07-14 18:46:40,drb_ra,ip,178.132.0.217,#Sliver #C2,https://x.com/drb_ra/status/1944830927265259577 2025-07-14 18:46:40,drb_ra,url,http://178.132.0.217:31337,#Sliver #C2,https://x.com/drb_ra/status/1944830927265259577 2025-07-14 18:46:55,skocherhan,domain,wce.serveirc.com,,https://x.com/skocherhan/status/1944830990465093747 2025-07-14 18:46:55,skocherhan,url,http://wce.serveirc.com,,https://x.com/skocherhan/status/1944830990465093747 2025-07-14 18:46:55,skocherhan,url,http://5.39.218.164:5051,,https://x.com/skocherhan/status/1944830990465093747 2025-07-14 18:46:55,skocherhan,md5,3193bcf3f22b44185916a8f7cee19b65,,https://x.com/skocherhan/status/1944830990465093747 2025-07-14 18:48:44,drb_ra,url,http://47.92.206.124:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1944831444695601205 2025-07-14 18:48:44,drb_ra,ip,47.92.206.124,#Reverse_SSH #C2,https://x.com/drb_ra/status/1944831444695601205 2025-07-14 18:48:49,drb_ra,ip,207.174.3.213,#Reverse_SSH #C2,https://x.com/drb_ra/status/1944831466757620154 2025-07-14 18:48:49,drb_ra,url,http://207.174.3.213:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1944831466757620154 2025-07-14 18:48:54,drb_ra,ip,47.254.121.212,#C2,https://x.com/drb_ra/status/1944831487511023641 2025-07-14 18:48:54,drb_ra,url,http://47.254.121.212:54681,#C2,https://x.com/drb_ra/status/1944831487511023641 2025-07-14 18:48:58,drb_ra,url,http://113.106.204.135:47486,#C2,https://x.com/drb_ra/status/1944831503373918462 2025-07-14 18:48:58,drb_ra,ip,113.106.204.135,#C2,https://x.com/drb_ra/status/1944831503373918462 2025-07-14 18:49:03,drb_ra,url,http://3.254.193.20:8389,#NetSupportRAT #C2,https://x.com/drb_ra/status/1944831525385650653 2025-07-14 18:49:08,drb_ra,url,http://37.120.153.102:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1944831546726256944 2025-07-14 18:49:08,drb_ra,ip,37.120.153.102,#AsyncRAT #C2,https://x.com/drb_ra/status/1944831546726256944 2025-07-14 18:49:13,drb_ra,ip,66.85.27.51,#Supershell #C2,https://x.com/drb_ra/status/1944831568826044491 2025-07-14 18:49:13,drb_ra,url,http://66.85.27.51:8888,#Supershell #C2,https://x.com/drb_ra/status/1944831568826044491 2025-07-14 18:49:17,drb_ra,url,http://86.54.42.17:8857,#Dcrat #C2,https://x.com/drb_ra/status/1944831584563032313 2025-07-14 18:49:22,drb_ra,ip,86.54.42.17,#Dcrat #C2,https://x.com/drb_ra/status/1944831606071476367 2025-07-14 18:49:22,drb_ra,url,http://86.54.42.17:8854,#Dcrat #C2,https://x.com/drb_ra/status/1944831606071476367 2025-07-14 18:49:28,drb_ra,url,http://70.27.138.201:2222,#Qakbot #C2,https://x.com/drb_ra/status/1944831628112457890 2025-07-14 18:49:28,drb_ra,ip,70.27.138.201,#Qakbot #C2,https://x.com/drb_ra/status/1944831628112457890 2025-07-14 18:49:31,drb_ra,url,http://52.16.174.136:445,#C2,https://x.com/drb_ra/status/1944831644336107863 2025-07-14 18:49:31,drb_ra,ip,52.16.174.136,#C2,https://x.com/drb_ra/status/1944831644336107863 2025-07-14 18:49:36,drb_ra,url,http://34.247.175.153:445,#C2,https://x.com/drb_ra/status/1944831665685045314 2025-07-14 18:49:36,drb_ra,ip,34.247.175.153,#C2,https://x.com/drb_ra/status/1944831665685045314 2025-07-14 18:49:42,drb_ra,ip,139.84.217.236,#Havoc #C2,https://x.com/drb_ra/status/1944831687017320812 2025-07-14 18:49:42,drb_ra,url,http://139.84.217.236:443,#Havoc #C2,https://x.com/drb_ra/status/1944831687017320812 2025-07-14 18:49:47,drb_ra,ip,167.86.110.155,#Havoc #C2,https://x.com/drb_ra/status/1944831708286664837 2025-07-14 18:49:47,drb_ra,url,http://167.86.110.155:443,#Havoc #C2,https://x.com/drb_ra/status/1944831708286664837 2025-07-14 18:51:50,drb_ra,ip,188.245.243.200,#C2,https://x.com/drb_ra/status/1944832225092030975 2025-07-14 18:51:50,drb_ra,url,http://188.245.243.200:80,#C2,https://x.com/drb_ra/status/1944832225092030975 2025-07-14 18:52:40,CarlyGriggs13,domain,xn--unksw-5ved1b8fie.smart-swap.it.com,#phishing,https://x.com/CarlyGriggs13/status/1944832436023525833 2025-07-14 18:52:40,CarlyGriggs13,url,https://xn--unksw-5ved1b8fie.smart-swap.it.com,#phishing,https://x.com/CarlyGriggs13/status/1944832436023525833 2025-07-14 18:53:00,CarlyGriggs13,domain,pumpfun-pumpfun.github.io,#phishing,https://x.com/CarlyGriggs13/status/1944832519179768014 2025-07-14 18:53:00,CarlyGriggs13,url,https://pumpfun-pumpfun.github.io,#phishing,https://x.com/CarlyGriggs13/status/1944832519179768014 2025-07-14 18:53:27,CarlyGriggs13,url,https://claim.pumptoken.tech,#phishing,https://x.com/CarlyGriggs13/status/1944832634237923521 2025-07-14 18:53:27,CarlyGriggs13,domain,claim.pumptoken.tech,#phishing,https://x.com/CarlyGriggs13/status/1944832634237923521 2025-07-14 18:53:51,CarlyGriggs13,url,https://pumpairdrops.fun,#phishing,https://x.com/CarlyGriggs13/status/1944832732128809146 2025-07-14 18:53:51,CarlyGriggs13,domain,pumpairdrops.fun,#phishing,https://x.com/CarlyGriggs13/status/1944832732128809146 2025-07-14 18:54:12,CarlyGriggs13,url,https://claim.pumpswaps.fun,#phishing,https://x.com/CarlyGriggs13/status/1944832819974283633 2025-07-14 18:54:12,CarlyGriggs13,domain,claim.pumpswaps.fun,#phishing,https://x.com/CarlyGriggs13/status/1944832819974283633 2025-07-14 18:55:50,CarlyGriggs13,domain,raydium.io-swap.cc,#phishing,https://x.com/CarlyGriggs13/status/1944833232161181939 2025-07-14 18:55:50,CarlyGriggs13,url,https://raydium.io-swap.cc/en/?utm_source=bing_original_site=successfully&utm_source=bing&utm_medium=cpc&utm_term=trading_p,#phishing,https://x.com/CarlyGriggs13/status/1944833232161181939 2025-07-14 19:06:14,1ZRR4H,url,http://45.151.62.238,#opendir,https://x.com/1ZRR4H/status/1944835848752566756 2025-07-14 19:06:14,1ZRR4H,ip,196.251.71.46,#opendir,https://x.com/1ZRR4H/status/1944835848752566756 2025-07-14 19:06:14,1ZRR4H,ip,45.151.62.238,#opendir,https://x.com/1ZRR4H/status/1944835848752566756 2025-07-14 19:06:14,1ZRR4H,url,http://196.251.71.46,#opendir,https://x.com/1ZRR4H/status/1944835848752566756 2025-07-14 19:12:34,CarlyGriggs13,domain,pumpclaim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944837441430405342 2025-07-14 19:12:34,CarlyGriggs13,url,https://pumpclaim.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944837441430405342 2025-07-14 19:12:56,CarlyGriggs13,url,https://pumpcoin.run,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944837537438081176 2025-07-14 19:12:56,CarlyGriggs13,domain,pumpcoin.run,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944837537438081176 2025-07-14 19:13:16,CarlyGriggs13,url,https://pump-token.com,#phishing,https://x.com/CarlyGriggs13/status/1944837619654762505 2025-07-14 19:13:16,CarlyGriggs13,domain,pump-token.com,#phishing,https://x.com/CarlyGriggs13/status/1944837619654762505 2025-07-14 19:13:41,CarlyGriggs13,url,https://pumppfunsol.net,#phishing,https://x.com/CarlyGriggs13/status/1944837724055212167 2025-07-14 19:13:41,CarlyGriggs13,domain,pumppfunsol.net,#phishing,https://x.com/CarlyGriggs13/status/1944837724055212167 2025-07-14 19:14:04,CarlyGriggs13,url,https://private-pump.fun,#phishing,https://x.com/CarlyGriggs13/status/1944837820788482522 2025-07-14 19:14:04,CarlyGriggs13,domain,private-pump.fun,#phishing,https://x.com/CarlyGriggs13/status/1944837820788482522 2025-07-14 19:14:25,CarlyGriggs13,domain,pumpswaps.fun,#phishing,https://x.com/CarlyGriggs13/status/1944837909401464922 2025-07-14 19:14:25,CarlyGriggs13,url,https://pumpswaps.fun,#phishing,https://x.com/CarlyGriggs13/status/1944837909401464922 2025-07-14 19:23:45,CarlyGriggs13,domain,ntfshop-magiceden.com,#phishing,https://x.com/CarlyGriggs13/status/1944840257410683279 2025-07-14 19:23:45,CarlyGriggs13,url,https://ntfshop-magiceden.com,#phishing,https://x.com/CarlyGriggs13/status/1944840257410683279 2025-07-14 19:24:05,CarlyGriggs13,domain,web-magic-eden.cc,#phishing,https://x.com/CarlyGriggs13/status/1944840343222149573 2025-07-14 19:24:05,CarlyGriggs13,url,https://web-magic-eden.cc,#phishing,https://x.com/CarlyGriggs13/status/1944840343222149573 2025-07-14 19:24:29,CarlyGriggs13,url,https://www.elgen-laeyr.com,#phishing,https://x.com/CarlyGriggs13/status/1944840443189191036 2025-07-14 19:24:29,CarlyGriggs13,domain,elgen-laeyr.com,#phishing,https://x.com/CarlyGriggs13/status/1944840443189191036 2025-07-14 19:34:36,CarlyGriggs13,domain,web-ethena.com,#phishing,https://x.com/CarlyGriggs13/status/1944842986468335763 2025-07-14 19:34:36,CarlyGriggs13,url,https://web-ethena.com,#phishing,https://x.com/CarlyGriggs13/status/1944842986468335763 2025-07-14 19:39:38,CarlyGriggs13,domain,kamlno-flnance.com,#phishing,https://x.com/CarlyGriggs13/status/1944844256482394430 2025-07-14 19:39:38,CarlyGriggs13,url,https://www.kamlno-flnance.com,#phishing,https://x.com/CarlyGriggs13/status/1944844256482394430 2025-07-14 19:47:16,skocherhan,url,http://oo.ledgerverifvxy.com,,https://x.com/skocherhan/status/1944846176626561394 2025-07-14 19:47:16,skocherhan,url,http://83.136.209.172,,https://x.com/skocherhan/status/1944846176626561394 2025-07-14 19:47:16,skocherhan,domain,oo.ledgerverifvxy.com,,https://x.com/skocherhan/status/1944846176626561394 2025-07-14 19:47:16,skocherhan,ip,83.136.209.172,,https://x.com/skocherhan/status/1944846176626561394 2025-07-14 19:47:16,skocherhan,domain,coinbyex.com,,https://x.com/skocherhan/status/1944846176626561394 2025-07-14 19:47:16,skocherhan,url,http://coinbyex.com,,https://x.com/skocherhan/status/1944846176626561394 2025-07-14 19:47:16,skocherhan,md5,c47140190b5e1e15655eb2716104e460,,https://x.com/skocherhan/status/1944846176626561394 2025-07-14 20:00:08,urldna_bot,url,http://lombado411.github.io/onyeka/doc.html,#phishing #scam,https://x.com/urldna_bot/status/1944849415870566673 2025-07-14 20:00:08,urldna_bot,domain,lombado411.github.io,#phishing #scam,https://x.com/urldna_bot/status/1944849415870566673 2025-07-14 20:58:33,drb_ra,url,http://46.8.120.229:443,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1944864113143762988 2025-07-14 20:58:33,drb_ra,ip,46.8.120.229,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1944864113143762988 2025-07-14 20:58:38,drb_ra,url,http://80.64.19.99:31337,#Sliver #C2,https://x.com/drb_ra/status/1944864134639837338 2025-07-14 20:58:38,drb_ra,ip,80.64.19.99,#Sliver #C2,https://x.com/drb_ra/status/1944864134639837338 2025-07-14 20:58:43,drb_ra,url,http://165.22.55.200:443,#Sliver #C2,https://x.com/drb_ra/status/1944864155732992336 2025-07-14 20:58:43,drb_ra,ip,165.22.55.200,#Sliver #C2,https://x.com/drb_ra/status/1944864155732992336 2025-07-14 20:58:48,drb_ra,url,http://147.78.130.42:31337,#Sliver #C2,https://x.com/drb_ra/status/1944864177199440197 2025-07-14 20:58:48,drb_ra,ip,147.78.130.42,#Sliver #C2,https://x.com/drb_ra/status/1944864177199440197 2025-07-14 20:58:53,drb_ra,url,http://172.232.124.4:31337,#Sliver #C2,https://x.com/drb_ra/status/1944864198825271496 2025-07-14 20:58:53,drb_ra,ip,172.232.124.4,#Sliver #C2,https://x.com/drb_ra/status/1944864198825271496 2025-07-14 21:00:21,threatquery,url,http://70.27.138.201,#C2 #Qakbot #malware,https://x.com/threatquery/status/1944864568519409875 2025-07-14 21:00:22,threatquery,url,http://87.121.84.125,#C2 #malware,https://x.com/threatquery/status/1944864572042612776 2025-07-14 21:00:22,threatquery,ip,87.121.84.125,#C2 #malware,https://x.com/threatquery/status/1944864572042612776 2025-07-14 21:00:22,threatquery,url,http://54.159.89.14,#C2 #malware,https://x.com/threatquery/status/1944864570268409988 2025-07-14 21:00:56,drb_ra,url,http://172.245.253.10:8888,#Supershell #C2,https://x.com/drb_ra/status/1944864715584512229 2025-07-14 21:00:56,drb_ra,ip,172.245.253.10,#Supershell #C2,https://x.com/drb_ra/status/1944864715584512229 2025-07-14 21:01:01,drb_ra,url,http://38.54.1.115:8888,#Supershell #C2,https://x.com/drb_ra/status/1944864734097883188 2025-07-14 21:01:01,drb_ra,ip,38.54.1.115,#Supershell #C2,https://x.com/drb_ra/status/1944864734097883188 2025-07-14 21:01:07,drb_ra,url,http://45.76.187.58:443,#Havoc #C2,https://x.com/drb_ra/status/1944864762682040730 2025-07-14 21:01:07,drb_ra,ip,45.76.187.58,#Havoc #C2,https://x.com/drb_ra/status/1944864762682040730 2025-07-14 21:01:13,drb_ra,url,http://43.162.116.108:443,#Havoc #C2,https://x.com/drb_ra/status/1944864784056570364 2025-07-14 21:01:13,drb_ra,ip,43.162.116.108,#Havoc #C2,https://x.com/drb_ra/status/1944864784056570364 2025-07-14 21:09:18,drb_ra,url,http://207.244.199.228:444,#Deimos #C2,https://x.com/drb_ra/status/1944866818302337475 2025-07-14 21:09:18,drb_ra,ip,207.244.199.228,#Deimos #C2,https://x.com/drb_ra/status/1944866818302337475 2025-07-14 21:09:23,drb_ra,url,http://95.130.227.6:31337,#Sliver #C2,https://x.com/drb_ra/status/1944866839974305987 2025-07-14 21:09:23,drb_ra,ip,95.130.227.6,#Sliver #C2,https://x.com/drb_ra/status/1944866839974305987 2025-07-14 21:09:28,drb_ra,url,http://52.43.0.86:31337,#Sliver #C2,https://x.com/drb_ra/status/1944866860471554488 2025-07-14 21:09:28,drb_ra,ip,52.43.0.86,#Sliver #C2,https://x.com/drb_ra/status/1944866860471554488 2025-07-14 21:13:32,drb_ra,url,http://179.60.149.213:80,#C2,https://x.com/drb_ra/status/1944867884355703256 2025-07-14 21:13:32,drb_ra,ip,179.60.149.213,#C2,https://x.com/drb_ra/status/1944867884355703256 2025-07-14 21:13:37,drb_ra,url,http://5.252.155.81:80,#C2,https://x.com/drb_ra/status/1944867906741002725 2025-07-14 21:13:42,drb_ra,url,http://94.159.113.197:80,#C2,https://x.com/drb_ra/status/1944867928266170791 2025-07-14 21:13:46,drb_ra,url,http://193.105.134.245:80,#C2,https://x.com/drb_ra/status/1944867944481349821 2025-07-14 21:13:51,drb_ra,url,http://185.39.19.164:80,#C2,https://x.com/drb_ra/status/1944867966249787766 2025-07-14 21:19:56,drb_ra,url,http://118.31.18.77:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869494838669494 2025-07-14 21:19:56,drb_ra,ip,118.31.18.77,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869494838669494 2025-07-14 21:20:01,drb_ra,url,https://47.120.32.72/activity,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869517185966431 2025-07-14 21:20:01,drb_ra,url,http://47.120.32.72:8069,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869517185966431 2025-07-14 21:20:01,drb_ra,ip,47.120.32.72,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869517185966431 2025-07-14 21:20:06,drb_ra,domain,expohsp.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869540078477376 2025-07-14 21:20:06,drb_ra,url,https://www.expohsp.com/dist/css/bootstrap.min.css,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869540078477376 2025-07-14 21:20:06,drb_ra,url,http://47.94.53.65:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869540078477376 2025-07-14 21:20:06,drb_ra,ip,47.94.53.65,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869540078477376 2025-07-14 21:20:12,drb_ra,url,http://47.237.173.81:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869562740301986 2025-07-14 21:20:12,drb_ra,ip,47.237.173.81,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869562740301986 2025-07-14 21:20:12,drb_ra,url,https://47.237.173.81/load,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869562740301986 2025-07-14 21:20:17,drb_ra,url,https://158.41.106.139/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869584533905884 2025-07-14 21:20:17,drb_ra,url,http://158.41.106.139:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869584533905884 2025-07-14 21:20:17,drb_ra,ip,158.41.106.139,#CobaltStrike #C2,https://x.com/drb_ra/status/1944869584533905884 2025-07-14 21:22:21,drb_ra,url,https://192.168.239.136/s/ref=nb_sb_noss_1/167-3294888-0262949/field-keywords=books,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870103771693370 2025-07-14 21:22:21,drb_ra,url,http://97.64.81.186:9999,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870103771693370 2025-07-14 21:22:27,drb_ra,domain,app.dlmix.ourdvs.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870127595556914 2025-07-14 21:22:27,drb_ra,url,https://app.dlmix.ourdvs.com/dist/css/bootstrap.min.css,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870127595556914 2025-07-14 21:22:27,drb_ra,url,http://39.99.158.125:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870127595556914 2025-07-14 21:22:27,drb_ra,ip,39.99.158.125,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870127595556914 2025-07-14 21:22:32,drb_ra,url,http://38.190.198.55:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870150462955824 2025-07-14 21:22:32,drb_ra,ip,38.190.198.55,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870150462955824 2025-07-14 21:22:32,drb_ra,url,https://38.190.198.55/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870150462955824 2025-07-14 21:22:37,drb_ra,domain,yubo.life,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870172843762031 2025-07-14 21:22:37,drb_ra,url,https://www.yubo.life/s/ref=nb_sb_noss_1/167-3294888-0262949/field-keywords=books,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870172843762031 2025-07-14 21:22:37,drb_ra,url,http://97.64.81.186:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870172843762031 2025-07-14 21:22:37,drb_ra,ip,97.64.81.186,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870172843762031 2025-07-14 21:22:42,drb_ra,url,https://117.72.103.9/visit.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870194150617354 2025-07-14 21:22:42,drb_ra,url,http://117.72.103.9:8086,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870194150617354 2025-07-14 21:22:42,drb_ra,ip,117.72.103.9,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870194150617354 2025-07-14 21:22:48,drb_ra,url,http://117.72.69.118:8081,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870216816844912 2025-07-14 21:22:48,drb_ra,ip,117.72.69.118,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870216816844912 2025-07-14 21:22:48,drb_ra,url,https://117.72.69.118/pixel,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870216816844912 2025-07-14 21:22:53,drb_ra,url,https://47.122.30.177/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870239243563435 2025-07-14 21:22:53,drb_ra,url,http://47.122.30.177:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870239243563435 2025-07-14 21:22:53,drb_ra,ip,47.122.30.177,#CobaltStrike #C2,https://x.com/drb_ra/status/1944870239243563435 2025-07-14 21:41:15,CarlyGriggs13,domain,airdrop.zebec.name,#phishing,https://x.com/CarlyGriggs13/status/1944874861438099557 2025-07-14 21:41:15,CarlyGriggs13,url,https://airdrop.zebec.name,#phishing,https://x.com/CarlyGriggs13/status/1944874861438099557 2025-07-14 21:41:36,CarlyGriggs13,domain,flextropic.com,#phishing,https://x.com/CarlyGriggs13/status/1944874949245907318 2025-07-14 21:41:36,CarlyGriggs13,url,https://flextropic.com/user/dashboard,#phishing,https://x.com/CarlyGriggs13/status/1944874949245907318 2025-07-14 21:41:59,CarlyGriggs13,domain,trustconnect.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944875045152567436 2025-07-14 21:41:59,CarlyGriggs13,url,https://trustconnect.vercel.app,#phishing,https://x.com/CarlyGriggs13/status/1944875045152567436 2025-07-14 22:00:19,SarlackLab,url,http://147.185.221.20:47151,#C2 #Njrat,https://x.com/SarlackLab/status/1944879659935547608 2025-07-14 22:00:19,SarlackLab,domain,rock-indiana.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1944879659935547608 2025-07-14 22:00:19,SarlackLab,url,http://rock-indiana.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1944879659935547608 2025-07-14 22:00:19,SarlackLab,ip,147.185.221.20,#C2 #Njrat,https://x.com/SarlackLab/status/1944879659935547608 2025-07-14 22:17:19,qrjxl,domain,gencatsupporthelpdeskadministradordept.weebly.com,#scam #phishing,https://x.com/qrjxl/status/1944883935856701809 2025-07-14 22:17:19,qrjxl,url,https://gencatsupporthelpdeskadministradordept.weebly.com,#scam #phishing,https://x.com/qrjxl/status/1944883935856701809 2025-07-14 22:44:00,masaomi346,domain,52u84v.top,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,url,https://52u84v.top/6Uwjwh/,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,domain,8xjh84.top,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,url,https://8xjh84.top/6Uwjwh/,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,domain,fp6jac.top,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,url,https://fp6jac.top/6Uwjwh/,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,domain,i3n5nh.top,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,url,https://i3n5nh.top/6uwjwh/,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,domain,nryj4w.top,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,url,https://nryj4w.top/6Uwjwh/,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,domain,snw8tq.top,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,url,https://snw8tq.top/6Uwjwh/,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,domain,zabck9.top,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 22:44:00,masaomi346,url,https://zabck9.top/6Uwjwh/,#phishing,https://x.com/masaomi346/status/1944890652522897893 2025-07-14 23:03:23,drb_ra,url,https://217.154.212.25/c/msdownload/update/others/2016/12/29136388_,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895531899142654 2025-07-14 23:03:23,drb_ra,url,http://217.154.212.25:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895531899142654 2025-07-14 23:03:23,drb_ra,ip,217.154.212.25,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895531899142654 2025-07-14 23:03:29,drb_ra,url,http://38.207.176.60:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895554376392994 2025-07-14 23:03:29,drb_ra,ip,38.207.176.60,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895554376392994 2025-07-14 23:03:34,drb_ra,url,http://158.160.179.129:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895575574413502 2025-07-14 23:03:34,drb_ra,ip,158.160.179.129,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895575574413502 2025-07-14 23:03:39,drb_ra,url,http://123.57.245.136:1332,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895597661532417 2025-07-14 23:03:39,drb_ra,ip,123.57.245.136,#CobaltStrike #C2,https://x.com/drb_ra/status/1944895597661532417 2025-07-14 23:16:14,CarlyGriggs13,domain,bin-pledgeservice.net,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944898765313245645 2025-07-14 23:16:14,CarlyGriggs13,url,https://www.bin-pledgeservice.net/#/,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1944898765313245645 2025-07-15 00:00:10,urldna_bot,domain,ethxch.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944909821863469391 2025-07-15 00:00:10,urldna_bot,url,https://ethxch.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944909821863469391 2025-07-15 00:32:27,CarlyGriggs13,domain,pumpcoin.run,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944917945844662466 2025-07-15 00:32:27,CarlyGriggs13,url,https://pumpcoin.run,#phishing #ransomware,https://x.com/CarlyGriggs13/status/1944917945844662466 2025-07-15 00:33:55,CarlyGriggs13,domain,doodb.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944918311869014256 2025-07-15 00:33:55,CarlyGriggs13,url,https://doodb.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944918311869014256 2025-07-15 00:34:16,CarlyGriggs13,domain,doodles-infinity.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944918402423836838 2025-07-15 00:34:16,CarlyGriggs13,url,https://doodles-infinity.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944918402423836838 2025-07-15 00:34:45,CarlyGriggs13,domain,eligibility-pump.fun,#phishing,https://x.com/CarlyGriggs13/status/1944918524071219344 2025-07-15 00:34:45,CarlyGriggs13,url,https://eligibility-pump.fun,#phishing,https://x.com/CarlyGriggs13/status/1944918524071219344 2025-07-15 00:35:01,CarlyGriggs13,url,https://solanadrop.network,#phishing,https://x.com/CarlyGriggs13/status/1944918592086270190 2025-07-15 00:35:01,CarlyGriggs13,domain,solanadrop.network,#phishing,https://x.com/CarlyGriggs13/status/1944918592086270190 2025-07-15 00:35:21,CarlyGriggs13,url,https://frax-en.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944918673216475170 2025-07-15 00:35:21,CarlyGriggs13,domain,frax-en.xyz,#phishing,https://x.com/CarlyGriggs13/status/1944918673216475170 2025-07-15 00:35:42,CarlyGriggs13,url,https://tronink.net,#phishing,https://x.com/CarlyGriggs13/status/1944918764123758643 2025-07-15 00:35:42,CarlyGriggs13,domain,tronink.net,#phishing,https://x.com/CarlyGriggs13/status/1944918764123758643 2025-07-15 00:36:13,CarlyGriggs13,url,https://coinbaseasset.com,#phishing,https://x.com/CarlyGriggs13/status/1944918894189404341 2025-07-15 00:36:13,CarlyGriggs13,domain,coinbaseasset.com,#phishing,https://x.com/CarlyGriggs13/status/1944918894189404341 2025-07-15 00:36:35,CarlyGriggs13,domain,easy-money.online-jobbers.com,#phishing,https://x.com/CarlyGriggs13/status/1944918984324759857 2025-07-15 00:36:35,CarlyGriggs13,url,https://easy-money.online-jobbers.com,#phishing,https://x.com/CarlyGriggs13/status/1944918984324759857 2025-07-15 00:36:52,CarlyGriggs13,url,https://mail.mewe-fintech.com,#phishing,https://x.com/CarlyGriggs13/status/1944919055762174287 2025-07-15 00:36:52,CarlyGriggs13,domain,mail.mewe-fintech.com,#phishing,https://x.com/CarlyGriggs13/status/1944919055762174287 2025-07-15 00:37:14,CarlyGriggs13,domain,claim.velvetcapitalgroup.org,#phishing,https://x.com/CarlyGriggs13/status/1944919149257621571 2025-07-15 00:37:14,CarlyGriggs13,url,https://claim.velvetcapitalgroup.org,#phishing,https://x.com/CarlyGriggs13/status/1944919149257621571 2025-07-15 00:37:37,CarlyGriggs13,domain,curve-en.finance,#phishing,https://x.com/CarlyGriggs13/status/1944919246976540816 2025-07-15 00:37:37,CarlyGriggs13,url,https://curve-en.finance,#phishing,https://x.com/CarlyGriggs13/status/1944919246976540816 2025-07-15 00:37:55,CarlyGriggs13,domain,metropolisfinb.com,#phishing,https://x.com/CarlyGriggs13/status/1944919319478964689 2025-07-15 00:37:55,CarlyGriggs13,url,https://metropolisfinb.com,#phishing,https://x.com/CarlyGriggs13/status/1944919319478964689 2025-07-15 00:42:54,qrjxl,url,https://gencatsupporthelpdeskadministradordept.weebly.com,#phishing,https://x.com/qrjxl/status/1944920573261254685 2025-07-15 00:42:54,qrjxl,domain,gencatsupporthelpdeskadministradordept.weebly.com,#phishing,https://x.com/qrjxl/status/1944920573261254685 2025-07-15 02:00:05,urldna_bot,domain,wkuuedu.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944939998236623210 2025-07-15 02:00:05,urldna_bot,url,https://wkuuedu.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1944939998236623210 2025-07-15 02:14:35,drb_ra,url,http://217.154.212.25:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944943648925216990 2025-07-15 02:14:35,drb_ra,ip,217.154.212.25,#CobaltStrike #C2,https://x.com/drb_ra/status/1944943648925216990 2025-07-15 02:14:35,drb_ra,url,https://217.154.212.25/c/msdownload/update/others/2016/12/29136388_,#CobaltStrike #C2,https://x.com/drb_ra/status/1944943648925216990 2025-07-15 02:14:41,drb_ra,ip,47.94.53.65,#CobaltStrike #C2,https://x.com/drb_ra/status/1944943672392606049 2025-07-15 02:14:41,drb_ra,url,http://47.94.53.65:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1944943672392606049 2025-07-15 02:14:41,drb_ra,url,https://47.94.53.65/dist/css/bootstrap.min.css,#CobaltStrike #C2,https://x.com/drb_ra/status/1944943672392606049 2025-07-15 04:00:08,urldna_bot,domain,hazzasargeant5.wixsite.com,#scam #phishing,https://x.com/urldna_bot/status/1944970209296552253 2025-07-15 04:00:08,urldna_bot,url,http://hazzasargeant5.wixsite.com/my-site-1/,#scam #phishing,https://x.com/urldna_bot/status/1944970209296552253 2025-07-15 04:01:28,SarlackLab,url,http://167.160.161.247:8595,#Njrat #C2,https://x.com/SarlackLab/status/1944970543674884415 2025-07-15 04:01:28,SarlackLab,ip,167.160.161.247,#Njrat #C2,https://x.com/SarlackLab/status/1944970543674884415 2025-07-15 05:02:32,suyog41,md5,f5b54d853f9dc795313ca5dde0f55f8b,#RAT,https://x.com/suyog41/status/1944985914964414569 2025-07-15 05:21:09,BlinkzSec,sha256,d0d45748b2c23a07885a6e0d225495e6800f9bc005a7dd60261881cae8b91583,#malware,https://x.com/BlinkzSec/status/1944990596478763252 2025-07-15 06:12:49,ReBensk,md5,1bdcff1657c331f9623a3077e3d99ff9,#Trojan #malware #Android,https://x.com/ReBensk/status/1945003602101121052 2025-07-15 06:15:33,soursecc,url,https://www.meet.google.webconnect88.com,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,url,https://meet.google.webconnect11.com,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,domain,meet.google.webconnect11.com,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,domain,meet.google.webconnect58.com,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,url,https://meet.google.webconnect49.com/krk-rvc-xwh/,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,domain,meet.google.webconnect88.com,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,domain,meet.google.web-connect.us,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,url,https://meet.google.webconnect58.com/ktb-gkc-xha,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,url,https://meet.google.web-connect.us,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:15:33,soursecc,domain,meet.google.webconnect49.com,,https://x.com/soursecc/status/1945004289832730778 2025-07-15 06:45:54,drb_ra,ip,103.73.67.164,#Sliver #C2,https://x.com/drb_ra/status/1945011925693137111 2025-07-15 06:45:54,drb_ra,url,http://103.73.67.164:31337,#Sliver #C2,https://x.com/drb_ra/status/1945011925693137111 2025-07-15 06:45:59,drb_ra,url,http://177.124.72.24:31337,#Sliver #C2,https://x.com/drb_ra/status/1945011947453256039 2025-07-15 06:45:59,drb_ra,ip,177.124.72.24,#Sliver #C2,https://x.com/drb_ra/status/1945011947453256039 2025-07-15 06:48:02,drb_ra,url,http://196.251.80.35:80,#Pegasus #Hookbot #C2,https://x.com/drb_ra/status/1945012464258629978 2025-07-15 06:48:02,drb_ra,ip,196.251.80.35,#Pegasus #Hookbot #C2,https://x.com/drb_ra/status/1945012464258629978 2025-07-15 06:48:07,drb_ra,ip,114.215.175.221,#Supershell #C2,https://x.com/drb_ra/status/1945012485792133559 2025-07-15 06:48:07,drb_ra,url,http://114.215.175.221:8888,#Supershell #C2,https://x.com/drb_ra/status/1945012485792133559 2025-07-15 06:48:12,drb_ra,url,http://103.146.159.70:8888,#Supershell #C2,https://x.com/drb_ra/status/1945012507220852896 2025-07-15 06:48:12,drb_ra,ip,103.146.159.70,#Supershell #C2,https://x.com/drb_ra/status/1945012507220852896 2025-07-15 06:48:18,drb_ra,ip,206.82.6.166,#Supershell #C2,https://x.com/drb_ra/status/1945012529366798643 2025-07-15 06:48:18,drb_ra,url,http://206.82.6.166:8443,#Supershell #C2,https://x.com/drb_ra/status/1945012529366798643 2025-07-15 06:48:22,drb_ra,url,http://2.50.99.204:443,#Qakbot #C2,https://x.com/drb_ra/status/1945012546198470764 2025-07-15 06:48:27,drb_ra,ip,20.33.48.7,#Havoc #C2,https://x.com/drb_ra/status/1945012567845261551 2025-07-15 06:48:27,drb_ra,url,http://20.33.48.7:8080,#Havoc #C2,https://x.com/drb_ra/status/1945012567845261551 2025-07-15 06:48:32,drb_ra,ip,185.205.210.226,#Mythic #C2,https://x.com/drb_ra/status/1945012589861224779 2025-07-15 06:48:32,drb_ra,url,http://185.205.210.226:7443,#Mythic #C2,https://x.com/drb_ra/status/1945012589861224779 2025-07-15 06:49:30,harugasumi,domain,pocketcard-volutit.pkiqg.cn,#phishing,https://x.com/harugasumi/status/1945012831444693163 2025-07-15 06:49:30,harugasumi,url,https://pocketcard-volutit.pkiqg.cn/netservice/login/,#phishing,https://x.com/harugasumi/status/1945012831444693163 2025-07-15 06:50:35,drb_ra,url,http://107.172.201.160:444,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1945013106993680433 2025-07-15 06:50:35,drb_ra,ip,107.172.201.160,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1945013106993680433 2025-07-15 06:50:41,drb_ra,url,http://15.161.111.151:1912,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945013129198330247 2025-07-15 06:50:41,drb_ra,ip,15.161.111.151,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945013129198330247 2025-07-15 06:50:46,drb_ra,url,http://177.255.88.14:8082,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013150824141223 2025-07-15 06:50:46,drb_ra,ip,177.255.88.14,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013150824141223 2025-07-15 06:50:51,drb_ra,url,http://5.231.220.79:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013172223553638 2025-07-15 06:50:56,drb_ra,url,http://45.81.23.43:4444,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013194197532847 2025-07-15 06:51:01,drb_ra,ip,45.81.23.43,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013215894683953 2025-07-15 06:51:01,drb_ra,url,http://45.81.23.43:80,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013215894683953 2025-07-15 06:51:05,drb_ra,url,http://45.81.23.42:4444,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013232168554679 2025-07-15 06:51:05,drb_ra,ip,45.81.23.42,#AsyncRAT #C2,https://x.com/drb_ra/status/1945013232168554679 2025-07-15 07:16:52,CarlyGriggs13,url,https://pumpfun-pumpfun.github.io,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1945019719880253683 2025-07-15 07:16:52,CarlyGriggs13,domain,pumpfun-pumpfun.github.io,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1945019719880253683 2025-07-15 07:21:09,CarlyGriggs13,url,https://faceit.streamer-cs.com/auth,#phishing,https://x.com/CarlyGriggs13/status/1945020797413621896 2025-07-15 07:21:09,CarlyGriggs13,domain,faceit.streamer-cs.com,#phishing,https://x.com/CarlyGriggs13/status/1945020797413621896 2025-07-15 07:22:49,CarlyGriggs13,domain,faceit.5v5room.com,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1945021217557139713 2025-07-15 07:22:49,CarlyGriggs13,url,https://faceit.5v5room.com/3i7quc7hpb2v.html,#ransomware #phishing,https://x.com/CarlyGriggs13/status/1945021217557139713 2025-07-15 07:26:56,CarlyGriggs13,url,https://mammothlair.com,#phishing,https://x.com/CarlyGriggs13/status/1945022254728831450 2025-07-15 07:26:56,CarlyGriggs13,domain,mammothlair.com,#phishing,https://x.com/CarlyGriggs13/status/1945022254728831450 2025-07-15 07:27:23,CarlyGriggs13,domain,trmpx.money,#phishing,https://x.com/CarlyGriggs13/status/1945022367450771629 2025-07-15 07:27:23,CarlyGriggs13,url,https://trmpx.money,#phishing,https://x.com/CarlyGriggs13/status/1945022367450771629 2025-07-15 07:28:04,CarlyGriggs13,domain,captions.ai,#phishing,https://x.com/CarlyGriggs13/status/1945022538016264386 2025-07-15 07:28:04,CarlyGriggs13,url,https://captions.ai,#phishing,https://x.com/CarlyGriggs13/status/1945022538016264386 2025-07-15 07:28:45,CarlyGriggs13,url,https://dark.shopping,#phishing,https://x.com/CarlyGriggs13/status/1945022712113508473 2025-07-15 07:28:45,CarlyGriggs13,domain,dark.shopping,#phishing,https://x.com/CarlyGriggs13/status/1945022712113508473 2025-07-15 07:29:03,CarlyGriggs13,domain,kidol.in,#phishing,https://x.com/CarlyGriggs13/status/1945022787057324325 2025-07-15 07:29:03,CarlyGriggs13,url,https://kidol.in,#phishing,https://x.com/CarlyGriggs13/status/1945022787057324325 2025-07-15 07:29:28,CarlyGriggs13,url,https://hepkjil.com,#phishing,https://x.com/CarlyGriggs13/status/1945022889889046579 2025-07-15 07:29:28,CarlyGriggs13,domain,hepkjil.com,#phishing,https://x.com/CarlyGriggs13/status/1945022889889046579 2025-07-15 07:29:50,CarlyGriggs13,url,https://pixy.bet,#phishing,https://x.com/CarlyGriggs13/status/1945022983627555220 2025-07-15 07:29:50,CarlyGriggs13,domain,pixy.bet,#phishing,https://x.com/CarlyGriggs13/status/1945022983627555220 2025-07-15 07:30:07,CarlyGriggs13,domain,bowplay.com,#phishing,https://x.com/CarlyGriggs13/status/1945023053081067681 2025-07-15 07:30:07,CarlyGriggs13,url,https://bowplay.com,#phishing,https://x.com/CarlyGriggs13/status/1945023053081067681 2025-07-15 07:30:33,CarlyGriggs13,url,https://winblast.bet,#phishing,https://x.com/CarlyGriggs13/status/1945023162694930556 2025-07-15 07:30:33,CarlyGriggs13,domain,winblast.bet,#phishing,https://x.com/CarlyGriggs13/status/1945023162694930556 2025-07-15 07:30:52,CarlyGriggs13,url,https://restwin.net,#phishing,https://x.com/CarlyGriggs13/status/1945023241157763490 2025-07-15 07:30:52,CarlyGriggs13,domain,restwin.net,#phishing,https://x.com/CarlyGriggs13/status/1945023241157763490 2025-07-15 07:31:41,CarlyGriggs13,url,https://slotx.bet,#phishing,https://x.com/CarlyGriggs13/status/1945023447123337287 2025-07-15 07:31:41,CarlyGriggs13,domain,slotx.bet,#phishing,https://x.com/CarlyGriggs13/status/1945023447123337287 2025-07-15 07:34:57,Mr_Harleyphaz,domain,stakex.bet,#phishing,https://x.com/Mr_Harleyphaz/status/1945024271417291232 2025-07-15 07:34:57,Mr_Harleyphaz,url,https://stakex.bet,#phishing,https://x.com/Mr_Harleyphaz/status/1945024271417291232 2025-07-15 07:37:19,CarlyGriggs13,url,http://store.steampowered.app1624974.com/thgsg6yhbmzl.html,#phishing,https://x.com/CarlyGriggs13/status/1945024864772911318 2025-07-15 07:37:19,CarlyGriggs13,domain,store.steampowered.app1624974.com,#phishing,https://x.com/CarlyGriggs13/status/1945024864772911318 2025-07-15 07:47:08,ShanHolo,md5,77e83f759e3c3eb6cda2279a592cc880,#malware #opendir,https://x.com/ShanHolo/status/1945027338078441651 2025-07-15 07:47:08,ShanHolo,ip,104.207.148.168,#malware #opendir,https://x.com/ShanHolo/status/1945027338078441651 2025-07-15 07:47:08,ShanHolo,domain,wgetfiles.com,#malware #opendir,https://x.com/ShanHolo/status/1945027338078441651 2025-07-15 07:47:08,ShanHolo,md5,de75733b488852e0c14bf913c71cca01,#malware #opendir,https://x.com/ShanHolo/status/1945027338078441651 2025-07-15 07:47:08,ShanHolo,url,https://www.retirify.sbs/quote.html,#malware #opendir,https://x.com/ShanHolo/status/1945027338078441651 2025-07-15 07:47:08,ShanHolo,domain,retirify.sbs,#malware #opendir,https://x.com/ShanHolo/status/1945027338078441651 2025-07-15 07:47:08,ShanHolo,url,https://www.wgetfiles.com/f/cj.exe,#malware #opendir,https://x.com/ShanHolo/status/1945027338078441651 2025-07-15 08:00:09,urldna_bot,domain,pub-12823fbd443740db82cdf220f279156a.r2.dev,#phishing #scam,https://x.com/urldna_bot/status/1945030610382139513 2025-07-15 08:00:09,urldna_bot,url,http://pub-12823fbd443740db82cdf220f279156a.r2.dev/949498939dhah9338kajk3jhh3i3.html,#phishing #scam,https://x.com/urldna_bot/status/1945030610382139513 2025-07-15 08:00:09,urldna_bot,md5,12823fbd443740db82cdf220f279156a,#phishing #scam,https://x.com/urldna_bot/status/1945030610382139513 2025-07-15 08:16:46,ShanHolo,url,http://www.ambiopharmconsultingltd.com:1515,#C2 #malware,https://x.com/ShanHolo/status/1945034794896617757 2025-07-15 08:16:46,ShanHolo,domain,ambiopharmconsultingltd.com:1515,#C2 #malware,https://x.com/ShanHolo/status/1945034794896617757 2025-07-15 08:19:55,c9lab_soc,url,http://twitter-cn.cyou,#phishing #scam,https://x.com/c9lab_soc/status/1945035587901063593 2025-07-15 08:19:55,c9lab_soc,domain,twitter-cn.cyou,#phishing #scam,https://x.com/c9lab_soc/status/1945035587901063593 2025-07-15 10:13:18,skocherhan,url,https://admin-properties-captcha.com/sign-in,,https://x.com/skocherhan/status/1945064119662416029 2025-07-15 10:13:18,skocherhan,domain,admin-properties-captcha.com,,https://x.com/skocherhan/status/1945064119662416029 2025-07-15 10:17:11,skocherhan,ip,45.151.62.238,#opendir,https://x.com/skocherhan/status/1945065097694491028 2025-07-15 10:17:11,skocherhan,ip,196.251.71.46,#opendir,https://x.com/skocherhan/status/1945065097694491028 2025-07-15 10:17:11,skocherhan,url,http://196.251.71.46,#opendir,https://x.com/skocherhan/status/1945065097694491028 2025-07-15 10:17:11,skocherhan,url,http://45.151.62.238,#opendir,https://x.com/skocherhan/status/1945065097694491028 2025-07-15 10:27:40,cyb3rops,url,http://193.19.119.4,,https://x.com/cyb3rops/status/1945067734053581227 2025-07-15 10:39:06,skocherhan,domain,uppaycn.com,,https://x.com/skocherhan/status/1945070612608663698 2025-07-15 10:39:06,skocherhan,url,http://uppaycn.com,,https://x.com/skocherhan/status/1945070612608663698 2025-07-15 11:00:21,drb_ra,ip,39.99.149.49,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945075960937611732 2025-07-15 11:00:21,drb_ra,url,https://bcdc37vn5vr5t.cfc-execute.bj.baidubce.com/api/x,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945075960937611732 2025-07-15 11:00:21,drb_ra,domain,bcdc37vn5vr5t.cfc-execute.bj.baidubce.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945075960937611732 2025-07-15 11:00:21,drb_ra,url,http://39.99.149.49:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945075960937611732 2025-07-15 11:00:26,drb_ra,url,https://1.94.98.11/__utm.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945075983461023816 2025-07-15 11:00:26,drb_ra,url,http://1.94.98.11:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945075983461023816 2025-07-15 11:00:32,drb_ra,domain,2015wuyun.cc,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076005002952805 2025-07-15 11:00:32,drb_ra,url,https://www.2015wuyun.cc/www/handle/doc,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076005002952805 2025-07-15 11:00:32,drb_ra,url,http://194.102.104.25:3306,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076005002952805 2025-07-15 11:00:37,drb_ra,ip,201.92.134.212,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076029334151482 2025-07-15 11:00:37,drb_ra,domain,rec.metaambiental.eco.br,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076029334151482 2025-07-15 11:00:37,drb_ra,url,http://201.92.134.212:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076029334151482 2025-07-15 11:00:37,drb_ra,url,https://rec.metaambiental.eco.br/s/ref=nb_sb_noss_1/167-3294888-0262949/field-keywords=books,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076029334151482 2025-07-15 11:00:43,drb_ra,url,https://49.71.36.87/omp/api/get_page_config,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076051308134644 2025-07-15 11:00:43,drb_ra,ip,49.71.36.87,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076051308134644 2025-07-15 11:00:48,drb_ra,url,https://49.71.38.88/omp/api/micro_app/get_org_app,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076073466634708 2025-07-15 11:00:48,drb_ra,ip,49.71.38.88,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076073466634708 2025-07-15 11:00:53,drb_ra,ip,119.188.220.36,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076095633560031 2025-07-15 11:00:53,drb_ra,url,https://119.188.220.36/omp/api/get_page_config,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076095633560031 2025-07-15 11:00:58,drb_ra,ip,43.137.92.12,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076117901078882 2025-07-15 11:00:58,drb_ra,url,https://43.137.92.12/omp/api/micro_app/get_org_app,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076117901078882 2025-07-15 11:01:04,drb_ra,url,https://14.205.93.45/omp/api/get_page_config,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076140034478112 2025-07-15 11:01:04,drb_ra,ip,14.205.93.45,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076140034478112 2025-07-15 11:01:09,drb_ra,ip,120.27.198.212,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076162859860125 2025-07-15 11:01:09,drb_ra,url,https://101.33.195.153/hrmregister/corpTrial/get_permission,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076162859860125 2025-07-15 11:01:09,drb_ra,ip,101.33.195.153,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076162859860125 2025-07-15 11:01:09,drb_ra,url,http://120.27.198.212:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076162859860125 2025-07-15 11:01:15,drb_ra,url,https://167.160.161.186/jp.css,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076186142461982 2025-07-15 11:01:15,drb_ra,ip,167.160.161.186,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076186142461982 2025-07-15 11:01:15,drb_ra,url,http://167.160.161.186:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076186142461982 2025-07-15 11:01:19,drb_ra,url,http://1.12.248.6:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076203892691038 2025-07-15 11:01:26,drb_ra,url,https://61.240.220.118/hrmregister/corpTrial/get_permission,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076232845931006 2025-07-15 11:01:26,drb_ra,url,http://124.221.9.167:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076232845931006 2025-07-15 11:01:26,drb_ra,ip,124.221.9.167,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076232845931006 2025-07-15 11:01:26,drb_ra,ip,61.240.220.118,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076232845931006 2025-07-15 11:01:31,drb_ra,url,http://1.12.248.6:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076256313147502 2025-07-15 11:01:35,drb_ra,url,http://223.4.33.190:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076273270649241 2025-07-15 11:01:35,drb_ra,ip,223.4.33.190,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076273270649241 2025-07-15 11:01:42,drb_ra,url,http://194.102.104.25:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076300831510627 2025-07-15 11:01:42,drb_ra,ip,194.102.104.25,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076300831510627 2025-07-15 11:01:48,drb_ra,ip,124.71.204.3,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076324386607351 2025-07-15 11:01:48,drb_ra,url,http://124.71.204.3:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076324386607351 2025-07-15 11:03:51,drb_ra,ip,106.55.138.214,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076843180138509 2025-07-15 11:03:51,drb_ra,ip,193.112.239.170,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076843180138509 2025-07-15 11:03:51,drb_ra,url,http://106.55.138.214:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076843180138509 2025-07-15 11:03:57,drb_ra,url,http://8.130.191.106:18080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076865363738671 2025-07-15 11:04:02,drb_ra,ip,159.75.110.252,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076886490534310 2025-07-15 11:04:02,drb_ra,url,http://159.75.110.252:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945076886490534310 2025-07-15 11:20:09,drb_ra,ip,139.155.83.240,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080943288414512 2025-07-15 11:20:09,drb_ra,url,http://139.155.83.240:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080943288414512 2025-07-15 11:20:14,drb_ra,ip,146.70.232.43,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080965589610604 2025-07-15 11:20:14,drb_ra,url,http://146.70.232.43:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080965589610604 2025-07-15 11:20:14,drb_ra,url,https://146.70.232.43/css3/index2.shtml,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080965589610604 2025-07-15 11:20:18,drb_ra,url,http://107.175.158.208:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080982723322186 2025-07-15 11:20:18,drb_ra,ip,107.175.158.208,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080982723322186 2025-07-15 11:20:18,drb_ra,url,https://192.168.91.134/api/3,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945080982723322186 2025-07-15 12:00:10,urldna_bot,domain,pol-ito-it.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945091012944154948 2025-07-15 12:00:10,urldna_bot,url,https://pol-ito-it.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945091012944154948 2025-07-15 12:04:33,JAMESWT_WT,url,http://206.189.189.57,#opendir,https://x.com/JAMESWT_WT/status/1945092115588944093 2025-07-15 12:04:33,JAMESWT_WT,ip,206.189.189.57,#opendir,https://x.com/JAMESWT_WT/status/1945092115588944093 2025-07-15 12:08:13,skocherhan,ip,45.144.212.172,,https://x.com/skocherhan/status/1945093038235095222 2025-07-15 12:08:13,skocherhan,ip,147.124.216.228,,https://x.com/skocherhan/status/1945093038235095222 2025-07-15 12:08:13,skocherhan,url,http://45.144.212.172,,https://x.com/skocherhan/status/1945093038235095222 2025-07-15 12:08:13,skocherhan,domain,jegjav.duckdns.org,,https://x.com/skocherhan/status/1945093038235095222 2025-07-15 12:08:13,skocherhan,url,http://147.124.216.228,,https://x.com/skocherhan/status/1945093038235095222 2025-07-15 12:08:13,skocherhan,url,http://jegjav.duckdns.org,,https://x.com/skocherhan/status/1945093038235095222 2025-07-15 12:12:29,masaomi346,url,https://www.54once.com/biglobe2025supportinfo/login.html,#phishing,https://x.com/masaomi346/status/1945094113835036982 2025-07-15 12:12:29,masaomi346,domain,54once.com,#phishing,https://x.com/masaomi346/status/1945094113835036982 2025-07-15 12:21:24,suyog41,md5,415d7aed0ef2f18896a25309da9f4648,,https://x.com/suyog41/status/1945096355736903761 2025-07-15 12:21:24,suyog41,md5,f2ed1f72531ccee04b833fa6fe71e7b5,,https://x.com/suyog41/status/1945096355736903761 2025-07-15 12:21:24,suyog41,md5,93af24fe4376dd3cc5a2489beb5b8c30,,https://x.com/suyog41/status/1945096355736903761 2025-07-15 12:21:24,suyog41,md5,e1acc6fcc6b41e7f906ac0ac9babd825,,https://x.com/suyog41/status/1945096355736903761 2025-07-15 12:21:24,suyog41,md5,595ddabf6fa359365bf2976e27666c19,,https://x.com/suyog41/status/1945096355736903761 2025-07-15 12:44:07,PrakkiSathwik,md5,b24a0a48162559eb5b1d820656883a9f,#APT #phishing #C2,https://x.com/PrakkiSathwik/status/1945102076725371202 2025-07-15 12:44:07,PrakkiSathwik,ip,64.227.189.57,#APT #phishing #C2,https://x.com/PrakkiSathwik/status/1945102076725371202 2025-07-15 12:44:07,PrakkiSathwik,ip,178.128.204.138,#APT #phishing #C2,https://x.com/PrakkiSathwik/status/1945102076725371202 2025-07-15 12:44:07,PrakkiSathwik,md5,1c831f3fd2ec0aa5cc201666139ac992,#APT #phishing #C2,https://x.com/PrakkiSathwik/status/1945102076725371202 2025-07-15 12:44:07,PrakkiSathwik,md5,3447e49d4644079498d843e09151fdb0,#APT #phishing #C2,https://x.com/PrakkiSathwik/status/1945102076725371202 2025-07-15 12:44:09,PrakkiSathwik,ip,165.227.149.208,#APT #phishing,https://x.com/PrakkiSathwik/status/1945102081288810975 2025-07-15 12:44:09,PrakkiSathwik,ip,128.199.29.110,#APT #phishing,https://x.com/PrakkiSathwik/status/1945102081288810975 2025-07-15 12:44:09,PrakkiSathwik,md5,c944baa2fd95856d08d569dc82dc90fb,#APT #phishing,https://x.com/PrakkiSathwik/status/1945102081288810975 2025-07-15 12:44:09,PrakkiSathwik,md5,12d5bed0dc2ae970007f95877a1eacff,#APT #phishing,https://x.com/PrakkiSathwik/status/1945102081288810975 2025-07-15 13:01:48,1ZRR4H,url,https://bknpnt.com/bkngpntqow,,https://x.com/1ZRR4H/status/1945106525862944922 2025-07-15 13:01:48,1ZRR4H,domain,bknpnt.com,,https://x.com/1ZRR4H/status/1945106525862944922 2025-07-15 13:26:33,JAMESWT_WT,url,https://isnimitz.com/zxc/app.zip,#stealer,https://x.com/JAMESWT_WT/status/1945112751350681899 2025-07-15 13:26:33,JAMESWT_WT,url,https://stanprinston.com/zxc/app.zip,#stealer,https://x.com/JAMESWT_WT/status/1945112751350681899 2025-07-15 13:26:33,JAMESWT_WT,domain,stanprinston.com,#stealer,https://x.com/JAMESWT_WT/status/1945112751350681899 2025-07-15 13:26:33,JAMESWT_WT,url,https://isnimitz.com/zxc/app,#stealer,https://x.com/JAMESWT_WT/status/1945112751350681899 2025-07-15 13:26:33,JAMESWT_WT,domain,isnimitz.com,#stealer,https://x.com/JAMESWT_WT/status/1945112751350681899 2025-07-15 13:38:32,AmberMille78556,domain,cryptowin1212.com,#phishing #ransomware,https://x.com/AmberMille78556/status/1945115770310037714 2025-07-15 13:38:32,AmberMille78556,url,https://cryptowin1212.com,#phishing #ransomware,https://x.com/AmberMille78556/status/1945115770310037714 2025-07-15 13:40:13,AmberMille78556,domain,donateripple.net,#ransomware #phishing,https://x.com/AmberMille78556/status/1945116193896968550 2025-07-15 13:40:13,AmberMille78556,url,http://donateripple.net,#ransomware #phishing,https://x.com/AmberMille78556/status/1945116193896968550 2025-07-15 13:51:13,AmberMille78556,domain,pegecoinsol.co,#phishing,https://x.com/AmberMille78556/status/1945118961701417017 2025-07-15 13:51:13,AmberMille78556,url,https://pegecoinsol.co/snapshot/,#phishing,https://x.com/AmberMille78556/status/1945118961701417017 2025-07-15 13:52:19,AmberMille78556,domain,pulseroyal.io,#phishing,https://x.com/AmberMille78556/status/1945119237527257501 2025-07-15 13:52:19,AmberMille78556,url,https://pulseroyal.io,#phishing,https://x.com/AmberMille78556/status/1945119237527257501 2025-07-15 14:00:05,urldna_bot,domain,dtetteinne.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945121193381511573 2025-07-15 14:00:05,urldna_bot,url,https://dtetteinne.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945121193381511573 2025-07-15 14:00:18,SarlackLab,url,http://141.8.198.169:8080,#C2 #Njrat,https://x.com/SarlackLab/status/1945121244740792799 2025-07-15 14:00:18,SarlackLab,ip,141.8.198.169,#C2 #Njrat,https://x.com/SarlackLab/status/1945121244740792799 2025-07-15 14:54:53,StopMalvertisin,domain,mdowny11.cfd,#Lumma,https://x.com/StopMalvertisin/status/1945134984999674275 2025-07-15 14:54:53,StopMalvertisin,url,https://mdowny11.cfd/scan/?GVMUFZz?utm=1ohNiE,#Lumma,https://x.com/StopMalvertisin/status/1945134984999674275 2025-07-15 14:54:53,StopMalvertisin,url,https://mega.nz/file/dZBFwCxA#LEPoAGpDxWCQkPisPo63pxcY5yJyTTMdGAR_NCI_zXI,#Lumma,https://x.com/StopMalvertisin/status/1945134984999674275 2025-07-15 16:00:06,urldna_bot,domain,tiscalimailserviceupdateo.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945151394844905819 2025-07-15 16:00:06,urldna_bot,url,https://tiscalimailserviceupdateo.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945151394844905819 2025-07-15 16:25:51,drb_ra,url,http://139.162.204.37:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945157877452185755 2025-07-15 16:25:51,drb_ra,ip,139.162.204.37,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945157877452185755 2025-07-15 16:27:56,drb_ra,url,http://120.79.64.164:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 16:27:56,drb_ra,ip,120.79.64.164,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 16:27:56,drb_ra,domain,nyks.126.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 16:27:56,drb_ra,url,https://nyks.126.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 16:27:56,drb_ra,domain,dj.163.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 16:27:56,drb_ra,url,https://dj.163.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 16:27:56,drb_ra,domain,boss.163.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 16:27:56,drb_ra,url,https://boss.163.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945158399043248130 2025-07-15 17:13:36,AmberMille78556,domain,usdtmixer.digital,#phishing,https://x.com/AmberMille78556/status/1945169891499069616 2025-07-15 17:13:36,AmberMille78556,url,https://usdtmixer.digital,#phishing,https://x.com/AmberMille78556/status/1945169891499069616 2025-07-15 17:14:02,AmberMille78556,domain,usdtxmixer.com,#phishing,https://x.com/AmberMille78556/status/1945170002241290317 2025-07-15 17:14:02,AmberMille78556,url,https://usdtxmixer.com,#phishing,https://x.com/AmberMille78556/status/1945170002241290317 2025-07-15 18:00:06,urldna_bot,domain,mail1-accedi-libero-staff-it-italy-sslitaly423429kf923kc092kc.casajasmine.ro,#scam #phishing,https://x.com/urldna_bot/status/1945181592504193467 2025-07-15 18:00:06,urldna_bot,url,http://mail1-accedi-libero-staff-it-italy-sslitaly423429kf923kc092kc.casajasmine.ro,#scam #phishing,https://x.com/urldna_bot/status/1945181592504193467 2025-07-15 18:46:38,drb_ra,ip,39.40.161.234,#Qakbot #C2,https://x.com/drb_ra/status/1945193304015991169 2025-07-15 18:46:38,drb_ra,url,http://39.40.161.234:995,#Qakbot #C2,https://x.com/drb_ra/status/1945193304015991169 2025-07-15 18:46:43,drb_ra,ip,185.130.212.73,#Mythic #C2,https://x.com/drb_ra/status/1945193324333125987 2025-07-15 18:46:43,drb_ra,url,http://185.130.212.73:7443,#Mythic #C2,https://x.com/drb_ra/status/1945193324333125987 2025-07-15 18:46:47,drb_ra,ip,173.195.100.143,#Mythic #C2,https://x.com/drb_ra/status/1945193343912116554 2025-07-15 18:46:47,drb_ra,url,http://173.195.100.143:7443,#Mythic #C2,https://x.com/drb_ra/status/1945193343912116554 2025-07-15 18:46:52,drb_ra,ip,139.162.176.251,#Mythic #C2,https://x.com/drb_ra/status/1945193364158079461 2025-07-15 18:46:52,drb_ra,url,http://139.162.176.251:7443,#Mythic #C2,https://x.com/drb_ra/status/1945193364158079461 2025-07-15 18:47:06,skocherhan,domain,booknsvrf.com,#AsyncRAT,https://x.com/skocherhan/status/1945193422823776677 2025-07-15 18:47:06,skocherhan,url,http://booknsvrf.com,#AsyncRAT,https://x.com/skocherhan/status/1945193422823776677 2025-07-15 18:48:56,drb_ra,url,http://35.199.30.104:8080,#C2,https://x.com/drb_ra/status/1945193882066579637 2025-07-15 18:48:56,drb_ra,ip,35.199.30.104,#C2,https://x.com/drb_ra/status/1945193882066579637 2025-07-15 18:48:59,drb_ra,ip,157.175.168.179,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193898025840941 2025-07-15 18:48:59,drb_ra,url,http://157.175.168.179:6005,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193898025840941 2025-07-15 18:49:04,drb_ra,url,http://54.204.63.61:4730,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193918179504370 2025-07-15 18:49:04,drb_ra,ip,54.204.63.61,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193918179504370 2025-07-15 18:49:09,drb_ra,ip,54.244.59.22,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193938354090401 2025-07-15 18:49:09,drb_ra,url,http://54.244.59.22:135,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193938354090401 2025-07-15 18:49:13,drb_ra,ip,13.208.249.200,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193954049143113 2025-07-15 18:49:13,drb_ra,url,http://13.208.249.200:53663,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193954049143113 2025-07-15 18:49:19,drb_ra,url,http://157.175.176.151:4894,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945193979227599334 2025-07-15 18:49:24,drb_ra,url,http://157.175.176.151:1194,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945194000203292714 2025-07-15 18:49:24,drb_ra,ip,157.175.176.151,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945194000203292714 2025-07-15 18:49:29,drb_ra,url,http://186.169.76.124:4000,#AsyncRAT #C2,https://x.com/drb_ra/status/1945194021808197674 2025-07-15 18:49:29,drb_ra,ip,186.169.76.124,#AsyncRAT #C2,https://x.com/drb_ra/status/1945194021808197674 2025-07-15 18:49:34,drb_ra,ip,185.234.72.160,#AsyncRAT #C2,https://x.com/drb_ra/status/1945194042704207937 2025-07-15 18:49:34,drb_ra,url,http://185.234.72.160:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1945194042704207937 2025-07-15 18:50:12,skocherhan,ip,185.168.208.59,,https://x.com/skocherhan/status/1945194202528092522 2025-07-15 18:50:12,skocherhan,ip,185.168.208.55,,https://x.com/skocherhan/status/1945194202528092522 2025-07-15 19:15:54,volrant136,domain,scloudpc.pro,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,url,http://softloft-download.xyz,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,domain,softloft-download.xyz,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,url,http://scloudpc.pro,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,domain,getlowpc.pro,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,url,http://getlowpc.pro,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,domain,bestwestfree.pro,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,domain,uploadfilez.info,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,url,http://setfreegetup.org,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,domain,setfreegetup.org,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,url,http://up4pcfile.com,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,domain,up4pcfile.com,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,url,http://bestwestfree.pro,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:15:54,volrant136,url,http://uploadfilez.info,#Lumma #stealer,https://x.com/volrant136/status/1945200669943554163 2025-07-15 19:33:47,urldna_bot,domain,vis123git.github.io,#scam #phishing,https://x.com/urldna_bot/status/1945205169983033551 2025-07-15 19:33:47,urldna_bot,url,https://vis123git.github.io/airbnb,#scam #phishing,https://x.com/urldna_bot/status/1945205169983033551 2025-07-15 20:00:04,urldna_bot,domain,viewreservation.online,#phishing #scam,https://x.com/urldna_bot/status/1945211785935544456 2025-07-15 20:00:04,urldna_bot,url,https://www.viewreservation.online,#phishing #scam,https://x.com/urldna_bot/status/1945211785935544456 2025-07-15 20:08:48,500mk500,url,http://api.stockdata.tech,#Lazarus #APT,https://x.com/500mk500/status/1945213983323004985 2025-07-15 20:08:48,500mk500,url,http://talenthireflow.com,#Lazarus #APT,https://x.com/500mk500/status/1945213983323004985 2025-07-15 20:08:48,500mk500,domain,talenthireflow.com,#Lazarus #APT,https://x.com/500mk500/status/1945213983323004985 2025-07-15 20:08:48,500mk500,domain,api.stockdata.tech,#Lazarus #APT,https://x.com/500mk500/status/1945213983323004985 2025-07-15 20:28:04,drb_ra,url,https://31.7.61.18:443,#C2,https://x.com/drb_ra/status/1945218831808348344 2025-07-15 20:28:04,drb_ra,url,http://31.7.61.18:443,#C2,https://x.com/drb_ra/status/1945218831808348344 2025-07-15 20:28:04,drb_ra,ip,31.7.61.18,#C2,https://x.com/drb_ra/status/1945218831808348344 2025-07-15 20:28:09,drb_ra,url,https://45.11.181.37:8443,#C2,https://x.com/drb_ra/status/1945218853375512937 2025-07-15 20:28:09,drb_ra,url,http://45.11.181.37:8443,#C2,https://x.com/drb_ra/status/1945218853375512937 2025-07-15 20:28:09,drb_ra,ip,45.11.181.37,#C2,https://x.com/drb_ra/status/1945218853375512937 2025-07-15 20:53:38,skocherhan,domain,lodib.xyz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,md5,8d6d2fdb1ce1a781f65c2ccbb7aac9ba,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,url,http://ryxpq.xyz/tpaz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,domain,ryxpq.xyz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,url,http://lodib.xyz/towq,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,url,http://lnofi.xyz/qoei,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,url,http://dkkig.xyz/xjau,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,url,http://genmkh.xyz/towq,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,domain,genmkh.xyz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,url,http://dzyzb.xyz/anby,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,domain,dzyzb.xyz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,domain,dkkig.xyz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,url,http://cexpxg.xyz/airq,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,domain,cexpxg.xyz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 20:53:38,skocherhan,domain,lnofi.xyz,#Lumma,https://x.com/skocherhan/status/1945225267108102446 2025-07-15 21:00:04,threatquery,ip,101.226.28.236,#C2 #malware,https://x.com/threatquery/status/1945226883295064079 2025-07-15 21:00:04,threatquery,url,http://101.226.28.236,#C2 #malware,https://x.com/threatquery/status/1945226883295064079 2025-07-15 21:00:04,threatquery,url,http://61.170.79.113,#C2 #malware,https://x.com/threatquery/status/1945226885345988744 2025-07-15 21:00:04,threatquery,ip,61.170.79.113,#C2 #malware,https://x.com/threatquery/status/1945226885345988744 2025-07-15 21:00:05,threatquery,url,http://185.149.146.172,#Rhadamanthys #C2 #malware,https://x.com/threatquery/status/1945226887275397554 2025-07-15 21:00:05,threatquery,ip,185.149.146.172,#Rhadamanthys #C2 #malware,https://x.com/threatquery/status/1945226887275397554 2025-07-15 21:03:30,skocherhan,url,http://54.159.89.14,#C2 #malware,https://x.com/skocherhan/status/1945227748122763311 2025-07-15 21:03:30,skocherhan,ip,54.159.89.14,#C2 #malware,https://x.com/skocherhan/status/1945227748122763311 2025-07-15 21:24:27,drb_ra,url,http://155.94.175.189:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1945233022065795278 2025-07-15 21:24:27,drb_ra,ip,155.94.175.189,#CobaltStrike #C2,https://x.com/drb_ra/status/1945233022065795278 2025-07-15 21:56:06,skocherhan,domain,sima-imza.com,,https://x.com/skocherhan/status/1945240987262972401 2025-07-15 21:56:06,skocherhan,url,http://sima-imza.com,,https://x.com/skocherhan/status/1945240987262972401 2025-07-15 22:00:05,urldna_bot,domain,help-coinnbase-help.bravesites.com,#phishing #scam,https://x.com/urldna_bot/status/1945241987323514958 2025-07-15 22:00:05,urldna_bot,url,https://www.help-coinnbase-help.bravesites.com/en-us,#phishing #scam,https://x.com/urldna_bot/status/1945241987323514958 2025-07-15 22:46:54,drb_ra,url,http://81.70.221.86:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945253769710555214 2025-07-15 22:46:54,drb_ra,ip,81.70.221.86,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945253769710555214 2025-07-15 22:48:57,drb_ra,url,http://189.1.243.105:808,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254287774257321 2025-07-15 22:48:57,drb_ra,ip,189.1.243.105,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254287774257321 2025-07-15 22:49:03,drb_ra,url,http://212.64.38.105:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254309597237251 2025-07-15 22:49:03,drb_ra,ip,212.64.38.105,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254309597237251 2025-07-15 22:49:08,drb_ra,url,http://185.208.159.235:33897,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254330891690098 2025-07-15 22:49:08,drb_ra,ip,185.208.159.235,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254330891690098 2025-07-15 22:49:13,drb_ra,url,http://106.12.215.229:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254352320442710 2025-07-15 22:49:13,drb_ra,ip,106.12.215.229,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254352320442710 2025-07-15 22:49:18,drb_ra,url,http://172.87.28.47:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254374302699580 2025-07-15 22:49:18,drb_ra,ip,172.87.28.47,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254374302699580 2025-07-15 22:49:23,drb_ra,url,http://118.31.18.77:1000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254395957907929 2025-07-15 22:49:23,drb_ra,ip,118.31.18.77,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945254395957907929 2025-07-16 00:00:08,urldna_bot,domain,jnvfywgscznzg.web.app,#phishing #scam,https://x.com/urldna_bot/status/1945272201730527290 2025-07-16 00:00:08,urldna_bot,url,https://jnvfywgscznzg.web.app,#phishing #scam,https://x.com/urldna_bot/status/1945272201730527290 2025-07-16 00:06:36,skocherhan,domain,vipcaller.xyz,,https://x.com/skocherhan/status/1945273826444509330 2025-07-16 00:06:36,skocherhan,url,http://vipcaller.xyz,,https://x.com/skocherhan/status/1945273826444509330 2025-07-16 00:07:10,fbgwls245,md5,B02679ECB54344490F87F91DDA88ACE6,#ransomware,https://x.com/fbgwls245/status/1945273968841383967 2025-07-16 01:06:43,masaomi346,domain,pocketcard-calypalt.kwsqlp.cn,#phishing,https://x.com/masaomi346/status/1945288954275635480 2025-07-16 01:06:43,masaomi346,url,https://pocketcard-calypalt.kwsqlp.cn/netservice/login/,#phishing,https://x.com/masaomi346/status/1945288954275635480 2025-07-16 01:06:43,masaomi346,domain,pocketcard-sollgl.xixydh.cn,#phishing,https://x.com/masaomi346/status/1945288954275635480 2025-07-16 01:06:43,masaomi346,url,https://pocketcard-sollgl.xixydh.cn/netservice/login/,#phishing,https://x.com/masaomi346/status/1945288954275635480 2025-07-16 01:06:43,masaomi346,domain,pocketcard-volutit.pkiqg.cn,#phishing,https://x.com/masaomi346/status/1945288954275635480 2025-07-16 01:06:43,masaomi346,url,https://pocketcard-volutit.pkiqg.cn/netservice/login/,#phishing,https://x.com/masaomi346/status/1945288954275635480 2025-07-16 01:10:03,catnap707,url,http://172.67.147.168,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,url,http://rtaybsg.icu/D0pX.jp,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,domain,rtaybsg.icu,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,domain,D0pX.jp,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,url,http://maifenba.com/D0pX.jp,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,domain,maifenba.com,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,url,https://D0pX.jp,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,url,http://mikshua.bond,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:10:03,catnap707,domain,mikshua.bond,#phishing,https://x.com/catnap707/status/1945289793748742455 2025-07-16 01:11:35,catnap707,url,http://172.67.188.254,#phishing,https://x.com/catnap707/status/1945290181705392579 2025-07-16 01:11:35,catnap707,domain,site4-sbisec.sdjil.com,#phishing,https://x.com/catnap707/status/1945290181705392579 2025-07-16 01:11:35,catnap707,url,http://site4-sbisec.sdjil.com/ETGate/?sbisec=~,#phishing,https://x.com/catnap707/status/1945290181705392579 2025-07-16 01:31:03,masaomi346,domain,ocn.gocmenrandevu.com,#phishing,https://x.com/masaomi346/status/1945295078458843218 2025-07-16 01:31:03,masaomi346,url,https://www.ocn.gocmenrandevu.com,#phishing,https://x.com/masaomi346/status/1945295078458843218 2025-07-16 01:38:22,romonlyht,ip,221.128.128.248,#phishing,https://x.com/romonlyht/status/1945296921490251927 2025-07-16 01:38:22,romonlyht,url,https://myiclouds-apponeco.shop/idloud/support,#phishing,https://x.com/romonlyht/status/1945296921490251927 2025-07-16 01:38:23,romonlyht,url,https://myiclouds-apponeco.shop/idloud/support/,#phishing,https://x.com/romonlyht/status/1945296925713965485 2025-07-16 01:38:23,romonlyht,domain,myiclouds-apponeco.shop,#phishing,https://x.com/romonlyht/status/1945296925713965485 2025-07-16 01:39:28,romonlyht,ip,95.182.100.57,#phishing,https://x.com/romonlyht/status/1945297197613891720 2025-07-16 01:39:28,romonlyht,url,https://myiclouds-storesco.shop/idloud/support,#phishing,https://x.com/romonlyht/status/1945297197613891720 2025-07-16 01:39:28,romonlyht,ip,221.128.128.211,#phishing,https://x.com/romonlyht/status/1945297197613891720 2025-07-16 01:39:29,romonlyht,domain,myiclouds-storesco.shop,#phishing,https://x.com/romonlyht/status/1945297200549855566 2025-07-16 01:39:29,romonlyht,url,https://myiclouds-storesco.shop/idloud/support/,#phishing,https://x.com/romonlyht/status/1945297200549855566 2025-07-16 01:56:29,romonlyht,ip,42.5.108.121,#phishing,https://x.com/romonlyht/status/1945301482330329374 2025-07-16 01:56:30,romonlyht,url,http://xflhldguj.ghneq.cn/hnecelpki.co.jp,#phishing,https://x.com/romonlyht/status/1945301484838515040 2025-07-16 01:56:30,romonlyht,domain,xflhldguj.ghneq.cn,#phishing,https://x.com/romonlyht/status/1945301484838515040 2025-07-16 01:56:30,romonlyht,ip,165.154.231.7,#phishing,https://x.com/romonlyht/status/1945301484838515040 2025-07-16 01:56:30,romonlyht,domain,nnnequireddomainsad.mrface.com,#phishing,https://x.com/romonlyht/status/1945301484838515040 2025-07-16 01:56:30,romonlyht,url,https://nnnequireddomainsad.mrface.com/wddsoscosmsosmx.jp,#phishing,https://x.com/romonlyht/status/1945301484838515040 2025-07-16 01:56:31,romonlyht,url,https://nnnequireddomainsad.mrface.com/v1/check,#phishing,https://x.com/romonlyht/status/1945301487317606776 2025-07-16 01:56:31,romonlyht,url,https://nnnequireddomainsad.mrface.com/wddsoscosmsosmx.jp/,#phishing,https://x.com/romonlyht/status/1945301487317606776 2025-07-16 01:59:01,romonlyht,ip,113.231.10.58,#phishing,https://x.com/romonlyht/status/1945302119604478196 2025-07-16 01:59:02,romonlyht,url,https://nnnequireddomainsad.longmusic.com/wddsoscosmsosmx.jp,#phishing,https://x.com/romonlyht/status/1945302121886224872 2025-07-16 01:59:02,romonlyht,domain,azqmqfbmg.ghneq.cn,#phishing,https://x.com/romonlyht/status/1945302121886224872 2025-07-16 01:59:02,romonlyht,domain,nnnequireddomainsad.longmusic.com,#phishing,https://x.com/romonlyht/status/1945302121886224872 2025-07-16 01:59:02,romonlyht,url,http://azqmqfbmg.ghneq.cn/toukodefub.co.jp,#phishing,https://x.com/romonlyht/status/1945302121886224872 2025-07-16 01:59:03,romonlyht,ip,204.16.169.54,#phishing,https://x.com/romonlyht/status/1945302124465639488 2025-07-16 02:00:06,urldna_bot,domain,ssfdgshf.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945302390413894110 2025-07-16 02:00:06,urldna_bot,url,https://ssfdgshf.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945302390413894110 2025-07-16 02:08:07,harugasumi,domain,sh1nk1n-bmk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,domain,sh1nk1n-bnnk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,ip,149.104.32.236,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,url,https://sh1nk1n-dnk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,domain,sh1nk1n-dnk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,domain,sh1nk1n-dmk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,url,https://sh1nk1n-bnnk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,url,https://sh1nk1n-bnk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,url,https://iocdnzx.2373xlx.91ddos.com/)(149.104.32.236,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,domain,iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,url,https://sh1nk1n-bmk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,domain,sh1nk1n-bnk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:08:07,harugasumi,url,https://sh1nk1n-dmk.com,#phishing,https://x.com/harugasumi/status/1945304408172192052 2025-07-16 02:21:20,romonlyht,ip,101.110.9.81,#phishing,https://x.com/romonlyht/status/1945307731855802569 2025-07-16 02:21:20,romonlyht,url,https://v.444super.com/login,#phishing,https://x.com/romonlyht/status/1945307731855802569 2025-07-16 02:21:20,romonlyht,url,https://v.444super.com/my-visa,#phishing,https://x.com/romonlyht/status/1945307731855802569 2025-07-16 02:21:20,romonlyht,domain,v.444super.com,#phishing,https://x.com/romonlyht/status/1945307731855802569 2025-07-16 02:22:14,romonlyht,ip,154.205.136.58,#phishing,https://x.com/romonlyht/status/1945307960215003646 2025-07-16 02:22:14,romonlyht,domain,movisa-cardco.shop,#phishing,https://x.com/romonlyht/status/1945307960215003646 2025-07-16 02:22:14,romonlyht,url,http://movisa-cardco.shop/index.html/,#phishing,https://x.com/romonlyht/status/1945307960215003646 2025-07-16 02:22:14,romonlyht,url,https://movisa-cardco.shop/index.html,#phishing,https://x.com/romonlyht/status/1945307960215003646 2025-07-16 02:23:12,romonlyht,url,https://v.222super.com/my-visa,#phishing,https://x.com/romonlyht/status/1945308204604514598 2025-07-16 02:23:12,romonlyht,domain,v.222super.com,#phishing,https://x.com/romonlyht/status/1945308204604514598 2025-07-16 02:23:12,romonlyht,ip,160.187.210.240,#phishing,https://x.com/romonlyht/status/1945308204604514598 2025-07-16 02:23:12,romonlyht,url,https://v.222super.com/login,#phishing,https://x.com/romonlyht/status/1945308204604514598 2025-07-16 02:23:12,romonlyht,ip,101.110.8.78,#phishing,https://x.com/romonlyht/status/1945308204604514598 2025-07-16 02:23:49,skocherhan,domain,coinspaceteam.com,,https://x.com/skocherhan/status/1945308359877431576 2025-07-16 02:23:49,skocherhan,domain,tlgrm-redirect.icu,,https://x.com/skocherhan/status/1945308359877431576 2025-07-16 02:23:49,skocherhan,url,http://tlgrm-redirect.icu/1.txt,,https://x.com/skocherhan/status/1945308359877431576 2025-07-16 02:23:49,skocherhan,url,http://coinspaceteam.com,,https://x.com/skocherhan/status/1945308359877431576 2025-07-16 02:23:49,skocherhan,url,http://soubtcevent.com,,https://x.com/skocherhan/status/1945308359877431576 2025-07-16 02:23:49,skocherhan,domain,soubtcevent.com,,https://x.com/skocherhan/status/1945308359877431576 2025-07-16 02:29:29,skocherhan,md5,65e15140f3914db3c7baf90282fad297,,https://x.com/skocherhan/status/1945309783529025818 2025-07-16 02:29:29,skocherhan,ip,77.90.153.72,,https://x.com/skocherhan/status/1945309783529025818 2025-07-16 02:29:29,skocherhan,url,http://77.90.153.72,,https://x.com/skocherhan/status/1945309783529025818 2025-07-16 02:34:34,skocherhan,domain,secure-booking.app,#phishing,https://x.com/skocherhan/status/1945311064486187159 2025-07-16 02:34:34,skocherhan,url,http://secure-booking.app,#phishing,https://x.com/skocherhan/status/1945311064486187159 2025-07-16 02:36:18,romonlyht,url,https://qf9j44.top/W0lBfYXZ,#phishing,https://x.com/romonlyht/status/1945311500144664736 2025-07-16 02:36:18,romonlyht,url,https://qf9j44.top/W0lBfYXZ/,#phishing,https://x.com/romonlyht/status/1945311500144664736 2025-07-16 02:36:18,romonlyht,ip,170.233.33.138,#phishing,https://x.com/romonlyht/status/1945311500144664736 2025-07-16 02:36:18,romonlyht,domain,qf9j44.top,#phishing,https://x.com/romonlyht/status/1945311500144664736 2025-07-16 02:37:10,romonlyht,url,https://c8akvu.top/W0lBfYXZ/,#phishing,https://x.com/romonlyht/status/1945311716633665606 2025-07-16 02:37:10,romonlyht,url,https://c8akvu.top/W0lBfYXZ,#phishing,https://x.com/romonlyht/status/1945311716633665606 2025-07-16 02:37:10,romonlyht,ip,177.53.137.74,#phishing,https://x.com/romonlyht/status/1945311716633665606 2025-07-16 02:37:10,romonlyht,domain,c8akvu.top,#phishing,https://x.com/romonlyht/status/1945311716633665606 2025-07-16 02:49:00,romonlyht,domain,xalithos.icu,#phishing,https://x.com/romonlyht/status/1945314696611160570 2025-07-16 02:49:00,romonlyht,url,https://hkic.pw,#phishing,https://x.com/romonlyht/status/1945314696611160570 2025-07-16 02:49:00,romonlyht,domain,hkic.pw,#phishing,https://x.com/romonlyht/status/1945314696611160570 2025-07-16 02:49:00,romonlyht,url,https://xalithos.icu/M0niX8e/,#phishing,https://x.com/romonlyht/status/1945314696611160570 2025-07-16 02:49:00,romonlyht,url,http://hkic.pw,#phishing,https://x.com/romonlyht/status/1945314694488846364 2025-07-16 02:49:00,romonlyht,ip,182.16.9.222,#phishing,https://x.com/romonlyht/status/1945314696611160570 2025-07-16 02:49:00,romonlyht,ip,189.217.83.16,#phishing,https://x.com/romonlyht/status/1945314694488846364 2025-07-16 02:49:00,romonlyht,ip,67.199.248.11,#phishing,https://x.com/romonlyht/status/1945314694488846364 2025-07-16 02:49:00,romonlyht,url,http://bit.ly/451QIey,#phishing,https://x.com/romonlyht/status/1945314694488846364 2025-07-16 02:56:10,romonlyht,url,https://7ool0u.top/5FxCI4,#phishing,https://x.com/romonlyht/status/1945316500262543596 2025-07-16 02:56:10,romonlyht,domain,7ool0u.top,#phishing,https://x.com/romonlyht/status/1945316500262543596 2025-07-16 02:56:10,romonlyht,url,https://7ool0u.top/5FxCI4/,#phishing,https://x.com/romonlyht/status/1945316500262543596 2025-07-16 02:56:10,romonlyht,domain,hgtkam-kger80s.pokejunct.workers.dev,#phishing,https://x.com/romonlyht/status/1945316497951482133 2025-07-16 02:56:10,romonlyht,ip,59.36.163.172,#phishing,https://x.com/romonlyht/status/1945316497951482133 2025-07-16 02:56:10,romonlyht,ip,43.162.124.209,#phishing,https://x.com/romonlyht/status/1945316500262543596 2025-07-16 02:56:10,romonlyht,url,https://hgtkam-kger80s.pokejunct.workers.dev/pANCeix6/90fENSXHs/0P-TxxEewq1YoqXd1_ecstreQpvlDYlfazOXDVKEYLk.pdf,#phishing,https://x.com/romonlyht/status/1945316497951482133 2025-07-16 03:47:44,skocherhan,domain,sos-atlanta.com,#NetSupport,https://x.com/skocherhan/status/1945329478873272321 2025-07-16 03:47:44,skocherhan,url,http://sos-atlanta.com,#NetSupport,https://x.com/skocherhan/status/1945329478873272321 2025-07-16 03:47:44,skocherhan,url,http://185.163.45.87,#NetSupport,https://x.com/skocherhan/status/1945329478873272321 2025-07-16 03:47:44,skocherhan,ip,185.163.45.87,#NetSupport,https://x.com/skocherhan/status/1945329478873272321 2025-07-16 03:51:29,harugasumi,domain,fppzj.cn,#phishing,https://x.com/harugasumi/status/1945330419257500155 2025-07-16 03:51:29,harugasumi,url,https://fppzj.cn,#phishing,https://x.com/harugasumi/status/1945330419257500155 2025-07-16 04:00:09,urldna_bot,domain,coinbaselogindesk.blogspot.lt,#scam #phishing,https://x.com/urldna_bot/status/1945332603139088489 2025-07-16 04:00:09,urldna_bot,url,https://coinbaselogindesk.blogspot.lt,#scam #phishing,https://x.com/urldna_bot/status/1945332603139088489 2025-07-16 04:00:18,SarlackLab,url,http://172.94.96.153:7788,#Njrat #C2,https://x.com/SarlackLab/status/1945332640136970254 2025-07-16 04:00:18,SarlackLab,ip,172.94.96.153,#Njrat #C2,https://x.com/SarlackLab/status/1945332640136970254 2025-07-16 04:18:15,skocherhan,ip,185.163.45.61,#NetSupport,https://x.com/skocherhan/status/1945337155301064783 2025-07-16 04:18:15,skocherhan,url,http://185.163.45.61,#NetSupport,https://x.com/skocherhan/status/1945337155301064783 2025-07-16 04:32:42,skocherhan,ip,185.163.45.41,#NetSupport,https://x.com/skocherhan/status/1945340792609894718 2025-07-16 04:32:42,skocherhan,url,http://185.163.45.41,#NetSupport,https://x.com/skocherhan/status/1945340792609894718 2025-07-16 04:32:42,skocherhan,domain,vietnam24hvoyage.com,#NetSupport,https://x.com/skocherhan/status/1945340792609894718 2025-07-16 04:32:42,skocherhan,url,http://vietnam24hvoyage.com,#NetSupport,https://x.com/skocherhan/status/1945340792609894718 2025-07-16 04:44:24,skocherhan,url,http://94.158.244.165,#NetSupport,https://x.com/skocherhan/status/1945343736239558712 2025-07-16 04:44:24,skocherhan,ip,94.158.244.165,#NetSupport,https://x.com/skocherhan/status/1945343736239558712 2025-07-16 04:44:24,skocherhan,md5,6a4950552fce755212abe5698b3df290,#NetSupport,https://x.com/skocherhan/status/1945343736239558712 2025-07-16 04:46:02,skocherhan,domain,kabarbhayangkara.com,#NetSupport,https://x.com/skocherhan/status/1945344146950017066 2025-07-16 04:46:02,skocherhan,domain,motelorquideareal.com,#NetSupport,https://x.com/skocherhan/status/1945344146950017066 2025-07-16 04:46:02,skocherhan,url,http://kabarbhayangkara.com,#NetSupport,https://x.com/skocherhan/status/1945344146950017066 2025-07-16 04:46:02,skocherhan,url,http://146.70.100.114,#NetSupport,https://x.com/skocherhan/status/1945344146950017066 2025-07-16 04:46:02,skocherhan,ip,146.70.100.114,#NetSupport,https://x.com/skocherhan/status/1945344146950017066 2025-07-16 04:46:02,skocherhan,url,http://motelorquideareal.com,#NetSupport,https://x.com/skocherhan/status/1945344146950017066 2025-07-16 04:50:31,skocherhan,url,http://185.163.47.72,#NetSupport,https://x.com/skocherhan/status/1945345276266295784 2025-07-16 04:50:31,skocherhan,ip,185.163.47.72,#NetSupport,https://x.com/skocherhan/status/1945345276266295784 2025-07-16 05:00:14,SarlackLab,url,http://146.168.34.244:1604,#C2,https://x.com/SarlackLab/status/1945347721839235217 2025-07-16 05:00:14,SarlackLab,domain,myhoster123.zapto.org,#C2,https://x.com/SarlackLab/status/1945347721839235217 2025-07-16 05:00:14,SarlackLab,url,http://myhoster123.zapto.org,#C2,https://x.com/SarlackLab/status/1945347721839235217 2025-07-16 05:00:14,SarlackLab,ip,146.168.34.244,#C2,https://x.com/SarlackLab/status/1945347721839235217 2025-07-16 05:16:31,skocherhan,url,http://unanet-okta.com,,https://x.com/skocherhan/status/1945351820072673728 2025-07-16 05:16:31,skocherhan,domain,unanet-okta.com,,https://x.com/skocherhan/status/1945351820072673728 2025-07-16 05:41:20,skocherhan,sha256,51c93b900c298cf2c6fcaf85df3ce98ce2056bafff617d50bfbde696488da275,#Kimsuky #APT,https://x.com/skocherhan/status/1945358064464396783 2025-07-16 05:41:20,skocherhan,ip,67.217.62.222,#Kimsuky #APT,https://x.com/skocherhan/status/1945358064464396783 2025-07-16 06:00:06,urldna_bot,domain,myskyverifyaccount.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945362789188489299 2025-07-16 06:00:06,urldna_bot,url,http://myskyverifyaccount.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945362789188489299 2025-07-16 06:41:40,harugasumi,url,https://pocketcard-pessim.huywo.cn/netservice/login/,#phishing,https://x.com/harugasumi/status/1945373247803154537 2025-07-16 06:41:40,harugasumi,domain,pocketcard-pessim.huywo.cn,#phishing,https://x.com/harugasumi/status/1945373247803154537 2025-07-16 06:45:37,drb_ra,ip,94.198.52.217,#Sliver #C2,https://x.com/drb_ra/status/1945374243794956473 2025-07-16 06:45:37,drb_ra,url,http://94.198.52.217:443,#Sliver #C2,https://x.com/drb_ra/status/1945374243794956473 2025-07-16 06:47:40,drb_ra,url,http://142.202.191.184:9999,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374760856158456 2025-07-16 06:47:40,drb_ra,ip,142.202.191.184,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374760856158456 2025-07-16 06:47:46,drb_ra,url,http://195.206.234.19:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374784163926523 2025-07-16 06:47:46,drb_ra,ip,195.206.234.19,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374784163926523 2025-07-16 06:47:51,drb_ra,url,http://128.90.106.114:2000,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374804325892147 2025-07-16 06:47:51,drb_ra,ip,128.90.106.114,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374804325892147 2025-07-16 06:47:56,drb_ra,url,http://13.41.224.200:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374827239346408 2025-07-16 06:47:56,drb_ra,ip,13.41.224.200,#AsyncRAT #C2,https://x.com/drb_ra/status/1945374827239346408 2025-07-16 06:48:01,drb_ra,url,http://116.203.129.217:465,#Interactsh #C2,https://x.com/drb_ra/status/1945374847711789145 2025-07-16 06:48:07,drb_ra,url,http://116.203.129.217:25,#Interactsh #C2,https://x.com/drb_ra/status/1945374870365184284 2025-07-16 06:48:10,drb_ra,url,http://116.203.129.217:587,#Interactsh #C2,https://x.com/drb_ra/status/1945374885481467948 2025-07-16 06:48:10,drb_ra,ip,116.203.129.217,#Interactsh #C2,https://x.com/drb_ra/status/1945374885481467948 2025-07-16 06:48:14,drb_ra,url,http://178.128.226.98:443,#Interactsh #C2,https://x.com/drb_ra/status/1945374901134581904 2025-07-16 06:48:14,drb_ra,ip,178.128.226.98,#Interactsh #C2,https://x.com/drb_ra/status/1945374901134581904 2025-07-16 06:48:19,drb_ra,url,http://2.50.14.223:443,#Qakbot #C2,https://x.com/drb_ra/status/1945374921984516442 2025-07-16 06:48:24,drb_ra,ip,71.12.4.11,#Qakbot #C2,https://x.com/drb_ra/status/1945374942872113364 2025-07-16 06:48:24,drb_ra,url,http://71.12.4.11:443,#Qakbot #C2,https://x.com/drb_ra/status/1945374942872113364 2025-07-16 06:48:29,drb_ra,ip,18.202.242.77,#C2,https://x.com/drb_ra/status/1945374963608797518 2025-07-16 06:48:29,drb_ra,url,http://18.202.242.77:445,#C2,https://x.com/drb_ra/status/1945374963608797518 2025-07-16 06:48:34,drb_ra,url,http://47.117.167.30:443,#Havoc #C2,https://x.com/drb_ra/status/1945374985129693640 2025-07-16 06:48:34,drb_ra,ip,47.117.167.30,#Havoc #C2,https://x.com/drb_ra/status/1945374985129693640 2025-07-16 06:48:40,drb_ra,url,http://34.99.229.14:443,#Deimos #C2,https://x.com/drb_ra/status/1945375009108631693 2025-07-16 06:48:45,drb_ra,ip,16.64.20.31,#Deimos #C2,https://x.com/drb_ra/status/1945375032990929219 2025-07-16 06:48:45,drb_ra,url,http://16.64.20.31:443,#Deimos #C2,https://x.com/drb_ra/status/1945375032990929219 2025-07-16 06:48:50,drb_ra,url,http://18.253.82.42:443,#Deimos #C2,https://x.com/drb_ra/status/1945375053593424291 2025-07-16 06:48:50,drb_ra,ip,18.253.82.42,#Deimos #C2,https://x.com/drb_ra/status/1945375053593424291 2025-07-16 06:48:54,drb_ra,ip,101.75.234.48,#Deimos #C2,https://x.com/drb_ra/status/1945375071326875967 2025-07-16 06:48:54,drb_ra,url,http://101.75.234.48:4506,#Deimos #C2,https://x.com/drb_ra/status/1945375071326875967 2025-07-16 06:48:59,drb_ra,url,http://194.102.175.170:7443,#Mythic #C2,https://x.com/drb_ra/status/1945375090733949075 2025-07-16 06:48:59,drb_ra,ip,194.102.175.170,#Mythic #C2,https://x.com/drb_ra/status/1945375090733949075 2025-07-16 06:49:03,drb_ra,url,http://95.111.254.223:7443,#Mythic #C2,https://x.com/drb_ra/status/1945375106441544055 2025-07-16 06:49:03,drb_ra,ip,95.111.254.223,#Mythic #C2,https://x.com/drb_ra/status/1945375106441544055 2025-07-16 06:49:08,drb_ra,url,http://152.42.233.8:7443,#Mythic #C2,https://x.com/drb_ra/status/1945375127907995902 2025-07-16 06:49:08,drb_ra,ip,152.42.233.8,#Mythic #C2,https://x.com/drb_ra/status/1945375127907995902 2025-07-16 06:51:11,drb_ra,ip,139.129.32.152,#C2,https://x.com/drb_ra/status/1945375644801544371 2025-07-16 06:51:11,drb_ra,url,http://139.129.32.152:8443,#C2,https://x.com/drb_ra/status/1945375644801544371 2025-07-16 06:51:16,drb_ra,ip,104.163.156.16,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1945375666175619257 2025-07-16 06:51:16,drb_ra,url,http://104.163.156.16:8888,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1945375666175619257 2025-07-16 06:51:22,drb_ra,url,http://24.9.117.208:8080,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1945375688694833237 2025-07-16 06:51:22,drb_ra,ip,24.9.117.208,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1945375688694833237 2025-07-16 06:51:26,drb_ra,url,http://196.251.66.31:2404,#Remcos #C2,https://x.com/drb_ra/status/1945375708382990607 2025-07-16 06:51:26,drb_ra,ip,196.251.66.31,#Remcos #C2,https://x.com/drb_ra/status/1945375708382990607 2025-07-16 06:51:30,drb_ra,ip,196.251.66.195,#Remcos #C2,https://x.com/drb_ra/status/1945375723314647538 2025-07-16 06:51:30,drb_ra,url,http://196.251.66.195:2404,#Remcos #C2,https://x.com/drb_ra/status/1945375723314647538 2025-07-16 06:51:36,drb_ra,url,http://196.251.69.234:2404,#Remcos #C2,https://x.com/drb_ra/status/1945375748333678742 2025-07-16 06:51:36,drb_ra,ip,196.251.69.234,#Remcos #C2,https://x.com/drb_ra/status/1945375748333678742 2025-07-16 06:51:41,drb_ra,url,http://182.92.159.149:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1945375769636512064 2025-07-16 06:51:41,drb_ra,ip,182.92.159.149,#Reverse_SSH #C2,https://x.com/drb_ra/status/1945375769636512064 2025-07-16 06:51:46,drb_ra,url,http://47.99.54.48:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1945375790859694421 2025-07-16 06:51:46,drb_ra,ip,47.99.54.48,#Reverse_SSH #C2,https://x.com/drb_ra/status/1945375790859694421 2025-07-16 06:51:51,drb_ra,url,http://13.247.186.229:20201,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945375812158394837 2025-07-16 06:51:51,drb_ra,ip,13.247.186.229,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945375812158394837 2025-07-16 06:51:56,drb_ra,url,http://54.215.245.94:4433,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945375833364758578 2025-07-16 06:52:01,drb_ra,url,http://54.215.245.94:2083,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945375854533493149 2025-07-16 06:52:01,drb_ra,ip,54.215.245.94,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945375854533493149 2025-07-16 06:52:06,drb_ra,url,http://18.61.159.31:2262,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945375876100550712 2025-07-16 06:52:06,drb_ra,ip,18.61.159.31,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945375876100550712 2025-07-16 06:57:06,romonlyht,domain,777cp09.cc,#phishing,https://x.com/romonlyht/status/1945377131854434559 2025-07-16 06:57:06,romonlyht,url,https://777cp09.cc/sbisec.co.jp,#phishing,https://x.com/romonlyht/status/1945377131854434559 2025-07-16 06:57:06,romonlyht,ip,154.19.80.139,#phishing,https://x.com/romonlyht/status/1945377131854434559 2025-07-16 06:59:05,yvesago,url,https://cnazuv.webwave.dev,#phishing,https://x.com/yvesago/status/1945377632096325922 2025-07-16 06:59:05,yvesago,domain,cnazuv.webwave.dev,#phishing,https://x.com/yvesago/status/1945377632096325922 2025-07-16 07:03:10,yvesago,url,https://em3qpg.webwave.dev,#phishing,https://x.com/yvesago/status/1945378658207563941 2025-07-16 07:03:10,yvesago,domain,em3qpg.webwave.dev,#phishing,https://x.com/yvesago/status/1945378658207563941 2025-07-16 07:10:13,yvesago,url,https://dmejl8.webwave.dev,#phishing,https://x.com/yvesago/status/1945380433933316377 2025-07-16 07:10:13,yvesago,domain,dmejl8.webwave.dev,#phishing,https://x.com/yvesago/status/1945380433933316377 2025-07-16 07:26:16,Fact_Finder03,ip,185.100.157.217,#Xworm,https://x.com/Fact_Finder03/status/1945384472087773319 2025-07-16 07:50:14,Fact_Finder03,ip,20.83.253.202,,https://x.com/Fact_Finder03/status/1945390504939835790 2025-07-16 08:42:43,drb_ra,url,https://64.112.124.86:443,#C2,https://x.com/drb_ra/status/1945403713528475739 2025-07-16 08:42:43,drb_ra,url,http://64.112.124.86:443,#C2,https://x.com/drb_ra/status/1945403713528475739 2025-07-16 08:42:43,drb_ra,ip,64.112.124.86,#C2,https://x.com/drb_ra/status/1945403713528475739 2025-07-16 08:42:49,drb_ra,ip,151.79.53.66,#C2,https://x.com/drb_ra/status/1945403736530063614 2025-07-16 08:42:49,drb_ra,url,http://151.79.53.66:443,#C2,https://x.com/drb_ra/status/1945403736530063614 2025-07-16 08:42:49,drb_ra,url,https://151.79.53.66:443,#C2,https://x.com/drb_ra/status/1945403736530063614 2025-07-16 09:46:07,skocherhan,url,https://www.wgetfiles.com/f/cj.exe,#opendir #malware,https://x.com/skocherhan/status/1945419666563739792 2025-07-16 09:46:07,skocherhan,ip,104.207.148.168,#opendir #malware,https://x.com/skocherhan/status/1945419666563739792 2025-07-16 09:46:07,skocherhan,md5,77e83f759e3c3eb6cda2279a592cc880,#opendir #malware,https://x.com/skocherhan/status/1945419666563739792 2025-07-16 09:46:07,skocherhan,md5,de75733b488852e0c14bf913c71cca01,#opendir #malware,https://x.com/skocherhan/status/1945419666563739792 2025-07-16 09:46:07,skocherhan,domain,retirify.sbs,#malware #opendir,https://x.com/skocherhan/status/1945419666563739792 2025-07-16 09:46:07,skocherhan,url,https://www.retirify.sbs/quote.html,#malware #opendir,https://x.com/skocherhan/status/1945419666563739792 2025-07-16 09:46:07,skocherhan,domain,wgetfiles.com,#opendir #malware,https://x.com/skocherhan/status/1945419666563739792 2025-07-16 09:52:04,harugasumi,domain,sbisec-co.qiaorang.com,#phishing,https://x.com/harugasumi/status/1945421163414638649 2025-07-16 09:52:04,harugasumi,url,https://sbisec-co.qiaorang.com/ETGate/?ETGate=M9zpgpjBs8tXfb4k6P9bOVQA,#phishing,https://x.com/harugasumi/status/1945421163414638649 2025-07-16 10:00:07,urldna_bot,url,http://si.team-mks.cc,#phishing #scam,https://x.com/urldna_bot/status/1945423188470403384 2025-07-16 10:00:07,urldna_bot,domain,si.team-mks.cc,#phishing #scam,https://x.com/urldna_bot/status/1945423188470403384 2025-07-16 10:10:09,harugasumi,domain,nmxc2z.top,#phishing,https://x.com/harugasumi/status/1945425716067422650 2025-07-16 10:10:09,harugasumi,url,https://nmxc2z.top/W0lBfYXZ,#phishing,https://x.com/harugasumi/status/1945425716067422650 2025-07-16 10:13:03,harugasumi,domain,c0bzty.top,#phishing,https://x.com/harugasumi/status/1945426447025451253 2025-07-16 10:13:03,harugasumi,url,https://zct95l.top/W0lBfYXZ,#phishing,https://x.com/harugasumi/status/1945426447025451253 2025-07-16 10:13:03,harugasumi,domain,zct95l.top,#phishing,https://x.com/harugasumi/status/1945426447025451253 2025-07-16 10:13:03,harugasumi,url,https://c0bzty.top/W0lBfYXZ,#phishing,https://x.com/harugasumi/status/1945426447025451253 2025-07-16 11:00:38,JAMESWT_WT,url,https://renewalserviceplatform.com/managehosting/pagamento.php?Autorizzazione#42050330,,https://x.com/JAMESWT_WT/status/1945438419577975207 2025-07-16 11:00:38,JAMESWT_WT,domain,renewalserviceplatform.com,,https://x.com/JAMESWT_WT/status/1945438419577975207 2025-07-16 11:04:43,skocherhan,domain,isnimitz.com,#stealer,https://x.com/skocherhan/status/1945439445949276394 2025-07-16 11:04:43,skocherhan,url,https://isnimitz.com/zxc/app,#stealer,https://x.com/skocherhan/status/1945439445949276394 2025-07-16 11:04:43,skocherhan,domain,stanprinston.com,#stealer,https://x.com/skocherhan/status/1945439445949276394 2025-07-16 11:04:43,skocherhan,url,https://stanprinston.com/zxc/app.zip,#stealer,https://x.com/skocherhan/status/1945439445949276394 2025-07-16 11:04:43,skocherhan,url,https://isnimitz.com/zxc/app.zip,#stealer,https://x.com/skocherhan/status/1945439445949276394 2025-07-16 11:09:35,drb_ra,url,http://1.94.98.11:8082,#CobaltStrike #C2,https://x.com/drb_ra/status/1945440672422461823 2025-07-16 11:09:40,drb_ra,ip,120.24.241.109,#CobaltStrike #C2,https://x.com/drb_ra/status/1945440694278959559 2025-07-16 11:09:40,drb_ra,url,http://120.24.241.109:6001,#CobaltStrike #C2,https://x.com/drb_ra/status/1945440694278959559 2025-07-16 11:09:40,drb_ra,ip,120.26.98.190,#CobaltStrike #C2,https://x.com/drb_ra/status/1945440694278959559 2025-07-16 11:17:45,drb_ra,url,http://82.202.173.167:1025,#CobaltStrike #C2,https://x.com/drb_ra/status/1945442728927481941 2025-07-16 11:17:45,drb_ra,ip,82.202.173.167,#CobaltStrike #C2,https://x.com/drb_ra/status/1945442728927481941 2025-07-16 11:19:49,drb_ra,domain,vhs.vivo.com.cn,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443246013882724 2025-07-16 11:19:49,drb_ra,url,https://vhs.vivo.com.cn/public/asset/font/script.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443246013882724 2025-07-16 11:19:53,drb_ra,domain,jzhcs.lenovo.com.cn,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443262686171461 2025-07-16 11:19:53,drb_ra,url,https://jzhcs.lenovo.com.cn/public/asset/font/script.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443262686171461 2025-07-16 11:19:57,drb_ra,domain,dji.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443283347325192 2025-07-16 11:19:57,drb_ra,url,https://www.dji.com/public/asset/font/script.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443283347325192 2025-07-16 11:20:03,drb_ra,url,https://static.dingtalk.com/public/asset/font/script.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443304834777584 2025-07-16 11:20:03,drb_ra,domain,static.dingtalk.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443304834777584 2025-07-16 11:20:07,drb_ra,url,http://120.79.64.164:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945443324367679657 2025-07-16 11:20:07,drb_ra,url,https://www.163.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945443324367679657 2025-07-16 11:20:07,drb_ra,ip,120.79.64.164,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945443324367679657 2025-07-16 11:20:13,drb_ra,url,http://43.138.22.149:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443350015873296 2025-07-16 11:20:13,drb_ra,ip,43.138.22.149,#CobaltStrike #C2,https://x.com/drb_ra/status/1945443350015873296 2025-07-16 11:38:33,harugasumi,url,https://isngzrsa.icu/D0pX.jp,#phishing,https://x.com/harugasumi/status/1945447960705466675 2025-07-16 11:38:33,harugasumi,domain,isngzrsa.icu,#phishing,https://x.com/harugasumi/status/1945447960705466675 2025-07-16 11:38:33,harugasumi,url,https://centsbicloud.bond,#phishing,https://x.com/harugasumi/status/1945447960705466675 2025-07-16 11:38:33,harugasumi,domain,fjdycdn.com,#phishing,https://x.com/harugasumi/status/1945447960705466675 2025-07-16 11:38:33,harugasumi,url,https://fjdycdn.com/D0pX.jp,#phishing,https://x.com/harugasumi/status/1945447960705466675 2025-07-16 11:38:33,harugasumi,domain,centsbicloud.bond,#phishing,https://x.com/harugasumi/status/1945447960705466675 2025-07-16 12:00:08,urldna_bot,domain,bafybeibydkf55yygjnvwhw3qjczx3j65byqjp3giw42mqa3e7xbzsncf5y.ipfs.w3s.link,#scam #phishing,https://x.com/urldna_bot/status/1945453394409279737 2025-07-16 12:00:08,urldna_bot,url,http://bafybeibydkf55yygjnvwhw3qjczx3j65byqjp3giw42mqa3e7xbzsncf5y.ipfs.w3s.link/never3.htm,#scam #phishing,https://x.com/urldna_bot/status/1945453394409279737 2025-07-16 12:00:18,SarlackLab,url,http://147.185.221.29:63503,#C2 #Njrat,https://x.com/SarlackLab/status/1945453435563679958 2025-07-16 12:00:18,SarlackLab,domain,engineering-affair.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1945453435563679958 2025-07-16 12:00:18,SarlackLab,url,http://engineering-affair.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1945453435563679958 2025-07-16 12:00:18,SarlackLab,ip,147.185.221.29,#C2 #Njrat,https://x.com/SarlackLab/status/1945453435563679958 2025-07-16 12:01:15,netonightmare,domain,rtoup-6391356-metaflux-xytrmnwl-246.libreconocimiento.com,#phishing,https://x.com/netonightmare/status/1945453674861302156 2025-07-16 12:01:15,netonightmare,url,http://rtoup-6391356-metaflux-xytrmnwl-246.libreconocimiento.com,#phishing,https://x.com/netonightmare/status/1945453674861302156 2025-07-16 12:01:15,netonightmare,domain,login-mahsdgtyu-0928376-micro-jkaisurty.cashflowinnercircle.biz,#phishing,https://x.com/netonightmare/status/1945453674861302156 2025-07-16 12:01:15,netonightmare,url,http://login-mahsdgtyu-0928376-micro-jkaisurty.cashflowinnercircle.biz,#phishing,https://x.com/netonightmare/status/1945453674861302156 2025-07-16 12:11:16,suyog41,md5,904d94c8674127160a73251e724090fd,,https://x.com/suyog41/status/1945456197605462207 2025-07-16 12:11:16,suyog41,md5,d8ef1c141547618c7bedb4de5318f27e,,https://x.com/suyog41/status/1945456197605462207 2025-07-16 12:11:16,suyog41,md5,f6b7d518610e5e8b63cbb3d7838f9503,,https://x.com/suyog41/status/1945456197605462207 2025-07-16 12:11:16,suyog41,md5,f5b43a47c4b823399252f6858541967d,,https://x.com/suyog41/status/1945456197605462207 2025-07-16 12:11:16,suyog41,md5,2f2c4c262fd0f471294d3b3c74c3b756,,https://x.com/suyog41/status/1945456197605462207 2025-07-16 12:11:16,suyog41,md5,3a91d43cb884a63a021c7a6a828ba183,,https://x.com/suyog41/status/1945456197605462207 2025-07-16 12:25:43,skocherhan,md5,f5b54d853f9dc795313ca5dde0f55f8b,#RAT,https://x.com/skocherhan/status/1945459831126503491 2025-07-16 12:46:31,ShadowOpCode,url,https://172.236.108.48,#opendir,https://x.com/ShadowOpCode/status/1945465068390396306 2025-07-16 12:46:31,ShadowOpCode,ip,172.236.108.48,#opendir,https://x.com/ShadowOpCode/status/1945465068390396306 2025-07-16 13:15:47,harugasumi,domain,bba744.com,#phishing,https://x.com/harugasumi/status/1945472430409138435 2025-07-16 13:15:47,harugasumi,url,https://bba744.com,#phishing,https://x.com/harugasumi/status/1945472430409138435 2025-07-16 13:53:38,PrakkiSathwik,md5,2a3d999c5c18be2e6b7c3ce1470c4519,#APT #phishing,https://x.com/PrakkiSathwik/status/1945481958198534366 2025-07-16 13:53:38,PrakkiSathwik,md5,9efa3c4f70e1060d4162e46eeae7fd33,#APT #phishing,https://x.com/PrakkiSathwik/status/1945481958198534366 2025-07-16 13:53:38,PrakkiSathwik,md5,ac0c731c2970aa9b6893adbf9806527e,#APT #phishing,https://x.com/PrakkiSathwik/status/1945481958198534366 2025-07-16 14:00:07,urldna_bot,domain,lungrunipit.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945483588331270496 2025-07-16 14:00:07,urldna_bot,url,https://lungrunipit.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945483588331270496 2025-07-16 14:32:08,skocherhan,domain,uniquecroco.site,,https://x.com/skocherhan/status/1945491644981055947 2025-07-16 14:32:08,skocherhan,url,http://uniquecroco.site,,https://x.com/skocherhan/status/1945491644981055947 2025-07-16 14:46:19,harugasumi,domain,smackincieracjp.cfd,#phishing,https://x.com/harugasumi/status/1945495214979940819 2025-07-16 14:46:19,harugasumi,url,https://smackincieracjp.cfd/s1VuSF,#phishing,https://x.com/harugasumi/status/1945495214979940819 2025-07-16 14:51:35,harugasumi,domain,saisoncard-egyr.nnkrbd.cn,#phishing,https://x.com/harugasumi/status/1945496538631012697 2025-07-16 14:51:35,harugasumi,url,https://saisoncard-egyr.nnkrbd.cn/screen/na/authorize/,#phishing,https://x.com/harugasumi/status/1945496538631012697 2025-07-16 14:57:43,CatoCTRL,ip,107.175.148.91,#Xworm,https://x.com/CatoCTRL/status/1945498084114403527 2025-07-16 16:00:06,urldna_bot,domain,hkllm.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945513783520096426 2025-07-16 16:00:06,urldna_bot,url,https://hkllm.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945513783520096426 2025-07-16 16:23:30,cyb3rops,sha256,effd19ed4589151ca9774129f511f423b03e70af86f5c39fecbe825b8f6eb54c,,https://x.com/cyb3rops/status/1945519671286935764 2025-07-16 17:26:42,skocherhan,domain,bdgov.info,#APT,https://x.com/skocherhan/status/1945535576008011971 2025-07-16 17:26:42,skocherhan,url,http://bdgov.info,#APT,https://x.com/skocherhan/status/1945535576008011971 2025-07-16 17:26:42,skocherhan,domain,afdinfo786.bdgov.info,#APT,https://x.com/skocherhan/status/1945535576008011971 2025-07-16 17:26:42,skocherhan,url,http://afdinfo786.bdgov.info,#APT,https://x.com/skocherhan/status/1945535576008011971 2025-07-16 18:00:05,urldna_bot,domain,9ghavdyu7agyua.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1945543979660882001 2025-07-16 18:00:05,urldna_bot,url,http://9ghavdyu7agyua.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1945543979660882001 2025-07-16 18:00:17,SarlackLab,url,http://103.245.164.128:5552,#Njrat #C2,https://x.com/SarlackLab/status/1945544028985995513 2025-07-16 18:00:17,SarlackLab,ip,103.245.164.128,#Njrat #C2,https://x.com/SarlackLab/status/1945544028985995513 2025-07-16 18:46:26,drb_ra,url,http://75.2.81.90:443,#C2 #Deimos,https://x.com/drb_ra/status/1945555642061668527 2025-07-16 18:46:26,drb_ra,ip,75.2.81.90,#C2 #Deimos,https://x.com/drb_ra/status/1945555642061668527 2025-07-16 18:46:30,drb_ra,url,http://84.200.128.150:7443,#C2 #Mythic,https://x.com/drb_ra/status/1945555658985648264 2025-07-16 18:46:30,drb_ra,ip,84.200.128.150,#C2 #Mythic,https://x.com/drb_ra/status/1945555658985648264 2025-07-16 18:46:35,drb_ra,url,http://118.194.235.107:58443,#C2 #Sliver,https://x.com/drb_ra/status/1945555680162713793 2025-07-16 18:46:35,drb_ra,ip,118.194.235.107,#C2 #Sliver,https://x.com/drb_ra/status/1945555680162713793 2025-07-16 18:46:40,drb_ra,url,http://34.242.163.197:31337,#C2 #Sliver,https://x.com/drb_ra/status/1945555700744167845 2025-07-16 18:46:40,drb_ra,ip,34.242.163.197,#C2 #Sliver,https://x.com/drb_ra/status/1945555700744167845 2025-07-16 18:48:43,drb_ra,url,http://167.160.161.103:2404,#C2 #Remcos,https://x.com/drb_ra/status/1945556218119889288 2025-07-16 18:48:43,drb_ra,ip,167.160.161.103,#C2 #Remcos,https://x.com/drb_ra/status/1945556218119889288 2025-07-16 18:48:49,drb_ra,url,http://196.251.69.238:2404,#C2 #Remcos,https://x.com/drb_ra/status/1945556240605544758 2025-07-16 18:48:49,drb_ra,ip,196.251.69.238,#C2 #Remcos,https://x.com/drb_ra/status/1945556240605544758 2025-07-16 18:48:54,drb_ra,url,http://122.51.41.221:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1945556261803602083 2025-07-16 18:48:54,drb_ra,ip,122.51.41.221,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1945556261803602083 2025-07-16 18:48:59,drb_ra,url,http://13.38.81.62:11103,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1945556282477359415 2025-07-16 18:49:04,drb_ra,url,http://13.38.81.62:5903,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1945556304237314081 2025-07-16 18:49:04,drb_ra,ip,13.38.81.62,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1945556304237314081 2025-07-16 18:49:09,drb_ra,url,http://3.6.4.197:443,#C2 #Interactsh,https://x.com/drb_ra/status/1945556325301178685 2025-07-16 18:49:14,drb_ra,url,http://3.6.4.197:80,#C2 #Interactsh,https://x.com/drb_ra/status/1945556346289504711 2025-07-16 18:49:19,drb_ra,url,http://3.6.4.197:25,#C2 #Interactsh,https://x.com/drb_ra/status/1945556368003362993 2025-07-16 18:49:24,drb_ra,url,http://51.15.224.47:80,#C2 #Interactsh,https://x.com/drb_ra/status/1945556389603967403 2025-07-16 18:49:29,drb_ra,url,http://51.15.224.47:587,#C2 #Interactsh,https://x.com/drb_ra/status/1945556411242455432 2025-07-16 18:49:29,drb_ra,ip,51.15.224.47,#C2 #Interactsh,https://x.com/drb_ra/status/1945556411242455432 2025-07-16 18:49:34,drb_ra,url,http://34.244.240.178:443,#C2 #Interactsh,https://x.com/drb_ra/status/1945556432872444245 2025-07-16 18:49:34,drb_ra,ip,34.244.240.178,#C2 #Interactsh,https://x.com/drb_ra/status/1945556432872444245 2025-07-16 18:49:40,drb_ra,url,http://3.253.86.20:80,#C2 #Interactsh,https://x.com/drb_ra/status/1945556454213058717 2025-07-16 18:49:45,drb_ra,url,http://13.61.105.64:80,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1945556476325446093 2025-07-16 18:49:45,drb_ra,ip,13.61.105.64,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1945556476325446093 2025-07-16 18:49:50,drb_ra,url,http://5.163.124.135:443,#C2 #Qakbot,https://x.com/drb_ra/status/1945556497791893677 2025-07-16 18:49:55,drb_ra,url,http://34.244.159.46:445,#C2,https://x.com/drb_ra/status/1945556519208014155 2025-07-16 18:49:55,drb_ra,ip,34.244.159.46,#C2,https://x.com/drb_ra/status/1945556519208014155 2025-07-16 18:50:00,drb_ra,url,http://178.128.48.155:443,#Havoc #C2,https://x.com/drb_ra/status/1945556540963893521 2025-07-16 18:50:00,drb_ra,ip,178.128.48.155,#Havoc #C2,https://x.com/drb_ra/status/1945556540963893521 2025-07-16 18:52:04,drb_ra,url,http://13.42.107.253:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1945557058452861363 2025-07-16 18:52:04,drb_ra,ip,13.42.107.253,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1945557058452861363 2025-07-16 18:52:09,drb_ra,url,http://196.251.81.126:6000,#C2 #Remcos,https://x.com/drb_ra/status/1945557079525142600 2025-07-16 18:52:09,drb_ra,ip,196.251.81.126,#C2 #Remcos,https://x.com/drb_ra/status/1945557079525142600 2025-07-16 18:52:13,drb_ra,url,http://45.144.214.106:443,#C2 #Remcos,https://x.com/drb_ra/status/1945557099649417239 2025-07-16 18:52:13,drb_ra,ip,45.144.214.106,#C2 #Remcos,https://x.com/drb_ra/status/1945557099649417239 2025-07-16 19:36:32,skocherhan,url,http://sites.google.com/view/docusign-uae,#phishing,https://x.com/skocherhan/status/1945568248830771459 2025-07-16 20:00:05,urldna_bot,domain,attmail.boxmode.io,#scam #phishing,https://x.com/urldna_bot/status/1945574177706025316 2025-07-16 20:00:05,urldna_bot,url,https://attmail.boxmode.io,#scam #phishing,https://x.com/urldna_bot/status/1945574177706025316 2025-07-16 20:28:32,skocherhan,url,http://64.137.9.118,,https://x.com/skocherhan/status/1945581335570973088 2025-07-16 20:28:32,skocherhan,ip,64.137.9.118,,https://x.com/skocherhan/status/1945581335570973088 2025-07-16 21:00:03,threatquery,url,http://103.245.164.128,#C2 #Njrat #malware,https://x.com/threatquery/status/1945589269029962046 2025-07-16 21:00:03,threatquery,url,http://109.172.55.110,#C2 #malware,https://x.com/threatquery/status/1945589267339579409 2025-07-16 21:00:03,threatquery,ip,109.172.55.110,#C2 #malware,https://x.com/threatquery/status/1945589267339579409 2025-07-16 21:00:04,threatquery,url,http://120.221.22.94,#C2 #malware,https://x.com/threatquery/status/1945589270837633291 2025-07-16 21:00:04,threatquery,ip,120.221.22.94,#C2 #malware,https://x.com/threatquery/status/1945589270837633291 2025-07-16 21:00:56,drb_ra,url,http://47.120.48.100:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1945589488538865812 2025-07-16 21:00:56,drb_ra,ip,47.120.48.100,#CobaltStrike #C2,https://x.com/drb_ra/status/1945589488538865812 2025-07-16 21:01:01,drb_ra,url,http://101.43.94.35:9180,#CobaltStrike #C2,https://x.com/drb_ra/status/1945589511720726967 2025-07-16 21:01:01,drb_ra,ip,101.43.94.35,#CobaltStrike #C2,https://x.com/drb_ra/status/1945589511720726967 2025-07-16 21:03:05,drb_ra,url,http://47.245.90.197:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1945590030258356443 2025-07-16 21:03:10,drb_ra,url,http://47.245.90.197:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1945590054161621009 2025-07-16 21:03:10,drb_ra,ip,47.245.90.197,#CobaltStrike #C2,https://x.com/drb_ra/status/1945590054161621009 2025-07-16 21:43:26,drb_ra,url,https://ns3.nsebseshop.cloud/wc/82740874126,#CobaltStrike #C2,https://x.com/drb_ra/status/1945600186455110024 2025-07-16 21:53:32,drb_ra,url,http://85.175.101.203:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602726273962198 2025-07-16 21:53:32,drb_ra,ip,85.175.101.203,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602726273962198 2025-07-16 21:53:37,drb_ra,domain,ns2.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602750328238184 2025-07-16 21:53:37,drb_ra,url,https://ns2.nsebseshop.cloud/s/82740874126,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602750328238184 2025-07-16 21:53:37,drb_ra,domain,ns3.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602750328238184 2025-07-16 21:53:37,drb_ra,url,https://ns3.nsebseshop.cloud/s/82740874126,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602750328238184 2025-07-16 21:53:37,drb_ra,url,http://47.237.86.35:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602750328238184 2025-07-16 21:53:37,drb_ra,ip,47.237.86.35,#CobaltStrike #C2,https://x.com/drb_ra/status/1945602750328238184 2025-07-16 21:57:42,drb_ra,url,http://172.245.17.142:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1945603774694765044 2025-07-16 21:57:42,drb_ra,ip,172.245.17.142,#CobaltStrike #C2,https://x.com/drb_ra/status/1945603774694765044 2025-07-16 22:00:09,urldna_bot,domain,justloginreaganphp.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945604394357047748 2025-07-16 22:00:09,urldna_bot,url,https://justloginreaganphp.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945604394357047748 2025-07-16 22:48:05,catnap707,domain,icloud-putage.jnbkw.cn,#phishing,https://x.com/catnap707/status/1945616455745376279 2025-07-16 22:48:05,catnap707,url,http://icloud-putage.jnbkw.cn/gvIY2S/,#phishing,https://x.com/catnap707/status/1945616455745376279 2025-07-16 22:48:05,catnap707,url,http://172.67.165.235,#phishing,https://x.com/catnap707/status/1945616455745376279 2025-07-16 23:00:03,drb_ra,url,http://146.70.79.53:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945619467662188882 2025-07-16 23:00:03,drb_ra,ip,146.70.79.53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945619467662188882 2025-07-16 23:02:02,skocherhan,url,http://t.me/mamaamaboy,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,domain,resqtk.top,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,url,http://resqtk.top/adlp,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,domain,daruubs.top,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,url,http://daruubs.top/griw,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,domain,cidtfhh.shop,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,url,http://cidtfhh.shop/zdik,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,domain,greqjfu.xyz,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,url,http://greqjfu.xyz/uhbf,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,domain,rayrhs.top,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,url,http://rayrhs.top/aktr,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,domain,furwmsx.shop,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,url,http://furwmsx.shop/xowq,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:02,skocherhan,md5,8d10769c5b9c9077538ed3a6d4938d3d,#Lumma,https://x.com/skocherhan/status/1945619965727363208 2025-07-16 23:02:07,drb_ra,url,http://49.235.64.155:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945619987386802229 2025-07-16 23:02:07,drb_ra,ip,49.235.64.155,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945619987386802229 2025-07-16 23:02:12,drb_ra,domain,7fsnaewwwq6r3.cfc-execute.bj.baidubce.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945620009318842516 2025-07-16 23:02:12,drb_ra,url,https://7fsnaewwwq6r3.cfc-execute.bj.baidubce.com/api/x,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945620009318842516 2025-07-16 23:02:12,drb_ra,url,http://116.62.107.27:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945620009318842516 2025-07-16 23:02:12,drb_ra,ip,116.62.107.27,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945620009318842516 2025-07-16 23:02:17,drb_ra,url,http://38.182.100.106:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945620030701351341 2025-07-16 23:02:17,drb_ra,ip,38.182.100.106,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945620030701351341 2025-07-16 23:14:15,skocherhan,domain,24k-markets.com,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:14:15,skocherhan,url,http://24k-markets.com,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:14:15,skocherhan,domain,axetrade-capital.com,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:14:15,skocherhan,url,http://axetrade-capital.com,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:14:15,skocherhan,domain,fizmofx-markets.com,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:14:15,skocherhan,url,http://fizmofx-markets.com,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:14:15,skocherhan,domain,upwardstrend.net,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:14:15,skocherhan,url,http://upwardstrend.net,,https://x.com/skocherhan/status/1945623038801727750 2025-07-16 23:20:05,skocherhan,domain,secure-portal.pages.dev,,https://x.com/skocherhan/status/1945624507118460947 2025-07-16 23:20:05,skocherhan,url,http://secure-portal.pages.dev,,https://x.com/skocherhan/status/1945624507118460947 2025-07-16 23:20:05,skocherhan,domain,microsoftcdnlicense.putinswin.es,,https://x.com/skocherhan/status/1945624507118460947 2025-07-16 23:20:05,skocherhan,url,http://microsoftcdnlicense.putinswin.es,,https://x.com/skocherhan/status/1945624507118460947 2025-07-16 23:20:05,skocherhan,url,http://38.69.15.242,,https://x.com/skocherhan/status/1945624507118460947 2025-07-16 23:20:05,skocherhan,ip,38.69.15.242,,https://x.com/skocherhan/status/1945624507118460947 2025-07-17 00:00:06,urldna_bot,domain,kucvoinlogine.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1945634580037328971 2025-07-17 00:00:06,urldna_bot,url,https://kucvoinlogine.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1945634580037328971 2025-07-17 00:19:56,skocherhan,ip,158.247.249.46,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,url,http://158.247.249.46,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,url,http://kimchee.p-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,url,http://chosunlibs.r-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,domain,kimchee.p-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,url,http://chosunweb.n-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,domain,chosunweb.n-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,url,http://nidnosr.n-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,domain,nidnosr.n-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:19:56,skocherhan,domain,chosunlibs.r-e.kr,#Kimsuky,https://x.com/skocherhan/status/1945639569090576712 2025-07-17 00:59:48,masaomi346,domain,tanranch2o.com,#phishing,https://x.com/masaomi346/status/1945649604806283387 2025-07-17 00:59:48,masaomi346,url,https://tanranch2o.com/plala.authentications/Sites/index.html,#phishing,https://x.com/masaomi346/status/1945649604806283387 2025-07-17 00:59:48,masaomi346,url,https://tanranch2o.com/plala.web/Sites/index.html,#phishing,https://x.com/masaomi346/status/1945649604806283387 2025-07-17 01:21:58,Metemcyber,url,http://104.21.1.227,#phishing,https://x.com/Metemcyber/status/1945655179690557548 2025-07-17 01:21:58,Metemcyber,url,https://asdyfgby.icu/D0pX.jp/,#phishing,https://x.com/Metemcyber/status/1945655179690557548 2025-07-17 01:21:58,Metemcyber,url,http://172.67.152.104,#phishing,https://x.com/Metemcyber/status/1945655179690557548 2025-07-17 01:21:58,Metemcyber,domain,asdyfgby.icu,#phishing,https://x.com/Metemcyber/status/1945655179690557548 2025-07-17 01:30:02,Metemcyber,domain,saisoncard-base.sdtcke.cn,#phishing,https://x.com/Metemcyber/status/1945657212271227212 2025-07-17 01:30:02,Metemcyber,url,https://saisoncard-base.sdtcke.cn/screen/na/authorize/,#phishing,https://x.com/Metemcyber/status/1945657212271227212 2025-07-17 01:30:02,Metemcyber,url,http://172.67.176.78,#phishing,https://x.com/Metemcyber/status/1945657212271227212 2025-07-17 01:30:02,Metemcyber,url,http://104.21.88.100,#phishing,https://x.com/Metemcyber/status/1945657212271227212 2025-07-17 02:00:10,urldna_bot,url,https://bierfestivus.be,#scam #phishing,https://x.com/urldna_bot/status/1945664793500598403 2025-07-17 02:00:10,urldna_bot,domain,bierfestivus.be,#scam #phishing,https://x.com/urldna_bot/status/1945664793500598403 2025-07-17 02:01:29,Metemcyber,domain,www-apple.eku8ykbj.com,#phishing,https://x.com/Metemcyber/status/1945665125631107571 2025-07-17 02:01:29,Metemcyber,url,https://www-apple.eku8ykbj.com/account/,#phishing,https://x.com/Metemcyber/status/1945665125631107571 2025-07-17 02:01:29,Metemcyber,url,http://104.21.112.1,#phishing,https://x.com/Metemcyber/status/1945665125631107571 2025-07-17 02:01:29,Metemcyber,url,http://104.21.16.1,#phishing,https://x.com/Metemcyber/status/1945665125631107571 2025-07-17 02:01:29,Metemcyber,url,http://104.21.32.1,#phishing,https://x.com/Metemcyber/status/1945665125631107571 2025-07-17 02:01:29,Metemcyber,url,http://104.21.48.1,#phishing,https://x.com/Metemcyber/status/1945665125631107571 2025-07-17 02:04:29,ViriBack,ip,185.39.19.164,#malware,https://x.com/ViriBack/status/1945665880840433972 2025-07-17 02:04:29,ViriBack,ip,179.60.149.213,#malware,https://x.com/ViriBack/status/1945665880840433972 2025-07-17 02:04:29,ViriBack,ip,193.105.134.245,#malware,https://x.com/ViriBack/status/1945665880840433972 2025-07-17 03:13:24,ShadowChasing1,md5,2a3d999c5c18be2e6b7c3ce1470c4519,#phishing #APT,https://x.com/ShadowChasing1/status/1945683222802944278 2025-07-17 03:13:24,ShadowChasing1,md5,9efa3c4f70e1060d4162e46eeae7fd33,#phishing #APT,https://x.com/ShadowChasing1/status/1945683222802944278 2025-07-17 03:13:24,ShadowChasing1,md5,ac0c731c2970aa9b6893adbf9806527e,#phishing #APT,https://x.com/ShadowChasing1/status/1945683222802944278 2025-07-17 03:13:36,ShadowChasing1,domain,bdgov.info,#APT,https://x.com/ShadowChasing1/status/1945683274308927728 2025-07-17 03:13:36,ShadowChasing1,url,http://bdgov.info,#APT,https://x.com/ShadowChasing1/status/1945683274308927728 2025-07-17 03:13:36,ShadowChasing1,domain,afdinfo786.bdgov.info,#APT,https://x.com/ShadowChasing1/status/1945683274308927728 2025-07-17 03:13:36,ShadowChasing1,url,http://afdinfo786.bdgov.info,#APT,https://x.com/ShadowChasing1/status/1945683274308927728 2025-07-17 03:45:44,JAMESWT_WT,sha256,a14506c6fb92a5af88a6a44d273edafe10d69ee3d85c8b2a7ac458a22edf68d2,,https://x.com/JAMESWT_WT/status/1945691361946341722 2025-07-17 04:00:06,urldna_bot,domain,kuksreooinlogon.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1945694979344498710 2025-07-17 04:00:06,urldna_bot,url,http://kuksreooinlogon.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1945694979344498710 2025-07-17 05:58:26,harugasumi,url,http://iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1945724758106210671 2025-07-17 05:58:26,harugasumi,ip,149.104.32.236,#phishing,https://x.com/harugasumi/status/1945724758106210671 2025-07-17 05:58:26,harugasumi,url,https://shik1n-lgoin00.com,#phishing,https://x.com/harugasumi/status/1945724758106210671 2025-07-17 05:58:26,harugasumi,domain,iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1945724758106210671 2025-07-17 05:58:26,harugasumi,url,https://shik1n-lgoin01-06.com,#phishing,https://x.com/harugasumi/status/1945724758106210671 2025-07-17 05:58:26,harugasumi,domain,shik1n-lgoin01-06.com,#phishing,https://x.com/harugasumi/status/1945724758106210671 2025-07-17 05:58:26,harugasumi,domain,shik1n-lgoin00.com,#phishing,https://x.com/harugasumi/status/1945724758106210671 2025-07-17 06:00:10,urldna_bot,domain,socialsecurityalerts.news,#phishing #scam,https://x.com/urldna_bot/status/1945725193223086104 2025-07-17 06:00:10,urldna_bot,url,https://socialsecurityalerts.news/social-security-error-leaves-citizens-fighting-to-prove-status/,#phishing #scam,https://x.com/urldna_bot/status/1945725193223086104 2025-07-17 06:00:47,Metemcyber,url,http://172.67.187.60,#phishing,https://x.com/Metemcyber/status/1945725349960253568 2025-07-17 06:00:47,Metemcyber,url,https://aeon-amatier.hrzaek.cn/openirt-connect/app/,#phishing,https://x.com/Metemcyber/status/1945725349960253568 2025-07-17 06:00:47,Metemcyber,domain,aeon-amatier.hrzaek.cn,#phishing,https://x.com/Metemcyber/status/1945725349960253568 2025-07-17 06:00:47,Metemcyber,url,http://104.21.4.242,#phishing,https://x.com/Metemcyber/status/1945725349960253568 2025-07-17 06:02:22,drb_ra,url,https://124.220.59.81/mall_100_100.html,#CobaltStrike #C2,https://x.com/drb_ra/status/1945725744774037823 2025-07-17 06:02:22,drb_ra,url,http://124.220.59.81:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1945725744774037823 2025-07-17 06:02:22,drb_ra,ip,124.220.59.81,#CobaltStrike #C2,https://x.com/drb_ra/status/1945725744774037823 2025-07-17 06:16:18,Metemcyber,url,http://50.87.222.185,#phishing,https://x.com/Metemcyber/status/1945729254387527983 2025-07-17 06:16:18,Metemcyber,domain,buchmaierlaw.com,#phishing,https://x.com/Metemcyber/status/1945729254387527983 2025-07-17 06:16:18,Metemcyber,url,https://buchmaierlaw.com/mail-biglobejp//sign-in.php,#phishing,https://x.com/Metemcyber/status/1945729254387527983 2025-07-17 06:16:18,Metemcyber,ip,50.87.222.185,#phishing,https://x.com/Metemcyber/status/1945729254387527983 2025-07-17 06:30:09,romonlyht,ip,192.185.75.5,#phishing,https://x.com/romonlyht/status/1945732739698987405 2025-07-17 06:30:09,romonlyht,url,https://www.google.com/url?q=https%3A%2F%2Fpx.cpipxn3.sa.com%2Fcnn.html&sa=D&sntz=1&usg=AOvVaw2LvXzrLoVaEOonVZHsU,#phishing,https://x.com/romonlyht/status/1945732737522143672 2025-07-17 06:30:09,romonlyht,ip,217.154.225.163,#phishing,https://x.com/romonlyht/status/1945732739698987405 2025-07-17 06:30:09,romonlyht,ip,192.244.97.170,#phishing,https://x.com/romonlyht/status/1945732737522143672 2025-07-17 06:30:09,romonlyht,url,https://khamarsheba.com//pw/jp?uid=aaaa%40example.jp,#phishing,https://x.com/romonlyht/status/1945732739698987405 2025-07-17 06:30:09,romonlyht,domain,px.cpipxn3.sa.com,#phishing,https://x.com/romonlyht/status/1945732739698987405 2025-07-17 06:30:10,romonlyht,domain,khamarsheba.com,#phishing,https://x.com/romonlyht/status/1945732741410271704 2025-07-17 06:30:10,romonlyht,url,https://khamarsheba.com/pw/jp/?uid=aaaa%40example.jp,#phishing,https://x.com/romonlyht/status/1945732741410271704 2025-07-17 06:46:38,drb_ra,url,http://35.241.90.34:443,#C2,https://x.com/drb_ra/status/1945736887873773855 2025-07-17 06:46:38,drb_ra,ip,35.241.90.34,#C2,https://x.com/drb_ra/status/1945736887873773855 2025-07-17 06:46:44,drb_ra,url,http://52.148.201.81:40056,#C2 #Havoc,https://x.com/drb_ra/status/1945736912880206008 2025-07-17 06:46:44,drb_ra,ip,52.148.201.81,#C2 #Havoc,https://x.com/drb_ra/status/1945736912880206008 2025-07-17 06:46:50,drb_ra,url,http://144.91.69.246:443,#C2 #Havoc,https://x.com/drb_ra/status/1945736937169412133 2025-07-17 06:46:50,drb_ra,ip,144.91.69.246,#C2 #Havoc,https://x.com/drb_ra/status/1945736937169412133 2025-07-17 06:46:55,drb_ra,ip,154.91.180.231,#C2 #Havoc,https://x.com/drb_ra/status/1945736959227273224 2025-07-17 06:46:55,drb_ra,url,http://154.91.180.231:443,#C2 #Havoc,https://x.com/drb_ra/status/1945736959227273224 2025-07-17 06:47:00,drb_ra,url,http://3.90.201.175:443,#C2 #Havoc,https://x.com/drb_ra/status/1945736977216688420 2025-07-17 06:47:06,drb_ra,url,http://179.145.47.137:8081,#C2 #Havoc,https://x.com/drb_ra/status/1945737004978671868 2025-07-17 06:47:06,drb_ra,ip,179.145.47.137,#C2 #Havoc,https://x.com/drb_ra/status/1945737004978671868 2025-07-17 06:47:12,drb_ra,url,http://13.58.164.145:443,#C2 #Deimos,https://x.com/drb_ra/status/1945737027770523840 2025-07-17 06:47:12,drb_ra,ip,13.58.164.145,#C2 #Deimos,https://x.com/drb_ra/status/1945737027770523840 2025-07-17 06:47:17,drb_ra,url,http://54.185.115.89:443,#C2 #Deimos,https://x.com/drb_ra/status/1945737050491179095 2025-07-17 06:47:17,drb_ra,ip,54.185.115.89,#C2 #Deimos,https://x.com/drb_ra/status/1945737050491179095 2025-07-17 06:47:24,drb_ra,url,http://102.117.168.232:7443,#C2 #Mythic,https://x.com/drb_ra/status/1945737077888372926 2025-07-17 06:47:24,drb_ra,ip,102.117.168.232,#C2 #Mythic,https://x.com/drb_ra/status/1945737077888372926 2025-07-17 06:47:29,drb_ra,url,http://45.77.79.169:4444,#C2 #Brute_Ratel_C4,https://x.com/drb_ra/status/1945737101988794677 2025-07-17 06:47:35,drb_ra,url,http://45.77.79.169:443,#C2 #Brute_Ratel_C4,https://x.com/drb_ra/status/1945737126852596132 2025-07-17 06:47:35,drb_ra,ip,45.77.79.169,#C2 #Brute_Ratel_C4,https://x.com/drb_ra/status/1945737126852596132 2025-07-17 06:47:42,drb_ra,url,http://146.190.11.128:31337,#C2 #Sliver,https://x.com/drb_ra/status/1945737154367275484 2025-07-17 06:47:42,drb_ra,ip,146.190.11.128,#C2 #Sliver,https://x.com/drb_ra/status/1945737154367275484 2025-07-17 06:47:48,drb_ra,url,http://46.8.78.243:8848,#C2 #Sliver,https://x.com/drb_ra/status/1945737180782940257 2025-07-17 06:47:48,drb_ra,ip,46.8.78.243,#C2 #Sliver,https://x.com/drb_ra/status/1945737180782940257 2025-07-17 06:47:54,drb_ra,url,http://166.108.200.194:31337,#C2 #Sliver,https://x.com/drb_ra/status/1945737204040388627 2025-07-17 06:47:54,drb_ra,ip,166.108.200.194,#C2 #Sliver,https://x.com/drb_ra/status/1945737204040388627 2025-07-17 06:47:59,drb_ra,url,http://77.237.233.73:443,#C2 #Sliver,https://x.com/drb_ra/status/1945737226978984447 2025-07-17 06:48:05,drb_ra,ip,77.237.233.73,#C2 #Sliver,https://x.com/drb_ra/status/1945737251876409787 2025-07-17 06:48:05,drb_ra,url,http://77.237.233.73:31337,#C2 #Sliver,https://x.com/drb_ra/status/1945737251876409787 2025-07-17 06:50:09,drb_ra,url,http://188.23.170.137:8000,#C2,https://x.com/drb_ra/status/1945737770560897027 2025-07-17 06:50:09,drb_ra,ip,188.23.170.137,#C2,https://x.com/drb_ra/status/1945737770560897027 2025-07-17 06:50:15,drb_ra,url,http://185.72.8.65:9531,#C2,https://x.com/drb_ra/status/1945737797450531289 2025-07-17 06:50:20,drb_ra,url,http://185.72.8.65:443,#C2,https://x.com/drb_ra/status/1945737819550261735 2025-07-17 06:50:20,drb_ra,ip,185.72.8.65,#C2,https://x.com/drb_ra/status/1945737819550261735 2025-07-17 06:50:26,drb_ra,url,http://173.206.248.90:8888,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1945737842577035384 2025-07-17 06:50:26,drb_ra,ip,173.206.248.90,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1945737842577035384 2025-07-17 06:50:31,drb_ra,ip,152.168.213.12,#C2,https://x.com/drb_ra/status/1945737865633079524 2025-07-17 06:50:31,drb_ra,url,http://152.168.213.12:8080,#C2,https://x.com/drb_ra/status/1945737865633079524 2025-07-17 06:50:37,drb_ra,ip,102.130.112.15,#C2,https://x.com/drb_ra/status/1945737887506420047 2025-07-17 06:50:37,drb_ra,url,http://102.130.112.15:80,#C2,https://x.com/drb_ra/status/1945737887506420047 2025-07-17 06:50:42,drb_ra,url,http://212.162.149.240:45588,#C2 #Remcos,https://x.com/drb_ra/status/1945737909912457556 2025-07-17 06:50:42,drb_ra,ip,212.162.149.240,#C2 #Remcos,https://x.com/drb_ra/status/1945737909912457556 2025-07-17 06:50:47,drb_ra,url,http://119.45.176.196:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1945737932712628361 2025-07-17 06:50:47,drb_ra,ip,119.45.176.196,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1945737932712628361 2025-07-17 06:50:53,drb_ra,url,http://130.162.225.47:8080,#C2,https://x.com/drb_ra/status/1945737955433173039 2025-07-17 06:50:53,drb_ra,ip,130.162.225.47,#C2,https://x.com/drb_ra/status/1945737955433173039 2025-07-17 06:50:58,drb_ra,url,http://16.51.66.78:14231,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1945737978032087135 2025-07-17 06:50:58,drb_ra,ip,16.51.66.78,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1945737978032087135 2025-07-17 06:51:04,drb_ra,ip,18.60.200.175,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1945738002652598524 2025-07-17 06:51:04,drb_ra,url,http://18.60.200.175:50580,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1945738002652598524 2025-07-17 06:51:10,drb_ra,url,http://171.250.25.244:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1945738025826128309 2025-07-17 06:51:10,drb_ra,ip,171.250.25.244,#C2 #AsyncRAT,https://x.com/drb_ra/status/1945738025826128309 2025-07-17 06:51:15,drb_ra,url,http://161.35.20.183:25,#C2 #Interactsh,https://x.com/drb_ra/status/1945738048131551596 2025-07-17 06:51:15,drb_ra,ip,161.35.20.183,#C2 #Interactsh,https://x.com/drb_ra/status/1945738048131551596 2025-07-17 06:51:21,drb_ra,url,http://82.115.26.163:465,#C2 #Interactsh,https://x.com/drb_ra/status/1945738074387878247 2025-07-17 06:51:27,drb_ra,url,http://82.115.26.163:443,#C2 #Interactsh,https://x.com/drb_ra/status/1945738097833955559 2025-07-17 06:51:32,drb_ra,url,http://82.115.26.163:80,#C2 #Interactsh,https://x.com/drb_ra/status/1945738120575451499 2025-07-17 06:51:38,drb_ra,url,http://82.115.26.163:25,#C2 #Interactsh,https://x.com/drb_ra/status/1945738144243994787 2025-07-17 06:51:38,drb_ra,ip,82.115.26.163,#C2 #Interactsh,https://x.com/drb_ra/status/1945738144243994787 2025-07-17 06:51:42,drb_ra,ip,92.70.157.170,#C2 #Interactsh,https://x.com/drb_ra/status/1945738161843282090 2025-07-17 06:51:42,drb_ra,url,http://92.70.157.170:7443,#C2 #Interactsh,https://x.com/drb_ra/status/1945738161843282090 2025-07-17 06:51:47,drb_ra,url,http://63.33.198.6:80,#C2 #Interactsh,https://x.com/drb_ra/status/1945738184475762761 2025-07-17 06:51:47,drb_ra,ip,63.33.198.6,#C2 #Interactsh,https://x.com/drb_ra/status/1945738184475762761 2025-07-17 06:51:53,drb_ra,url,http://18.163.18.34:8888,#C2 #Supershell,https://x.com/drb_ra/status/1945738208978858201 2025-07-17 06:51:53,drb_ra,ip,18.163.18.34,#C2 #Supershell,https://x.com/drb_ra/status/1945738208978858201 2025-07-17 06:51:59,drb_ra,url,http://49.113.76.144:8888,#C2 #Supershell,https://x.com/drb_ra/status/1945738234568294723 2025-07-17 06:51:59,drb_ra,ip,49.113.76.144,#C2 #Supershell,https://x.com/drb_ra/status/1945738234568294723 2025-07-17 06:52:06,drb_ra,url,http://111.229.104.132:8888,#C2 #Supershell,https://x.com/drb_ra/status/1945738264217817543 2025-07-17 06:52:06,drb_ra,ip,111.229.104.132,#C2 #Supershell,https://x.com/drb_ra/status/1945738264217817543 2025-07-17 06:52:13,drb_ra,ip,85.208.84.26,#C2 #Dcrat,https://x.com/drb_ra/status/1945738291099169018 2025-07-17 06:52:13,drb_ra,url,http://85.208.84.26:8808,#C2 #Dcrat,https://x.com/drb_ra/status/1945738291099169018 2025-07-17 06:52:18,drb_ra,url,http://1.161.110.77:443,#C2 #Qakbot,https://x.com/drb_ra/status/1945738314708885591 2025-07-17 06:52:25,drb_ra,url,http://189.140.35.9:443,#C2 #Qakbot,https://x.com/drb_ra/status/1945738341908885965 2025-07-17 06:52:25,drb_ra,ip,189.140.35.9,#C2 #Qakbot,https://x.com/drb_ra/status/1945738341908885965 2025-07-17 06:52:32,drb_ra,url,http://217.165.152.74:443,#C2 #Qakbot,https://x.com/drb_ra/status/1945738371101233654 2025-07-17 06:52:32,drb_ra,ip,217.165.152.74,#C2 #Qakbot,https://x.com/drb_ra/status/1945738371101233654 2025-07-17 06:52:37,drb_ra,url,http://189.146.162.241:995,#C2 #Qakbot,https://x.com/drb_ra/status/1945738394325168283 2025-07-17 06:52:37,drb_ra,ip,189.146.162.241,#C2 #Qakbot,https://x.com/drb_ra/status/1945738394325168283 2025-07-17 06:54:55,harugasumi,domain,また総務省はmynakyukyu-demonstration.com,,https://x.com/harugasumi/status/1945738972732481841 2025-07-17 06:54:55,harugasumi,url,http://また総務省はmynakyukyu-demonstration.com,,https://x.com/harugasumi/status/1945738972732481841 2025-07-17 07:07:56,taku888infinity,domain,e-tax-actuall.nrvcn.cn,#phishing,https://x.com/taku888infinity/status/1945742246151893034 2025-07-17 07:07:56,taku888infinity,url,https://e-tax-actuall.nrvcn.cn/loginouudividua/,#phishing,https://x.com/taku888infinity/status/1945742246151893034 2025-07-17 08:00:07,urldna_bot,url,https://odd-haze-e366.trevor-e31.workers.dev/bdo-form/9ENC1gPxwiZXxjTfEvMV97GtfsmA3UPlDbMoX22drF,#scam #phishing,https://x.com/urldna_bot/status/1945755377804439912 2025-07-17 08:00:07,urldna_bot,domain,odd-haze-e366.trevor-e31.workers.dev,#scam #phishing,https://x.com/urldna_bot/status/1945755377804439912 2025-07-17 08:29:23,solostalking,ip,37.221.64.202,,https://x.com/solostalking/status/1945762743090647217 2025-07-17 08:39:20,askardyuss,domain,c2.skelet.lol,#C2 #malware,https://x.com/askardyuss/status/1945765248444637274 2025-07-17 08:39:20,askardyuss,url,http://c2.skelet.lol,#C2 #malware,https://x.com/askardyuss/status/1945765248444637274 2025-07-17 08:39:20,askardyuss,url,http://91.147.113.214,#C2 #malware,https://x.com/askardyuss/status/1945765248444637274 2025-07-17 08:39:20,askardyuss,ip,91.147.113.214,#C2 #malware,https://x.com/askardyuss/status/1945765248444637274 2025-07-17 08:40:12,pamircil,md5,2e07a4de9e6ba84728fbdf27384ea0b9,#ransomware,https://x.com/pamircil/status/1945765467584696577 2025-07-17 08:40:12,pamircil,md5,2bf543faf679a374af5fc4848eea5a98,#ransomware,https://x.com/pamircil/status/1945765467584696577 2025-07-17 08:40:12,pamircil,md5,6f28082b018a6da45fea8ff4fa7a4e94,#ransomware,https://x.com/pamircil/status/1945765467584696577 2025-07-17 08:40:12,pamircil,md5,82afcebc49f49b758de83b3275c91137,#ransomware,https://x.com/pamircil/status/1945765467584696577 2025-07-17 10:29:44,louismartinox,domain,ethwzdan.vip,#scam,https://x.com/louismartinox/status/1945793031891824953 2025-07-17 10:29:44,louismartinox,url,http://ethwzdan.vip,#scam,https://x.com/louismartinox/status/1945793031891824953 2025-07-17 10:42:52,Mr_Harleyphaz,domain,bit-fon4ix.ru.onion,#phishing,https://x.com/Mr_Harleyphaz/status/1945796338416816200 2025-07-17 10:42:52,Mr_Harleyphaz,url,http://bit-fon4ix.ru.onion,#phishing,https://x.com/Mr_Harleyphaz/status/1945796338416816200 2025-07-17 10:59:55,drb_ra,url,http://106.14.8.189:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800625993695346 2025-07-17 10:59:55,drb_ra,ip,106.14.8.189,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800625993695346 2025-07-17 11:00:00,drb_ra,url,http://47.98.151.171:2999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800649037226261 2025-07-17 11:00:00,drb_ra,url,https://47.98.151.171/visit.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800649037226261 2025-07-17 11:00:00,drb_ra,ip,47.98.151.171,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800649037226261 2025-07-17 11:00:05,drb_ra,ip,39.101.64.124,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800670298222905 2025-07-17 11:00:05,drb_ra,url,http://39.101.64.124:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800670298222905 2025-07-17 11:00:11,drb_ra,url,http://42.193.4.115:6666,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800692620268016 2025-07-17 11:00:14,drb_ra,url,http://118.24.117.221:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800708936048759 2025-07-17 11:00:14,drb_ra,ip,118.24.117.221,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800708936048759 2025-07-17 11:00:18,drb_ra,url,http://1.12.236.84:18080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945800724551459276 2025-07-17 11:02:22,drb_ra,url,http://42.193.4.115:6667,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801242799661192 2025-07-17 11:02:22,drb_ra,ip,42.193.4.115,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801242799661192 2025-07-17 11:02:27,drb_ra,url,http://120.27.208.187:38582,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801266703028483 2025-07-17 11:02:27,drb_ra,ip,120.27.208.187,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801266703028483 2025-07-17 11:02:31,drb_ra,ip,47.109.140.12,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801282284904487 2025-07-17 11:02:31,drb_ra,url,http://47.109.140.12:4432,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801282284904487 2025-07-17 11:02:38,drb_ra,url,http://59.110.64.250:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801309849829816 2025-07-17 11:02:38,drb_ra,ip,59.110.64.250,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801309849829816 2025-07-17 11:02:43,drb_ra,url,http://59.110.6.250:7777,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801330913681480 2025-07-17 11:02:43,drb_ra,ip,59.110.6.250,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801330913681480 2025-07-17 11:02:47,drb_ra,ip,47.245.61.75,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801347887972571 2025-07-17 11:02:47,drb_ra,url,http://47.245.61.75:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801347887972571 2025-07-17 11:02:52,drb_ra,ip,217.154.212.25,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801370675667065 2025-07-17 11:02:52,drb_ra,url,http://217.154.212.25:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801370675667065 2025-07-17 11:02:52,drb_ra,url,https://217.154.212.25/c/msdownload/update/others/2016/12/29136388_,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801370675667065 2025-07-17 11:02:57,drb_ra,url,http://124.70.86.82:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801392402165804 2025-07-17 11:02:57,drb_ra,ip,124.70.86.82,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801392402165804 2025-07-17 11:05:01,drb_ra,url,http://113.44.89.87:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801911745016235 2025-07-17 11:05:01,drb_ra,ip,113.44.89.87,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801911745016235 2025-07-17 11:05:05,drb_ra,url,http://81.70.221.86:6001,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801928513859857 2025-07-17 11:05:05,drb_ra,ip,81.70.221.86,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945801928513859857 2025-07-17 11:46:32,qrjxl,url,http://bit-fon4ix.ru.onion#phishing,#phishing,https://x.com/qrjxl/status/1945812357583613991 2025-07-17 12:00:09,urldna_bot,domain,satyarthi.uk,#scam #phishing,https://x.com/urldna_bot/status/1945815787123466334 2025-07-17 12:00:09,urldna_bot,url,http://satyarthi.uk/MM/htdocsitau/index.html,#scam #phishing,https://x.com/urldna_bot/status/1945815787123466334 2025-07-17 12:02:12,sdcyberresearch,url,http://shop-update.com,#Magecart,https://x.com/sdcyberresearch/status/1945816300539785718 2025-07-17 12:02:12,sdcyberresearch,domain,shop-update.com,#Magecart,https://x.com/sdcyberresearch/status/1945816300539785718 2025-07-17 12:02:12,sdcyberresearch,domain,cloudflariz.com,#Magecart,https://x.com/sdcyberresearch/status/1945816300539785718 2025-07-17 12:02:12,sdcyberresearch,url,http://cloudflariz.com/js/macrollantas.com.js,#Magecart,https://x.com/sdcyberresearch/status/1945816300539785718 2025-07-17 12:36:35,skocherhan,domain,catmore88.com,,https://x.com/skocherhan/status/1945824954433331327 2025-07-17 12:36:35,skocherhan,url,http://catmore88.com,,https://x.com/skocherhan/status/1945824954433331327 2025-07-17 12:36:35,skocherhan,domain,ipmoyu.com,,https://x.com/skocherhan/status/1945824954433331327 2025-07-17 12:36:35,skocherhan,url,http://ipmoyu.com,,https://x.com/skocherhan/status/1945824954433331327 2025-07-17 13:44:01,skocherhan,domain,djksandjkandsa-58893.portmap.io:58893,#Xworm #AsyncRAT,https://x.com/skocherhan/status/1945841925346443300 2025-07-17 13:44:01,skocherhan,url,http://github.com/AnnaliseHackett,#Xworm #AsyncRAT,https://x.com/skocherhan/status/1945841925346443300 2025-07-17 13:44:01,skocherhan,url,http://djksandjkandsa-58893.portmap.io:58893,#Xworm #AsyncRAT,https://x.com/skocherhan/status/1945841925346443300 2025-07-17 13:53:30,ReBensk,md5,44c608d3f8b79c9f7585bd493a04853b,#Trojan #Android #malware,https://x.com/ReBensk/status/1945844311075205500 2025-07-17 14:00:09,urldna_bot,domain,accountclosureverfiicationnotice.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945845984400957445 2025-07-17 14:00:09,urldna_bot,url,https://accountclosureverfiicationnotice.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945845984400957445 2025-07-17 14:12:08,skocherhan,url,http://github.com/Namit903,#AsyncRAT,https://x.com/skocherhan/status/1945848999585464687 2025-07-17 14:12:08,skocherhan,domain,namit-37666.portmap.io:37666,#AsyncRAT,https://x.com/skocherhan/status/1945848999585464687 2025-07-17 14:12:08,skocherhan,url,http://namit-37666.portmap.io:37666,#AsyncRAT,https://x.com/skocherhan/status/1945848999585464687 2025-07-17 14:33:09,skocherhan,url,http://github.com/nhabado,#Njrat,https://x.com/skocherhan/status/1945854288556609717 2025-07-17 16:00:06,urldna_bot,domain,ff.membersship.garrena.vn,#phishing #scam,https://x.com/urldna_bot/status/1945876172371284058 2025-07-17 16:00:06,urldna_bot,url,https://ff.membersship.garrena.vn,#phishing #scam,https://x.com/urldna_bot/status/1945876172371284058 2025-07-17 16:12:46,drb_ra,ip,43.159.98.14,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945879357785813434 2025-07-17 16:12:46,drb_ra,ip,47.245.90.197,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945879357785813434 2025-07-17 16:12:46,drb_ra,url,https://43.159.98.14/socialapiVersion=1.1,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945879357785813434 2025-07-17 16:12:46,drb_ra,url,http://47.245.90.197:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945879357785813434 2025-07-17 17:40:33,executemalware,domain,nispgael.biz,,https://x.com/executemalware/status/1945901450141327363 2025-07-17 17:40:33,executemalware,url,http://nispgael.biz/7321a45c92764723.php,,https://x.com/executemalware/status/1945901450141327363 2025-07-17 18:00:06,urldna_bot,domain,xzent024041.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945906371771122002 2025-07-17 18:00:06,urldna_bot,url,https://xzent024041.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945906371771122002 2025-07-17 18:05:27,skocherhan,url,http://vastkupan.com,,https://x.com/skocherhan/status/1945907718499320110 2025-07-17 18:05:27,skocherhan,domain,vastkupan.com,,https://x.com/skocherhan/status/1945907718499320110 2025-07-17 18:45:41,drb_ra,ip,62.171.185.202,#Sliver #C2,https://x.com/drb_ra/status/1945917843540767087 2025-07-17 18:45:41,drb_ra,url,http://62.171.185.202:31337,#Sliver #C2,https://x.com/drb_ra/status/1945917843540767087 2025-07-17 18:45:46,drb_ra,ip,104.168.101.27,#Sliver #C2,https://x.com/drb_ra/status/1945917863929254299 2025-07-17 18:45:46,drb_ra,url,http://104.168.101.27:8443,#Sliver #C2,https://x.com/drb_ra/status/1945917863929254299 2025-07-17 18:45:50,drb_ra,url,http://103.57.248.130:443,#Sliver #C2,https://x.com/drb_ra/status/1945917878865211555 2025-07-17 18:45:50,drb_ra,ip,103.57.248.130,#Sliver #C2,https://x.com/drb_ra/status/1945917878865211555 2025-07-17 18:47:53,drb_ra,url,http://5.199.173.205:8888,#Supershell #C2,https://x.com/drb_ra/status/1945918396995891262 2025-07-17 18:47:57,drb_ra,url,http://47.107.234.40:8888,#Supershell #C2,https://x.com/drb_ra/status/1945918413206896709 2025-07-17 18:47:57,drb_ra,ip,47.107.234.40,#Supershell #C2,https://x.com/drb_ra/status/1945918413206896709 2025-07-17 18:48:04,drb_ra,url,http://120.78.121.44:8888,#Supershell #C2,https://x.com/drb_ra/status/1945918440314679502 2025-07-17 18:48:04,drb_ra,ip,120.78.121.44,#Supershell #C2,https://x.com/drb_ra/status/1945918440314679502 2025-07-17 18:48:09,drb_ra,url,http://103.115.50.36:8888,#Supershell #C2,https://x.com/drb_ra/status/1945918461953061184 2025-07-17 18:48:09,drb_ra,ip,103.115.50.36,#Supershell #C2,https://x.com/drb_ra/status/1945918461953061184 2025-07-17 18:48:14,drb_ra,url,http://148.178.18.39:8000,#Dcrat #C2,https://x.com/drb_ra/status/1945918482966565116 2025-07-17 18:48:14,drb_ra,ip,148.178.18.39,#Dcrat #C2,https://x.com/drb_ra/status/1945918482966565116 2025-07-17 18:48:19,drb_ra,url,http://2.50.97.173:443,#Qakbot #C2,https://x.com/drb_ra/status/1945918504978256295 2025-07-17 18:48:24,drb_ra,url,http://46.246.244.86:995,#Qakbot #C2,https://x.com/drb_ra/status/1945918525828141153 2025-07-17 18:48:24,drb_ra,ip,46.246.244.86,#Qakbot #C2,https://x.com/drb_ra/status/1945918525828141153 2025-07-17 18:48:29,drb_ra,url,http://142.181.177.77:2222,#Qakbot #C2,https://x.com/drb_ra/status/1945918546984219001 2025-07-17 18:48:29,drb_ra,ip,142.181.177.77,#Qakbot #C2,https://x.com/drb_ra/status/1945918546984219001 2025-07-17 18:48:34,drb_ra,ip,139.84.149.95,#Havoc #C2,https://x.com/drb_ra/status/1945918568047968467 2025-07-17 18:48:34,drb_ra,url,http://139.84.149.95:443,#Havoc #C2,https://x.com/drb_ra/status/1945918568047968467 2025-07-17 18:48:38,drb_ra,url,http://45.33.73.196:443,#Havoc #C2,https://x.com/drb_ra/status/1945918585026613255 2025-07-17 18:48:38,drb_ra,ip,45.33.73.196,#Havoc #C2,https://x.com/drb_ra/status/1945918585026613255 2025-07-17 18:48:42,drb_ra,url,http://159.146.116.57:443,#Havoc #C2,https://x.com/drb_ra/status/1945918601317257353 2025-07-17 18:48:42,drb_ra,ip,159.146.116.57,#Havoc #C2,https://x.com/drb_ra/status/1945918601317257353 2025-07-17 18:48:48,drb_ra,url,http://34.31.17.91:7443,#Mythic #C2,https://x.com/drb_ra/status/1945918627137397009 2025-07-17 18:48:52,drb_ra,ip,51.210.96.122,#Mythic #C2,https://x.com/drb_ra/status/1945918642962510169 2025-07-17 18:48:52,drb_ra,url,http://51.210.96.122:7443,#Mythic #C2,https://x.com/drb_ra/status/1945918642962510169 2025-07-17 18:48:59,drb_ra,ip,54.65.227.196,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1945918670477099439 2025-07-17 18:48:59,drb_ra,url,http://54.65.227.196:80,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1945918670477099439 2025-07-17 18:49:03,drb_ra,url,http://96.9.124.251:443,#Sliver #C2,https://x.com/drb_ra/status/1945918690869809153 2025-07-17 18:49:03,drb_ra,ip,96.9.124.251,#Sliver #C2,https://x.com/drb_ra/status/1945918690869809153 2025-07-17 18:49:09,drb_ra,url,http://178.62.41.137:31337,#Sliver #C2,https://x.com/drb_ra/status/1945918712705433678 2025-07-17 18:49:09,drb_ra,ip,178.62.41.137,#Sliver #C2,https://x.com/drb_ra/status/1945918712705433678 2025-07-17 18:49:14,drb_ra,url,http://92.243.67.245:8088,#Sliver #C2,https://x.com/drb_ra/status/1945918733702017307 2025-07-17 18:49:19,drb_ra,url,http://92.243.67.245:8080,#Sliver #C2,https://x.com/drb_ra/status/1945918754249941414 2025-07-17 18:49:22,drb_ra,url,http://92.243.67.245:25,#Sliver #C2,https://x.com/drb_ra/status/1945918770062434317 2025-07-17 18:49:29,drb_ra,url,http://92.243.67.245:443,#Sliver #C2,https://x.com/drb_ra/status/1945918796998352998 2025-07-17 18:49:34,drb_ra,ip,92.243.67.245,#Sliver #C2,https://x.com/drb_ra/status/1945918817399370204 2025-07-17 18:49:34,drb_ra,url,http://92.243.67.245:8888,#Sliver #C2,https://x.com/drb_ra/status/1945918817399370204 2025-07-17 18:51:37,drb_ra,url,http://91.236.116.242:80,#C2,https://x.com/drb_ra/status/1945919333508456678 2025-07-17 18:51:37,drb_ra,ip,91.236.116.242,#C2,https://x.com/drb_ra/status/1945919333508456678 2025-07-17 18:51:42,drb_ra,url,http://139.196.160.235:8443,#C2,https://x.com/drb_ra/status/1945919354966520203 2025-07-17 18:51:42,drb_ra,ip,139.196.160.235,#C2,https://x.com/drb_ra/status/1945919354966520203 2025-07-17 18:51:47,drb_ra,url,http://3.29.244.163:113,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945919375409565900 2025-07-17 18:51:52,drb_ra,url,http://3.145.103.35:22199,#NetSupportRAT #C2,https://x.com/drb_ra/status/1945919395768742088 2025-07-17 18:51:57,drb_ra,url,http://128.90.106.93:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1945919416836694114 2025-07-17 18:52:02,drb_ra,ip,128.90.106.93,#AsyncRAT #C2,https://x.com/drb_ra/status/1945919438718460032 2025-07-17 18:52:02,drb_ra,url,http://128.90.106.93:2000,#AsyncRAT #C2,https://x.com/drb_ra/status/1945919438718460032 2025-07-17 20:00:09,urldna_bot,domain,loginswebmailstelstrarespaceacquire.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945936581686092273 2025-07-17 20:00:09,urldna_bot,url,https://loginswebmailstelstrarespaceacquire.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1945936581686092273 2025-07-17 20:02:26,drb_ra,url,http://47.237.120.206:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937155357884572 2025-07-17 20:02:26,drb_ra,ip,47.237.120.206,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937155357884572 2025-07-17 20:02:45,skocherhan,domain,cleanmymacpro.net,#stealer,https://x.com/skocherhan/status/1945937234592452747 2025-07-17 20:02:45,skocherhan,url,http://cleanmymacpro.net,#stealer,https://x.com/skocherhan/status/1945937234592452747 2025-07-17 20:02:56,skocherhan,domain,almehluz.com,,https://x.com/skocherhan/status/1945937280775888993 2025-07-17 20:02:56,skocherhan,url,https://almehluz.com/api.php?call=,,https://x.com/skocherhan/status/1945937280775888993 2025-07-17 20:02:56,skocherhan,url,https://cmvstation.com/api.php?call=,,https://x.com/skocherhan/status/1945937280775888993 2025-07-17 20:02:56,skocherhan,url,https://sartaaz.com/api.php?call=,,https://x.com/skocherhan/status/1945937280775888993 2025-07-17 20:02:56,skocherhan,domain,sartaaz.com,,https://x.com/skocherhan/status/1945937280775888993 2025-07-17 20:02:56,skocherhan,domain,cmvstation.com,,https://x.com/skocherhan/status/1945937280775888993 2025-07-17 20:04:29,drb_ra,url,http://47.110.32.120:8880,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937672981074120 2025-07-17 20:04:29,drb_ra,ip,47.110.32.120,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937672981074120 2025-07-17 20:04:34,drb_ra,url,http://124.222.54.126:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937694590157303 2025-07-17 20:04:34,drb_ra,ip,124.222.54.126,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937694590157303 2025-07-17 20:04:38,drb_ra,url,http://69.165.74.248:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937710373351647 2025-07-17 20:04:38,drb_ra,ip,69.165.74.248,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937710373351647 2025-07-17 20:04:43,drb_ra,url,http://47.117.179.86:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937731781120502 2025-07-17 20:04:43,drb_ra,ip,47.117.179.86,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937731781120502 2025-07-17 20:04:48,drb_ra,url,http://47.111.24.13:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937753075564559 2025-07-17 20:04:48,drb_ra,ip,47.111.24.13,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937753075564559 2025-07-17 20:04:54,drb_ra,url,http://39.99.227.179:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937775242465503 2025-07-17 20:04:54,drb_ra,ip,39.99.227.179,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937775242465503 2025-07-17 20:04:59,drb_ra,url,http://189.1.243.105:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937796641820897 2025-07-17 20:04:59,drb_ra,ip,189.1.243.105,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945937796641820897 2025-07-17 21:00:03,threatquery,url,http://43.159.98.14,#C2 #malware,https://x.com/threatquery/status/1945951656811679892 2025-07-17 21:00:04,threatquery,ip,110.41.138.224,#C2 #malware,https://x.com/threatquery/status/1945951660703965251 2025-07-17 21:00:04,threatquery,url,http://110.41.138.224,#C2 #malware,https://x.com/threatquery/status/1945951660703965251 2025-07-17 21:00:04,threatquery,url,http://155.94.155.87,#C2 #malware,https://x.com/threatquery/status/1945951658900328563 2025-07-17 21:00:04,threatquery,ip,155.94.155.87,#C2 #malware,https://x.com/threatquery/status/1945951658900328563 2025-07-17 21:19:24,drb_ra,url,http://106.14.8.189:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945956527149400339 2025-07-17 21:19:24,drb_ra,url,https://106.14.8.189/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945956527149400339 2025-07-17 21:19:29,drb_ra,url,http://47.245.61.75:6666,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945956548485779938 2025-07-17 21:21:39,drb_ra,url,http://47.245.90.197:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945957090905780282 2025-07-17 21:21:39,drb_ra,url,https://47.245.90.197/socialapiVersion=1.1,#C2 #CobaltStrike,https://x.com/drb_ra/status/1945957090905780282 2025-07-17 22:00:06,urldna_bot,domain,apple-ai.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1945966768545005708 2025-07-17 22:00:06,urldna_bot,url,http://apple-ai.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1945966768545005708 2025-07-17 23:09:39,masaomi346,url,https://gtamurz.icu/C5z7ON/,#phishing,https://x.com/masaomi346/status/1945984271422009770 2025-07-17 23:10:38,harugasumi,domain,szcyid.com,#phishing,https://x.com/harugasumi/status/1945984520047755354 2025-07-17 23:10:38,harugasumi,url,https://szcyid.com/C5z7ON,#phishing,https://x.com/harugasumi/status/1945984520047755354 2025-07-17 23:10:38,harugasumi,domain,husjabsxc.bond,#phishing,https://x.com/harugasumi/status/1945984520047755354 2025-07-17 23:10:38,harugasumi,url,https://husjabsxc.bond,#phishing,https://x.com/harugasumi/status/1945984520047755354 2025-07-17 23:10:38,harugasumi,domain,gtamurz.icu,#phishing,https://x.com/harugasumi/status/1945984520047755354 2025-07-17 23:10:38,harugasumi,url,https://gtamurz.icu/C5z7ON,#phishing,https://x.com/harugasumi/status/1945984520047755354 2025-07-18 00:00:06,urldna_bot,domain,schoolviewers9876542567894.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945996968796254328 2025-07-18 00:00:06,urldna_bot,url,https://schoolviewers9876542567894.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1945996968796254328 2025-07-18 02:00:05,urldna_bot,domain,attwebteam.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1946027163938963709 2025-07-18 02:00:05,urldna_bot,url,https://attwebteam.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1946027163938963709 2025-07-18 02:13:10,drb_ra,domain,pensi.me,#CobaltStrike #C2,https://x.com/drb_ra/status/1946030453879722187 2025-07-18 02:13:10,drb_ra,url,https://pensi.me/c/msdownload/update/others/2016/12/29136388_,#CobaltStrike #C2,https://x.com/drb_ra/status/1946030453879722187 2025-07-18 02:13:10,drb_ra,url,http://217.154.212.25:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946030453879722187 2025-07-18 02:13:10,drb_ra,ip,217.154.212.25,#CobaltStrike #C2,https://x.com/drb_ra/status/1946030453879722187 2025-07-18 02:25:34,Ammah33,domain,Mutuum.finance,#scam,https://x.com/Ammah33/status/1946033575272272212 2025-07-18 02:25:34,Ammah33,url,http://Mutuum.finance,#scam,https://x.com/Ammah33/status/1946033575272272212 2025-07-18 03:07:46,woodeexm,url,http://Dawgz.ai,#scam,https://x.com/woodeexm/status/1946044194943881654 2025-07-18 03:07:46,woodeexm,domain,Dawgz.ai,#scam,https://x.com/woodeexm/status/1946044194943881654 2025-07-18 03:44:23,sicehice,ip,77.221.151.232,,https://x.com/sicehice/status/1946053411822043646 2025-07-18 03:44:23,sicehice,url,http://77.221.151.232:47583/test,,https://x.com/sicehice/status/1946053411822043646 2025-07-18 04:00:06,urldna_bot,domain,wallet-token-fix.firebaseapp.com,#scam #phishing,https://x.com/urldna_bot/status/1946057365784027498 2025-07-18 04:00:06,urldna_bot,url,https://wallet-token-fix.firebaseapp.com,#scam #phishing,https://x.com/urldna_bot/status/1946057365784027498 2025-07-18 04:26:04,ReBensk,md5,5a3627c1147e087ecdd41e54786a7c94,#malware #Trojan #Android,https://x.com/ReBensk/status/1946063898828038561 2025-07-18 04:48:46,solostalking,ip,206.123.145.218,,https://x.com/solostalking/status/1946069612090495059 2025-07-18 06:00:10,urldna_bot,domain,netfllx-myportals.info,#phishing #scam,https://x.com/urldna_bot/status/1946087580480467287 2025-07-18 06:00:10,urldna_bot,url,https://netfllx-myportals.info,#phishing #scam,https://x.com/urldna_bot/status/1946087580480467287 2025-07-18 06:01:27,ReBensk,md5,1136bb8b27960a6a56f45581a3fa8363,#malware #Android #Trojan,https://x.com/ReBensk/status/1946087902179680355 2025-07-18 06:06:12,K_N1kolenko,url,http://skdgh.top/riwq,#LummaStealer,https://x.com/K_N1kolenko/status/1946089098810151153 2025-07-18 06:06:12,K_N1kolenko,domain,skdgh.top,#LummaStealer,https://x.com/K_N1kolenko/status/1946089098810151153 2025-07-18 06:08:55,K_N1kolenko,url,http://gigohe.top/diau,#LummaStealer,https://x.com/K_N1kolenko/status/1946089781919723711 2025-07-18 06:08:55,K_N1kolenko,domain,mcaumnb.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1946089781919723711 2025-07-18 06:08:55,K_N1kolenko,url,http://mcaumnb.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1946089781919723711 2025-07-18 06:08:55,K_N1kolenko,domain,gigohe.top,#LummaStealer,https://x.com/K_N1kolenko/status/1946089781919723711 2025-07-18 06:12:03,K_N1kolenko,url,http://dogbij.top/tiqo,#LummaStealer,https://x.com/K_N1kolenko/status/1946090572654989645 2025-07-18 06:12:03,K_N1kolenko,url,http://t.me/zxzxroma,#LummaStealer,https://x.com/K_N1kolenko/status/1946090572654989645 2025-07-18 06:12:03,K_N1kolenko,domain,dogbij.top,#LummaStealer,https://x.com/K_N1kolenko/status/1946090572654989645 2025-07-18 06:46:34,drb_ra,url,http://45.38.20.87:443,#Mythic #C2,https://x.com/drb_ra/status/1946099257817068019 2025-07-18 06:46:34,drb_ra,ip,45.38.20.87,#Mythic #C2,https://x.com/drb_ra/status/1946099257817068019 2025-07-18 06:46:39,drb_ra,url,http://5.230.34.149:7443,#Mythic #C2,https://x.com/drb_ra/status/1946099278130077699 2025-07-18 06:46:42,drb_ra,url,http://34.154.223.30:443,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1946099293145719205 2025-07-18 06:46:42,drb_ra,ip,34.154.223.30,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1946099293145719205 2025-07-18 06:46:46,drb_ra,url,http://52.12.185.192:443,#Sliver #C2,https://x.com/drb_ra/status/1946099308622741513 2025-07-18 06:46:46,drb_ra,ip,52.12.185.192,#Sliver #C2,https://x.com/drb_ra/status/1946099308622741513 2025-07-18 06:46:51,drb_ra,ip,185.207.65.19,#Sliver #C2,https://x.com/drb_ra/status/1946099329019646372 2025-07-18 06:46:51,drb_ra,url,http://185.207.65.19:443,#Sliver #C2,https://x.com/drb_ra/status/1946099329019646372 2025-07-18 06:46:56,drb_ra,ip,62.234.116.46,#Sliver #C2,https://x.com/drb_ra/status/1946099349122941399 2025-07-18 06:46:56,drb_ra,url,http://62.234.116.46:31337,#Sliver #C2,https://x.com/drb_ra/status/1946099349122941399 2025-07-18 06:47:01,drb_ra,ip,89.111.143.7,#Sliver #C2,https://x.com/drb_ra/status/1946099369700131047 2025-07-18 06:47:01,drb_ra,url,http://89.111.143.7:31337,#Sliver #C2,https://x.com/drb_ra/status/1946099369700131047 2025-07-18 06:47:06,drb_ra,url,http://216.45.61.141:31337,#Sliver #C2,https://x.com/drb_ra/status/1946099390726221936 2025-07-18 06:47:06,drb_ra,ip,216.45.61.141,#Sliver #C2,https://x.com/drb_ra/status/1946099390726221936 2025-07-18 06:47:11,drb_ra,url,http://95.130.227.189:31337,#Sliver #C2,https://x.com/drb_ra/status/1946099411664110027 2025-07-18 06:47:11,drb_ra,ip,95.130.227.189,#Sliver #C2,https://x.com/drb_ra/status/1946099411664110027 2025-07-18 06:49:14,drb_ra,url,http://40.177.115.50:104,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946099928364614082 2025-07-18 06:49:14,drb_ra,ip,40.177.115.50,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946099928364614082 2025-07-18 06:49:19,drb_ra,url,http://52.194.225.30:3390,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946099951290781733 2025-07-18 06:49:19,drb_ra,ip,52.194.225.30,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946099951290781733 2025-07-18 06:49:24,drb_ra,url,http://15.160.172.231:20547,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946099971440230455 2025-07-18 06:49:24,drb_ra,ip,15.160.172.231,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946099971440230455 2025-07-18 06:49:28,drb_ra,ip,128.90.108.241,#AsyncRAT #C2,https://x.com/drb_ra/status/1946099986556506453 2025-07-18 06:49:28,drb_ra,url,http://128.90.108.241:5000,#AsyncRAT #C2,https://x.com/drb_ra/status/1946099986556506453 2025-07-18 06:49:34,drb_ra,ip,65.21.85.133,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100013802676293 2025-07-18 06:49:34,drb_ra,url,http://65.21.85.133:81,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100013802676293 2025-07-18 06:49:39,drb_ra,url,http://45.155.126.158:80,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100034430181871 2025-07-18 06:49:39,drb_ra,ip,45.155.126.158,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100034430181871 2025-07-18 06:49:44,drb_ra,url,http://77.93.142.238:81,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100054269345965 2025-07-18 06:49:44,drb_ra,ip,77.93.142.238,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100054269345965 2025-07-18 06:49:49,drb_ra,url,http://124.198.132.230:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100075156947221 2025-07-18 06:49:49,drb_ra,ip,124.198.132.230,#AsyncRAT #C2,https://x.com/drb_ra/status/1946100075156947221 2025-07-18 06:49:54,drb_ra,url,http://13.60.92.79:587,#Interactsh #C2,https://x.com/drb_ra/status/1946100095021179010 2025-07-18 06:49:58,drb_ra,url,http://13.60.92.79:443,#Interactsh #C2,https://x.com/drb_ra/status/1946100115275419785 2025-07-18 06:49:58,drb_ra,ip,13.60.92.79,#Interactsh #C2,https://x.com/drb_ra/status/1946100115275419785 2025-07-18 06:50:03,drb_ra,ip,193.30.120.130,#Interactsh #C2,https://x.com/drb_ra/status/1946100135982772548 2025-07-18 06:50:03,drb_ra,url,http://193.30.120.130:9000,#Interactsh #C2,https://x.com/drb_ra/status/1946100135982772548 2025-07-18 06:50:08,drb_ra,url,http://85.208.84.20:45051,#Pegasus #Hookbot #C2,https://x.com/drb_ra/status/1946100156853580103 2025-07-18 06:50:08,drb_ra,ip,85.208.84.20,#Pegasus #Hookbot #C2,https://x.com/drb_ra/status/1946100156853580103 2025-07-18 06:50:13,drb_ra,url,http://47.243.207.46:8888,#Supershell #C2,https://x.com/drb_ra/status/1946100175375605851 2025-07-18 06:50:13,drb_ra,ip,47.243.207.46,#Supershell #C2,https://x.com/drb_ra/status/1946100175375605851 2025-07-18 06:50:17,drb_ra,url,http://106.52.179.150:4433,#Havoc #C2,https://x.com/drb_ra/status/1946100193696399626 2025-07-18 06:50:17,drb_ra,ip,106.52.179.150,#Havoc #C2,https://x.com/drb_ra/status/1946100193696399626 2025-07-18 06:50:21,drb_ra,url,http://64.94.84.22:443,#Havoc #C2,https://x.com/drb_ra/status/1946100209034866743 2025-07-18 06:50:21,drb_ra,ip,64.94.84.22,#Havoc #C2,https://x.com/drb_ra/status/1946100209034866743 2025-07-18 06:53:22,RakeshKrish12,ip,193.201.9.222,#ransomware #malware,https://x.com/RakeshKrish12/status/1946100969512865896 2025-07-18 08:00:06,urldna_bot,domain,coinbasepr04.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946117763925192763 2025-07-18 08:00:06,urldna_bot,url,http://coinbasepr04.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946117763925192763 2025-07-18 08:18:54,PrakkiSathwik,domain,ompowerterminus.com,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1946122493145776131 2025-07-18 08:18:54,PrakkiSathwik,url,http://backup.intelupates.com,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1946122493145776131 2025-07-18 08:18:54,PrakkiSathwik,md5,c59efe3739ae3e2814ff48f41b0d0ad8,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1946122493145776131 2025-07-18 08:18:54,PrakkiSathwik,url,http://ompowerterminus.com,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1946122493145776131 2025-07-18 08:18:54,PrakkiSathwik,domain,backup.intelupates.com,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1946122493145776131 2025-07-18 08:18:54,PrakkiSathwik,md5,4cc0cc070ec8a51b437ddc393487bb7e,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1946122493145776131 2025-07-18 08:18:54,PrakkiSathwik,md5,f4a82380cc0e246a4f576bc81fa6f879,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1946122493145776131 2025-07-18 10:00:06,urldna_bot,domain,extension-browser-nkbihsdfnklwefkwemkwfkmkmslqldqrgr.info.vancltyappllance.com,#phishing #scam,https://x.com/urldna_bot/status/1946147960762376651 2025-07-18 10:00:06,urldna_bot,url,https://extension-browser-nkbihsdfnklwefkwemkwfkmkmslqldqrgr.info.vancltyappllance.com,#phishing #scam,https://x.com/urldna_bot/status/1946147960762376651 2025-07-18 10:33:38,drb_ra,url,http://43.163.221.96:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156401962651651 2025-07-18 10:33:38,drb_ra,ip,43.163.221.96,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156401962651651 2025-07-18 10:33:44,drb_ra,url,http://193.112.84.248:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156425488502826 2025-07-18 10:33:49,drb_ra,url,http://81.71.85.144:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156448695652732 2025-07-18 10:33:49,drb_ra,ip,81.71.85.144,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156448695652732 2025-07-18 10:33:49,drb_ra,ip,193.112.84.248,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156448695652732 2025-07-18 10:33:55,drb_ra,ip,139.224.135.193,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156472280252812 2025-07-18 10:33:55,drb_ra,url,http://139.224.135.193:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156472280252812 2025-07-18 10:34:01,drb_ra,ip,39.105.178.12,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156495571210336 2025-07-18 10:34:01,drb_ra,url,http://39.105.178.12:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156495571210336 2025-07-18 10:34:06,drb_ra,url,https://47.121.136.191/api/v1/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156519852007850 2025-07-18 10:34:06,drb_ra,url,http://47.116.181.81:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156519852007850 2025-07-18 10:34:06,drb_ra,ip,47.116.181.81,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156519852007850 2025-07-18 10:34:06,drb_ra,ip,47.121.136.191,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156519852007850 2025-07-18 10:34:12,drb_ra,domain,souguo.icu,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156544489304074 2025-07-18 10:34:12,drb_ra,url,https://www.souguo.icu/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156544489304074 2025-07-18 10:34:12,drb_ra,url,http://43.224.34.90:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156544489304074 2025-07-18 10:34:12,drb_ra,ip,43.224.34.90,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156544489304074 2025-07-18 10:34:18,drb_ra,url,http://104.223.123.227:1234,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156567969124664 2025-07-18 10:34:18,drb_ra,ip,104.223.123.227,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156567969124664 2025-07-18 10:34:24,drb_ra,url,http://45.204.211.239:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156592321200523 2025-07-18 10:34:24,drb_ra,ip,45.204.211.239,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156592321200523 2025-07-18 10:34:29,drb_ra,ip,118.25.85.198,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156615461220571 2025-07-18 10:34:29,drb_ra,url,http://118.25.85.198:8899,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156615461220571 2025-07-18 10:34:35,drb_ra,url,http://123.56.87.43:8001,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156639167365415 2025-07-18 10:34:35,drb_ra,ip,123.56.87.43,#CobaltStrike #C2,https://x.com/drb_ra/status/1946156639167365415 2025-07-18 10:36:39,drb_ra,ip,175.178.104.252,#CobaltStrike #C2,https://x.com/drb_ra/status/1946157158283858409 2025-07-18 10:36:39,drb_ra,url,http://175.178.104.252:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946157158283858409 2025-07-18 10:36:44,drb_ra,url,http://110.40.155.27:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1946157181411229713 2025-07-18 10:36:44,drb_ra,ip,110.40.155.27,#CobaltStrike #C2,https://x.com/drb_ra/status/1946157181411229713 2025-07-18 11:04:24,fbgwls245,md5,B02679ECB54344490F87F91DDA88ACE6,#ransomware,https://x.com/fbgwls245/status/1946164143540863355 2025-07-18 11:21:01,drb_ra,url,https://59.110.64.250/api/3,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946168326775865566 2025-07-18 11:21:01,drb_ra,url,http://59.110.64.250:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946168326775865566 2025-07-18 11:21:01,drb_ra,ip,59.110.64.250,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946168326775865566 2025-07-18 12:00:10,urldna_bot,url,http://faq-page-code-166863010078512-s1fj.vercel.app/business.help/facebook.meta.com-business-case-id155038421992698.html,#scam #phishing,https://x.com/urldna_bot/status/1946178176813506561 2025-07-18 12:00:10,urldna_bot,domain,faq-page-code-166863010078512-s1fj.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1946178176813506561 2025-07-18 12:20:51,K_N1kolenko,ip,185.228.72.104,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,156.227.236.210,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,107.189.20.81,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,79.110.49.104,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,45.141.26.28,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,45.141.26.199,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,45.118.146.156,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,167.160.161.247,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,47.122.38.193,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:20:51,K_N1kolenko,ip,18.130.231.213,#Xworm #RAT,https://x.com/K_N1kolenko/status/1946183383450562596 2025-07-18 12:47:06,ShanHolo,domain,apexservices.duckdns.org,#opendir #malware,https://x.com/ShanHolo/status/1946189988749570323 2025-07-18 12:47:06,ShanHolo,url,http://apexservices.duckdns.org/cbot/,#opendir #malware,https://x.com/ShanHolo/status/1946189988749570323 2025-07-18 13:29:53,fbgwls245,md5,636D05585C7263469A5E5C37341B3704,#ransomware,https://x.com/fbgwls245/status/1946200757268787273 2025-07-18 13:29:53,fbgwls245,md5,C07DE2813A8D6502D54F18DF57D74B6F,#ransomware,https://x.com/fbgwls245/status/1946200757268787273 2025-07-18 14:00:07,urldna_bot,url,https://revenue-ie-verify.com,#scam #phishing,https://x.com/urldna_bot/status/1946208364750319752 2025-07-18 14:00:07,urldna_bot,domain,revenue-ie-verify.com,#scam #phishing,https://x.com/urldna_bot/status/1946208364750319752 2025-07-18 15:21:33,harugasumi,domain,9oqnc9.top,#phishing,https://x.com/harugasumi/status/1946228856312176649 2025-07-18 15:21:33,harugasumi,url,https://9oqnc9.top/q1hXzJlN7,#phishing,https://x.com/harugasumi/status/1946228856312176649 2025-07-18 16:00:06,urldna_bot,domain,btconnect-voicem.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1946238558534062514 2025-07-18 16:00:06,urldna_bot,url,https://btconnect-voicem.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1946238558534062514 2025-07-18 16:05:25,TeamDreier,domain,mobilepaydenmarks.online,#phishing,https://x.com/TeamDreier/status/1946239897725009995 2025-07-18 16:05:25,TeamDreier,url,https://mobilepaydenmarks.online,#phishing,https://x.com/TeamDreier/status/1946239897725009995 2025-07-18 16:05:25,TeamDreier,domain,ns2.peruadelante.com,#phishing,https://x.com/TeamDreier/status/1946239897725009995 2025-07-18 16:05:25,TeamDreier,url,http://ns2.peruadelante.com,#phishing,https://x.com/TeamDreier/status/1946239897725009995 2025-07-18 16:46:32,skocherhan,url,http://bit.ly/ipsos_ua,#phishing,https://x.com/skocherhan/status/1946250243143508203 2025-07-18 16:55:04,harugasumi,domain,eygpn.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://eygpn.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,fppzj.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://dmnopq.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://fppzj.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://nunshang.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://kjdbx.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,pqrsxyz.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,kjdbx.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://pqrsxyz.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,dmnopq.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://rgpbtf.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,rgpbtf.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,nunshang.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,vgzqk.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://vxjmn.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://vgzqk.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://zangpiao.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,zangpiao.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://xvelc.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,xvelc.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://viwcr.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,vxjmn.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,viwcr.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://vrblv.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,vrblv.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,url,https://vnupld.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 16:55:04,harugasumi,domain,vnupld.cn,#phishing,https://x.com/harugasumi/status/1946252391751540958 2025-07-18 17:09:25,harugasumi,domain,21cynfq.top,#phishing,https://x.com/harugasumi/status/1946256001638015249 2025-07-18 17:09:25,harugasumi,url,https://21cynfq.top/W0lBfYXZ/ITS/login/MemberLogin.jsp?attrLoginMsg=2,#phishing,https://x.com/harugasumi/status/1946256001638015249 2025-07-18 18:00:07,urldna_bot,domain,dorothylsasaki-3eb.pages.dev,#phishing #scam,https://x.com/urldna_bot/status/1946268761482285080 2025-07-18 18:00:07,urldna_bot,url,https://dorothylsasaki-3eb.pages.dev/oyke-social-security-stimulus-checks-may-2025-sebbu/,#phishing #scam,https://x.com/urldna_bot/status/1946268761482285080 2025-07-18 18:13:30,skocherhan,ip,104.243.32.185,,https://x.com/skocherhan/status/1946272129407709380 2025-07-18 18:16:15,skocherhan,md5,545230e24b8f2312123917b73235471a,,https://x.com/skocherhan/status/1946272822214737963 2025-07-18 18:18:18,skocherhan,domain,amnesia333.store,,https://x.com/skocherhan/status/1946273336226714082 2025-07-18 18:18:18,skocherhan,url,https://amnesia333.store,,https://x.com/skocherhan/status/1946273336226714082 2025-07-18 18:45:23,drb_ra,ip,162.215.8.193,#C2 #Sliver,https://x.com/drb_ra/status/1946280154222768639 2025-07-18 18:45:23,drb_ra,url,http://162.215.8.193:8443,#C2 #Sliver,https://x.com/drb_ra/status/1946280154222768639 2025-07-18 18:47:27,drb_ra,url,http://198.7.115.133:80,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1946280672806457622 2025-07-18 18:47:27,drb_ra,ip,198.7.115.133,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1946280672806457622 2025-07-18 18:47:32,drb_ra,url,http://85.98.49.5:443,#Qakbot #C2,https://x.com/drb_ra/status/1946280694021329202 2025-07-18 18:47:32,drb_ra,ip,85.98.49.5,#Qakbot #C2,https://x.com/drb_ra/status/1946280694021329202 2025-07-18 18:47:37,drb_ra,ip,94.98.69.21,#Qakbot #C2,https://x.com/drb_ra/status/1946280715580010510 2025-07-18 18:47:37,drb_ra,url,http://94.98.69.21:443,#Qakbot #C2,https://x.com/drb_ra/status/1946280715580010510 2025-07-18 18:47:42,drb_ra,url,http://102.158.123.182:443,#Qakbot #C2,https://x.com/drb_ra/status/1946280737230999909 2025-07-18 18:47:42,drb_ra,ip,102.158.123.182,#Qakbot #C2,https://x.com/drb_ra/status/1946280737230999909 2025-07-18 18:47:48,drb_ra,ip,109.145.252.38,#Qakbot #C2,https://x.com/drb_ra/status/1946280760698179871 2025-07-18 18:47:48,drb_ra,url,http://109.145.252.38:2222,#Qakbot #C2,https://x.com/drb_ra/status/1946280760698179871 2025-07-18 18:47:53,drb_ra,url,http://70.27.138.55:2222,#Qakbot #C2,https://x.com/drb_ra/status/1946280782009381246 2025-07-18 18:47:53,drb_ra,ip,70.27.138.55,#Qakbot #C2,https://x.com/drb_ra/status/1946280782009381246 2025-07-18 18:47:58,drb_ra,url,http://63.32.96.34:139,#C2,https://x.com/drb_ra/status/1946280803643592817 2025-07-18 18:47:58,drb_ra,ip,63.32.96.34,#C2,https://x.com/drb_ra/status/1946280803643592817 2025-07-18 18:48:02,drb_ra,url,http://3.252.156.143:445,#C2,https://x.com/drb_ra/status/1946280819510718770 2025-07-18 18:48:08,drb_ra,url,http://172.104.161.105:443,#Mythic #C2,https://x.com/drb_ra/status/1946280846903644520 2025-07-18 18:48:08,drb_ra,ip,172.104.161.105,#Mythic #C2,https://x.com/drb_ra/status/1946280846903644520 2025-07-18 18:48:14,drb_ra,ip,139.162.18.28,#Mythic #C2,https://x.com/drb_ra/status/1946280869729051081 2025-07-18 18:48:14,drb_ra,url,http://139.162.18.28:443,#Mythic #C2,https://x.com/drb_ra/status/1946280869729051081 2025-07-18 18:48:18,drb_ra,ip,139.162.18.30,#Mythic #C2,https://x.com/drb_ra/status/1946280887290573295 2025-07-18 18:48:18,drb_ra,url,http://139.162.18.30:7443,#Mythic #C2,https://x.com/drb_ra/status/1946280887290573295 2025-07-18 18:48:25,drb_ra,url,http://206.189.227.148:7443,#Mythic #C2,https://x.com/drb_ra/status/1946280916218704150 2025-07-18 18:48:25,drb_ra,ip,206.189.227.148,#Mythic #C2,https://x.com/drb_ra/status/1946280916218704150 2025-07-18 18:48:30,drb_ra,url,http://172.232.151.42:7443,#Mythic #C2,https://x.com/drb_ra/status/1946280940176650326 2025-07-18 18:48:30,drb_ra,ip,172.232.151.42,#Mythic #C2,https://x.com/drb_ra/status/1946280940176650326 2025-07-18 18:48:36,drb_ra,ip,62.109.9.165,#C2 #Sliver,https://x.com/drb_ra/status/1946280961500500044 2025-07-18 18:48:36,drb_ra,url,http://62.109.9.165:31337,#C2 #Sliver,https://x.com/drb_ra/status/1946280961500500044 2025-07-18 18:50:39,drb_ra,url,http://181.141.40.93:1906,#Remcos #C2,https://x.com/drb_ra/status/1946281479425655073 2025-07-18 18:50:39,drb_ra,ip,181.141.40.93,#Remcos #C2,https://x.com/drb_ra/status/1946281479425655073 2025-07-18 18:50:44,drb_ra,url,http://43.208.5.219:7170,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281502251032599 2025-07-18 18:50:44,drb_ra,ip,43.208.5.219,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281502251032599 2025-07-18 18:50:50,drb_ra,url,http://100.27.209.121:14265,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281526242558113 2025-07-18 18:50:55,drb_ra,url,http://100.27.209.121:615,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281548191334837 2025-07-18 18:50:55,drb_ra,ip,100.27.209.121,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281548191334837 2025-07-18 18:51:01,drb_ra,url,http://51.16.209.16:20342,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281569628360975 2025-07-18 18:51:01,drb_ra,ip,51.16.209.16,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281569628360975 2025-07-18 18:51:06,drb_ra,url,http://35.180.121.47:179,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281591765868832 2025-07-18 18:51:06,drb_ra,ip,35.180.121.47,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1946281591765868832 2025-07-18 18:51:11,drb_ra,url,http://64.225.10.180:465,#Interactsh #C2,https://x.com/drb_ra/status/1946281613416968280 2025-07-18 18:51:16,drb_ra,url,http://64.225.10.180:587,#Interactsh #C2,https://x.com/drb_ra/status/1946281635629973650 2025-07-18 18:51:16,drb_ra,ip,64.225.10.180,#Interactsh #C2,https://x.com/drb_ra/status/1946281635629973650 2025-07-18 18:51:20,drb_ra,url,http://87.107.12.208:9999,#Interactsh #C2,https://x.com/drb_ra/status/1946281652189003857 2025-07-18 18:51:20,drb_ra,ip,87.107.12.208,#Interactsh #C2,https://x.com/drb_ra/status/1946281652189003857 2025-07-18 18:51:27,drb_ra,url,http://45.150.34.112:50555,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1946281680949444935 2025-07-18 18:51:27,drb_ra,ip,45.150.34.112,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1946281680949444935 2025-07-18 20:00:09,urldna_bot,domain,allegrolokalnie.c9y19v0a1-8917421.shop,#scam #phishing,https://x.com/urldna_bot/status/1946298971179143446 2025-07-18 20:00:09,urldna_bot,url,https://allegrolokalnie.c9y19v0a1-8917421.shop,#scam #phishing,https://x.com/urldna_bot/status/1946298971179143446 2025-07-18 21:00:03,threatquery,url,http://111.217.141.70,#C2 #malware,https://x.com/threatquery/status/1946314044454899721 2025-07-18 21:00:03,threatquery,ip,111.217.141.70,#C2 #malware,https://x.com/threatquery/status/1946314044454899721 2025-07-18 21:00:04,threatquery,url,http://47.122.38.153,#C2 #malware,https://x.com/threatquery/status/1946314048120717368 2025-07-18 21:00:04,threatquery,ip,47.122.38.153,#C2 #malware,https://x.com/threatquery/status/1946314048120717368 2025-07-18 21:00:04,threatquery,url,http://94.98.69.21,#C2 #malware #Qakbot,https://x.com/threatquery/status/1946314046313017430 2025-07-18 21:40:58,1ZRR4H,domain,gtdteleductos.com,,https://x.com/1ZRR4H/status/1946324340603056424 2025-07-18 21:40:58,1ZRR4H,url,http://gtdteleductos.com,,https://x.com/1ZRR4H/status/1946324340603056424 2025-07-18 21:52:56,soursecc,domain,clasoftmedia.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://clasoftmedia.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,retcap.eu,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://retcap.eu,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,rafelink.life,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://rafelink.life,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,akwatic-hotel.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://akwatic-hotel.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,bleulab.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://bleulab.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,gomezmontero.eu,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://gomezmontero.eu,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,gtl.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://gtl.ci,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,javiergomezmontero.eu,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://javiergomezmontero.eu,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,domain,ardiellifornasa.ge,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 21:52:56,soursecc,url,https://ardiellifornasa.ge,,https://x.com/soursecc/status/1946327350574203252 2025-07-18 22:00:06,urldna_bot,domain,hohimain.github.io,#scam #phishing,https://x.com/urldna_bot/status/1946329155462733838 2025-07-18 22:00:06,urldna_bot,url,http://hohimain.github.io/raheel,#scam #phishing,https://x.com/urldna_bot/status/1946329155462733838 2025-07-18 23:00:52,drb_ra,domain,inventscience.st,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344449048494556 2025-07-18 23:00:52,drb_ra,url,https://inventscience.st/en_US/all.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344449048494556 2025-07-18 23:00:52,drb_ra,url,http://185.196.10.120:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344449048494556 2025-07-18 23:00:52,drb_ra,ip,185.196.10.120,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344449048494556 2025-07-18 23:02:56,drb_ra,url,https://93.88.203.171/RELEASE_NOTES.html,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344968001290323 2025-07-18 23:02:56,drb_ra,url,http://213.165.42.15:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344968001290323 2025-07-18 23:02:56,drb_ra,ip,213.165.42.15,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344968001290323 2025-07-18 23:02:56,drb_ra,ip,93.88.203.171,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344968001290323 2025-07-18 23:03:01,drb_ra,url,https://118.178.89.112/en_US/all.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344990470189546 2025-07-18 23:03:01,drb_ra,url,http://118.178.89.112:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344990470189546 2025-07-18 23:03:01,drb_ra,ip,118.178.89.112,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946344990470189546 2025-07-19 00:00:08,urldna_bot,domain,telstraawebmaill2.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1946359362110288279 2025-07-19 00:00:08,urldna_bot,url,https://telstraawebmaill2.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1946359362110288279 2025-07-19 00:37:57,harugasumi,domain,driect-shimkim01-08.com,#phishing,https://x.com/harugasumi/status/1946368881301622926 2025-07-19 00:37:57,harugasumi,url,https://driect-shimkim01-08.com,#phishing,https://x.com/harugasumi/status/1946368881301622926 2025-07-19 00:37:57,harugasumi,domain,driect-shimkim0.com,#phishing,https://x.com/harugasumi/status/1946368881301622926 2025-07-19 00:37:57,harugasumi,url,https://driect-shimkim0.com/tikubetu/selectState.htm/,#phishing,https://x.com/harugasumi/status/1946368881301622926 2025-07-19 00:37:57,harugasumi,domain,iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1946368881301622926 2025-07-19 00:37:57,harugasumi,url,http://iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1946368881301622926 2025-07-19 00:37:57,harugasumi,ip,149.104.32.236,#phishing,https://x.com/harugasumi/status/1946368881301622926 2025-07-19 02:00:09,urldna_bot,domain,rga158.webwave.dev,#phishing #scam,https://x.com/urldna_bot/status/1946389568132964796 2025-07-19 02:00:09,urldna_bot,url,https://rga158.webwave.dev,#phishing #scam,https://x.com/urldna_bot/status/1946389568132964796 2025-07-19 04:00:05,urldna_bot,url,https://mostofadev.github.io/module-11/,#scam #phishing,https://x.com/urldna_bot/status/1946419750575239328 2025-07-19 04:00:05,urldna_bot,domain,mostofadev.github.io,#scam #phishing,https://x.com/urldna_bot/status/1946419750575239328 2025-07-19 06:00:06,urldna_bot,domain,itstharun1.github.io,#scam #phishing,https://x.com/urldna_bot/status/1946449952122528134 2025-07-19 06:00:06,urldna_bot,url,http://itstharun1.github.io/netflix-clone,#scam #phishing,https://x.com/urldna_bot/status/1946449952122528134 2025-07-19 06:47:18,drb_ra,url,http://103.230.69.188:6000,#C2 #Dcrat,https://x.com/drb_ra/status/1946461830538248333 2025-07-19 06:47:18,drb_ra,ip,103.230.69.188,#C2 #Dcrat,https://x.com/drb_ra/status/1946461830538248333 2025-07-19 06:47:23,drb_ra,url,http://76.68.146.89:2222,#C2 #Qakbot,https://x.com/drb_ra/status/1946461851501441031 2025-07-19 06:47:23,drb_ra,ip,76.68.146.89,#C2 #Qakbot,https://x.com/drb_ra/status/1946461851501441031 2025-07-19 06:47:28,drb_ra,url,http://34.248.112.164:445,#C2,https://x.com/drb_ra/status/1946461872384852250 2025-07-19 06:47:28,drb_ra,ip,34.248.112.164,#C2,https://x.com/drb_ra/status/1946461872384852250 2025-07-19 06:47:33,drb_ra,url,http://45.76.155.161:443,#C2 #Havoc,https://x.com/drb_ra/status/1946461892530098658 2025-07-19 06:47:33,drb_ra,ip,45.76.155.161,#C2 #Havoc,https://x.com/drb_ra/status/1946461892530098658 2025-07-19 06:47:38,drb_ra,ip,178.159.43.123,#C2 #Havoc,https://x.com/drb_ra/status/1946461912851485167 2025-07-19 06:47:38,drb_ra,url,http://178.159.43.123:443,#C2 #Havoc,https://x.com/drb_ra/status/1946461912851485167 2025-07-19 06:47:41,drb_ra,url,http://188.226.220.215:80,#C2 #Havoc,https://x.com/drb_ra/status/1946461928689176708 2025-07-19 06:47:41,drb_ra,ip,188.226.220.215,#C2 #Havoc,https://x.com/drb_ra/status/1946461928689176708 2025-07-19 06:47:47,drb_ra,url,http://23.92.20.65:443,#C2 #Havoc,https://x.com/drb_ra/status/1946461950008803360 2025-07-19 06:47:47,drb_ra,ip,23.92.20.65,#C2 #Havoc,https://x.com/drb_ra/status/1946461950008803360 2025-07-19 06:47:52,drb_ra,url,http://67.217.228.190:10443,#C2 #Bianlian,https://x.com/drb_ra/status/1946461971475259876 2025-07-19 06:47:52,drb_ra,ip,67.217.228.190,#C2 #Bianlian,https://x.com/drb_ra/status/1946461971475259876 2025-07-19 06:47:57,drb_ra,url,http://54.157.151.187:443,#Deimos #C2,https://x.com/drb_ra/status/1946461995428958682 2025-07-19 06:47:57,drb_ra,ip,54.157.151.187,#Deimos #C2,https://x.com/drb_ra/status/1946461995428958682 2025-07-19 06:48:03,drb_ra,url,http://172.105.121.80:443,#C2 #Mythic,https://x.com/drb_ra/status/1946462018086584374 2025-07-19 06:48:03,drb_ra,ip,172.105.121.80,#C2 #Mythic,https://x.com/drb_ra/status/1946462018086584374 2025-07-19 06:48:06,drb_ra,ip,14.241.163.8,#C2 #Mythic,https://x.com/drb_ra/status/1946462033668432296 2025-07-19 06:48:06,drb_ra,url,http://14.241.163.8:7443,#C2 #Mythic,https://x.com/drb_ra/status/1946462033668432296 2025-07-19 06:48:11,drb_ra,url,http://137.220.54.244:7443,#C2 #Mythic,https://x.com/drb_ra/status/1946462054623113630 2025-07-19 06:48:11,drb_ra,ip,137.220.54.244,#C2 #Mythic,https://x.com/drb_ra/status/1946462054623113630 2025-07-19 06:48:16,drb_ra,url,http://168.110.192.252:31337,#Sliver #C2,https://x.com/drb_ra/status/1946462075380797466 2025-07-19 06:48:16,drb_ra,ip,168.110.192.252,#Sliver #C2,https://x.com/drb_ra/status/1946462075380797466 2025-07-19 06:48:21,drb_ra,url,http://176.65.149.160:443,#Sliver #C2,https://x.com/drb_ra/status/1946462096322925010 2025-07-19 06:48:21,drb_ra,ip,176.65.149.160,#Sliver #C2,https://x.com/drb_ra/status/1946462096322925010 2025-07-19 06:48:26,drb_ra,url,http://89.110.96.140:443,#Sliver #C2,https://x.com/drb_ra/status/1946462117294436671 2025-07-19 06:48:26,drb_ra,ip,89.110.96.140,#Sliver #C2,https://x.com/drb_ra/status/1946462117294436671 2025-07-19 06:50:30,drb_ra,url,http://104.167.16.88:4321,#C2,https://x.com/drb_ra/status/1946462634431139944 2025-07-19 06:50:30,drb_ra,ip,104.167.16.88,#C2,https://x.com/drb_ra/status/1946462634431139944 2025-07-19 06:50:35,drb_ra,ip,20.57.113.144,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1946462657201971567 2025-07-19 06:50:35,drb_ra,url,http://20.57.113.144:8080,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1946462657201971567 2025-07-19 06:50:40,drb_ra,ip,164.92.139.145,#C2,https://x.com/drb_ra/status/1946462675950539029 2025-07-19 06:50:40,drb_ra,url,http://164.92.139.145:443,#C2,https://x.com/drb_ra/status/1946462675950539029 2025-07-19 06:50:45,drb_ra,url,http://206.189.11.142:443,#C2,https://x.com/drb_ra/status/1946462699971371510 2025-07-19 06:50:45,drb_ra,ip,206.189.11.142,#C2,https://x.com/drb_ra/status/1946462699971371510 2025-07-19 06:50:50,drb_ra,url,http://102.96.149.206:443,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946462721198673985 2025-07-19 06:50:50,drb_ra,ip,102.96.149.206,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946462721198673985 2025-07-19 06:50:56,drb_ra,url,http://139.64.5.15:443,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946462742862332045 2025-07-19 06:50:56,drb_ra,ip,139.64.5.15,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946462742862332045 2025-07-19 06:51:01,drb_ra,url,http://18.100.143.170:5900,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946462764391641571 2025-07-19 06:51:01,drb_ra,ip,18.100.143.170,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946462764391641571 2025-07-19 06:51:06,drb_ra,url,http://87.106.235.201:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462785640038541 2025-07-19 06:51:06,drb_ra,ip,87.106.235.201,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462785640038541 2025-07-19 06:51:11,drb_ra,url,http://172.94.9.85:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462806905131047 2025-07-19 06:51:11,drb_ra,ip,172.94.9.85,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462806905131047 2025-07-19 06:51:16,drb_ra,ip,23.94.171.142,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462829143363641 2025-07-19 06:51:16,drb_ra,url,http://23.94.171.142:8580,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462829143363641 2025-07-19 06:51:21,drb_ra,url,http://95.216.78.61:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462850211258431 2025-07-19 06:51:21,drb_ra,ip,95.216.78.61,#C2 #AsyncRAT,https://x.com/drb_ra/status/1946462850211258431 2025-07-19 06:51:25,drb_ra,url,http://91.98.19.33:80,#C2 #Interactsh,https://x.com/drb_ra/status/1946462866648760609 2025-07-19 06:51:31,drb_ra,url,http://91.98.19.33:25,#C2 #Interactsh,https://x.com/drb_ra/status/1946462892192158113 2025-07-19 06:51:31,drb_ra,ip,91.98.19.33,#C2 #Interactsh,https://x.com/drb_ra/status/1946462892192158113 2025-07-19 06:51:36,drb_ra,url,http://47.113.229.193:8080,#C2 #Dcrat,https://x.com/drb_ra/status/1946462914312863878 2025-07-19 06:51:36,drb_ra,ip,47.113.229.193,#C2 #Dcrat,https://x.com/drb_ra/status/1946462914312863878 2025-07-19 07:30:07,PrakkiSathwik,md5,9d092b9d1c02dd72c5a4eac7dae6dda5,#phishing #APT #C2,https://x.com/PrakkiSathwik/status/1946472607358017937 2025-07-19 07:30:07,PrakkiSathwik,md5,24daa64a1c402e320401436af7fb170f,#phishing #APT #C2,https://x.com/PrakkiSathwik/status/1946472607358017937 2025-07-19 08:27:54,BlinkzSec,url,https://metamask.directual.app,#phishing,https://x.com/BlinkzSec/status/1946487148820975802 2025-07-19 08:27:54,BlinkzSec,domain,metamask.directual.app,#phishing,https://x.com/BlinkzSec/status/1946487148820975802 2025-07-19 08:27:54,BlinkzSec,url,https://sites.google.com/bitstamlogi.com/bitkeep-wallet/home/,#phishing,https://x.com/BlinkzSec/status/1946487148820975802 2025-07-19 08:27:54,BlinkzSec,url,https://bitgetwallet.onepage.website,#phishing,https://x.com/BlinkzSec/status/1946487148820975802 2025-07-19 08:27:54,BlinkzSec,domain,bitgetwallet.onepage.website,#phishing,https://x.com/BlinkzSec/status/1946487148820975802 2025-07-19 08:36:36,BlinkzSec,domain,amlusdt.com,#phishing,https://x.com/BlinkzSec/status/1946489338579017940 2025-07-19 08:36:36,BlinkzSec,url,http://amlusdt.com,#phishing,https://x.com/BlinkzSec/status/1946489338579017940 2025-07-19 08:36:36,BlinkzSec,url,https://185.229.65.81,#phishing,https://x.com/BlinkzSec/status/1946489338579017940 2025-07-19 08:36:36,BlinkzSec,ip,185.229.65.81,#phishing,https://x.com/BlinkzSec/status/1946489338579017940 2025-07-19 08:36:36,BlinkzSec,sha256,85573e3bf8fdc1b4a255135b2b61dc422992ae07f2c0ce53d4fd79a7c98d1152,#phishing,https://x.com/BlinkzSec/status/1946489338579017940 2025-07-19 10:54:57,drb_ra,url,http://1.13.187.97:8089,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524153340690490 2025-07-19 10:55:01,drb_ra,url,http://42.194.137.226:45443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524170654744634 2025-07-19 10:55:01,drb_ra,url,https://42.194.137.226/pixel,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524170654744634 2025-07-19 10:55:01,drb_ra,ip,42.194.137.226,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524170654744634 2025-07-19 10:55:07,drb_ra,ip,38.190.224.58,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524196890173460 2025-07-19 10:55:07,drb_ra,url,http://38.190.224.58:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524196890173460 2025-07-19 10:57:12,drb_ra,domain,update.microsoftwindows.biz,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524717701066989 2025-07-19 10:57:12,drb_ra,url,https://update.microsoftwindows.biz/api/3,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524717701066989 2025-07-19 10:57:12,drb_ra,url,http://103.125.248.109:50469,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524717701066989 2025-07-19 10:57:17,drb_ra,url,http://8.137.36.127:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524741927346533 2025-07-19 10:57:23,drb_ra,url,http://154.201.86.212:18443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524764350165296 2025-07-19 10:57:23,drb_ra,ip,154.201.86.212,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524764350165296 2025-07-19 10:57:28,drb_ra,domain,microsoftwindows.biz,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524787741773972 2025-07-19 10:57:28,drb_ra,url,https://www.microsoftwindows.biz/__utm.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524787741773972 2025-07-19 10:57:34,drb_ra,url,http://106.14.118.159:7777,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524810466541787 2025-07-19 10:57:34,drb_ra,ip,106.14.118.159,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524810466541787 2025-07-19 10:57:39,drb_ra,ip,103.125.248.109,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524834034221353 2025-07-19 10:57:39,drb_ra,url,http://103.125.248.109:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524834034221353 2025-07-19 10:57:39,drb_ra,url,https://security.microsoftwindows.biz/push,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524834034221353 2025-07-19 10:57:39,drb_ra,domain,security.microsoftwindows.biz,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524834034221353 2025-07-19 10:57:45,drb_ra,url,http://137.220.232.142:25364,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524856352178615 2025-07-19 10:57:45,drb_ra,ip,137.220.232.142,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524856352178615 2025-07-19 10:57:50,drb_ra,url,http://151.241.129.49:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524878695190674 2025-07-19 10:57:50,drb_ra,ip,151.241.129.49,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524878695190674 2025-07-19 10:57:55,drb_ra,url,http://8.137.36.127:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524901034049763 2025-07-19 10:58:01,drb_ra,url,http://47.96.224.76:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524923779805571 2025-07-19 10:58:01,drb_ra,ip,47.96.224.76,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524923779805571 2025-07-19 10:58:06,drb_ra,url,http://159.75.177.25:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524947188248815 2025-07-19 10:58:06,drb_ra,ip,159.75.177.25,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524947188248815 2025-07-19 10:58:06,drb_ra,ip,193.112.239.170,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524947188248815 2025-07-19 10:58:12,drb_ra,ip,59.110.81.93,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524969837420643 2025-07-19 10:58:12,drb_ra,url,http://59.110.81.93:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946524969837420643 2025-07-19 11:30:24,drb_ra,url,http://159.203.30.200:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946533073849405646 2025-07-19 11:30:24,drb_ra,ip,159.203.30.200,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946533073849405646 2025-07-19 11:30:29,drb_ra,url,http://103.125.248.109:2053,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946533097433977074 2025-07-19 11:32:58,drb_ra,url,http://213.209.150.214:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946533721399574567 2025-07-19 11:32:58,drb_ra,ip,213.209.150.214,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946533721399574567 2025-07-19 12:00:05,urldna_bot,domain,ateendra24.github.io,#phishing #scam,https://x.com/urldna_bot/status/1946540545976774669 2025-07-19 12:00:05,urldna_bot,url,http://ateendra24.github.io/facebook_login_page,#phishing #scam,https://x.com/urldna_bot/status/1946540545976774669 2025-07-19 13:45:12,skocherhan,url,http://194.164.245.9,,https://x.com/skocherhan/status/1946566997057093871 2025-07-19 13:45:12,skocherhan,domain,deadmonkey.ru,,https://x.com/skocherhan/status/1946566997057093871 2025-07-19 13:45:12,skocherhan,url,http://deadmonkey.ru,,https://x.com/skocherhan/status/1946566997057093871 2025-07-19 13:45:12,skocherhan,ip,194.164.245.9,,https://x.com/skocherhan/status/1946566997057093871 2025-07-19 14:00:09,urldna_bot,url,https://mnmbk-6c118.web.app,#phishing #scam,https://x.com/urldna_bot/status/1946570761994379438 2025-07-19 14:00:09,urldna_bot,domain,mnmbk-6c118.web.app,#phishing #scam,https://x.com/urldna_bot/status/1946570761994379438 2025-07-19 15:30:54,skocherhan,domain,ompowerterminus.com,#C2 #phishing #APT,https://x.com/skocherhan/status/1946593598398493033 2025-07-19 15:30:54,skocherhan,url,http://ompowerterminus.com,#C2 #phishing #APT,https://x.com/skocherhan/status/1946593598398493033 2025-07-19 15:30:54,skocherhan,domain,backup.intelupates.com,#C2 #phishing #APT,https://x.com/skocherhan/status/1946593598398493033 2025-07-19 15:30:54,skocherhan,url,http://backup.intelupates.com,#C2 #phishing #APT,https://x.com/skocherhan/status/1946593598398493033 2025-07-19 15:30:54,skocherhan,md5,c59efe3739ae3e2814ff48f41b0d0ad8,#C2 #phishing #APT,https://x.com/skocherhan/status/1946593598398493033 2025-07-19 15:30:54,skocherhan,md5,4cc0cc070ec8a51b437ddc393487bb7e,#C2 #phishing #APT,https://x.com/skocherhan/status/1946593598398493033 2025-07-19 15:30:54,skocherhan,md5,f4a82380cc0e246a4f576bc81fa6f879,#C2 #phishing #APT,https://x.com/skocherhan/status/1946593598398493033 2025-07-19 16:00:05,urldna_bot,domain,btboardbandlin.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1946600944453451908 2025-07-19 16:00:05,urldna_bot,url,https://btboardbandlin.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1946600944453451908 2025-07-19 16:00:25,skocherhan,sha256,30295311d6289310f234bfff3d5c7c16fd5766ceb49dcb0be8bc33c8426f6dc4,,https://x.com/skocherhan/status/1946601028222157309 2025-07-19 16:00:29,skocherhan,sha256,75c0aa897075a7bfa64d8a55be636a6984e2d1a5a05a54f0f01b0eb4653e9c7a,,https://x.com/skocherhan/status/1946601043933941784 2025-07-19 16:00:29,skocherhan,sha256,5bed39728e404838ecd679df65048abcb443f8c7a9484702a2ded60104b8c4a9,,https://x.com/skocherhan/status/1946601043933941784 2025-07-19 16:00:38,skocherhan,sha256,90291a2c53970e3d89bacce7b79d5fa540511ae920dd4447fc6182224bbe05c5,,https://x.com/skocherhan/status/1946601080332148802 2025-07-19 17:00:11,godeepweb,domain,lokilokitwo.de,#malware,https://x.com/godeepweb/status/1946616068237119767 2025-07-19 17:00:11,godeepweb,url,http://lokilokitwo.de,#malware,https://x.com/godeepweb/status/1946616068237119767 2025-07-19 17:35:46,harugasumi,domain,pxcfjv.cn,#phishing,https://x.com/harugasumi/status/1946625023869157449 2025-07-19 17:35:46,harugasumi,url,https://pxcfjv.cn,#phishing,https://x.com/harugasumi/status/1946625023869157449 2025-07-19 18:00:09,urldna_bot,domain,co001.coinbasewalletrectify.com,#phishing #scam,https://x.com/urldna_bot/status/1946631158881534075 2025-07-19 18:00:09,urldna_bot,url,https://co001.coinbasewalletrectify.com,#phishing #scam,https://x.com/urldna_bot/status/1946631158881534075 2025-07-19 18:08:31,skocherhan,url,http://213.108.198.227,,https://x.com/skocherhan/status/1946633262517924155 2025-07-19 18:08:31,skocherhan,ip,213.108.198.227,,https://x.com/skocherhan/status/1946633262517924155 2025-07-19 18:47:14,drb_ra,url,http://34.48.38.124:80,#Interactsh #C2,https://x.com/drb_ra/status/1946643006280397064 2025-07-19 18:47:19,drb_ra,url,http://34.48.38.124:25,#Interactsh #C2,https://x.com/drb_ra/status/1946643026501075338 2025-07-19 18:47:24,drb_ra,url,http://45.74.10.14:80,#Hookbot #Pegasus #C2,https://x.com/drb_ra/status/1946643049947218005 2025-07-19 18:47:24,drb_ra,ip,45.74.10.14,#Hookbot #Pegasus #C2,https://x.com/drb_ra/status/1946643049947218005 2025-07-19 18:47:29,drb_ra,url,http://118.195.158.212:8888,#C2 #Supershell,https://x.com/drb_ra/status/1946643071640256758 2025-07-19 18:47:29,drb_ra,ip,118.195.158.212,#C2 #Supershell,https://x.com/drb_ra/status/1946643071640256758 2025-07-19 18:47:35,drb_ra,url,http://2.50.15.192:443,#Qakbot #C2,https://x.com/drb_ra/status/1946643094771744883 2025-07-19 18:47:40,drb_ra,url,http://94.99.6.15:443,#Qakbot #C2,https://x.com/drb_ra/status/1946643115869118865 2025-07-19 18:47:40,drb_ra,ip,94.99.6.15,#Qakbot #C2,https://x.com/drb_ra/status/1946643115869118865 2025-07-19 18:47:45,drb_ra,url,http://95.111.215.155:445,#C2,https://x.com/drb_ra/status/1946643135683006510 2025-07-19 18:47:45,drb_ra,ip,95.111.215.155,#C2,https://x.com/drb_ra/status/1946643135683006510 2025-07-19 18:47:50,drb_ra,ip,148.251.157.116,#Havoc #C2,https://x.com/drb_ra/status/1946643157396918521 2025-07-19 18:47:50,drb_ra,url,http://148.251.157.116:443,#Havoc #C2,https://x.com/drb_ra/status/1946643157396918521 2025-07-19 18:47:55,drb_ra,ip,209.141.47.199,#Covenant #C2,https://x.com/drb_ra/status/1946643178641125650 2025-07-19 18:47:55,drb_ra,url,http://209.141.47.199:7443,#Covenant #C2,https://x.com/drb_ra/status/1946643178641125650 2025-07-19 18:48:00,drb_ra,ip,118.178.141.55,#Sliver #C2,https://x.com/drb_ra/status/1946643201869119594 2025-07-19 18:48:00,drb_ra,url,http://118.178.141.55:8888,#Sliver #C2,https://x.com/drb_ra/status/1946643201869119594 2025-07-19 18:48:06,drb_ra,url,http://34.96.165.237:443,#Sliver #C2,https://x.com/drb_ra/status/1946643224421908619 2025-07-19 18:50:09,drb_ra,ip,144.172.122.219,#C2,https://x.com/drb_ra/status/1946643742133244223 2025-07-19 18:50:09,drb_ra,url,http://144.172.122.219:4323,#C2,https://x.com/drb_ra/status/1946643742133244223 2025-07-19 18:50:14,drb_ra,ip,203.161.38.57,#C2,https://x.com/drb_ra/status/1946643763952078869 2025-07-19 18:50:14,drb_ra,url,http://203.161.38.57:11601,#C2,https://x.com/drb_ra/status/1946643763952078869 2025-07-19 18:50:19,drb_ra,ip,45.141.233.131,#Remcos #C2,https://x.com/drb_ra/status/1946643784583795157 2025-07-19 18:50:19,drb_ra,url,http://45.141.233.131:5902,#Remcos #C2,https://x.com/drb_ra/status/1946643784583795157 2025-07-19 18:50:23,drb_ra,url,http://35.163.114.205:44818,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643799574213027 2025-07-19 18:50:23,drb_ra,ip,35.163.114.205,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643799574213027 2025-07-19 18:50:27,drb_ra,ip,51.17.21.189,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643817869754635 2025-07-19 18:50:27,drb_ra,url,http://51.17.21.189:3306,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643817869754635 2025-07-19 18:50:33,drb_ra,url,http://13.245.111.102:831,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643843685728473 2025-07-19 18:50:38,drb_ra,ip,13.245.111.102,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643865097630188 2025-07-19 18:50:38,drb_ra,url,http://13.245.111.102:81,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643865097630188 2025-07-19 18:50:44,drb_ra,ip,63.179.1.26,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643886920647102 2025-07-19 18:50:44,drb_ra,url,http://63.179.1.26:789,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643886920647102 2025-07-19 18:50:48,drb_ra,url,http://157.175.55.36:52057,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643906214391898 2025-07-19 18:50:48,drb_ra,ip,157.175.55.36,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643906214391898 2025-07-19 18:50:53,drb_ra,ip,13.247.190.233,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643926422577163 2025-07-19 18:50:53,drb_ra,url,http://13.247.190.233:8013,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946643926422577163 2025-07-19 18:50:56,drb_ra,url,http://213.163.202.223:587,#Interactsh #C2,https://x.com/drb_ra/status/1946643940259561560 2025-07-19 18:50:56,drb_ra,ip,213.163.202.223,#Interactsh #C2,https://x.com/drb_ra/status/1946643940259561560 2025-07-19 21:00:04,threatquery,url,http://2.50.15.192,#Qakbot #malware #C2,https://x.com/threatquery/status/1946676437517324565 2025-07-19 21:00:04,threatquery,url,http://94.99.6.15,#Qakbot #malware #C2,https://x.com/threatquery/status/1946676435633983876 2025-07-19 21:00:05,threatquery,url,http://35.163.114.205,#malware #NetSupportRAT #C2,https://x.com/threatquery/status/1946676439106908430 2025-07-19 21:23:47,drb_ra,url,http://103.125.248.109:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946682404388651055 2025-07-19 22:00:09,urldna_bot,domain,messagerieorange35.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946691557609869384 2025-07-19 22:00:09,urldna_bot,url,https://messagerieorange35.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946691557609869384 2025-07-19 22:32:15,drb_ra,url,https://101.201.76.1/load,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699636724445549 2025-07-19 22:32:15,drb_ra,url,http://101.201.76.1:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699636724445549 2025-07-19 22:32:15,drb_ra,ip,101.201.76.1,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699636724445549 2025-07-19 22:32:21,drb_ra,url,https://192.168.140.158/cx,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699658560000230 2025-07-19 22:32:21,drb_ra,url,http://176.46.152.35:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699658560000230 2025-07-19 22:32:21,drb_ra,ip,176.46.152.35,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699658560000230 2025-07-19 22:32:26,drb_ra,domain,tip.emailsv.org,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699681553100947 2025-07-19 22:32:26,drb_ra,url,https://tip.emailsv.org/cm,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699681553100947 2025-07-19 22:32:26,drb_ra,url,http://114.116.18.42:2087,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699681553100947 2025-07-19 22:32:26,drb_ra,ip,114.116.18.42,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946699681553100947 2025-07-20 00:00:06,urldna_bot,domain,microsotf2564kiiok5.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946721744682696961 2025-07-20 00:00:06,urldna_bot,url,https://microsotf2564kiiok5.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946721744682696961 2025-07-20 00:02:31,skocherhan,domain,temp.demetradesign.it,#Kimsuky #APT,https://x.com/skocherhan/status/1946722352953245809 2025-07-20 00:02:31,skocherhan,url,http://temp.demetradesign.it/eternalwealth/wp-content/plugins/health-check/pages/interview/d.php?na=battmp,#Kimsuky #APT,https://x.com/skocherhan/status/1946722352953245809 2025-07-20 00:03:33,skocherhan,domain,adv.oa.pt,,https://x.com/skocherhan/status/1946722610043080836 2025-07-20 00:03:33,skocherhan,url,http://adv.oa.pt,,https://x.com/skocherhan/status/1946722610043080836 2025-07-20 00:48:30,catnap707,url,http://104.21.32.1,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,domain,jiakunyeya.com,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,url,http://jiakunyeya.com/D0pX.jp,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,domain,tencensbi.bond,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,url,http://tencensbi.bond,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,url,http://104.21.16.1,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,url,http://slmpie.icu/D0pX.jp,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,domain,slmpie.icu,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,url,http://104.21.64.1,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 00:48:30,catnap707,url,http://104.21.48.1,#phishing,https://x.com/catnap707/status/1946733921250722184 2025-07-20 02:00:05,urldna_bot,domain,cuinbashlugin.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946751936578887940 2025-07-20 02:00:05,urldna_bot,url,https://cuinbashlugin.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1946751936578887940 2025-07-20 02:27:41,drb_ra,ip,172.22.2.7,#CobaltStrike #C2,https://x.com/drb_ra/status/1946758883222880465 2025-07-20 02:27:41,drb_ra,url,http://123.56.87.43:8081,#CobaltStrike #C2,https://x.com/drb_ra/status/1946758883222880465 2025-07-20 02:27:41,drb_ra,ip,123.56.87.43,#CobaltStrike #C2,https://x.com/drb_ra/status/1946758883222880465 2025-07-20 04:00:07,urldna_bot,domain,tspoultryfarming.co.za,#scam #phishing,https://x.com/urldna_bot/status/1946782143587217460 2025-07-20 04:00:07,urldna_bot,url,https://tspoultryfarming.co.za,#scam #phishing,https://x.com/urldna_bot/status/1946782143587217460 2025-07-20 04:26:53,harugasumi,domain,iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1946788879891337604 2025-07-20 04:26:53,harugasumi,ip,149.104.32.236,#phishing,https://x.com/harugasumi/status/1946788879891337604 2025-07-20 04:26:53,harugasumi,domain,shinyokumlal-0.com,#phishing,https://x.com/harugasumi/status/1946788879891337604 2025-07-20 04:26:53,harugasumi,url,https://shinyokumlal-0.com,#phishing,https://x.com/harugasumi/status/1946788879891337604 2025-07-20 04:26:53,harugasumi,url,https://shinyokumlal-01-07.com,#phishing,https://x.com/harugasumi/status/1946788879891337604 2025-07-20 04:26:53,harugasumi,domain,shinyokumlal-01-07.com,#phishing,https://x.com/harugasumi/status/1946788879891337604 2025-07-20 04:26:53,harugasumi,url,http://iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1946788879891337604 2025-07-20 04:36:07,alvosec,url,http://streamyard.net,#malware,https://x.com/alvosec/status/1946791203749642261 2025-07-20 04:36:07,alvosec,domain,streamyard.net,#malware,https://x.com/alvosec/status/1946791203749642261 2025-07-20 04:36:07,alvosec,domain,streamyard.app,#malware,https://x.com/alvosec/status/1946791203749642261 2025-07-20 04:36:07,alvosec,url,http://streamyard.app,#malware,https://x.com/alvosec/status/1946791203749642261 2025-07-20 06:28:55,drb_ra,ip,85.175.101.203,#CobaltStrike #C2,https://x.com/drb_ra/status/1946819592963170467 2025-07-20 06:28:55,drb_ra,url,https://85.175.101.203/zOMGAPT,#CobaltStrike #C2,https://x.com/drb_ra/status/1946819592963170467 2025-07-20 06:28:55,drb_ra,url,http://85.175.101.203:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946819592963170467 2025-07-20 06:47:04,drb_ra,ip,16.162.4.4,#C2 #Supershell,https://x.com/drb_ra/status/1946824157422928054 2025-07-20 06:47:04,drb_ra,url,http://16.162.4.4:8888,#C2 #Supershell,https://x.com/drb_ra/status/1946824157422928054 2025-07-20 06:47:09,drb_ra,ip,119.45.1.34,#C2 #Supershell,https://x.com/drb_ra/status/1946824178750923172 2025-07-20 06:47:09,drb_ra,url,http://119.45.1.34:8888,#C2 #Supershell,https://x.com/drb_ra/status/1946824178750923172 2025-07-20 06:47:13,drb_ra,ip,71.85.182.105,#Qakbot #C2,https://x.com/drb_ra/status/1946824198753599947 2025-07-20 06:47:13,drb_ra,url,http://71.85.182.105:443,#Qakbot #C2,https://x.com/drb_ra/status/1946824198753599947 2025-07-20 06:47:19,drb_ra,ip,86.98.219.194,#Qakbot #C2,https://x.com/drb_ra/status/1946824222082203882 2025-07-20 06:47:19,drb_ra,url,http://86.98.219.194:443,#Qakbot #C2,https://x.com/drb_ra/status/1946824222082203882 2025-07-20 06:47:24,drb_ra,url,http://63.32.110.64:445,#C2,https://x.com/drb_ra/status/1946824243947118896 2025-07-20 06:47:24,drb_ra,ip,63.32.110.64,#C2,https://x.com/drb_ra/status/1946824243947118896 2025-07-20 06:47:28,drb_ra,ip,207.180.213.79,#Havoc #C2,https://x.com/drb_ra/status/1946824259814269263 2025-07-20 06:47:28,drb_ra,url,http://207.180.213.79:52037,#Havoc #C2,https://x.com/drb_ra/status/1946824259814269263 2025-07-20 06:47:33,drb_ra,url,http://35.244.127.70:80,#Havoc #C2,https://x.com/drb_ra/status/1946824281104548057 2025-07-20 06:47:38,drb_ra,url,http://35.244.127.70:443,#Havoc #C2,https://x.com/drb_ra/status/1946824301732098086 2025-07-20 06:47:38,drb_ra,ip,35.244.127.70,#Havoc #C2,https://x.com/drb_ra/status/1946824301732098086 2025-07-20 06:47:42,drb_ra,url,http://18.252.251.213:443,#C2 #Deimos,https://x.com/drb_ra/status/1946824317779443893 2025-07-20 06:47:42,drb_ra,ip,18.252.251.213,#C2 #Deimos,https://x.com/drb_ra/status/1946824317779443893 2025-07-20 06:47:48,drb_ra,url,http://18.252.216.17:443,#C2 #Deimos,https://x.com/drb_ra/status/1946824343771652378 2025-07-20 06:47:48,drb_ra,ip,18.252.216.17,#C2 #Deimos,https://x.com/drb_ra/status/1946824343771652378 2025-07-20 06:47:53,drb_ra,url,http://3.141.84.244:443,#C2 #Deimos,https://x.com/drb_ra/status/1946824364881522876 2025-07-20 06:47:58,drb_ra,ip,56.228.12.2,#C2 #Mythic,https://x.com/drb_ra/status/1946824386029248958 2025-07-20 06:47:58,drb_ra,url,http://56.228.12.2:7443,#C2 #Mythic,https://x.com/drb_ra/status/1946824386029248958 2025-07-20 06:48:03,drb_ra,ip,54.168.191.225,#C2 #Brute_Ratel_C4,https://x.com/drb_ra/status/1946824407382392932 2025-07-20 06:48:03,drb_ra,url,http://54.168.191.225:80,#C2 #Brute_Ratel_C4,https://x.com/drb_ra/status/1946824407382392932 2025-07-20 06:50:07,drb_ra,url,http://91.236.116.139:80,#C2,https://x.com/drb_ra/status/1946824925215404377 2025-07-20 06:50:07,drb_ra,ip,91.236.116.139,#C2,https://x.com/drb_ra/status/1946824925215404377 2025-07-20 06:50:12,drb_ra,url,http://206.162.22.75:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1946824946715386279 2025-07-20 06:50:12,drb_ra,ip,206.162.22.75,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1946824946715386279 2025-07-20 06:50:17,drb_ra,url,http://5.178.96.115:443,#C2,https://x.com/drb_ra/status/1946824967472964062 2025-07-20 06:50:21,drb_ra,url,http://206.123.145.241:443,#C2 #Remcos,https://x.com/drb_ra/status/1946824986292818289 2025-07-20 06:50:21,drb_ra,ip,206.123.145.241,#C2 #Remcos,https://x.com/drb_ra/status/1946824986292818289 2025-07-20 06:50:26,drb_ra,url,http://95.217.190.166:5555,#C2 #Remcos,https://x.com/drb_ra/status/1946825006245187722 2025-07-20 06:50:26,drb_ra,ip,95.217.190.166,#C2 #Remcos,https://x.com/drb_ra/status/1946825006245187722 2025-07-20 06:50:32,drb_ra,ip,172.245.253.10,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1946825032170078359 2025-07-20 06:50:32,drb_ra,url,http://172.245.253.10:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1946825032170078359 2025-07-20 06:50:37,drb_ra,url,http://16.62.240.47:4839,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825053942747582 2025-07-20 06:50:37,drb_ra,ip,16.62.240.47,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825053942747582 2025-07-20 06:50:43,drb_ra,url,http://51.112.47.23:27034,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825078752092634 2025-07-20 06:50:43,drb_ra,ip,51.112.47.23,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825078752092634 2025-07-20 06:50:48,drb_ra,url,http://3.96.126.19:3306,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825100902137973 2025-07-20 06:50:54,drb_ra,url,http://93.198.188.234:82,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825123010412888 2025-07-20 06:50:54,drb_ra,ip,93.198.188.234,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825123010412888 2025-07-20 06:50:59,drb_ra,url,http://18.175.149.170:9200,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825145592545488 2025-07-20 06:51:04,drb_ra,url,http://18.175.149.170:8000,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825167973278071 2025-07-20 06:51:10,drb_ra,url,http://18.175.149.170:13000,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825190119219526 2025-07-20 06:51:10,drb_ra,ip,18.175.149.170,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825190119219526 2025-07-20 06:51:15,drb_ra,url,http://54.78.57.178:10260,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825212407722314 2025-07-20 06:51:19,drb_ra,ip,54.78.57.178,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825229050810408 2025-07-20 06:51:19,drb_ra,url,http://54.78.57.178:10810,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825229050810408 2025-07-20 06:51:25,drb_ra,url,http://43.208.192.188:48641,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825254917030267 2025-07-20 06:51:25,drb_ra,ip,43.208.192.188,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825254917030267 2025-07-20 06:51:30,drb_ra,url,http://35.156.214.186:102,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825276844839323 2025-07-20 06:51:30,drb_ra,ip,35.156.214.186,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825276844839323 2025-07-20 06:51:36,drb_ra,url,http://34.222.124.155:11112,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825298881692125 2025-07-20 06:51:36,drb_ra,ip,34.222.124.155,#NetSupportRAT #C2,https://x.com/drb_ra/status/1946825298881692125 2025-07-20 06:51:40,drb_ra,ip,172.111.248.130,#AsyncRAT #C2,https://x.com/drb_ra/status/1946825318439747780 2025-07-20 06:51:40,drb_ra,url,http://172.111.248.130:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1946825318439747780 2025-07-20 06:51:46,drb_ra,url,http://207.231.111.84:80,#AsyncRAT #C2,https://x.com/drb_ra/status/1946825343450407259 2025-07-20 06:51:46,drb_ra,ip,207.231.111.84,#AsyncRAT #C2,https://x.com/drb_ra/status/1946825343450407259 2025-07-20 06:51:52,drb_ra,url,http://157.254.165.199:888,#AsyncRAT #C2,https://x.com/drb_ra/status/1946825365663408486 2025-07-20 06:51:52,drb_ra,ip,157.254.165.199,#AsyncRAT #C2,https://x.com/drb_ra/status/1946825365663408486 2025-07-20 06:51:57,drb_ra,url,http://45.32.92.170:443,#Interactsh #C2,https://x.com/drb_ra/status/1946825387327009225 2025-07-20 06:52:02,drb_ra,url,http://45.32.92.170:25,#Interactsh #C2,https://x.com/drb_ra/status/1946825409879740782 2025-07-20 06:52:02,drb_ra,ip,45.32.92.170,#Interactsh #C2,https://x.com/drb_ra/status/1946825409879740782 2025-07-20 08:00:06,urldna_bot,domain,dncvjdshddd.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1946842538385527294 2025-07-20 08:00:06,urldna_bot,url,https://dncvjdshddd.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1946842538385527294 2025-07-20 10:00:06,urldna_bot,url,https://astbm-168.xyz/desktop/game/arcade/cq9,#scam #phishing,https://x.com/urldna_bot/status/1946872739245023304 2025-07-20 10:00:06,urldna_bot,domain,astbm-168.xyz,#scam #phishing,https://x.com/urldna_bot/status/1946872739245023304 2025-07-20 10:01:08,drb_ra,url,http://124.221.116.169:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1946872997182128607 2025-07-20 10:01:08,drb_ra,ip,124.221.116.169,#CobaltStrike #C2,https://x.com/drb_ra/status/1946872997182128607 2025-07-20 10:01:13,drb_ra,url,http://139.155.104.147:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873019030229076 2025-07-20 10:01:13,drb_ra,url,https://139.155.104.147/ptj,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873019030229076 2025-07-20 10:01:13,drb_ra,ip,139.155.104.147,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873019030229076 2025-07-20 10:01:18,drb_ra,url,http://47.245.61.75:6666,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873040425353307 2025-07-20 10:01:18,drb_ra,ip,47.245.61.75,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873040425353307 2025-07-20 10:01:23,drb_ra,url,https://154.216.157.235/ptj,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873062504173623 2025-07-20 10:01:23,drb_ra,url,http://154.216.157.235:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873062504173623 2025-07-20 10:01:23,drb_ra,ip,154.216.157.235,#CobaltStrike #C2,https://x.com/drb_ra/status/1946873062504173623 2025-07-20 10:03:27,drb_ra,url,http://101.42.187.157:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946873580609745088 2025-07-20 10:03:27,drb_ra,ip,101.42.187.157,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946873580609745088 2025-07-20 10:03:32,drb_ra,url,http://104.168.64.199:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946873602386678194 2025-07-20 10:03:32,drb_ra,ip,104.168.64.199,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946873602386678194 2025-07-20 10:03:32,drb_ra,ip,101.201.76.1,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946873602386678194 2025-07-20 10:03:37,drb_ra,url,http://42.192.212.68:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946873624511574076 2025-07-20 10:03:37,drb_ra,ip,42.192.212.68,#C2 #CobaltStrike,https://x.com/drb_ra/status/1946873624511574076 2025-07-20 11:27:16,drb_ra,url,http://1.94.137.198:9989,#CobaltStrike #C2,https://x.com/drb_ra/status/1946894673483551058 2025-07-20 11:29:19,drb_ra,url,http://210.36.97.72:81,#CobaltStrike #C2,https://x.com/drb_ra/status/1946895191811531126 2025-07-20 11:29:19,drb_ra,ip,210.36.97.72,#CobaltStrike #C2,https://x.com/drb_ra/status/1946895191811531126 2025-07-20 11:29:24,drb_ra,url,http://1.94.134.161:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1946895209096192018 2025-07-20 12:00:06,urldna_bot,domain,grifogranchimu.com,#phishing #scam,https://x.com/urldna_bot/status/1946902934958035401 2025-07-20 12:00:06,urldna_bot,url,https://grifogranchimu.com/web-update/,#phishing #scam,https://x.com/urldna_bot/status/1946902934958035401 2025-07-20 12:11:46,skocherhan,url,http://github.com/ComputerDestroyer,#Njrat,https://x.com/skocherhan/status/1946905873604866314 2025-07-20 13:53:26,sicehice,url,http://176.65.148.203/machinist,,https://x.com/sicehice/status/1946931458272014442 2025-07-20 13:53:26,sicehice,ip,45.135.193.2,,https://x.com/sicehice/status/1946931458272014442 2025-07-20 13:53:26,sicehice,ip,176.65.148.203,,https://x.com/sicehice/status/1946931458272014442 2025-07-20 13:58:05,sicehice,url,http://46.8.231.224/scripts/4thepool_miner.sh,#log4j,https://x.com/sicehice/status/1946932627287527790 2025-07-20 13:58:05,sicehice,ip,80.75.212.83,#log4j,https://x.com/sicehice/status/1946932627287527790 2025-07-20 13:58:05,sicehice,ip,46.8.231.224,#log4j,https://x.com/sicehice/status/1946932627287527790 2025-07-20 13:58:05,sicehice,md5,7948170e68c90a5272a72c4df6292487,#log4j,https://x.com/sicehice/status/1946932627287527790 2025-07-20 14:00:05,urldna_bot,domain,jdke.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1946933133175071087 2025-07-20 14:00:05,urldna_bot,url,https://jdke.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1946933133175071087 2025-07-20 14:05:17,harugasumi,domain,avc.pabokh.cfd,#phishing,https://x.com/harugasumi/status/1946934442087624723 2025-07-20 14:05:17,harugasumi,url,https://avc.pabokh.cfd/auth/screen,#phishing,https://x.com/harugasumi/status/1946934442087624723 2025-07-20 14:36:45,harugasumi,domain,ulqqf.cn,#phishing,https://x.com/harugasumi/status/1946942358710575219 2025-07-20 14:36:45,harugasumi,url,https://ulqqf.cn/Login,#phishing,https://x.com/harugasumi/status/1946942358710575219 2025-07-20 14:50:13,fbgwls245,md5,DF013AA8420C0AA4BDF8FC5042C592F4,#ransomware,https://x.com/fbgwls245/status/1946945746693169443 2025-07-20 18:46:17,drb_ra,url,http://102.117.162.135:7443,#C2 #Mythic,https://x.com/drb_ra/status/1947005156458934338 2025-07-20 18:46:17,drb_ra,ip,102.117.162.135,#C2 #Mythic,https://x.com/drb_ra/status/1947005156458934338 2025-07-20 18:46:22,drb_ra,url,http://172.236.108.193:443,#Sliver #C2,https://x.com/drb_ra/status/1947005178273468594 2025-07-20 18:46:22,drb_ra,ip,172.236.108.193,#Sliver #C2,https://x.com/drb_ra/status/1947005178273468594 2025-07-20 18:46:26,drb_ra,url,http://43.143.97.240:31337,#Sliver #C2,https://x.com/drb_ra/status/1947005193750479357 2025-07-20 18:46:26,drb_ra,ip,43.143.97.240,#Sliver #C2,https://x.com/drb_ra/status/1947005193750479357 2025-07-20 18:46:31,drb_ra,url,http://45.141.215.14:31337,#Sliver #C2,https://x.com/drb_ra/status/1947005215036633122 2025-07-20 18:46:31,drb_ra,ip,45.141.215.14,#Sliver #C2,https://x.com/drb_ra/status/1947005215036633122 2025-07-20 18:46:36,drb_ra,url,http://45.137.99.133:31337,#Sliver #C2,https://x.com/drb_ra/status/1947005236805083574 2025-07-20 18:46:36,drb_ra,ip,45.137.99.133,#Sliver #C2,https://x.com/drb_ra/status/1947005236805083574 2025-07-20 18:46:41,drb_ra,url,http://86.54.42.73:5432,#Sliver #C2,https://x.com/drb_ra/status/1947005258401477084 2025-07-20 18:46:47,drb_ra,url,http://86.54.42.73:14829,#Sliver #C2,https://x.com/drb_ra/status/1947005280581042623 2025-07-20 18:46:47,drb_ra,ip,86.54.42.73,#Sliver #C2,https://x.com/drb_ra/status/1947005280581042623 2025-07-20 18:48:50,drb_ra,url,http://3.67.64.87:41795,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947005797713482196 2025-07-20 18:48:55,drb_ra,url,http://46.183.223.75:6709,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947005819297435929 2025-07-20 18:48:55,drb_ra,ip,46.183.223.75,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947005819297435929 2025-07-20 18:49:01,drb_ra,url,http://172.94.126.28:82,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947005842819104845 2025-07-20 18:49:01,drb_ra,ip,172.94.126.28,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947005842819104845 2025-07-20 18:49:06,drb_ra,url,http://31.97.59.58:587,#C2 #Interactsh,https://x.com/drb_ra/status/1947005863861924206 2025-07-20 18:49:06,drb_ra,ip,31.97.59.58,#C2 #Interactsh,https://x.com/drb_ra/status/1947005863861924206 2025-07-20 18:49:11,drb_ra,url,http://43.160.252.15:8888,#C2 #Supershell,https://x.com/drb_ra/status/1947005885601005713 2025-07-20 18:49:11,drb_ra,ip,43.160.252.15,#C2 #Supershell,https://x.com/drb_ra/status/1947005885601005713 2025-07-20 18:49:16,drb_ra,url,http://118.161.1.151:443,#C2 #Qakbot,https://x.com/drb_ra/status/1947005907025420390 2025-07-20 18:49:16,drb_ra,ip,118.161.1.151,#C2 #Qakbot,https://x.com/drb_ra/status/1947005907025420390 2025-07-20 18:49:21,drb_ra,url,http://80.78.25.217:7443,#C2 #Mythic,https://x.com/drb_ra/status/1947005928596726011 2025-07-20 18:49:21,drb_ra,ip,80.78.25.217,#C2 #Mythic,https://x.com/drb_ra/status/1947005928596726011 2025-07-20 18:51:24,drb_ra,url,http://93.82.28.127:8000,#C2,https://x.com/drb_ra/status/1947006445913780518 2025-07-20 18:51:24,drb_ra,ip,93.82.28.127,#C2,https://x.com/drb_ra/status/1947006445913780518 2025-07-20 18:51:30,drb_ra,url,http://3.105.6.232:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1947006467082441096 2025-07-20 20:00:07,urldna_bot,domain,chibutzorjokuy2k.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947023735887647206 2025-07-20 20:00:07,urldna_bot,url,https://chibutzorjokuy2k.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947023735887647206 2025-07-20 20:36:44,cyb3rops,sha256,27c45b8ed7b8a7e5fff473b50c24028bd028a9fe8e25e5cea2bf5e676e531014,,https://x.com/cyb3rops/status/1947032951486574672 2025-07-20 21:00:03,threatquery,url,http://93.82.28.127,#malware #C2,https://x.com/threatquery/status/1947038821234708516 2025-07-20 21:00:04,threatquery,url,http://43.207.83.12,#malware #C2 #NetSupportRAT,https://x.com/threatquery/status/1947038825353474198 2025-07-20 21:00:04,threatquery,ip,43.207.83.12,#malware #C2 #NetSupportRAT,https://x.com/threatquery/status/1947038825353474198 2025-07-20 21:00:04,threatquery,url,http://118.161.1.151,#malware #C2 #Qakbot,https://x.com/threatquery/status/1947038823692517415 2025-07-20 21:37:39,cyb3rops,sha256,30955794792a7ce045660bb1e1917eef36f1d5865891b8110bf982382b305b27,,https://x.com/cyb3rops/status/1947048283504849137 2025-07-20 22:00:09,urldna_bot,domain,postnbgf.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947053944573731034 2025-07-20 22:00:09,urldna_bot,url,https://postnbgf.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947053944573731034 2025-07-20 22:45:38,catnap707,domain,D0pX.jp,#phishing,https://x.com/catnap707/status/1947065391643328965 2025-07-20 22:45:38,catnap707,url,https://D0pX.jp,#phishing,https://x.com/catnap707/status/1947065391643328965 2025-07-20 22:45:38,catnap707,domain,sineng.icu,#phishing,https://x.com/catnap707/status/1947065391643328965 2025-07-20 22:45:38,catnap707,url,http://sineng.icu/verify,#phishing,https://x.com/catnap707/status/1947065391643328965 2025-07-20 23:07:17,catnap707,domain,1vpyoum-t8e6g.gavegmans.workers.dev,#phishing,https://x.com/catnap707/status/1947070839222125012 2025-07-20 23:07:17,catnap707,url,http://1vpyoum-t8e6g.gavegmans.workers.dev/~,#phishing,https://x.com/catnap707/status/1947070839222125012 2025-07-20 23:07:17,catnap707,domain,ewxcl2.top,#phishing,https://x.com/catnap707/status/1947070839222125012 2025-07-20 23:07:17,catnap707,url,http://ewxcl2.top/DjXmH9sime,#phishing,https://x.com/catnap707/status/1947070839222125012 2025-07-20 23:07:17,catnap707,url,http://47.85.82.194,#phishing,https://x.com/catnap707/status/1947070839222125012 2025-07-20 23:07:17,catnap707,ip,47.85.82.194,#phishing,https://x.com/catnap707/status/1947070839222125012 2025-07-20 23:28:18,masaomi346,domain,2xmh7sx7.top,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,url,https://2xmh7sx7.top/W0lBfYXZ/,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,domain,8vab6go0.top,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,url,https://8vab6go0.top/W0lBfYXZ/,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,domain,bgyov3.top,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,url,https://bgyov3.top/W0lBfYXZ/,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,domain,jc6vbs.top,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,url,https://jc6vbs.top/W0lBfYXZ/,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,domain,u3d79t.top,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-20 23:28:18,masaomi346,url,https://u3d79t.top/W0lBfYXZ/,#phishing,https://x.com/masaomi346/status/1947076126507241948 2025-07-21 00:00:11,urldna_bot,domain,sp401527.sitebeat.crazydomains.com,#scam #phishing,https://x.com/urldna_bot/status/1947084150164308216 2025-07-21 00:00:11,urldna_bot,url,https://sp401527.sitebeat.crazydomains.com,#scam #phishing,https://x.com/urldna_bot/status/1947084150164308216 2025-07-21 02:00:06,urldna_bot,domain,schoolviewuniversity09876523.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947114327778930966 2025-07-21 02:00:06,urldna_bot,url,https://schoolviewuniversity09876523.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947114327778930966 2025-07-21 02:50:17,harugasumi,domain,ja-logina00.com,#phishing,https://x.com/harugasumi/status/1947126959458451662 2025-07-21 02:50:17,harugasumi,domain,ja-logina01-07.com,#phishing,https://x.com/harugasumi/status/1947126959458451662 2025-07-21 02:50:17,harugasumi,url,http://iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1947126959458451662 2025-07-21 02:50:17,harugasumi,url,https://ja-logina01-07.com,#phishing,https://x.com/harugasumi/status/1947126959458451662 2025-07-21 02:50:17,harugasumi,domain,iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1947126959458451662 2025-07-21 02:50:17,harugasumi,ip,149.104.32.236,#phishing,https://x.com/harugasumi/status/1947126959458451662 2025-07-21 02:50:17,harugasumi,url,https://ja-logina00.com,#phishing,https://x.com/harugasumi/status/1947126959458451662 2025-07-21 03:55:29,solostalking,ip,185.196.8.118,,https://x.com/solostalking/status/1947143367336534254 2025-07-21 04:00:09,urldna_bot,domain,btmail121212.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947144541116485941 2025-07-21 04:00:09,urldna_bot,url,https://btmail121212.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947144541116485941 2025-07-21 06:00:06,urldna_bot,domain,vrfycntidty.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947174725697827156 2025-07-21 06:00:06,urldna_bot,url,https://vrfycntidty.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947174725697827156 2025-07-21 06:29:56,K_N1kolenko,domain,permwgp.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1947182234877759935 2025-07-21 06:29:56,K_N1kolenko,url,http://permwgp.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1947182234877759935 2025-07-21 06:29:56,K_N1kolenko,domain,cichau.lat,#LummaStealer,https://x.com/K_N1kolenko/status/1947182234877759935 2025-07-21 06:29:56,K_N1kolenko,url,http://thoqp.lat,#LummaStealer,https://x.com/K_N1kolenko/status/1947182234877759935 2025-07-21 06:29:56,K_N1kolenko,domain,thoqp.lat,#LummaStealer,https://x.com/K_N1kolenko/status/1947182234877759935 2025-07-21 06:29:56,K_N1kolenko,url,http://cichau.lat,#LummaStealer,https://x.com/K_N1kolenko/status/1947182234877759935 2025-07-21 06:40:51,suyog41,domain,lxdv.in,,https://x.com/suyog41/status/1947184981761273893 2025-07-21 06:40:51,suyog41,md5,b9d70afc1b19a61a1557ab88c691c524,,https://x.com/suyog41/status/1947184981761273893 2025-07-21 06:40:51,suyog41,url,http://lxdv.in,,https://x.com/suyog41/status/1947184981761273893 2025-07-21 06:43:09,suyog41,domain,2.zip,,https://x.com/suyog41/status/1947185560122167745 2025-07-21 06:43:09,suyog41,url,http://2.zip,,https://x.com/suyog41/status/1947185560122167745 2025-07-21 06:43:09,suyog41,domain,digitechsoft.shop,,https://x.com/suyog41/status/1947185560122167745 2025-07-21 06:43:09,suyog41,url,http://digitechsoft.shop,,https://x.com/suyog41/status/1947185560122167745 2025-07-21 06:43:09,suyog41,md5,84b1a223014d30705bcecd3a77067adb,,https://x.com/suyog41/status/1947185560122167745 2025-07-21 06:49:25,c9lab_soc,url,http://venmo-pay.com,#scam #phishing,https://x.com/c9lab_soc/status/1947187136647635240 2025-07-21 06:49:25,c9lab_soc,domain,venmo-pay.com,#scam #phishing,https://x.com/c9lab_soc/status/1947187136647635240 2025-07-21 06:49:25,c9lab_soc,domain,blot-instagram.com,#scam #phishing,https://x.com/c9lab_soc/status/1947187136647635240 2025-07-21 06:49:25,c9lab_soc,url,http://blot-instagram.com,#scam #phishing,https://x.com/c9lab_soc/status/1947187136647635240 2025-07-21 06:49:56,ShanHolo,md5,02b4571470d83163d103112f07f1c434,,https://x.com/ShanHolo/status/1947187266968789165 2025-07-21 06:50:31,siri_urz,md5,A29A8D4E687229FA181FDAE43338DA14,#ransomware,https://x.com/siri_urz/status/1947187414310523194 2025-07-21 07:29:45,galkofahi,url,http://5.252.153.100,#malware,https://x.com/galkofahi/status/1947197288842924221 2025-07-21 07:52:47,suyog41,url,https://github.com/ZolManStaff/BOFAMET_STEALER,#stealer,https://x.com/suyog41/status/1947203084700295478 2025-07-21 07:52:47,suyog41,ip,45.86.155.150,#stealer,https://x.com/suyog41/status/1947203084700295478 2025-07-21 07:52:47,suyog41,md5,34b63bbc89b1841b864d8f783068294b,#stealer,https://x.com/suyog41/status/1947203084700295478 2025-07-21 08:00:06,urldna_bot,url,https://edminaretviceduau.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947204925915627776 2025-07-21 08:00:06,urldna_bot,domain,edminaretviceduau.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947204925915627776 2025-07-21 08:20:01,skocherhan,sha256,30955794792a7ce045660bb1e1917eef36f1d5865891b8110bf982382b305b27,,https://x.com/skocherhan/status/1947209938339549604 2025-07-21 08:23:51,skocherhan,sha256,9f73e39ca5afd64bb1bd3ed2da84c1fec67143af23ab59fe9d66387fc61b1395,#APT #Kimsuky,https://x.com/skocherhan/status/1947210903297896756 2025-07-21 08:24:03,ShadowChasing1,sha256,ccb6ca4cb385db50dad2e3b7c68a90ddee62398edb0fd41afdb793287cfbe8e6,#APT,https://x.com/ShadowChasing1/status/1947210955282407847 2025-07-21 08:55:58,harugasumi,url,https://smbintuaviperacjp.top/s1VuSF,#phishing,https://x.com/harugasumi/status/1947218984434315369 2025-07-21 08:55:58,harugasumi,domain,smbintuaviperacjp.top,#phishing,https://x.com/harugasumi/status/1947218984434315369 2025-07-21 09:30:27,skocherhan,md5,8c41d7b6b2b785e7b03fa3547693caa2,#malware #Android #Trojan,https://x.com/skocherhan/status/1947227665208860979 2025-07-21 10:00:06,urldna_bot,domain,universidadedelisboa.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947235127085486401 2025-07-21 10:00:06,urldna_bot,url,https://universidadedelisboa.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947235127085486401 2025-07-21 10:55:46,Fact_Finder03,ip,83.217.209.205,#stealer,https://x.com/Fact_Finder03/status/1947249133514874935 2025-07-21 10:55:46,Fact_Finder03,ip,185.244.50.145,#stealer,https://x.com/Fact_Finder03/status/1947249133514874935 2025-07-21 10:55:46,Fact_Finder03,ip,217.144.189.8,#stealer,https://x.com/Fact_Finder03/status/1947249133514874935 2025-07-21 11:31:32,skocherhan,url,http://www.testupdate.info/updates/ya/wrtzr_ytab_a_1/win/update_e.jpg,,https://x.com/skocherhan/status/1947258136806494685 2025-07-21 11:31:32,skocherhan,md5,42f563749f253d5bb4cac66609cb5f82,,https://x.com/skocherhan/status/1947258136806494685 2025-07-21 11:31:32,skocherhan,domain,testupdate.info,,https://x.com/skocherhan/status/1947258136806494685 2025-07-21 12:00:05,urldna_bot,domain,egypptair.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947265321817014402 2025-07-21 12:00:05,urldna_bot,url,https://egypptair.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947265321817014402 2025-07-21 12:00:33,masaomi346,url,https://secondtrend.com.au/pzz/Sites/index.html,#phishing,https://x.com/masaomi346/status/1947265439484072114 2025-07-21 12:00:33,masaomi346,domain,secondtrend.com.au,#phishing,https://x.com/masaomi346/status/1947265439484072114 2025-07-21 12:00:33,masaomi346,url,https://secondtrend.com.au/ppp/Sites/index.html,#phishing,https://x.com/masaomi346/status/1947265439484072114 2025-07-21 12:40:01,1LupeLaaw,url,http://148.72.159.0,#phishing,https://x.com/1LupeLaaw/status/1947275370819948643 2025-07-21 12:40:01,1LupeLaaw,url,http://heartrecruit76unitz.in,#phishing,https://x.com/1LupeLaaw/status/1947275370819948643 2025-07-21 12:40:01,1LupeLaaw,url,https://148.72.159.0,#phishing,https://x.com/1LupeLaaw/status/1947275370819948643 2025-07-21 12:40:01,1LupeLaaw,domain,heartrecruit76unitz.in,#phishing,https://x.com/1LupeLaaw/status/1947275370819948643 2025-07-21 12:46:47,skocherhan,sha256,716a87bcb87a4180d00904072a2c6e8c0e495b66cad88d5002f57b93ac214235,,https://x.com/skocherhan/status/1947277072541286711 2025-07-21 12:47:04,skocherhan,sha256,27c45b8ed7b8a7e5fff473b50c24028bd028a9fe8e25e5cea2bf5e676e531014,,https://x.com/skocherhan/status/1947277144960250031 2025-07-21 13:09:42,skocherhan,url,http://getcredentialingdone.com,#NetSupport,https://x.com/skocherhan/status/1947282841487688071 2025-07-21 13:09:42,skocherhan,domain,getcredentialingdone.com,#NetSupport,https://x.com/skocherhan/status/1947282841487688071 2025-07-21 13:09:42,skocherhan,url,http://185.163.45.97,#NetSupport,https://x.com/skocherhan/status/1947282841487688071 2025-07-21 13:09:42,skocherhan,ip,185.163.45.97,#NetSupport,https://x.com/skocherhan/status/1947282841487688071 2025-07-21 13:21:31,skocherhan,url,http://5.181.157.34,#NetSupport,https://x.com/skocherhan/status/1947285813542187148 2025-07-21 13:25:51,Fact_Finder03,md5,d8808209574a15e245929fcd33de8037,#ransomware,https://x.com/Fact_Finder03/status/1947286904891637889 2025-07-21 13:30:34,harugasumi,domain,yoshimotoko.com,#phishing,https://x.com/harugasumi/status/1947288090285899825 2025-07-21 13:30:34,harugasumi,url,https://www.yoshimotoko.com,#phishing,https://x.com/harugasumi/status/1947288090285899825 2025-07-21 13:32:56,skocherhan,domain,defence-nic.3utilities.com,#malware,https://x.com/skocherhan/status/1947288686816645371 2025-07-21 13:32:56,skocherhan,domain,modgovin.onthewifi.com:11520,#malware,https://x.com/skocherhan/status/1947288686816645371 2025-07-21 13:32:56,skocherhan,url,http://modgovin.onthewifi.com:11520,#malware,https://x.com/skocherhan/status/1947288686816645371 2025-07-21 13:32:56,skocherhan,url,http://101.99.92.182:9080,#malware,https://x.com/skocherhan/status/1947288686816645371 2025-07-21 13:32:56,skocherhan,url,http://defence-nic.3utilities.com,#malware,https://x.com/skocherhan/status/1947288686816645371 2025-07-21 13:32:56,skocherhan,domain,drdo-mss.serveirc.com,#malware,https://x.com/skocherhan/status/1947288686816645371 2025-07-21 13:32:56,skocherhan,url,http://drdo-mss.serveirc.com,#malware,https://x.com/skocherhan/status/1947288686816645371 2025-07-21 13:32:58,skocherhan,md5,18cf1e3be0e95be666c11d1dbde4588e,#C2,https://x.com/skocherhan/status/1947288694299267223 2025-07-21 13:32:58,skocherhan,ip,45.141.59.44,#C2,https://x.com/skocherhan/status/1947288694299267223 2025-07-21 13:32:58,skocherhan,ip,101.99.92.182,#C2,https://x.com/skocherhan/status/1947288694299267223 2025-07-21 13:32:58,skocherhan,md5,12c7e30db0c3eb636d11702baf254c0a,#C2,https://x.com/skocherhan/status/1947288694299267223 2025-07-21 13:32:58,skocherhan,md5,652febb171684b0d0a9cfe4c1e8598d7,#C2,https://x.com/skocherhan/status/1947288694299267223 2025-07-21 13:32:58,skocherhan,md5,33e1da22fb1068c73c033e3bc6bd3f1e,#C2,https://x.com/skocherhan/status/1947288694299267223 2025-07-21 14:00:09,urldna_bot,domain,sjp-e8c-38bf-40b2-baa5-97b297fa7d33.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947295535397732366 2025-07-21 14:00:09,urldna_bot,url,https://sjp-e8c-38bf-40b2-baa5-97b297fa7d33.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947295535397732366 2025-07-21 15:29:23,drb_ra,url,https://111.230.161.5/hrmregister/corpTrial/get_permission,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947317991827231011 2025-07-21 15:29:23,drb_ra,url,http://119.29.236.125:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947317991827231011 2025-07-21 15:29:23,drb_ra,ip,119.29.236.125,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947317991827231011 2025-07-21 15:29:23,drb_ra,ip,111.230.161.5,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947317991827231011 2025-07-21 15:29:28,drb_ra,ip,193.112.84.248,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318015386693834 2025-07-21 15:29:28,drb_ra,ip,42.194.154.53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318015386693834 2025-07-21 15:29:28,drb_ra,url,https://193.112.84.248/hrmregister/corpTrial/get_permission,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318015386693834 2025-07-21 15:29:28,drb_ra,url,http://42.194.154.53:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318015386693834 2025-07-21 15:29:33,drb_ra,url,http://124.223.79.218:18443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318036291109164 2025-07-21 15:29:33,drb_ra,ip,124.223.79.218,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318036291109164 2025-07-21 15:29:37,drb_ra,url,https://47.117.179.86/activity,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318052766290210 2025-07-21 15:29:37,drb_ra,url,http://47.117.179.86:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318052766290210 2025-07-21 15:29:37,drb_ra,ip,47.117.179.86,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318052766290210 2025-07-21 15:29:44,drb_ra,url,http://39.104.81.39:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318078628311409 2025-07-21 15:29:44,drb_ra,ip,39.104.81.39,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318078628311409 2025-07-21 15:29:49,drb_ra,url,http://47.111.74.144:7443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318100908536015 2025-07-21 15:29:54,drb_ra,url,http://101.126.17.8:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318121951375807 2025-07-21 15:29:54,drb_ra,ip,101.126.17.8,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318121951375807 2025-07-21 15:29:59,drb_ra,url,http://42.51.34.56:8009,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318143036150014 2025-07-21 15:29:59,drb_ra,ip,42.51.34.56,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318143036150014 2025-07-21 15:30:04,drb_ra,url,http://45.144.137.60:8457,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318164699680804 2025-07-21 15:30:04,drb_ra,ip,45.144.137.60,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318164699680804 2025-07-21 15:30:09,drb_ra,url,http://141.164.49.253:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318186233213156 2025-07-21 15:30:09,drb_ra,ip,141.164.49.253,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318186233213156 2025-07-21 15:30:13,drb_ra,ip,167.160.161.254,#Remcos #C2,https://x.com/drb_ra/status/1947318202041516431 2025-07-21 15:30:13,drb_ra,url,http://167.160.161.254:99,#Remcos #C2,https://x.com/drb_ra/status/1947318202041516431 2025-07-21 15:30:18,drb_ra,url,http://185.8.104.8:2404,#Remcos #C2,https://x.com/drb_ra/status/1947318222413324348 2025-07-21 15:30:18,drb_ra,ip,185.8.104.8,#Remcos #C2,https://x.com/drb_ra/status/1947318222413324348 2025-07-21 15:30:23,drb_ra,url,http://43.207.83.12:1224,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947318243145777324 2025-07-21 15:30:23,drb_ra,ip,43.207.83.12,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947318243145777324 2025-07-21 15:30:28,drb_ra,url,http://43.199.163.222:18245,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947318263362228409 2025-07-21 15:30:28,drb_ra,ip,43.199.163.222,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947318263362228409 2025-07-21 15:30:33,drb_ra,url,http://15.185.176.62:6009,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947318284581327257 2025-07-21 15:30:33,drb_ra,ip,15.185.176.62,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947318284581327257 2025-07-21 15:30:38,drb_ra,url,http://46.4.162.13:443,#AsyncRAT #C2,https://x.com/drb_ra/status/1947318305376641120 2025-07-21 15:30:38,drb_ra,ip,46.4.162.13,#AsyncRAT #C2,https://x.com/drb_ra/status/1947318305376641120 2025-07-21 15:30:42,drb_ra,url,http://186.190.211.108:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1947318325895213373 2025-07-21 15:30:42,drb_ra,ip,186.190.211.108,#AsyncRAT #C2,https://x.com/drb_ra/status/1947318325895213373 2025-07-21 15:30:47,drb_ra,url,http://38.102.87.235:465,#C2 #Interactsh,https://x.com/drb_ra/status/1947318346254372934 2025-07-21 15:30:52,drb_ra,url,http://38.102.87.235:80,#C2 #Interactsh,https://x.com/drb_ra/status/1947318366659650040 2025-07-21 15:30:52,drb_ra,ip,38.102.87.235,#C2 #Interactsh,https://x.com/drb_ra/status/1947318366659650040 2025-07-21 15:30:57,drb_ra,url,http://45.145.228.142:8888,#Supershell #C2,https://x.com/drb_ra/status/1947318388553826680 2025-07-21 15:30:57,drb_ra,ip,45.145.228.142,#Supershell #C2,https://x.com/drb_ra/status/1947318388553826680 2025-07-21 15:31:03,drb_ra,url,http://118.195.157.204:8888,#Supershell #C2,https://x.com/drb_ra/status/1947318410611757499 2025-07-21 15:31:03,drb_ra,ip,118.195.157.204,#Supershell #C2,https://x.com/drb_ra/status/1947318410611757499 2025-07-21 15:31:08,drb_ra,url,http://35.181.43.130:443,#C2 #Havoc,https://x.com/drb_ra/status/1947318431268602154 2025-07-21 15:31:08,drb_ra,ip,35.181.43.130,#C2 #Havoc,https://x.com/drb_ra/status/1947318431268602154 2025-07-21 15:31:12,drb_ra,url,http://45.91.201.244:443,#C2 #Havoc,https://x.com/drb_ra/status/1947318451137024357 2025-07-21 15:31:12,drb_ra,ip,45.91.201.244,#C2 #Havoc,https://x.com/drb_ra/status/1947318451137024357 2025-07-21 15:31:17,drb_ra,ip,76.6.26.222,#C2 #Deimos,https://x.com/drb_ra/status/1947318471617888442 2025-07-21 15:31:17,drb_ra,url,http://76.6.26.222:8080,#C2 #Deimos,https://x.com/drb_ra/status/1947318471617888442 2025-07-21 15:31:23,drb_ra,url,http://34.61.193.219:7443,#C2 #Mythic,https://x.com/drb_ra/status/1947318494552363205 2025-07-21 15:31:28,drb_ra,url,http://140.84.160.190:7443,#C2 #Mythic,https://x.com/drb_ra/status/1947318515536441596 2025-07-21 15:31:28,drb_ra,ip,140.84.160.190,#C2 #Mythic,https://x.com/drb_ra/status/1947318515536441596 2025-07-21 15:31:33,drb_ra,url,http://64.176.61.71:31337,#Sliver #C2,https://x.com/drb_ra/status/1947318536667316242 2025-07-21 15:31:33,drb_ra,ip,64.176.61.71,#Sliver #C2,https://x.com/drb_ra/status/1947318536667316242 2025-07-21 15:31:38,drb_ra,url,http://34.155.6.13:443,#Sliver #C2,https://x.com/drb_ra/status/1947318557609443616 2025-07-21 15:31:38,drb_ra,ip,34.155.6.13,#Sliver #C2,https://x.com/drb_ra/status/1947318557609443616 2025-07-21 15:31:43,drb_ra,ip,47.245.61.75,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318579570909617 2025-07-21 15:31:43,drb_ra,url,http://47.245.61.75:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318579570909617 2025-07-21 15:31:43,drb_ra,domain,tianqi.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318579570909617 2025-07-21 15:31:43,drb_ra,url,https://www.tianqi.com/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318579570909617 2025-07-21 15:31:48,drb_ra,url,http://175.178.104.252:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318601033113608 2025-07-21 15:31:48,drb_ra,ip,175.178.104.252,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318601033113608 2025-07-21 15:31:53,drb_ra,url,http://106.12.215.229:8099,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318622344372460 2025-07-21 15:31:53,drb_ra,ip,106.12.215.229,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318622344372460 2025-07-21 15:31:58,drb_ra,url,http://47.111.74.144:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318644507021792 2025-07-21 15:31:58,drb_ra,ip,47.111.74.144,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318644507021792 2025-07-21 15:32:04,drb_ra,ip,119.45.11.145,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318665910567207 2025-07-21 15:32:04,drb_ra,url,http://119.45.11.145:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318665910567207 2025-07-21 15:32:09,drb_ra,url,http://117.72.179.59:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318686873776585 2025-07-21 15:32:09,drb_ra,ip,117.72.179.59,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318686873776585 2025-07-21 15:32:14,drb_ra,url,https://1.13.187.97/cm,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318707828424753 2025-07-21 15:32:14,drb_ra,url,http://1.13.187.97:4433,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947318707828424753 2025-07-21 16:00:09,urldna_bot,domain,jkdds.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947325736823451731 2025-07-21 16:00:09,urldna_bot,url,https://jkdds.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947325736823451731 2025-07-21 16:04:27,skocherhan,ip,93.82.28.127,,https://x.com/skocherhan/status/1947326819264540929 2025-07-21 16:04:27,skocherhan,url,http://93.82.28.127,,https://x.com/skocherhan/status/1947326819264540929 2025-07-21 16:51:27,skocherhan,url,http://43.207.83.12,,https://x.com/skocherhan/status/1947338646169747621 2025-07-21 16:52:34,skocherhan,domain,unpac.me,,https://x.com/skocherhan/status/1947338926227599456 2025-07-21 16:52:34,skocherhan,url,https://www.unpac.me/results/04024e2b-afc8-43cf-bdfa-0abf709f48da,,https://x.com/skocherhan/status/1947338926227599456 2025-07-21 16:54:50,skocherhan,ip,12.101.0.45,,https://x.com/skocherhan/status/1947339496879513898 2025-07-21 18:47:15,drb_ra,url,http://39.40.146.191:995,#Qakbot #C2,https://x.com/drb_ra/status/1947367785438335114 2025-07-21 18:47:15,drb_ra,ip,39.40.146.191,#Qakbot #C2,https://x.com/drb_ra/status/1947367785438335114 2025-07-21 18:47:20,drb_ra,url,http://3.249.233.49:445,#C2,https://x.com/drb_ra/status/1947367806250451309 2025-07-21 18:47:24,drb_ra,url,http://5.166.42.9:443,#C2 #Havoc,https://x.com/drb_ra/status/1947367825695289843 2025-07-21 18:47:29,drb_ra,url,http://216.238.83.34:8081,#C2 #Bianlian,https://x.com/drb_ra/status/1947367846155071894 2025-07-21 18:47:29,drb_ra,ip,216.238.83.34,#C2 #Bianlian,https://x.com/drb_ra/status/1947367846155071894 2025-07-21 18:47:33,drb_ra,url,http://3.221.146.143:443,#Deimos #C2,https://x.com/drb_ra/status/1947367864043762034 2025-07-21 18:47:40,drb_ra,url,http://76.223.6.48:443,#Deimos #C2,https://x.com/drb_ra/status/1947367891130573258 2025-07-21 18:47:40,drb_ra,ip,76.223.6.48,#Deimos #C2,https://x.com/drb_ra/status/1947367891130573258 2025-07-21 18:47:45,drb_ra,url,http://194.58.68.191:443,#Deimos #C2,https://x.com/drb_ra/status/1947367911305117980 2025-07-21 18:47:45,drb_ra,ip,194.58.68.191,#Deimos #C2,https://x.com/drb_ra/status/1947367911305117980 2025-07-21 18:47:49,drb_ra,url,http://23.94.2.163:31337,#C2 #Sliver,https://x.com/drb_ra/status/1947367930053710242 2025-07-21 18:47:49,drb_ra,ip,23.94.2.163,#C2 #Sliver,https://x.com/drb_ra/status/1947367930053710242 2025-07-21 18:47:53,drb_ra,url,http://18.188.97.119:443,#C2 #Sliver,https://x.com/drb_ra/status/1947367945589477470 2025-07-21 18:47:53,drb_ra,ip,18.188.97.119,#C2 #Sliver,https://x.com/drb_ra/status/1947367945589477470 2025-07-21 18:49:58,drb_ra,url,http://147.124.215.2:5577,#C2 #Remcos,https://x.com/drb_ra/status/1947368469281771963 2025-07-21 18:49:58,drb_ra,ip,147.124.215.2,#C2 #Remcos,https://x.com/drb_ra/status/1947368469281771963 2025-07-21 18:50:03,drb_ra,url,http://196.251.69.245:2404,#C2 #Remcos,https://x.com/drb_ra/status/1947368490509156462 2025-07-21 18:50:03,drb_ra,ip,196.251.69.245,#C2 #Remcos,https://x.com/drb_ra/status/1947368490509156462 2025-07-21 18:50:07,drb_ra,url,http://206.123.152.39:2404,#C2 #Remcos,https://x.com/drb_ra/status/1947368510239182998 2025-07-21 18:50:07,drb_ra,ip,206.123.152.39,#C2 #Remcos,https://x.com/drb_ra/status/1947368510239182998 2025-07-21 18:50:12,drb_ra,url,http://198.23.175.45:4900,#C2 #Remcos,https://x.com/drb_ra/status/1947368530376069449 2025-07-21 18:50:12,drb_ra,ip,198.23.175.45,#C2 #Remcos,https://x.com/drb_ra/status/1947368530376069449 2025-07-21 18:50:17,drb_ra,url,http://45.138.16.91:1024,#C2 #Remcos,https://x.com/drb_ra/status/1947368551376937034 2025-07-21 18:50:17,drb_ra,ip,45.138.16.91,#C2 #Remcos,https://x.com/drb_ra/status/1947368551376937034 2025-07-21 18:50:22,drb_ra,url,http://196.251.86.186:37848,#C2 #Remcos,https://x.com/drb_ra/status/1947368572369383528 2025-07-21 18:50:22,drb_ra,ip,196.251.86.186,#C2 #Remcos,https://x.com/drb_ra/status/1947368572369383528 2025-07-21 18:50:27,drb_ra,url,http://51.44.83.45:39320,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947368593663946813 2025-07-21 18:50:27,drb_ra,ip,51.44.83.45,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947368593663946813 2025-07-21 18:50:32,drb_ra,url,http://182.52.120.78:7443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947368615415529722 2025-07-21 18:50:32,drb_ra,ip,182.52.120.78,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947368615415529722 2025-07-21 18:50:38,drb_ra,url,http://93.232.100.194:82,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947368637578268794 2025-07-21 18:50:38,drb_ra,ip,93.232.100.194,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947368637578268794 2025-07-21 18:50:43,drb_ra,url,http://185.73.114.229:443,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947368658763751895 2025-07-21 18:50:43,drb_ra,ip,185.73.114.229,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947368658763751895 2025-07-21 18:50:48,drb_ra,url,http://115.77.9.121:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947368680817303990 2025-07-21 18:50:48,drb_ra,ip,115.77.9.121,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947368680817303990 2025-07-21 19:38:28,skocherhan,url,http://t.me/CheatZone4U,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,pandhnyk.top,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://pandhnyk.top/zids,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,tunenrnc.top,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://tunenrnc.top/xodz,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://permwgp.xyz/xlak,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,recopcwr.top,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://recopcwr.top/atki,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,ultracpj.xyz,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://ultracpj.xyz/apgk,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,vegemuoe.top,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://vegemuoe.top/xauy,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,seruneqy.live,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://seruneqy.live/akiz,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,siniavzv.life,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://siniavzv.life/xajz,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,domain,strujqwn.xyz,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,url,http://strujqwn.xyz/xkkd,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:38:28,skocherhan,md5,06800a0ad773925d485e7a539997ad57,#Lumma,https://x.com/skocherhan/status/1947380676229304476 2025-07-21 19:44:14,skocherhan,url,http://t.me/partisanclan,#Lumma,https://x.com/skocherhan/status/1947382128519352730 2025-07-21 19:44:14,skocherhan,domain,swalocf.lat,#Lumma,https://x.com/skocherhan/status/1947382128519352730 2025-07-21 19:44:14,skocherhan,url,http://swalocf.lat/atxi,#Lumma,https://x.com/skocherhan/status/1947382128519352730 2025-07-21 19:44:14,skocherhan,md5,4c0a8a568317573f312728542ef577c2,#Lumma,https://x.com/skocherhan/status/1947382128519352730 2025-07-21 20:00:06,urldna_bot,domain,sake-siromani.github.io,#phishing #scam,https://x.com/urldna_bot/status/1947386120154583252 2025-07-21 20:00:06,urldna_bot,url,http://sake-siromani.github.io/Amazon-Clone,#phishing #scam,https://x.com/urldna_bot/status/1947386120154583252 2025-07-21 20:18:15,skocherhan,ip,45.191.66.77,,https://x.com/skocherhan/status/1947390688288772266 2025-07-21 21:00:16,threatquery,url,http://76.223.6.48,#C2 #malware,https://x.com/threatquery/status/1947401261663281251 2025-07-21 21:00:18,threatquery,url,http://5.166.42.9,#C2 #Havoc #malware,https://x.com/threatquery/status/1947401272073626072 2025-07-21 21:00:19,threatquery,url,http://39.40.146.191,#C2 #malware #Qakbot,https://x.com/threatquery/status/1947401273650622669 2025-07-21 22:01:59,catnap707,domain,sbiasddassa.top,#phishing,https://x.com/catnap707/status/1947416794614141429 2025-07-21 22:01:59,catnap707,url,http://sbiasddassa.top/etgate,#phishing,https://x.com/catnap707/status/1947416794614141429 2025-07-21 22:01:59,catnap707,url,http://104.255.154.40,#phishing,https://x.com/catnap707/status/1947416794614141429 2025-07-21 22:01:59,catnap707,ip,104.255.154.40,#phishing,https://x.com/catnap707/status/1947416794614141429 2025-07-21 22:21:03,catnap707,domain,sxcp0j.top,#phishing,https://x.com/catnap707/status/1947421589928358221 2025-07-21 22:21:03,catnap707,url,http://sxcp0j.top/apemgu/,#phishing,https://x.com/catnap707/status/1947421589928358221 2025-07-21 22:21:03,catnap707,url,http://47.76.208.57,#phishing,https://x.com/catnap707/status/1947421589928358221 2025-07-21 22:21:03,catnap707,ip,47.76.208.57,#phishing,https://x.com/catnap707/status/1947421589928358221 2025-07-21 22:25:10,catnap707,domain,am3ohs.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://am3ohs.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,chunai520.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://chunai520.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,eo8hna.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://eo8hna.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,g58kap.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://g58kap.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,hu9hbq.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://hu9hbq.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,la7tzd.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://la7tzd.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,ms1jbs.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://ms1jbs.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,ng8ryb.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://ng8ryb.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,ol7zoe.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://ol7zoe.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,rs4wgu.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://rs4wgu.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://sxcp0j.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,tw4qyt.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://tw4qyt.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,un0cyx.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://un0cyx.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,domain,yg9ysl.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:25:10,catnap707,url,http://yg9ysl.top,#phishing,https://x.com/catnap707/status/1947422627368472702 2025-07-21 22:49:25,skocherhan,domain,duniafajar.online,#opendir,https://x.com/skocherhan/status/1947428731389415819 2025-07-21 22:49:25,skocherhan,url,http://duniafajar.online/patches,#opendir,https://x.com/skocherhan/status/1947428731389415819 2025-07-21 22:49:37,catnap707,url,http://oms6tfwl3.com/jp,#phishing,https://x.com/catnap707/status/1947428782601867698 2025-07-21 22:49:37,catnap707,url,http://185.23.182.216,#phishing,https://x.com/catnap707/status/1947428782601867698 2025-07-21 22:49:37,catnap707,ip,185.23.182.216,#phishing,https://x.com/catnap707/status/1947428782601867698 2025-07-21 22:51:14,catnap707,domain,oms6tfwl3.com,#phishing,https://x.com/catnap707/status/1947429186794324180 2025-07-21 22:51:14,catnap707,url,http://oms6tfwl3.com,#phishing,https://x.com/catnap707/status/1947429186794324180 2025-07-21 22:51:14,catnap707,domain,onza1.com,#phishing,https://x.com/catnap707/status/1947429186794324180 2025-07-21 22:51:14,catnap707,url,http://onza1.com,#phishing,https://x.com/catnap707/status/1947429186794324180 2025-07-21 22:58:08,drb_ra,url,http://139.155.104.147:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947430925471539681 2025-07-21 22:58:08,drb_ra,ip,139.155.104.147,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947430925471539681 2025-07-21 22:58:12,drb_ra,url,http://113.44.139.80:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947430942504817084 2025-07-21 22:58:12,drb_ra,ip,113.44.139.80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947430942504817084 2025-07-21 23:05:14,skocherhan,url,http://t.me/heppioollkhgf,#Lumma,https://x.com/skocherhan/status/1947432711913693405 2025-07-21 23:05:14,skocherhan,domain,libdm.top,#Lumma,https://x.com/skocherhan/status/1947432711913693405 2025-07-21 23:05:14,skocherhan,url,http://libdm.top/skal,#Lumma,https://x.com/skocherhan/status/1947432711913693405 2025-07-21 23:05:14,skocherhan,md5,23cf4d91712edc9101f5ae307538bb89,#Lumma,https://x.com/skocherhan/status/1947432711913693405 2025-07-21 23:12:18,masaomi346,domain,bojmuh.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://bojmuh.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,bpgdxg.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://bpgdxg.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,dmnopq.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://dmnopq.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,ellqpv.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://ellqpv.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,fiugpz.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://fiugpz.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,fjktbt.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://fjktbt.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,fppzj.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://fppzj.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,gdqdvt.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://gdqdvt.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,nunshang.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://nunshang.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,pqrsxyz.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://pqrsxyz.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,domain,pxcfjv.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:18,masaomi346,url,https://pxcfjv.cn,#phishing,https://x.com/masaomi346/status/1947434488558194914 2025-07-21 23:12:48,masaomi346,domain,qxmcsd.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://qxmcsd.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,rjuqib.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://rjuqib.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,sgqxmj.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://sgqxmj.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,viwcr.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://viwcr.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,vnupld.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://vnupld.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,vrblv.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://vrblv.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,wqbigo.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://wqbigo.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,xojnbd.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://xojnbd.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,xvelc.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://xvelc.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,yctibb.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://yctibb.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,yykmmx.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://yykmmx.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,domain,zangpiao.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:12:48,masaomi346,url,https://zangpiao.cn,#phishing,https://x.com/masaomi346/status/1947434614320206263 2025-07-21 23:25:00,soursecc,domain,stealer.cy,#APT #malware,https://x.com/soursecc/status/1947437684219130055 2025-07-21 23:25:00,soursecc,url,http://stealer.cy,#APT #malware,https://x.com/soursecc/status/1947437684219130055 2025-07-21 23:25:00,soursecc,domain,pentagon.cy,#APT #malware,https://x.com/soursecc/status/1947437684219130055 2025-07-21 23:25:00,soursecc,url,http://pentagon.cy,#APT #malware,https://x.com/soursecc/status/1947437684219130055 2025-07-22 00:00:07,urldna_bot,domain,attnewverrsion.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947446524469805315 2025-07-22 00:00:07,urldna_bot,url,https://attnewverrsion.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947446524469805315 2025-07-22 00:10:40,drb_ra,domain,musician.kugou.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449177711276185 2025-07-22 00:10:40,drb_ra,url,https://musician.kugou.com/dist/css/bootstrap.min.css,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449177711276185 2025-07-22 00:10:40,drb_ra,url,http://123.56.203.56:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449177711276185 2025-07-22 00:10:40,drb_ra,ip,123.56.203.56,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449177711276185 2025-07-22 00:10:45,drb_ra,url,http://70.153.73.172:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449199240335540 2025-07-22 00:10:45,drb_ra,ip,70.153.73.172,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449199240335540 2025-07-22 00:10:50,drb_ra,url,http://180.76.55.45:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449220430237785 2025-07-22 00:10:50,drb_ra,ip,180.76.55.45,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947449220430237785 2025-07-22 00:42:34,masaomi346,domain,itechht.com,#phishing,https://x.com/masaomi346/status/1947457206326263816 2025-07-22 00:42:34,masaomi346,url,https://www.itechht.com,#phishing,https://x.com/masaomi346/status/1947457206326263816 2025-07-22 01:34:29,harugasumi,ip,172.174.82.132,,https://x.com/harugasumi/status/1947470270840860891 2025-07-22 01:34:29,harugasumi,url,http://172.174.82.132,,https://x.com/harugasumi/status/1947470270840860891 2025-07-22 01:35:00,skocherhan,domain,mail.hhipune.com,#AgentTesla,https://x.com/skocherhan/status/1947470400981499999 2025-07-22 01:35:00,skocherhan,url,http://mail.hhipune.com,#AgentTesla,https://x.com/skocherhan/status/1947470400981499999 2025-07-22 01:35:00,skocherhan,domain,hhipune.com,#AgentTesla,https://x.com/skocherhan/status/1947470400981499999 2025-07-22 01:35:00,skocherhan,url,http://hhipune.com,#AgentTesla,https://x.com/skocherhan/status/1947470400981499999 2025-07-22 02:00:06,urldna_bot,domain,volunteerfederallsavings.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947476716256903641 2025-07-22 02:00:06,urldna_bot,url,https://volunteerfederallsavings.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947476716256903641 2025-07-22 02:19:40,sicehice,domain,schwabel.top,#phishing,https://x.com/sicehice/status/1947481642551153106 2025-07-22 02:19:40,sicehice,url,https://schwabel.top/?qr=bsemor,#phishing,https://x.com/sicehice/status/1947481642551153106 2025-07-22 02:19:40,sicehice,ip,43.166.138.217,#phishing,https://x.com/sicehice/status/1947481642551153106 2025-07-22 02:19:40,sicehice,url,http://schwabel.top,#phishing,https://x.com/sicehice/status/1947481642551153106 2025-07-22 03:09:36,harugasumi,url,https://ja-logins00.com,#phishing,https://x.com/harugasumi/status/1947494206228074575 2025-07-22 03:09:36,harugasumi,url,https://ja-logins01-05.com,#phishing,https://x.com/harugasumi/status/1947494206228074575 2025-07-22 03:09:36,harugasumi,domain,ja-logins00.com,#phishing,https://x.com/harugasumi/status/1947494206228074575 2025-07-22 03:09:36,harugasumi,ip,149.104.32.236,#phishing,https://x.com/harugasumi/status/1947494206228074575 2025-07-22 03:09:36,harugasumi,domain,iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1947494206228074575 2025-07-22 03:09:36,harugasumi,url,http://iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1947494206228074575 2025-07-22 03:09:36,harugasumi,domain,ja-logins01-05.com,#phishing,https://x.com/harugasumi/status/1947494206228074575 2025-07-22 03:36:21,fbgwls245,domain,securo45z554mw7rgrt7wcgv5eenj2xmxyrsdj3fcjsvindu63s4bsid.onion,#ransomware,https://x.com/fbgwls245/status/1947500939268763994 2025-07-22 03:36:21,fbgwls245,url,http://securo45z554mw7rgrt7wcgv5eenj2xmxyrsdj3fcjsvindu63s4bsid.onion,#ransomware,https://x.com/fbgwls245/status/1947500939268763994 2025-07-22 03:45:00,momomopas,domain,fantasy-formerly-waves-consolidated.trycloudflare.com,#opendir,https://x.com/momomopas/status/1947503115672129565 2025-07-22 03:45:00,momomopas,url,https://fantasy-formerly-waves-consolidated.trycloudflare.com,#opendir,https://x.com/momomopas/status/1947503115672129565 2025-07-22 03:45:00,momomopas,domain,athens-dash-alaska-syria.trycloudflare.com,#opendir,https://x.com/momomopas/status/1947503115672129565 2025-07-22 03:45:00,momomopas,url,https://athens-dash-alaska-syria.trycloudflare.com,#opendir,https://x.com/momomopas/status/1947503115672129565 2025-07-22 04:00:06,urldna_bot,url,https://zimbfree.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947506915308618123 2025-07-22 04:00:06,urldna_bot,domain,zimbfree.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947506915308618123 2025-07-22 04:43:52,harugasumi,url,https://smbintuavipcemrjp.top/s1VuSF,#phishing,https://x.com/harugasumi/status/1947517929291190702 2025-07-22 04:43:52,harugasumi,domain,smbintuavipcemrjp.top,#phishing,https://x.com/harugasumi/status/1947517929291190702 2025-07-22 05:00:36,harugasumi,url,https://amex.kochiseit.com,#phishing,https://x.com/harugasumi/status/1947522141286764629 2025-07-22 05:00:36,harugasumi,domain,amex.kochiseit.com,#phishing,https://x.com/harugasumi/status/1947522141286764629 2025-07-22 05:51:22,suyog41,domain,kingyouneverloss.com,,https://x.com/suyog41/status/1947534918139187413 2025-07-22 05:51:22,suyog41,url,http://kingyouneverloss.com,,https://x.com/suyog41/status/1947534918139187413 2025-07-22 05:51:22,suyog41,md5,c55775a6d1539aa91577bcb1bcd464f9,,https://x.com/suyog41/status/1947534918139187413 2025-07-22 06:00:08,urldna_bot,url,https://orange-grass-2866.darcey922.workers.dev/bdo-form/sso/auth/realms/retail/custom-login-actions/forgot-username,#phishing #scam,https://x.com/urldna_bot/status/1947537123881427246 2025-07-22 06:00:08,urldna_bot,domain,orange-grass-2866.darcey922.workers.dev,#phishing #scam,https://x.com/urldna_bot/status/1947537123881427246 2025-07-22 06:03:50,suyog41,md5,eb80bb9ab64858217c368fc75da491a5,,https://x.com/suyog41/status/1947538054006378881 2025-07-22 06:03:50,suyog41,md5,1db49990c0fe0c679dbba9a384a2b49f,,https://x.com/suyog41/status/1947538054006378881 2025-07-22 06:03:50,suyog41,md5,8663315b7daa8e62245fa5af97681526,,https://x.com/suyog41/status/1947538054006378881 2025-07-22 06:03:50,suyog41,md5,872d3b6dc1aab5d4e4ba74e4998fa774,,https://x.com/suyog41/status/1947538054006378881 2025-07-22 06:46:53,drb_ra,ip,39.99.244.83,#C2 #Havoc,https://x.com/drb_ra/status/1947548887364899069 2025-07-22 06:46:53,drb_ra,url,http://39.99.244.83:443,#C2 #Havoc,https://x.com/drb_ra/status/1947548887364899069 2025-07-22 06:46:58,drb_ra,url,http://18.254.255.99:443,#Deimos #C2,https://x.com/drb_ra/status/1947548908743283185 2025-07-22 06:46:58,drb_ra,ip,18.254.255.99,#Deimos #C2,https://x.com/drb_ra/status/1947548908743283185 2025-07-22 06:47:03,drb_ra,url,http://47.111.1.101:7443,#Mythic #C2,https://x.com/drb_ra/status/1947548929320779952 2025-07-22 06:47:03,drb_ra,ip,47.111.1.101,#Mythic #C2,https://x.com/drb_ra/status/1947548929320779952 2025-07-22 06:47:06,drb_ra,ip,45.150.108.175,#Mythic #C2,https://x.com/drb_ra/status/1947548944046731654 2025-07-22 06:47:06,drb_ra,url,http://45.150.108.175:7443,#Mythic #C2,https://x.com/drb_ra/status/1947548944046731654 2025-07-22 06:47:12,drb_ra,ip,51.91.248.230,#Mythic #C2,https://x.com/drb_ra/status/1947548968470114504 2025-07-22 06:47:12,drb_ra,url,http://51.91.248.230:7443,#Mythic #C2,https://x.com/drb_ra/status/1947548968470114504 2025-07-22 06:47:17,drb_ra,url,http://65.109.169.219:7443,#Mythic #C2,https://x.com/drb_ra/status/1947548988846055839 2025-07-22 06:47:17,drb_ra,ip,65.109.169.219,#Mythic #C2,https://x.com/drb_ra/status/1947548988846055839 2025-07-22 06:47:22,drb_ra,ip,45.252.249.223,#Sliver #C2,https://x.com/drb_ra/status/1947549010975236551 2025-07-22 06:47:22,drb_ra,url,http://45.252.249.223:31337,#Sliver #C2,https://x.com/drb_ra/status/1947549010975236551 2025-07-22 06:47:27,drb_ra,ip,45.66.248.184,#Sliver #C2,https://x.com/drb_ra/status/1947549031875444994 2025-07-22 06:47:27,drb_ra,url,http://45.66.248.184:443,#Sliver #C2,https://x.com/drb_ra/status/1947549031875444994 2025-07-22 06:47:32,drb_ra,ip,107.175.233.90,#C2 #Sliver,https://x.com/drb_ra/status/1947549053094350980 2025-07-22 06:47:32,drb_ra,url,http://107.175.233.90:31337,#C2 #Sliver,https://x.com/drb_ra/status/1947549053094350980 2025-07-22 06:47:37,drb_ra,ip,166.108.232.68,#C2 #Sliver,https://x.com/drb_ra/status/1947549074544054682 2025-07-22 06:47:37,drb_ra,url,http://166.108.232.68:43335,#C2 #Sliver,https://x.com/drb_ra/status/1947549074544054682 2025-07-22 06:47:41,drb_ra,url,http://167.172.188.68:443,#C2 #Sliver,https://x.com/drb_ra/status/1947549090289492407 2025-07-22 06:47:41,drb_ra,ip,167.172.188.68,#C2 #Sliver,https://x.com/drb_ra/status/1947549090289492407 2025-07-22 06:47:46,drb_ra,url,http://213.111.148.83:31337,#C2 #Sliver,https://x.com/drb_ra/status/1947549111273853210 2025-07-22 06:47:51,drb_ra,ip,213.111.148.83,#C2 #Sliver,https://x.com/drb_ra/status/1947549132316377275 2025-07-22 06:47:51,drb_ra,url,http://213.111.148.83:8888,#C2 #Sliver,https://x.com/drb_ra/status/1947549132316377275 2025-07-22 06:49:54,drb_ra,url,http://185.183.84.191:8443,#C2,https://x.com/drb_ra/status/1947549649545347199 2025-07-22 06:49:54,drb_ra,ip,185.183.84.191,#C2,https://x.com/drb_ra/status/1947549649545347199 2025-07-22 06:49:58,drb_ra,url,http://45.84.227.95:8080,#C2,https://x.com/drb_ra/status/1947549663759941831 2025-07-22 06:49:58,drb_ra,ip,45.84.227.95,#C2,https://x.com/drb_ra/status/1947549663759941831 2025-07-22 06:50:02,drb_ra,ip,13.208.32.85,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947549679786262650 2025-07-22 06:50:02,drb_ra,url,http://13.208.32.85:19518,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947549679786262650 2025-07-22 06:50:07,drb_ra,url,http://13.51.176.77:5903,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947549700774654362 2025-07-22 06:50:07,drb_ra,ip,13.51.176.77,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947549700774654362 2025-07-22 06:50:11,drb_ra,url,http://185.49.126.83:9999,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947549721540891028 2025-07-22 06:50:11,drb_ra,ip,185.49.126.83,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947549721540891028 2025-07-22 06:50:16,drb_ra,ip,95.111.203.254,#C2 #Interactsh,https://x.com/drb_ra/status/1947549742218555725 2025-07-22 06:50:16,drb_ra,url,http://95.111.203.254:587,#C2 #Interactsh,https://x.com/drb_ra/status/1947549742218555725 2025-07-22 06:50:21,drb_ra,url,http://139.159.238.207:8888,#C2 #Supershell,https://x.com/drb_ra/status/1947549762741563512 2025-07-22 06:50:21,drb_ra,ip,139.159.238.207,#C2 #Supershell,https://x.com/drb_ra/status/1947549762741563512 2025-07-22 06:50:26,drb_ra,url,http://185.242.5.90:4040,#C2 #Dcrat,https://x.com/drb_ra/status/1947549782962278899 2025-07-22 06:50:26,drb_ra,ip,185.242.5.90,#C2 #Dcrat,https://x.com/drb_ra/status/1947549782962278899 2025-07-22 06:50:31,drb_ra,url,http://2.50.54.1:443,#C2 #Qakbot,https://x.com/drb_ra/status/1947549803954507871 2025-07-22 06:50:36,drb_ra,url,http://46.246.212.103:995,#C2 #Qakbot,https://x.com/drb_ra/status/1947549824359833630 2025-07-22 06:50:36,drb_ra,ip,46.246.212.103,#C2 #Qakbot,https://x.com/drb_ra/status/1947549824359833630 2025-07-22 06:50:41,drb_ra,url,http://107.173.9.50:443,#C2 #Havoc,https://x.com/drb_ra/status/1947549844975063076 2025-07-22 06:50:41,drb_ra,ip,107.173.9.50,#C2 #Havoc,https://x.com/drb_ra/status/1947549844975063076 2025-07-22 06:50:46,drb_ra,ip,80.149.60.140,#C2 #Havoc,https://x.com/drb_ra/status/1947549864671236437 2025-07-22 06:50:46,drb_ra,url,http://80.149.60.140:443,#C2 #Havoc,https://x.com/drb_ra/status/1947549864671236437 2025-07-22 06:52:49,drb_ra,ip,60.205.3.34,#C2,https://x.com/drb_ra/status/1947550382202429872 2025-07-22 06:52:49,drb_ra,url,http://60.205.3.34:8443,#C2,https://x.com/drb_ra/status/1947550382202429872 2025-07-22 07:11:53,FalconFeedsio,url,http://t.login.gov.il,,https://x.com/FalconFeedsio/status/1947555179919974690 2025-07-22 07:11:53,FalconFeedsio,domain,t.login.gov.il,,https://x.com/FalconFeedsio/status/1947555179919974690 2025-07-22 07:11:53,FalconFeedsio,url,http://netanya.net.il,,https://x.com/FalconFeedsio/status/1947555179919974690 2025-07-22 07:11:53,FalconFeedsio,domain,netanya.net.il,,https://x.com/FalconFeedsio/status/1947555179919974690 2025-07-22 08:00:09,urldna_bot,domain,macrochipsperu.com,#scam #phishing,https://x.com/urldna_bot/status/1947567329144971529 2025-07-22 08:00:09,urldna_bot,url,http://macrochipsperu.com/spotify/auth/login.php,#scam #phishing,https://x.com/urldna_bot/status/1947567329144971529 2025-07-22 08:39:52,skocherhan,ip,196.251.84.137,#Xworm,https://x.com/skocherhan/status/1947577320555889023 2025-07-22 08:39:52,skocherhan,md5,56d0e1e06598562c8fa70c657464cf77,#Xworm,https://x.com/skocherhan/status/1947577320555889023 2025-07-22 08:39:52,skocherhan,url,http://196.251.84.137:1337/RunShell.exe,#Xworm,https://x.com/skocherhan/status/1947577320555889023 2025-07-22 08:51:42,skocherhan,ip,83.143.112.163,#Xworm,https://x.com/skocherhan/status/1947580299518304271 2025-07-22 08:51:42,skocherhan,url,http://83.143.112.163:1337/RunShell.exe,#Xworm,https://x.com/skocherhan/status/1947580299518304271 2025-07-22 09:02:08,MeridianEU,domain,npnjs.com,#phishing,https://x.com/MeridianEU/status/1947582927648276628 2025-07-22 09:02:08,MeridianEU,url,http://npnjs.com,#phishing,https://x.com/MeridianEU/status/1947582927648276628 2025-07-22 09:17:01,skocherhan,domain,108653.xyz,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,url,http://www.kl3u2l.top/l3zk/,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,domain,aksow.xyz,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,url,http://www.aksow.xyz/0oon/,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,domain,voguevanguard.xyz,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,url,http://www.voguevanguard.xyz/z54p/,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,domain,kl3u2l.top,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,url,http://www.gedankenlaut.xyz/wy7k/,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,domain,areyouhappy.net,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,url,http://www.areyouhappy.net/thgi/,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,md5,d04c67f7e374d01561e41846eb11ac92,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,url,http://www.108653.xyz/968a/,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:17:01,skocherhan,domain,gedankenlaut.xyz,#Formbook,https://x.com/skocherhan/status/1947586671651742103 2025-07-22 09:19:41,smica83,url,https://github.com/MockaPro/PS1/,#Xworm,https://x.com/smica83/status/1947587344200253809 2025-07-22 09:29:13,skocherhan,url,http://github.com/babaproqrqqw,,https://x.com/skocherhan/status/1947589739617615932 2025-07-22 10:00:08,urldna_bot,url,https://epeccom.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947597519879328003 2025-07-22 10:00:08,urldna_bot,domain,epeccom.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947597519879328003 2025-07-22 10:06:54,c9lab_soc,domain,com-google.com,#phishing #scam,https://x.com/c9lab_soc/status/1947599224629322154 2025-07-22 10:06:54,c9lab_soc,url,http://com-google.com,#phishing #scam,https://x.com/c9lab_soc/status/1947599224629322154 2025-07-22 10:14:39,skocherhan,url,http://www.kasegitai.tokyo/fo8o/,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,domain,df56e.top,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,url,http://www.3xfootball.com/fo8o/,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,url,http://www.lp9l3a.top/4lbw/,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,domain,lp9l3a.top,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,domain,3xfootball.com,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,url,http://www.df56e.top/qx92/,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,domain,magmadokum.com,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,md5,7851343b15eecb12ffc2b9755f8f6df6,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,md5,a32e770c62bab92fb9f5413a70a62836,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,url,http://www.magmadokum.com/fo8o/,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:14:39,skocherhan,domain,kasegitai.tokyo,#Formbook,https://x.com/skocherhan/status/1947601175244595435 2025-07-22 10:49:24,ShanHolo,domain,golden-founded-liz-openings.trycloudflare.com,#malware #opendir,https://x.com/ShanHolo/status/1947609920452362564 2025-07-22 10:49:24,ShanHolo,url,https://golden-founded-liz-openings.trycloudflare.com,#malware #opendir,https://x.com/ShanHolo/status/1947609920452362564 2025-07-22 10:49:28,skocherhan,md5,e0792d366edf7ef08b1f38583b205e9c,,https://x.com/skocherhan/status/1947609936814608655 2025-07-22 11:06:11,drb_ra,url,http://103.125.248.109:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947614143143428440 2025-07-22 11:06:11,drb_ra,ip,103.125.248.109,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947614143143428440 2025-07-22 11:06:11,drb_ra,domain,download.microsoftwindows.biz,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947614143143428440 2025-07-22 11:06:11,drb_ra,url,https://download.microsoftwindows.biz/load,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947614143143428440 2025-07-22 12:00:06,urldna_bot,domain,metamaskloginorsignin1.godaddysites.com,#phishing #scam,https://x.com/urldna_bot/status/1947627711779807687 2025-07-22 12:00:06,urldna_bot,url,https://metamaskloginorsignin1.godaddysites.com,#phishing #scam,https://x.com/urldna_bot/status/1947627711779807687 2025-07-22 12:16:01,skocherhan,md5,928f726ccb2b1011faa20f672a5f3168,,https://x.com/skocherhan/status/1947631717755330758 2025-07-22 12:16:01,skocherhan,url,http://pk-instruments-shoes-yield.trycloudflare.com/ana.zip,,https://x.com/skocherhan/status/1947631717755330758 2025-07-22 12:16:01,skocherhan,domain,pk-instruments-shoes-yield.trycloudflare.com,,https://x.com/skocherhan/status/1947631717755330758 2025-07-22 12:16:01,skocherhan,url,http://pk-instruments-shoes-yield.trycloudflare.com/7w.bat,,https://x.com/skocherhan/status/1947631717755330758 2025-07-22 12:47:54,harugasumi,domain,bpgdxg.cn,#phishing,https://x.com/harugasumi/status/1947639742469693761 2025-07-22 12:47:54,harugasumi,url,https://bpgdxg.cn,#phishing,https://x.com/harugasumi/status/1947639742469693761 2025-07-22 13:38:07,James_inthe_box,ip,74.208.79.7,,https://x.com/James_inthe_box/status/1947652379291357684 2025-07-22 14:00:09,urldna_bot,domain,allmagicmailserve.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947657925939413063 2025-07-22 14:00:09,urldna_bot,url,https://allmagicmailserve.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1947657925939413063 2025-07-22 14:07:20,ValidinLLC,url,http://2.56.10.90,,https://x.com/ValidinLLC/status/1947659731792740815 2025-07-22 14:07:20,ValidinLLC,domain,en.stocksitem.org,,https://x.com/ValidinLLC/status/1947659731792740815 2025-07-22 14:07:20,ValidinLLC,url,http://en.stocksitem.org,,https://x.com/ValidinLLC/status/1947659731792740815 2025-07-22 14:43:26,masaomi346,url,https://shinkansen2-health.bezmrh.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1947668817204904111 2025-07-22 14:43:26,masaomi346,domain,shinkansen2-health.bezmrh.cn,#phishing,https://x.com/masaomi346/status/1947668817204904111 2025-07-22 14:47:28,1ZRR4H,url,https://dn720702.ca.archive.org/0/items/universe-1733359315202-8750_20250716/universe-1733359315202-8750.jpg,,https://x.com/1ZRR4H/status/1947669831299334177 2025-07-22 14:47:28,1ZRR4H,domain,dn720702.ca.archive.org,,https://x.com/1ZRR4H/status/1947669831299334177 2025-07-22 14:47:28,1ZRR4H,url,https://dn721205.ca.archive.org/0/items/wp4096799-lost-in-space-wallpapers_202507/wp4096799-lost-in-space-wallpapers.jpg,,https://x.com/1ZRR4H/status/1947669831299334177 2025-07-22 14:47:28,1ZRR4H,domain,dn721205.ca.archive.org,,https://x.com/1ZRR4H/status/1947669831299334177 2025-07-22 15:23:34,harugasumi,domain,shinkansen2-vestig.fphhvu.cn,#phishing,https://x.com/harugasumi/status/1947678914765275479 2025-07-22 15:23:34,harugasumi,url,https://shinkansen2-vestig.fphhvu.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/harugasumi/status/1947678914765275479 2025-07-22 16:00:05,urldna_bot,domain,dbklgovmygoodupdateforall.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947688108176155074 2025-07-22 16:00:05,urldna_bot,url,https://dbklgovmygoodupdateforall.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947688108176155074 2025-07-22 16:37:57,drb_ra,domain,ns2.vmupdate.org,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697634585551049 2025-07-22 16:37:57,drb_ra,url,https://ns2.vmupdate.org/_/scs/mail-static/_/js/,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697634585551049 2025-07-22 16:37:57,drb_ra,url,http://23.95.61.136:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697634585551049 2025-07-22 16:37:57,drb_ra,ip,23.95.61.136,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697634585551049 2025-07-22 16:38:03,drb_ra,domain,ns2.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697659214762483 2025-07-22 16:38:03,drb_ra,url,https://ns2.nsebseshop.cloud/s/82740874126,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697659214762483 2025-07-22 16:38:03,drb_ra,domain,ns3.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697659214762483 2025-07-22 16:38:03,drb_ra,url,https://ns3.nsebseshop.cloud/wc/82740874126,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697659214762483 2025-07-22 16:38:03,drb_ra,url,http://47.237.86.35:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697659214762483 2025-07-22 16:38:03,drb_ra,ip,47.237.86.35,#CobaltStrike #C2,https://x.com/drb_ra/status/1947697659214762483 2025-07-22 16:54:51,ReBensk,md5,e87316f30002cda166f95e763166073f,#Android #Trojan #malware,https://x.com/ReBensk/status/1947701888209519092 2025-07-22 18:00:06,urldna_bot,domain,xn--gencatadministradordegesti-qtc.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947718308926505130 2025-07-22 18:00:06,urldna_bot,url,https://xn--gencatadministradordegesti-qtc.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947718308926505130 2025-07-22 18:46:45,drb_ra,url,http://46.101.246.74:7443,#Mythic #C2,https://x.com/drb_ra/status/1947730047617384721 2025-07-22 18:46:45,drb_ra,ip,46.101.246.74,#Mythic #C2,https://x.com/drb_ra/status/1947730047617384721 2025-07-22 18:46:49,drb_ra,url,http://34.1.135.57:7443,#Mythic #C2,https://x.com/drb_ra/status/1947730067532222911 2025-07-22 18:46:54,drb_ra,ip,139.162.190.174,#Mythic #C2,https://x.com/drb_ra/status/1947730087408791975 2025-07-22 18:46:54,drb_ra,url,http://139.162.190.174:7443,#Mythic #C2,https://x.com/drb_ra/status/1947730087408791975 2025-07-22 18:46:59,drb_ra,ip,194.182.86.110,#Mythic #C2,https://x.com/drb_ra/status/1947730109047210489 2025-07-22 18:46:59,drb_ra,url,http://194.182.86.110:7443,#Mythic #C2,https://x.com/drb_ra/status/1947730109047210489 2025-07-22 18:47:04,drb_ra,url,http://165.227.143.23:7443,#Mythic #C2,https://x.com/drb_ra/status/1947730130480337278 2025-07-22 18:47:04,drb_ra,ip,165.227.143.23,#Mythic #C2,https://x.com/drb_ra/status/1947730130480337278 2025-07-22 18:47:09,drb_ra,ip,68.183.113.240,#Sliver #C2,https://x.com/drb_ra/status/1947730151292449175 2025-07-22 18:47:09,drb_ra,url,http://68.183.113.240:443,#Sliver #C2,https://x.com/drb_ra/status/1947730151292449175 2025-07-22 18:47:14,drb_ra,url,http://144.126.198.202:31337,#Sliver #C2,https://x.com/drb_ra/status/1947730172977025080 2025-07-22 18:47:14,drb_ra,ip,144.126.198.202,#Sliver #C2,https://x.com/drb_ra/status/1947730172977025080 2025-07-22 18:47:20,drb_ra,url,http://35.199.30.104:31337,#Sliver #C2,https://x.com/drb_ra/status/1947730194229326006 2025-07-22 18:47:20,drb_ra,ip,35.199.30.104,#Sliver #C2,https://x.com/drb_ra/status/1947730194229326006 2025-07-22 18:47:23,drb_ra,url,http://191.17.238.190:31337,#Sliver #C2,https://x.com/drb_ra/status/1947730210322890792 2025-07-22 18:47:23,drb_ra,ip,191.17.238.190,#Sliver #C2,https://x.com/drb_ra/status/1947730210322890792 2025-07-22 18:47:28,drb_ra,url,http://170.64.232.216:443,#Sliver #C2,https://x.com/drb_ra/status/1947730230661075011 2025-07-22 18:47:28,drb_ra,ip,170.64.232.216,#Sliver #C2,https://x.com/drb_ra/status/1947730230661075011 2025-07-22 18:47:33,drb_ra,url,http://169.239.130.96:31337,#Sliver #C2,https://x.com/drb_ra/status/1947730250739122558 2025-07-22 18:47:33,drb_ra,ip,169.239.130.96,#Sliver #C2,https://x.com/drb_ra/status/1947730250739122558 2025-07-22 18:47:38,drb_ra,ip,162.215.222.185,#Sliver #C2,https://x.com/drb_ra/status/1947730271740256603 2025-07-22 18:47:38,drb_ra,url,http://162.215.222.185:31337,#Sliver #C2,https://x.com/drb_ra/status/1947730271740256603 2025-07-22 18:49:42,drb_ra,url,http://34.254.158.94:4730,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947730789942059382 2025-07-22 18:49:42,drb_ra,ip,34.254.158.94,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947730789942059382 2025-07-22 18:49:47,drb_ra,url,http://16.63.137.205:20000,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947730811446268104 2025-07-22 18:49:51,drb_ra,url,http://16.63.137.205:3550,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947730831365063106 2025-07-22 18:49:51,drb_ra,ip,16.63.137.205,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947730831365063106 2025-07-22 18:49:57,drb_ra,url,http://16.51.151.204:1080,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947730852835717311 2025-07-22 18:49:57,drb_ra,ip,16.51.151.204,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947730852835717311 2025-07-22 18:50:02,drb_ra,url,http://139.180.219.116:587,#Interactsh #C2,https://x.com/drb_ra/status/1947730874394386856 2025-07-22 18:50:07,drb_ra,url,http://139.180.219.116:465,#Interactsh #C2,https://x.com/drb_ra/status/1947730895885996346 2025-07-22 18:50:12,drb_ra,ip,139.180.219.116,#Interactsh #C2,https://x.com/drb_ra/status/1947730918153851092 2025-07-22 18:50:12,drb_ra,url,http://139.180.219.116:25,#Interactsh #C2,https://x.com/drb_ra/status/1947730918153851092 2025-07-22 18:50:17,drb_ra,url,http://34.245.156.125:443,#Interactsh #C2,https://x.com/drb_ra/status/1947730940337201246 2025-07-22 18:50:17,drb_ra,ip,34.245.156.125,#Interactsh #C2,https://x.com/drb_ra/status/1947730940337201246 2025-07-22 18:50:23,drb_ra,url,http://52.30.120.127:443,#Interactsh #C2,https://x.com/drb_ra/status/1947730962583846991 2025-07-22 18:50:23,drb_ra,ip,52.30.120.127,#Interactsh #C2,https://x.com/drb_ra/status/1947730962583846991 2025-07-22 18:50:28,drb_ra,url,http://34.245.3.117:443,#Interactsh #C2,https://x.com/drb_ra/status/1947730985308602740 2025-07-22 18:50:28,drb_ra,ip,34.245.3.117,#Interactsh #C2,https://x.com/drb_ra/status/1947730985308602740 2025-07-22 18:50:34,drb_ra,ip,34.244.163.16,#Interactsh #C2,https://x.com/drb_ra/status/1947731008247218664 2025-07-22 18:50:34,drb_ra,url,http://34.244.163.16:443,#Interactsh #C2,https://x.com/drb_ra/status/1947731008247218664 2025-07-22 18:50:39,drb_ra,ip,123.253.111.23,#C2 #Supershell,https://x.com/drb_ra/status/1947731032016355405 2025-07-22 18:50:39,drb_ra,url,http://123.253.111.23:8888,#C2 #Supershell,https://x.com/drb_ra/status/1947731032016355405 2025-07-22 18:50:45,drb_ra,url,http://103.141.50.146:995,#Qakbot #C2,https://x.com/drb_ra/status/1947731055328256407 2025-07-22 18:50:45,drb_ra,ip,103.141.50.146,#Qakbot #C2,https://x.com/drb_ra/status/1947731055328256407 2025-07-22 18:50:50,drb_ra,url,http://86.126.224.214:443,#Qakbot #C2,https://x.com/drb_ra/status/1947731078665449955 2025-07-22 18:50:50,drb_ra,ip,86.126.224.214,#Qakbot #C2,https://x.com/drb_ra/status/1947731078665449955 2025-07-22 18:50:55,drb_ra,url,http://65.20.82.213:443,#C2,https://x.com/drb_ra/status/1947731100022788109 2025-07-22 18:50:55,drb_ra,ip,65.20.82.213,#C2,https://x.com/drb_ra/status/1947731100022788109 2025-07-22 18:51:01,drb_ra,url,http://185.250.207.163:443,#Havoc #C2,https://x.com/drb_ra/status/1947731123900936276 2025-07-22 18:51:01,drb_ra,ip,185.250.207.163,#Havoc #C2,https://x.com/drb_ra/status/1947731123900936276 2025-07-22 18:51:06,drb_ra,url,http://4.213.161.104:80,#Havoc #C2,https://x.com/drb_ra/status/1947731145879089473 2025-07-22 18:51:12,drb_ra,url,http://93.95.231.28:443,#Havoc #C2,https://x.com/drb_ra/status/1947731167370707415 2025-07-22 18:51:12,drb_ra,ip,93.95.231.28,#Havoc #C2,https://x.com/drb_ra/status/1947731167370707415 2025-07-22 18:51:16,drb_ra,url,http://145.223.69.2:80,#Havoc #C2,https://x.com/drb_ra/status/1947731187536908551 2025-07-22 18:51:21,drb_ra,url,http://145.223.69.2:443,#Havoc #C2,https://x.com/drb_ra/status/1947731208445571078 2025-07-22 18:51:21,drb_ra,ip,145.223.69.2,#Havoc #C2,https://x.com/drb_ra/status/1947731208445571078 2025-07-22 18:53:25,drb_ra,url,http://158.255.213.22:443,#C2,https://x.com/drb_ra/status/1947731726874136813 2025-07-22 18:53:30,drb_ra,url,http://158.255.213.22:63421,#C2,https://x.com/drb_ra/status/1947731747908497533 2025-07-22 18:53:30,drb_ra,ip,158.255.213.22,#C2,https://x.com/drb_ra/status/1947731747908497533 2025-07-22 18:53:35,drb_ra,url,http://217.156.123.93:2404,#Remcos #C2,https://x.com/drb_ra/status/1947731767592452496 2025-07-22 18:53:35,drb_ra,ip,217.156.123.93,#Remcos #C2,https://x.com/drb_ra/status/1947731767592452496 2025-07-22 18:53:40,drb_ra,url,http://15.188.146.16:833,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947731788287381511 2025-07-22 18:53:40,drb_ra,ip,15.188.146.16,#NetSupportRAT #C2,https://x.com/drb_ra/status/1947731788287381511 2025-07-22 19:31:00,skocherhan,url,http://consmofagov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,domain,hec-gov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,url,http://hec-gov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,domain,dlimsindhgov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,ip,46.202.186.194,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,url,http://dlimsitp-gov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,url,http://dlimpunjabgov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,domain,dlimsitp-gov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,domain,consmofagov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,url,http://46.202.186.194,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,domain,dlimpunjabgov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:00,skocherhan,url,http://dlimsindhgov.com,#APT,https://x.com/skocherhan/status/1947741183654171106 2025-07-22 19:31:16,skocherhan,url,http://dlims-sindh.com,,https://x.com/skocherhan/status/1947741251328974972 2025-07-22 19:31:16,skocherhan,domain,dlims-sindh.com,,https://x.com/skocherhan/status/1947741251328974972 2025-07-22 19:31:16,skocherhan,domain,dlims-ctp.com,,https://x.com/skocherhan/status/1947741251328974972 2025-07-22 19:31:16,skocherhan,url,http://dlims-ctp.com,,https://x.com/skocherhan/status/1947741251328974972 2025-07-22 19:33:54,drb_ra,ip,43.224.34.90,#CobaltStrike #C2,https://x.com/drb_ra/status/1947741915522187272 2025-07-22 19:33:54,drb_ra,url,http://43.224.34.90:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1947741915522187272 2025-07-22 19:33:54,drb_ra,url,https://www.goodle.cyou/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1947741915522187272 2025-07-22 19:33:54,drb_ra,domain,goodle.cyou,#CobaltStrike #C2,https://x.com/drb_ra/status/1947741915522187272 2025-07-22 20:00:06,urldna_bot,domain,harish-1-bit.github.io,#scam #phishing,https://x.com/urldna_bot/status/1947748510167663010 2025-07-22 20:00:06,urldna_bot,url,https://harish-1-bit.github.io/Insta-Login/,#scam #phishing,https://x.com/urldna_bot/status/1947748510167663010 2025-07-22 20:20:12,drb_ra,url,http://161.97.149.235:587,#C2,https://x.com/drb_ra/status/1947753565654581628 2025-07-22 20:20:12,drb_ra,ip,161.97.149.235,#C2,https://x.com/drb_ra/status/1947753565654581628 2025-07-22 20:20:12,drb_ra,url,https://161.97.149.235:587,#C2,https://x.com/drb_ra/status/1947753565654581628 2025-07-22 20:20:17,drb_ra,ip,47.120.48.100,#C2,https://x.com/drb_ra/status/1947753587045446024 2025-07-22 20:20:17,drb_ra,url,http://47.120.48.100:8443,#C2,https://x.com/drb_ra/status/1947753587045446024 2025-07-22 20:20:17,drb_ra,url,https://47.120.48.100:8443,#C2,https://x.com/drb_ra/status/1947753587045446024 2025-07-22 20:21:14,1ZRR4H,ip,199.59.243.160,,https://x.com/1ZRR4H/status/1947753827848872301 2025-07-22 20:21:14,1ZRR4H,url,http://199.59.243.160,,https://x.com/1ZRR4H/status/1947753827848872301 2025-07-22 21:00:03,threatquery,url,http://106.14.1.192,#C2 #malware,https://x.com/threatquery/status/1947763594680062020 2025-07-22 21:00:03,threatquery,ip,106.14.1.192,#C2 #malware,https://x.com/threatquery/status/1947763594680062020 2025-07-22 21:00:04,threatquery,url,http://103.59.160.219,#C2 #malware,https://x.com/threatquery/status/1947763598375149993 2025-07-22 21:00:04,threatquery,ip,103.59.160.219,#C2 #malware,https://x.com/threatquery/status/1947763598375149993 2025-07-22 21:17:24,skocherhan,domain,boylmc.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://boylmc.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,brotsjom.shop,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://brotsjom.shop,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,bumpegq.lol,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,calioons.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,callxgcs.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://callxgcs.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,carptrvo.shop,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://carptrvo.shop,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,castdyt.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://castdyt.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://bornim.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://calioons.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,bornim.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://bumpegq.lol,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,blastodx.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,acetjjxl.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://blastodx.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://agrevpud.shop,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,allosno.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://acetjjxl.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,angucccg.lat,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://angucccg.lat,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,antibigi.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://allosno.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,arraeyg.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://autotnyx.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,autotnyx.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://antibigi.pics,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://assalafuz.lat,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,agrevpud.shop,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://artifizz.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,artifizz.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,url,http://arraeyg.top,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:17:24,skocherhan,domain,assalafuz.lat,#Lumma,https://x.com/skocherhan/status/1947767961051136252 2025-07-22 21:46:46,drb_ra,url,https://60.205.165.173/g.pixel,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775350945063052 2025-07-22 21:46:46,drb_ra,url,http://60.205.165.173:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775350945063052 2025-07-22 21:46:46,drb_ra,ip,60.205.165.173,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775350945063052 2025-07-22 21:46:51,drb_ra,url,https://107.149.192.54/siie=utf-8&f=8&rsv_bp=1&rsv_idx=1&ch=&tn=baidu&bar=&wd=,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775373522977254 2025-07-22 21:46:51,drb_ra,url,http://107.149.192.54:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775373522977254 2025-07-22 21:46:51,drb_ra,ip,107.149.192.54,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775373522977254 2025-07-22 21:46:56,drb_ra,url,http://45.93.28.105:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775395715031481 2025-07-22 21:46:56,drb_ra,ip,45.93.28.105,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775395715031481 2025-07-22 21:47:01,drb_ra,url,http://8.133.251.169:7878,#CobaltStrike #C2,https://x.com/drb_ra/status/1947775417034936358 2025-07-22 21:53:11,skocherhan,ip,45.87.213.227,,https://x.com/skocherhan/status/1947776965139906956 2025-07-22 21:53:11,skocherhan,ip,182.2.79.164,,https://x.com/skocherhan/status/1947776965139906956 2025-07-22 21:53:11,skocherhan,ip,45.141.56.114,,https://x.com/skocherhan/status/1947776965139906956 2025-07-22 22:00:06,urldna_bot,url,https://ipfs.io/ipfs/bafybeiefmweopcohbweuohh3qm2qatgwng5ndw5iatjlpuguakrzy2db6m/finallybacknone.html,#phishing #scam,https://x.com/urldna_bot/status/1947778705415115023 2025-07-22 22:17:26,skocherhan,url,http://download.microsoftwindows.biz,#C2 #CobaltStrike,https://x.com/skocherhan/status/1947783068301070510 2025-07-22 22:17:26,skocherhan,domain,download.microsoftwindows.biz.,,https://x.com/skocherhan/status/1947783068301070510 2025-07-22 22:21:14,masaomi346,domain,shinkansen2-ensify.cnyvxb.cn,#phishing,https://x.com/masaomi346/status/1947784026313658439 2025-07-22 22:21:14,masaomi346,url,https://shinkansen2-ensify.cnyvxb.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1947784026313658439 2025-07-22 22:21:14,masaomi346,domain,shinkansen2-calofy.ddiqlu.cn,#phishing,https://x.com/masaomi346/status/1947784026313658439 2025-07-22 22:21:14,masaomi346,url,https://shinkansen2-butety.mnmtip.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1947784026313658439 2025-07-22 22:21:14,masaomi346,domain,shinkansen2-butety.mnmtip.cn,#phishing,https://x.com/masaomi346/status/1947784026313658439 2025-07-22 22:21:14,masaomi346,url,https://shinkansen2-calofy.ddiqlu.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1947784026313658439 2025-07-22 22:22:02,skocherhan,domain,kefel.tech,,https://x.com/skocherhan/status/1947784227724136559 2025-07-22 22:22:02,skocherhan,url,http://kefel.tech,,https://x.com/skocherhan/status/1947784227724136559 2025-07-22 22:22:02,skocherhan,url,http://185.234.247.20,,https://x.com/skocherhan/status/1947784227724136559 2025-07-22 22:22:02,skocherhan,ip,45.133.216.15,,https://x.com/skocherhan/status/1947784227724136559 2025-07-22 22:22:02,skocherhan,ip,185.234.247.20,,https://x.com/skocherhan/status/1947784227724136559 2025-07-22 22:22:02,skocherhan,url,http://45.133.216.15,,https://x.com/skocherhan/status/1947784227724136559 2025-07-22 22:26:59,skocherhan,url,http://43.250.173.179,,https://x.com/skocherhan/status/1947785471381197081 2025-07-22 22:26:59,skocherhan,ip,43.250.173.179,,https://x.com/skocherhan/status/1947785471381197081 2025-07-22 22:56:58,1ZRR4H,domain,somosvirutex.cl,,https://x.com/1ZRR4H/status/1947793019668754810 2025-07-22 22:56:58,1ZRR4H,url,http://somosvirutex.cl,,https://x.com/1ZRR4H/status/1947793019668754810 2025-07-23 00:00:10,urldna_bot,domain,welcometouhcglobal.com,#scam #phishing,https://x.com/urldna_bot/status/1947808922829562065 2025-07-23 00:00:10,urldna_bot,url,https://welcometouhcglobal.com,#scam #phishing,https://x.com/urldna_bot/status/1947808922829562065 2025-07-23 00:25:15,SarlackLab,url,http://66.63.187.164:8595,#C2,https://x.com/SarlackLab/status/1947815235546386625 2025-07-23 00:25:15,SarlackLab,ip,66.63.187.164,#C2,https://x.com/SarlackLab/status/1947815235546386625 2025-07-23 00:25:49,SarlackLab,url,http://103.59.160.219:1912,#C2 #RedLine,https://x.com/SarlackLab/status/1947815377112596976 2025-07-23 00:25:49,SarlackLab,ip,103.59.160.219,#C2 #RedLine,https://x.com/SarlackLab/status/1947815377112596976 2025-07-23 00:26:21,SarlackLab,url,http://209.54.102.152:1912,#C2 #RedLine,https://x.com/SarlackLab/status/1947815514291491165 2025-07-23 00:26:21,SarlackLab,ip,209.54.102.152,#C2 #RedLine,https://x.com/SarlackLab/status/1947815514291491165 2025-07-23 00:26:39,SarlackLab,url,http://147.45.222.249:1912,#C2 #RedLine,https://x.com/SarlackLab/status/1947815587251376308 2025-07-23 00:26:39,SarlackLab,ip,147.45.222.249,#C2 #RedLine,https://x.com/SarlackLab/status/1947815587251376308 2025-07-23 00:28:32,SarlackLab,ip,178.250.188.181,#C2 #RedLine,https://x.com/SarlackLab/status/1947816063099416631 2025-07-23 00:28:32,SarlackLab,url,http://178.250.188.181:1912,#C2 #RedLine,https://x.com/SarlackLab/status/1947816063099416631 2025-07-23 01:02:31,catnap707,url,http://172.67.210.199,#phishing,https://x.com/catnap707/status/1947824615151309087 2025-07-23 01:02:31,catnap707,url,http://shinkansen2-health.bezmrh.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/catnap707/status/1947824615151309087 2025-07-23 01:02:31,catnap707,domain,shinkansen2-health.bezmrh.cn,#phishing,https://x.com/catnap707/status/1947824615151309087 2025-07-23 01:27:25,romonlyht,domain,e.bitly.com%E2%88%95DdWVwsL%E2%88%95cNPQE%E2%88%95cttYHJk@xiazhou.me,#phishing,https://x.com/romonlyht/status/1947830878455079052 2025-07-23 01:27:25,romonlyht,url,https://e.bitly.com%E2%88%95DdWVwsL%E2%88%95cNPQE%E2%88%95cttYHJk@xiazhou.me/taqcago?dxr,#phishing,https://x.com/romonlyht/status/1947830878455079052 2025-07-23 01:27:25,romonlyht,domain,xiazhou.me,#phishing,https://x.com/romonlyht/status/1947830878455079052 2025-07-23 01:27:25,romonlyht,url,http://xiazhou.me/taqcago?dxr,#phishing,https://x.com/romonlyht/status/1947830878455079052 2025-07-23 01:27:25,romonlyht,ip,114.237.75.255,#phishing,https://x.com/romonlyht/status/1947830878455079052 2025-07-23 01:34:48,romonlyht,ip,156.245.136.90,#phishing,https://x.com/romonlyht/status/1947832739216167172 2025-07-23 01:34:48,romonlyht,ip,85.122.120.21,#phishing,https://x.com/romonlyht/status/1947832739216167172 2025-07-23 01:34:48,romonlyht,url,https://sekyuri.kurikotb.sbs/net/vwc/,#phishing,https://x.com/romonlyht/status/1947832739216167172 2025-07-23 01:34:48,romonlyht,url,https://sekyuri.kurikotb.sbs/net/vwc,#phishing,https://x.com/romonlyht/status/1947832739216167172 2025-07-23 01:34:48,romonlyht,domain,sekyuri.kurikotb.sbs,#phishing,https://x.com/romonlyht/status/1947832739216167172 2025-07-23 01:42:24,romonlyht,url,http://mjtt.me/unwqma?gjttv=wwtbwylp,#phishing,https://x.com/romonlyht/status/1947834652712169981 2025-07-23 01:42:24,romonlyht,domain,mjtt.me,#phishing,https://x.com/romonlyht/status/1947834652712169981 2025-07-23 01:42:24,romonlyht,ip,122.245.140.13,#phishing,https://x.com/romonlyht/status/1947834652712169981 2025-07-23 01:42:24,romonlyht,domain,uccard.co.jp%E2%88%95IwuSUhi%E2%88%95koGytqfBv%E2%88%95fMFoscBM@mjtt.me,#phishing,https://x.com/romonlyht/status/1947834652712169981 2025-07-23 01:42:24,romonlyht,url,https://uccard.co.jp%E2%88%95IwuSUhi%E2%88%95koGytqfBv%E2%88%95fMFoscBM@mjtt.me/unwqma?gjttv=wwtbwylp,#phishing,https://x.com/romonlyht/status/1947834652712169981 2025-07-23 01:42:25,romonlyht,domain,asopndasj.icu,#phishing,https://x.com/romonlyht/status/1947834654649946624 2025-07-23 01:42:25,romonlyht,url,https://asopndasj.icu/9sAA897an/,#phishing,https://x.com/romonlyht/status/1947834654649946624 2025-07-23 01:42:25,romonlyht,ip,182.16.54.74,#phishing,https://x.com/romonlyht/status/1947834654649946624 2025-07-23 01:53:12,romonlyht,url,https://bg9pxa.top/W0lBfYXZ/,#phishing,https://x.com/romonlyht/status/1947837369115414599 2025-07-23 01:53:12,romonlyht,url,https://bg9pxa.top/W0lBfYXZ,#phishing,https://x.com/romonlyht/status/1947837369115414599 2025-07-23 01:53:12,romonlyht,domain,bg9pxa.top,#phishing,https://x.com/romonlyht/status/1947837369115414599 2025-07-23 01:53:12,romonlyht,ip,200.26.249.89,#phishing,https://x.com/romonlyht/status/1947837369115414599 2025-07-23 01:54:03,romonlyht,domain,2tjakk.top,#phishing,https://x.com/romonlyht/status/1947837583570178280 2025-07-23 01:54:03,romonlyht,url,https://2tjakk.top/W0lBfYXZ,#phishing,https://x.com/romonlyht/status/1947837583570178280 2025-07-23 01:54:03,romonlyht,url,https://2tjakk.top/W0lBfYXZ/,#phishing,https://x.com/romonlyht/status/1947837583570178280 2025-07-23 01:54:03,romonlyht,ip,45.4.122.252,#phishing,https://x.com/romonlyht/status/1947837583570178280 2025-07-23 02:00:07,urldna_bot,url,https://zuwmbztn.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1947839109151568182 2025-07-23 02:00:07,urldna_bot,domain,zuwmbztn.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1947839109151568182 2025-07-23 02:00:40,romonlyht,ip,27.22.94.114,#phishing,https://x.com/romonlyht/status/1947839247337328933 2025-07-23 02:00:40,romonlyht,url,http://sunexpress.cc/cofwtlofrr?itudky=wjdxuhvibn,#phishing,https://x.com/romonlyht/status/1947839247337328933 2025-07-23 02:00:40,romonlyht,url,https://amaisuika.com%E2%88%95yfpjP%E2%88%95qDJWG%E2%88%95sXoKi@sunexpress.cc/cofwtlofrr?itudky=wjdxuhvibn,#phishing,https://x.com/romonlyht/status/1947839247337328933 2025-07-23 02:00:40,romonlyht,domain,sunexpress.cc,#phishing,https://x.com/romonlyht/status/1947839247337328933 2025-07-23 02:00:40,romonlyht,domain,amaisuika.com%E2%88%95yfpjP%E2%88%95qDJWG%E2%88%95sXoKi@sunexpress.cc,#phishing,https://x.com/romonlyht/status/1947839247337328933 2025-07-23 02:07:43,romonlyht,domain,co-sblsec-jp.bcxve.com,#phishing,https://x.com/romonlyht/status/1947841023306305969 2025-07-23 02:07:43,romonlyht,url,https://co-sblsec-jp.bcxve.com/yfNRdb/,#phishing,https://x.com/romonlyht/status/1947841023306305969 2025-07-23 02:07:43,romonlyht,url,https://co-sblsec-jp.bcxve.com/yfNRdb,#phishing,https://x.com/romonlyht/status/1947841020403880410 2025-07-23 02:07:43,romonlyht,url,https://co-sblsec-jp.bcxve.com/v1/check,#phishing,https://x.com/romonlyht/status/1947841020403880410 2025-07-23 02:07:43,romonlyht,ip,109.248.30.245,#phishing,https://x.com/romonlyht/status/1947841020403880410 2025-07-23 02:21:19,romonlyht,url,http://ndvue-m58x.pokejunct.workers.dev/H20uYhXyW/HMdt9g/3JxNJyviBF/MLgIz4DsF8PwiZ2z351mAX3jWGj1h78lJ904OdRc,#phishing,https://x.com/romonlyht/status/1947844446181331441 2025-07-23 02:21:19,romonlyht,ip,14.29.212.208,#phishing,https://x.com/romonlyht/status/1947844446181331441 2025-07-23 02:21:19,romonlyht,domain,ndvue-m58x.pokejunct.workers.dev,#phishing,https://x.com/romonlyht/status/1947844446181331441 2025-07-23 02:21:20,romonlyht,ip,47.76.201.31,#phishing,https://x.com/romonlyht/status/1947844450790871113 2025-07-23 02:21:20,romonlyht,url,https://l5tps6.top/sbeni3s/,#phishing,https://x.com/romonlyht/status/1947844450790871113 2025-07-23 02:21:20,romonlyht,url,https://l5tps6.top/sbeni3s,#phishing,https://x.com/romonlyht/status/1947844450790871113 2025-07-23 02:21:20,romonlyht,domain,l5tps6.top,#phishing,https://x.com/romonlyht/status/1947844450790871113 2025-07-23 02:51:59,romonlyht,ip,217.60.38.112,#phishing,https://x.com/romonlyht/status/1947852164233334801 2025-07-23 02:51:59,romonlyht,domain,myidloud-storeco.shop,#phishing,https://x.com/romonlyht/status/1947852164233334801 2025-07-23 02:51:59,romonlyht,url,https://myidloud-storeco.shop/aplog,#phishing,https://x.com/romonlyht/status/1947852164233334801 2025-07-23 02:51:59,romonlyht,url,https://myidloud-storeco.shop/aplog/,#phishing,https://x.com/romonlyht/status/1947852164233334801 2025-07-23 02:51:59,romonlyht,ip,42.0.128.134,#phishing,https://x.com/romonlyht/status/1947852164233334801 2025-07-23 02:52:59,romonlyht,ip,171.211.41.36,#phishing,https://x.com/romonlyht/status/1947852413689598402 2025-07-23 02:52:59,romonlyht,url,https://frpls.cn/iCloud/,#phishing,https://x.com/romonlyht/status/1947852413689598402 2025-07-23 02:52:59,romonlyht,domain,frpls.cn,#phishing,https://x.com/romonlyht/status/1947852413689598402 2025-07-23 02:52:59,romonlyht,url,https://frpls.cn/iCloud,#phishing,https://x.com/romonlyht/status/1947852413689598402 2025-07-23 02:53:43,romonlyht,domain,sdww5631.shop,#phishing,https://x.com/romonlyht/status/1947852597446250954 2025-07-23 02:53:43,romonlyht,url,https://sdww5631.shop/aplog,#phishing,https://x.com/romonlyht/status/1947852597446250954 2025-07-23 02:53:43,romonlyht,ip,221.128.129.190,#phishing,https://x.com/romonlyht/status/1947852597446250954 2025-07-23 02:54:45,romonlyht,ip,43.165.179.179,#phishing,https://x.com/romonlyht/status/1947852858701058204 2025-07-23 02:54:45,romonlyht,ip,121.235.95.241,#phishing,https://x.com/romonlyht/status/1947852858701058204 2025-07-23 02:54:45,romonlyht,url,https://orkem.cn/iCloud,#phishing,https://x.com/romonlyht/status/1947852858701058204 2025-07-23 02:54:45,romonlyht,domain,orkem.cn,#phishing,https://x.com/romonlyht/status/1947852858701058204 2025-07-23 02:54:45,romonlyht,url,https://orkem.cn/iCloud/,#phishing,https://x.com/romonlyht/status/1947852858701058204 2025-07-23 02:55:27,romonlyht,url,https://dfdr325.shop/aplog,#phishing,https://x.com/romonlyht/status/1947853036178616497 2025-07-23 02:55:27,romonlyht,ip,221.128.129.161,#phishing,https://x.com/romonlyht/status/1947853036178616497 2025-07-23 02:55:27,romonlyht,domain,dfdr325.shop,#phishing,https://x.com/romonlyht/status/1947853036178616497 2025-07-23 02:57:02,romonlyht,ip,14.247.166.195,#phishing,https://x.com/romonlyht/status/1947853433438147010 2025-07-23 02:57:03,romonlyht,domain,i74lj.shop,#phishing,https://x.com/romonlyht/status/1947853436046970890 2025-07-23 02:57:03,romonlyht,url,http://i74lj.shop/ms6.megaegg.ne.jp,#phishing,https://x.com/romonlyht/status/1947853436046970890 2025-07-23 02:58:46,romonlyht,ip,193.233.201.42,#phishing,https://x.com/romonlyht/status/1947853869276664264 2025-07-23 02:58:46,romonlyht,url,https://id-ltunes-com.odljwjdsjnasdcs.today/?asvefadfqwq,#phishing,https://x.com/romonlyht/status/1947853871138935118 2025-07-23 02:58:46,romonlyht,ip,139.60.163.199,#phishing,https://x.com/romonlyht/status/1947853871138935118 2025-07-23 02:58:46,romonlyht,domain,ecoplantworld.com,#phishing,https://x.com/romonlyht/status/1947853869276664264 2025-07-23 02:58:46,romonlyht,url,https://ecoplantworld.com/penawaran-spesial?key=aaaa@example.jp?userid=O2wyNBnq,#phishing,https://x.com/romonlyht/status/1947853869276664264 2025-07-23 02:58:46,romonlyht,ip,96.62.214.32,#phishing,https://x.com/romonlyht/status/1947853869276664264 2025-07-23 02:58:47,romonlyht,url,https://id-ltunes-com.odljwjdsjnasdcs.today/sign-in/mb/index.php?0&openid.return_to=cyiIhjzyKS0vIva1o3RQcmMbPeJ9lxClWdrwxXAwp7A2DFbdiyq4TD1X9d96QASmM62n5Y,#phishing,https://x.com/romonlyht/status/1947853873068335329 2025-07-23 02:58:47,romonlyht,domain,id-ltunes-com.odljwjdsjnasdcs.today,#phishing,https://x.com/romonlyht/status/1947853873068335329 2025-07-23 03:03:36,romonlyht,url,http://erwawa.me/mylstxty?fajiy,#phishing,https://x.com/romonlyht/status/1947855086010699858 2025-07-23 03:03:36,romonlyht,domain,erwawa.me,#phishing,https://x.com/romonlyht/status/1947855086010699858 2025-07-23 03:03:36,romonlyht,ip,122.245.140.81,#phishing,https://x.com/romonlyht/status/1947855086010699858 2025-07-23 03:03:36,romonlyht,domain,icntv.ne.jp%E2%88%95KcaheQEaRF%E2%88%95BenYe%E2%88%95bubWDQc@erwawa.me,#phishing,https://x.com/romonlyht/status/1947855086010699858 2025-07-23 03:03:36,romonlyht,url,https://icntv.ne.jp%E2%88%95KcaheQEaRF%E2%88%95BenYe%E2%88%95bubWDQc@erwawa.me/mylstxty?fajiy,#phishing,https://x.com/romonlyht/status/1947855086010699858 2025-07-23 03:46:00,romonlyht,domain,docu-share-direct-lnk-5378edjksjhdb.vercel.app,#phishing,https://x.com/romonlyht/status/1947865756747894869 2025-07-23 03:46:00,romonlyht,url,https://docu-share-direct-lnk-5378edjksjhdb.vercel.app/docu-share-download98yhjkfdyidy8idyi.html#aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1947865756747894869 2025-07-23 03:46:00,romonlyht,ip,61.4.102.189,#phishing,https://x.com/romonlyht/status/1947865756747894869 2025-07-23 03:46:01,romonlyht,ip,64.29.17.131,#phishing,https://x.com/romonlyht/status/1947865758555689004 2025-07-23 04:00:07,urldna_bot,domain,mooskkkioy.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947869310711390681 2025-07-23 04:00:07,urldna_bot,url,https://mooskkkioy.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1947869310711390681 2025-07-23 04:00:22,SarlackLab,url,http://147.185.221.30:6048,#C2 #Njrat,https://x.com/SarlackLab/status/1947869372971659493 2025-07-23 04:00:22,SarlackLab,domain,medical-principles.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1947869372971659493 2025-07-23 04:00:22,SarlackLab,ip,147.185.221.30,#C2 #Njrat,https://x.com/SarlackLab/status/1947869372971659493 2025-07-23 04:00:22,SarlackLab,url,http://medical-principles.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1947869372971659493 2025-07-23 04:45:42,fbgwls245,url,http://securo45z554mw7rgrt7wcgv5eenj2xmxyrsdj3fcjsvindu63s4bsid.onion,#ransomware,https://x.com/fbgwls245/status/1947880779113288102 2025-07-23 04:45:42,fbgwls245,domain,securo45z554mw7rgrt7wcgv5eenj2xmxyrsdj3fcjsvindu63s4bsid.onion,#ransomware,https://x.com/fbgwls245/status/1947880779113288102 2025-07-23 04:52:26,harugasumi,ip,149.104.32.236,#phishing,https://x.com/harugasumi/status/1947882474702573763 2025-07-23 04:52:26,harugasumi,url,http://iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1947882474702573763 2025-07-23 04:52:26,harugasumi,domain,driect-jobnnk01-06.com,#phishing,https://x.com/harugasumi/status/1947882474702573763 2025-07-23 04:52:26,harugasumi,url,https://driect-jobnnk00.com,#phishing,https://x.com/harugasumi/status/1947882474702573763 2025-07-23 04:52:26,harugasumi,domain,driect-jobnnk00.com,#phishing,https://x.com/harugasumi/status/1947882474702573763 2025-07-23 04:52:26,harugasumi,url,https://driect-jobnnk01-06.com,#phishing,https://x.com/harugasumi/status/1947882474702573763 2025-07-23 04:52:26,harugasumi,domain,iocdnzx.2373xlx.91ddos.com,#phishing,https://x.com/harugasumi/status/1947882474702573763 2025-07-23 04:59:55,Cyberteam008,md5,11dd6e8ab9759d1ac91ffe0d0e4949cb,#malware #APT,https://x.com/Cyberteam008/status/1947884358272008309 2025-07-23 04:59:55,Cyberteam008,ip,149.104.2.7,#malware #APT,https://x.com/Cyberteam008/status/1947884358272008309 2025-07-23 04:59:55,Cyberteam008,md5,abe098329cacc452714a6e8e632dcfdb,#malware #APT,https://x.com/Cyberteam008/status/1947884358272008309 2025-07-23 04:59:55,Cyberteam008,md5,02613d0cfa2863efeda0508b5118ebf9,#malware #APT,https://x.com/Cyberteam008/status/1947884358272008309 2025-07-23 04:59:55,Cyberteam008,url,http://149.104.2.7:443,#malware #APT,https://x.com/Cyberteam008/status/1947884358272008309 2025-07-23 05:15:44,suyog41,url,http://genkidama.site,,https://x.com/suyog41/status/1947888336947056725 2025-07-23 05:15:44,suyog41,domain,genkidama.site,,https://x.com/suyog41/status/1947888336947056725 2025-07-23 05:15:44,suyog41,md5,91067aef4819b66a68eb3f45e928e2c7,,https://x.com/suyog41/status/1947888336947056725 2025-07-23 05:50:09,TIntel2255,domain,mea-gov-in.com,#phishing,https://x.com/TIntel2255/status/1947897000156140017 2025-07-23 05:50:09,TIntel2255,url,http://mea-gov-in.com,#phishing,https://x.com/TIntel2255/status/1947897000156140017 2025-07-23 06:00:07,urldna_bot,domain,2026-bianance.com,#phishing #scam,https://x.com/urldna_bot/status/1947899507913478366 2025-07-23 06:00:07,urldna_bot,url,https://2026-bianance.com/?p=2,#phishing #scam,https://x.com/urldna_bot/status/1947899507913478366 2025-07-23 06:45:44,drb_ra,ip,185.241.208.170,#C2 #Sliver,https://x.com/drb_ra/status/1947910986272227387 2025-07-23 06:45:44,drb_ra,url,http://185.241.208.170:31337,#C2 #Sliver,https://x.com/drb_ra/status/1947910986272227387 2025-07-23 06:45:48,drb_ra,ip,104.131.2.26,#C2 #Sliver,https://x.com/drb_ra/status/1947911006228791464 2025-07-23 06:45:48,drb_ra,url,http://104.131.2.26:31337,#C2 #Sliver,https://x.com/drb_ra/status/1947911006228791464 2025-07-23 06:45:53,drb_ra,url,http://142.93.62.88:31337,#C2 #Sliver,https://x.com/drb_ra/status/1947911025505767704 2025-07-23 06:45:53,drb_ra,ip,142.93.62.88,#C2 #Sliver,https://x.com/drb_ra/status/1947911025505767704 2025-07-23 06:45:58,drb_ra,url,http://109.172.87.64:443,#C2 #Sliver,https://x.com/drb_ra/status/1947911044589838554 2025-07-23 06:45:58,drb_ra,ip,109.172.87.64,#C2 #Sliver,https://x.com/drb_ra/status/1947911044589838554 2025-07-23 06:48:01,drb_ra,url,http://3.254.197.191:80,#C2 #Interactsh,https://x.com/drb_ra/status/1947911562229953004 2025-07-23 06:48:06,drb_ra,ip,15.235.61.90,#C2 #Interactsh,https://x.com/drb_ra/status/1947911582211518911 2025-07-23 06:48:06,drb_ra,url,http://15.235.61.90:80,#C2 #Interactsh,https://x.com/drb_ra/status/1947911582211518911 2025-07-23 06:48:10,drb_ra,url,http://146.19.215.141:9090,#C2 #Dcrat,https://x.com/drb_ra/status/1947911601018782203 2025-07-23 06:48:10,drb_ra,ip,146.19.215.141,#C2 #Dcrat,https://x.com/drb_ra/status/1947911601018782203 2025-07-23 06:48:15,drb_ra,ip,149.109.82.74,#C2 #Qakbot,https://x.com/drb_ra/status/1947911620564226312 2025-07-23 06:48:15,drb_ra,url,http://149.109.82.74:443,#C2 #Qakbot,https://x.com/drb_ra/status/1947911620564226312 2025-07-23 06:48:20,drb_ra,url,http://139.180.136.101:53,#C2,https://x.com/drb_ra/status/1947911640109686956 2025-07-23 06:48:20,drb_ra,ip,139.180.136.101,#C2,https://x.com/drb_ra/status/1947911640109686956 2025-07-23 06:48:24,drb_ra,url,http://34.100.150.65:80,#C2 #Havoc,https://x.com/drb_ra/status/1947911659076346026 2025-07-23 06:48:29,drb_ra,url,http://51.89.229.188:5007,#C2 #Deimos,https://x.com/drb_ra/status/1947911679334912469 2025-07-23 06:48:29,drb_ra,ip,51.89.229.188,#C2 #Deimos,https://x.com/drb_ra/status/1947911679334912469 2025-07-23 06:48:34,drb_ra,url,http://54.36.163.184:8384,#C2 #Deimos,https://x.com/drb_ra/status/1947911699870454056 2025-07-23 06:48:34,drb_ra,ip,54.36.163.184,#C2 #Deimos,https://x.com/drb_ra/status/1947911699870454056 2025-07-23 06:48:39,drb_ra,url,http://182.30.92.214:443,#C2 #Deimos,https://x.com/drb_ra/status/1947911719918964856 2025-07-23 06:48:39,drb_ra,ip,182.30.92.214,#C2 #Deimos,https://x.com/drb_ra/status/1947911719918964856 2025-07-23 06:48:43,drb_ra,url,http://182.30.92.201:443,#C2 #Deimos,https://x.com/drb_ra/status/1947911738990448782 2025-07-23 06:48:43,drb_ra,ip,182.30.92.201,#C2 #Deimos,https://x.com/drb_ra/status/1947911738990448782 2025-07-23 06:48:48,drb_ra,url,http://34.198.206.81:443,#C2 #Deimos,https://x.com/drb_ra/status/1947911759177912425 2025-07-23 06:48:48,drb_ra,ip,34.198.206.81,#C2 #Deimos,https://x.com/drb_ra/status/1947911759177912425 2025-07-23 06:48:53,drb_ra,ip,102.117.167.7,#C2 #Mythic,https://x.com/drb_ra/status/1947911778236526614 2025-07-23 06:48:53,drb_ra,url,http://102.117.167.7:7443,#C2 #Mythic,https://x.com/drb_ra/status/1947911778236526614 2025-07-23 06:48:57,drb_ra,ip,46.101.158.51,#C2 #Mythic,https://x.com/drb_ra/status/1947911797933015055 2025-07-23 06:48:57,drb_ra,url,http://46.101.158.51:7443,#C2 #Mythic,https://x.com/drb_ra/status/1947911797933015055 2025-07-23 06:49:02,drb_ra,url,http://184.83.83.47:7443,#C2 #Mythic,https://x.com/drb_ra/status/1947911818074026151 2025-07-23 06:49:02,drb_ra,ip,184.83.83.47,#C2 #Mythic,https://x.com/drb_ra/status/1947911818074026151 2025-07-23 06:51:05,drb_ra,url,http://164.92.224.52:443,#C2,https://x.com/drb_ra/status/1947912335751848416 2025-07-23 06:51:05,drb_ra,ip,164.92.224.52,#C2,https://x.com/drb_ra/status/1947912335751848416 2025-07-23 06:51:10,drb_ra,url,http://185.96.166.113:2404,#C2 #Remcos,https://x.com/drb_ra/status/1947912356396204446 2025-07-23 06:51:10,drb_ra,ip,185.96.166.113,#C2 #Remcos,https://x.com/drb_ra/status/1947912356396204446 2025-07-23 06:51:15,drb_ra,url,http://167.160.161.198:99,#C2 #Remcos,https://x.com/drb_ra/status/1947912376969531851 2025-07-23 06:51:15,drb_ra,ip,167.160.161.198,#C2 #Remcos,https://x.com/drb_ra/status/1947912376969531851 2025-07-23 06:51:20,drb_ra,ip,47.245.59.94,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1947912397286498374 2025-07-23 06:51:20,drb_ra,url,http://47.245.59.94:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1947912397286498374 2025-07-23 06:51:25,drb_ra,ip,181.12.248.204,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912417893105875 2025-07-23 06:51:25,drb_ra,url,http://181.12.248.204:5610,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912417893105875 2025-07-23 06:51:30,drb_ra,url,http://18.61.119.224:445,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912437916688820 2025-07-23 06:51:30,drb_ra,ip,18.61.119.224,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912437916688820 2025-07-23 06:51:35,drb_ra,url,http://13.114.15.139:49501,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912459509170407 2025-07-23 06:51:35,drb_ra,ip,13.114.15.139,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912459509170407 2025-07-23 06:51:40,drb_ra,url,http://102.96.170.230:443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912479700631596 2025-07-23 06:51:40,drb_ra,ip,102.96.170.230,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912479700631596 2025-07-23 06:51:45,drb_ra,url,http://93.232.99.226:81,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912499916927253 2025-07-23 06:51:45,drb_ra,ip,93.232.99.226,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912499916927253 2025-07-23 06:51:49,drb_ra,url,http://18.153.210.162:1963,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912519953092966 2025-07-23 06:51:49,drb_ra,ip,18.153.210.162,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1947912519953092966 2025-07-23 06:51:54,drb_ra,url,http://45.74.8.89:83,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912539628577197 2025-07-23 06:51:54,drb_ra,ip,45.74.8.89,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912539628577197 2025-07-23 06:51:59,drb_ra,ip,124.198.132.250,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912560440717734 2025-07-23 06:51:59,drb_ra,url,http://124.198.132.250:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912560440717734 2025-07-23 06:52:04,drb_ra,url,http://45.74.16.89:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912580111991070 2025-07-23 06:52:04,drb_ra,ip,45.74.16.89,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912580111991070 2025-07-23 06:52:09,drb_ra,url,http://172.111.248.132:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912600345260315 2025-07-23 06:52:09,drb_ra,ip,172.111.248.132,#C2 #AsyncRAT,https://x.com/drb_ra/status/1947912600345260315 2025-07-23 06:52:13,drb_ra,url,http://18.201.249.69:80,#C2 #Interactsh,https://x.com/drb_ra/status/1947912620411117612 2025-07-23 06:52:13,drb_ra,ip,18.201.249.69,#C2 #Interactsh,https://x.com/drb_ra/status/1947912620411117612 2025-07-23 06:54:24,c9lab_soc,domain,sonyliv.online,#phishing #scam,https://x.com/c9lab_soc/status/1947913166517899739 2025-07-23 06:54:24,c9lab_soc,url,http://sonyliv.online,#phishing #scam,https://x.com/c9lab_soc/status/1947913166517899739 2025-07-23 06:54:24,c9lab_soc,domain,fb-video.com,#phishing #scam,https://x.com/c9lab_soc/status/1947913166517899739 2025-07-23 06:54:24,c9lab_soc,url,http://fb-video.com,#phishing #scam,https://x.com/c9lab_soc/status/1947913166517899739 2025-07-23 06:54:24,c9lab_soc,domain,reddit-stalker.com,#phishing #scam,https://x.com/c9lab_soc/status/1947913166517899739 2025-07-23 06:54:24,c9lab_soc,url,http://reddit-stalker.com,#phishing #scam,https://x.com/c9lab_soc/status/1947913166517899739 2025-07-23 08:00:06,urldna_bot,domain,spotifyclone-weld.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1947929702401712384 2025-07-23 08:00:06,urldna_bot,url,http://spotifyclone-weld.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1947929702401712384 2025-07-23 08:02:39,drb_ra,domain,sciencemagazine.me,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947930343547326671 2025-07-23 08:02:39,drb_ra,url,https://sciencemagazine.me/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947930343547326671 2025-07-23 08:02:39,drb_ra,url,http://178.128.212.39:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947930343547326671 2025-07-23 08:02:39,drb_ra,ip,178.128.212.39,#C2 #CobaltStrike,https://x.com/drb_ra/status/1947930343547326671 2025-07-23 09:26:21,ShadowChasing1,domain,consmofagov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,url,http://consmofagov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,domain,hec-gov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,url,http://hec-gov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,domain,dlimsindhgov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,url,http://dlimsindhgov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,domain,dlimpunjabgov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,url,http://dlimpunjabgov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,domain,dlimsitp-gov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,url,http://dlimsitp-gov.com,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,url,http://46.202.186.194,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 09:26:21,ShadowChasing1,ip,46.202.186.194,#APT,https://x.com/ShadowChasing1/status/1947951408806089186 2025-07-23 10:00:10,urldna_bot,domain,avilaleo.github.io,#scam #phishing,https://x.com/urldna_bot/status/1947959917115027566 2025-07-23 10:00:10,urldna_bot,url,http://avilaleo.github.io/spotify-auth-interface/,#scam #phishing,https://x.com/urldna_bot/status/1947959917115027566 2025-07-23 10:37:55,ShanHolo,url,http://185.117.0.206,#opendir #malware,https://x.com/ShanHolo/status/1947969418912563200 2025-07-23 10:37:55,ShanHolo,ip,185.117.0.206,#opendir #malware,https://x.com/ShanHolo/status/1947969418912563200 2025-07-23 11:08:29,skocherhan,url,http://72.10.160.162:443,,https://x.com/skocherhan/status/1947977109583897013 2025-07-23 11:08:29,skocherhan,ip,72.10.160.162,,https://x.com/skocherhan/status/1947977109583897013 2025-07-23 11:09:57,ShadowChasing1,url,http://94.242.61.116:443,,https://x.com/ShadowChasing1/status/1947977479261700376 2025-07-23 11:09:57,ShadowChasing1,ip,94.242.61.116,,https://x.com/ShadowChasing1/status/1947977479261700376 2025-07-23 12:00:07,urldna_bot,domain,redmionlinealimyeri.cfd,#scam #phishing,https://x.com/urldna_bot/status/1947990104523305444 2025-07-23 12:00:07,urldna_bot,url,http://redmionlinealimyeri.cfd/sadece-online-ozel/urun.php?r=35,#scam #phishing,https://x.com/urldna_bot/status/1947990104523305444 2025-07-23 12:01:40,galkofahi,domain,hoteljuly8.blogspot.com,#Rhadamanthys #opendir #Xworm #malware #stealer,https://x.com/galkofahi/status/1947990492760637844 2025-07-23 12:01:40,galkofahi,url,https://hoteljuly8.blogspot.com/lmm.pdf,#Rhadamanthys #opendir #Xworm #malware #stealer,https://x.com/galkofahi/status/1947990492760637844 2025-07-23 12:01:40,galkofahi,url,http://220.158.233.40:8080,#Rhadamanthys #opendir #Xworm #malware #stealer,https://x.com/galkofahi/status/1947990492760637844 2025-07-23 12:01:40,galkofahi,url,http://185.196.8.26,#Rhadamanthys #opendir #Xworm #malware #stealer,https://x.com/galkofahi/status/1947990492760637844 2025-07-23 12:01:40,galkofahi,ip,220.158.233.40,#Rhadamanthys #opendir #Xworm #malware #stealer,https://x.com/galkofahi/status/1947990492760637844 2025-07-23 12:01:40,galkofahi,ip,185.196.8.26,#Rhadamanthys #opendir #Xworm #malware #stealer,https://x.com/galkofahi/status/1947990492760637844 2025-07-23 12:01:40,galkofahi,sha256,d0cecd8f7352cfffe4428d472a00572f9a455c5161e66708d62592de75c21b89,#Rhadamanthys #opendir #Xworm #malware #stealer,https://x.com/galkofahi/status/1947990492760637844 2025-07-23 12:17:12,sdcyberresearch,domain,staticpaycloud.com,#Magecart,https://x.com/sdcyberresearch/status/1947994404901265579 2025-07-23 12:17:12,sdcyberresearch,url,http://staticpaycloud.com,#Magecart,https://x.com/sdcyberresearch/status/1947994404901265579 2025-07-23 12:17:12,sdcyberresearch,domain,backupper.pro,#Magecart,https://x.com/sdcyberresearch/status/1947994404901265579 2025-07-23 12:17:12,sdcyberresearch,url,http://backupper.pro,#Magecart,https://x.com/sdcyberresearch/status/1947994404901265579 2025-07-23 14:00:06,urldna_bot,domain,quiver-snagglefoot-0861.typedream.app,#scam #phishing,https://x.com/urldna_bot/status/1948020300420984917 2025-07-23 14:00:06,urldna_bot,url,https://quiver-snagglefoot-0861.typedream.app,#scam #phishing,https://x.com/urldna_bot/status/1948020300420984917 2025-07-23 14:10:19,yvesago,domain,mrl.entreposage-pbrs.com,#phishing,https://x.com/yvesago/status/1948022870002815082 2025-07-23 14:10:19,yvesago,url,https://mrl.entreposage-pbrs.com,#phishing,https://x.com/yvesago/status/1948022870002815082 2025-07-23 14:10:19,yvesago,ip,185.163.127.145,#phishing,https://x.com/yvesago/status/1948022870002815082 2025-07-23 14:29:54,Gi7w0rm,sha256,3461da3a2ddcced4a00f87dcd7650af48f97998a3ac9ca649d7ef3b7332bd997,,https://x.com/Gi7w0rm/status/1948027800591466773 2025-07-23 15:00:16,yvesago,domain,wetrans-ficher.com,#phishing,https://x.com/yvesago/status/1948035441497924025 2025-07-23 15:00:16,yvesago,url,https://wetrans-ficher.com/hotmail-master/,#phishing,https://x.com/yvesago/status/1948035441497924025 2025-07-23 15:00:16,yvesago,ip,169.239.182.184,#phishing,https://x.com/yvesago/status/1948035441497924025 2025-07-23 15:54:42,skocherhan,domain,chrome-update.pro,,https://x.com/skocherhan/status/1948049138412642742 2025-07-23 15:54:42,skocherhan,url,http://chrome-update.pro,,https://x.com/skocherhan/status/1948049138412642742 2025-07-23 15:54:42,skocherhan,md5,3e452e00cd7001d3328447710c3ab363,,https://x.com/skocherhan/status/1948049138412642742 2025-07-23 16:00:05,urldna_bot,domain,hanmmaidf.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948050492799570048 2025-07-23 16:00:05,urldna_bot,url,https://hanmmaidf.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948050492799570048 2025-07-23 16:53:28,drb_ra,url,https://107.174.147.15/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948063929885655345 2025-07-23 16:53:28,drb_ra,url,http://107.174.147.15:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1948063929885655345 2025-07-23 16:53:28,drb_ra,ip,107.174.147.15,#CobaltStrike #C2,https://x.com/drb_ra/status/1948063929885655345 2025-07-23 16:53:34,drb_ra,domain,t.ptib.su,#CobaltStrike #C2,https://x.com/drb_ra/status/1948063953768071428 2025-07-23 16:53:34,drb_ra,url,https://t.ptib.su/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948063953768071428 2025-07-23 16:53:34,drb_ra,url,http://45.143.92.81:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1948063953768071428 2025-07-23 16:53:34,drb_ra,ip,45.143.92.81,#CobaltStrike #C2,https://x.com/drb_ra/status/1948063953768071428 2025-07-23 16:53:40,drb_ra,url,http://47.245.61.75:53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948063979516915729 2025-07-23 16:53:40,drb_ra,ip,47.245.61.75,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948063979516915729 2025-07-23 17:38:01,v4ensics,domain,elta.courier-ls.sale,#phishing,https://x.com/v4ensics/status/1948075139645550660 2025-07-23 17:38:01,v4ensics,url,http://elta.courier-ls.sale/gr,#phishing,https://x.com/v4ensics/status/1948075139645550660 2025-07-23 18:00:09,urldna_bot,domain,server53564.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1948080710469726566 2025-07-23 18:00:09,urldna_bot,url,https://server53564.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1948080710469726566 2025-07-23 18:14:12,drb_ra,domain,2fm7tpwmpc2gd.cfc-execute.bj.baidubce.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948084247467896984 2025-07-23 18:14:12,drb_ra,url,https://2fm7tpwmpc2gd.cfc-execute.bj.baidubce.com/api/x,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948084247467896984 2025-07-23 18:14:12,drb_ra,url,http://180.76.55.45:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948084247467896984 2025-07-23 18:14:12,drb_ra,ip,180.76.55.45,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948084247467896984 2025-07-23 18:46:25,drb_ra,url,http://16.64.41.204:443,#Deimos #C2,https://x.com/drb_ra/status/1948092355036258666 2025-07-23 18:46:25,drb_ra,ip,16.64.41.204,#Deimos #C2,https://x.com/drb_ra/status/1948092355036258666 2025-07-23 18:46:30,drb_ra,url,http://18.253.92.151:443,#Deimos #C2,https://x.com/drb_ra/status/1948092375437619695 2025-07-23 18:46:30,drb_ra,ip,18.253.92.151,#Deimos #C2,https://x.com/drb_ra/status/1948092375437619695 2025-07-23 18:46:35,drb_ra,url,http://13.248.147.218:6443,#Deimos #C2,https://x.com/drb_ra/status/1948092395742195818 2025-07-23 18:46:35,drb_ra,ip,13.248.147.218,#Deimos #C2,https://x.com/drb_ra/status/1948092395742195818 2025-07-23 18:46:40,drb_ra,url,http://16.64.38.46:443,#Deimos #C2,https://x.com/drb_ra/status/1948092416667337189 2025-07-23 18:46:40,drb_ra,ip,16.64.38.46,#Deimos #C2,https://x.com/drb_ra/status/1948092416667337189 2025-07-23 18:46:45,drb_ra,url,http://163.172.234.31:7443,#Mythic #C2,https://x.com/drb_ra/status/1948092437563380011 2025-07-23 18:46:45,drb_ra,ip,163.172.234.31,#Mythic #C2,https://x.com/drb_ra/status/1948092437563380011 2025-07-23 18:46:50,drb_ra,url,http://102.117.165.12:7443,#Mythic #C2,https://x.com/drb_ra/status/1948092459336016061 2025-07-23 18:46:50,drb_ra,ip,102.117.165.12,#Mythic #C2,https://x.com/drb_ra/status/1948092459336016061 2025-07-23 18:46:55,drb_ra,url,http://144.172.101.181:7443,#Mythic #C2,https://x.com/drb_ra/status/1948092479791677508 2025-07-23 18:46:55,drb_ra,ip,144.172.101.181,#Mythic #C2,https://x.com/drb_ra/status/1948092479791677508 2025-07-23 18:47:01,drb_ra,url,http://164.92.238.177:7443,#Mythic #C2,https://x.com/drb_ra/status/1948092502956970455 2025-07-23 18:47:01,drb_ra,ip,164.92.238.177,#Mythic #C2,https://x.com/drb_ra/status/1948092502956970455 2025-07-23 18:47:05,drb_ra,url,http://43.205.82.171:443,#Sliver #C2,https://x.com/drb_ra/status/1948092523169362098 2025-07-23 18:47:05,drb_ra,ip,43.205.82.171,#Sliver #C2,https://x.com/drb_ra/status/1948092523169362098 2025-07-23 18:47:10,drb_ra,url,http://46.101.206.226:31337,#Sliver #C2,https://x.com/drb_ra/status/1948092542542565516 2025-07-23 18:47:10,drb_ra,ip,46.101.206.226,#Sliver #C2,https://x.com/drb_ra/status/1948092542542565516 2025-07-23 18:47:15,drb_ra,url,http://34.40.62.12:31337,#Sliver #C2,https://x.com/drb_ra/status/1948092563480596988 2025-07-23 18:49:19,drb_ra,url,http://198.135.51.107:6751,#Remcos #C2,https://x.com/drb_ra/status/1948093081422618747 2025-07-23 18:49:19,drb_ra,ip,198.135.51.107,#Remcos #C2,https://x.com/drb_ra/status/1948093081422618747 2025-07-23 18:49:24,drb_ra,url,http://206.123.149.194:2404,#Remcos #C2,https://x.com/drb_ra/status/1948093103446888825 2025-07-23 18:49:24,drb_ra,ip,206.123.149.194,#Remcos #C2,https://x.com/drb_ra/status/1948093103446888825 2025-07-23 18:49:30,drb_ra,url,http://109.230.231.31:2404,#Remcos #C2,https://x.com/drb_ra/status/1948093127438327811 2025-07-23 18:49:30,drb_ra,ip,109.230.231.31,#Remcos #C2,https://x.com/drb_ra/status/1948093127438327811 2025-07-23 18:49:34,drb_ra,url,http://173.249.28.102:2565,#Remcos #C2,https://x.com/drb_ra/status/1948093147122126879 2025-07-23 18:49:34,drb_ra,ip,173.249.28.102,#Remcos #C2,https://x.com/drb_ra/status/1948093147122126879 2025-07-23 18:49:40,drb_ra,url,http://31.40.212.38:8458,#C2,https://x.com/drb_ra/status/1948093169142321591 2025-07-23 18:49:45,drb_ra,url,http://31.40.212.38:433,#C2,https://x.com/drb_ra/status/1948093190944501880 2025-07-23 18:49:45,drb_ra,ip,31.40.212.38,#C2,https://x.com/drb_ra/status/1948093190944501880 2025-07-23 18:49:50,drb_ra,url,http://207.180.246.14:8080,#C2,https://x.com/drb_ra/status/1948093214344528258 2025-07-23 18:49:50,drb_ra,ip,207.180.246.14,#C2,https://x.com/drb_ra/status/1948093214344528258 2025-07-23 18:49:56,drb_ra,url,http://51.84.68.56:1099,#NetSupportRAT #C2,https://x.com/drb_ra/status/1948093236406579316 2025-07-23 18:49:56,drb_ra,ip,51.84.68.56,#NetSupportRAT #C2,https://x.com/drb_ra/status/1948093236406579316 2025-07-23 18:50:01,drb_ra,url,http://13.127.250.197:1963,#NetSupportRAT #C2,https://x.com/drb_ra/status/1948093257520439303 2025-07-23 18:50:01,drb_ra,ip,13.127.250.197,#NetSupportRAT #C2,https://x.com/drb_ra/status/1948093257520439303 2025-07-23 18:50:06,drb_ra,url,http://18.61.48.54:17270,#NetSupportRAT #C2,https://x.com/drb_ra/status/1948093278785503322 2025-07-23 18:50:06,drb_ra,ip,18.61.48.54,#NetSupportRAT #C2,https://x.com/drb_ra/status/1948093278785503322 2025-07-23 18:50:11,drb_ra,url,http://172.94.1.232:81,#AsyncRAT #C2,https://x.com/drb_ra/status/1948093299870622022 2025-07-23 18:50:11,drb_ra,ip,172.94.1.232,#AsyncRAT #C2,https://x.com/drb_ra/status/1948093299870622022 2025-07-23 18:50:16,drb_ra,url,http://92.249.61.30:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1948093320540062000 2025-07-23 18:50:16,drb_ra,ip,92.249.61.30,#AsyncRAT #C2,https://x.com/drb_ra/status/1948093320540062000 2025-07-23 18:50:21,drb_ra,url,http://185.196.10.29:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1948093341352280253 2025-07-23 18:50:21,drb_ra,ip,185.196.10.29,#AsyncRAT #C2,https://x.com/drb_ra/status/1948093341352280253 2025-07-23 18:50:26,drb_ra,url,http://54.77.30.65:80,#Interactsh #C2,https://x.com/drb_ra/status/1948093363019759673 2025-07-23 18:50:26,drb_ra,ip,54.77.30.65,#Interactsh #C2,https://x.com/drb_ra/status/1948093363019759673 2025-07-23 18:50:32,drb_ra,url,http://23.94.136.226:587,#Interactsh #C2,https://x.com/drb_ra/status/1948093388181389555 2025-07-23 18:50:38,drb_ra,url,http://23.94.136.226:25,#Interactsh #C2,https://x.com/drb_ra/status/1948093412558671945 2025-07-23 18:50:38,drb_ra,ip,23.94.136.226,#Interactsh #C2,https://x.com/drb_ra/status/1948093412558671945 2025-07-23 18:50:43,drb_ra,url,http://35.228.18.60:3333,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1948093435346383041 2025-07-23 18:50:43,drb_ra,ip,35.228.18.60,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1948093435346383041 2025-07-23 18:50:48,drb_ra,url,http://1.13.164.149:8888,#Supershell #C2,https://x.com/drb_ra/status/1948093456674382260 2025-07-23 18:50:53,drb_ra,url,http://188.4.60.216:995,#Qakbot #C2,https://x.com/drb_ra/status/1948093477272846587 2025-07-23 18:50:53,drb_ra,ip,188.4.60.216,#Qakbot #C2,https://x.com/drb_ra/status/1948093477272846587 2025-07-23 18:50:58,drb_ra,url,http://44.245.0.39:10080,#Havoc #C2,https://x.com/drb_ra/status/1948093497770172453 2025-07-23 18:50:58,drb_ra,ip,44.245.0.39,#Havoc #C2,https://x.com/drb_ra/status/1948093497770172453 2025-07-23 18:51:03,drb_ra,url,http://5.79.96.117:8081,#Bianlian #C2,https://x.com/drb_ra/status/1948093518959857825 2025-07-23 18:51:08,drb_ra,url,http://45.9.2.12:443,#Deimos #C2,https://x.com/drb_ra/status/1948093539310825512 2025-07-23 18:51:08,drb_ra,ip,45.9.2.12,#Deimos #C2,https://x.com/drb_ra/status/1948093539310825512 2025-07-23 18:53:11,drb_ra,url,http://173.81.180.59:8080,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1948094057387094253 2025-07-23 18:53:11,drb_ra,ip,173.81.180.59,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1948094057387094253 2025-07-23 18:53:17,drb_ra,url,http://51.195.148.62:8080,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1948094080186990813 2025-07-23 18:53:17,drb_ra,ip,51.195.148.62,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1948094080186990813 2025-07-23 18:53:22,drb_ra,url,http://34.147.156.134:80,#C2,https://x.com/drb_ra/status/1948094102592979289 2025-07-23 18:53:22,drb_ra,ip,34.147.156.134,#C2,https://x.com/drb_ra/status/1948094102592979289 2025-07-23 20:00:00,setThreatTitle,domain,acrstealer.top,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,url,http://acrstealer.top,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,domain,justlittleluxuriedrs.shop,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,url,http://justlittleluxuriedrs.shop,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,domain,longstoryshortdesigndes.shop,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,url,http://longstoryshortdesigndes.shop,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,domain,magneticcitizen.shop,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,url,http://magneticcitizen.shop,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,ip,116.202.44.220,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:00,setThreatTitle,ip,83.147.255.219,,https://x.com/setThreatTitle/status/1948110870820577464 2025-07-23 20:00:10,urldna_bot,domain,karandevgan452.github.io,#phishing #scam,https://x.com/urldna_bot/status/1948110913141178408 2025-07-23 20:00:10,urldna_bot,url,http://karandevgan452.github.io/Netflix-Clone,#phishing #scam,https://x.com/urldna_bot/status/1948110913141178408 2025-07-23 21:00:03,threatquery,url,http://116.203.165.217,#C2 #malware,https://x.com/threatquery/status/1948125983866749126 2025-07-23 21:00:03,threatquery,ip,116.203.165.217,#C2 #malware,https://x.com/threatquery/status/1948125983866749126 2025-07-23 21:00:04,threatquery,url,http://107.174.147.15,#C2 #CobaltStrike #malware,https://x.com/threatquery/status/1948125987444510782 2025-07-23 21:00:04,threatquery,url,http://45.143.92.81,#C2 #CobaltStrike #malware,https://x.com/threatquery/status/1948125985552875911 2025-07-23 21:14:49,skocherhan,domain,kefel.io,,https://x.com/skocherhan/status/1948129698837360688 2025-07-23 21:14:49,skocherhan,url,http://kefel.io,,https://x.com/skocherhan/status/1948129698837360688 2025-07-23 21:45:09,ir0n_fe,domain,syvite.com,#phishing,https://x.com/ir0n_fe/status/1948137333896945847 2025-07-23 21:45:09,ir0n_fe,url,https://syvite.com/login/,#phishing,https://x.com/ir0n_fe/status/1948137333896945847 2025-07-23 22:00:07,urldna_bot,domain,personas-virtualbqcolombia.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1948141101388349601 2025-07-23 22:00:07,urldna_bot,url,http://personas-virtualbqcolombia.vercel.app/sites/bc/manager/71,#phishing #scam,https://x.com/urldna_bot/status/1948141101388349601 2025-07-23 23:00:48,drb_ra,url,http://8.134.166.14:61235,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948156372304232606 2025-07-23 23:00:54,drb_ra,url,http://43.138.22.149:8089,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948156394626064516 2025-07-23 23:00:59,drb_ra,url,http://101.34.66.77:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948156416713171403 2025-07-23 23:00:59,drb_ra,ip,101.34.66.77,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948156416713171403 2025-07-23 23:03:13,drb_ra,url,http://213.209.150.214:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948156977269645745 2025-07-23 23:03:13,drb_ra,ip,213.209.150.214,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948156977269645745 2025-07-23 23:05:16,drb_ra,url,http://43.138.22.149:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948157494796210348 2025-07-23 23:05:16,drb_ra,ip,43.138.22.149,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948157494796210348 2025-07-23 23:05:22,drb_ra,url,http://110.41.12.167:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948157518229725241 2025-07-23 23:05:22,drb_ra,ip,110.41.12.167,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948157518229725241 2025-07-23 23:29:18,masaomi346,domain,shinkansen2-begin.gczdzq.cn,#phishing,https://x.com/masaomi346/status/1948163544186597409 2025-07-23 23:29:18,masaomi346,url,https://shinkansen2-begin.gczdzq.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1948163544186597409 2025-07-24 00:00:10,urldna_bot,domain,anandsr-dev.github.io,#scam #phishing,https://x.com/urldna_bot/status/1948171311466897433 2025-07-24 00:00:10,urldna_bot,url,http://anandsr-dev.github.io/facebookclone,#scam #phishing,https://x.com/urldna_bot/status/1948171311466897433 2025-07-24 00:50:23,catnap707,domain,eiadeythinngoea.0m362.com,#phishing,https://x.com/catnap707/status/1948183949433590091 2025-07-24 00:50:23,catnap707,url,http://eiadeythinngoea.0m362.com,#phishing,https://x.com/catnap707/status/1948183949433590091 2025-07-24 00:50:23,catnap707,url,http://43.129.87.244,#phishing,https://x.com/catnap707/status/1948183949433590091 2025-07-24 00:50:23,catnap707,ip,43.129.87.244,#phishing,https://x.com/catnap707/status/1948183949433590091 2025-07-24 01:07:16,Metemcyber,url,https://nhn460.top/apemgu/,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:07:16,Metemcyber,domain,2h65tv.top,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:07:16,Metemcyber,url,https://2h65tv.top/apemgu/,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:07:16,Metemcyber,domain,nhn460.top,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:07:16,Metemcyber,url,https://wci6gh.top/apemgu/,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:07:16,Metemcyber,url,http://47.76.208.57,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:07:16,Metemcyber,ip,47.76.208.57,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:07:16,Metemcyber,domain,wci6gh.top,#phishing,https://x.com/Metemcyber/status/1948188198552977502 2025-07-24 01:13:43,Metemcyber,url,http://172.67.222.142,#phishing,https://x.com/Metemcyber/status/1948189819571716248 2025-07-24 01:13:43,Metemcyber,domain,dhl-because.kuflqpk.cn,#phishing,https://x.com/Metemcyber/status/1948189819571716248 2025-07-24 01:13:43,Metemcyber,url,https://dhl-because.kuflqpk.cn/portal_login_exp/getQuoteTab/,#phishing,https://x.com/Metemcyber/status/1948189819571716248 2025-07-24 01:13:43,Metemcyber,url,http://104.21.43.75,#phishing,https://x.com/Metemcyber/status/1948189819571716248 2025-07-24 01:16:00,fbgwls245,domain,xssforumv3isucukbxhdhwz67hoa5e2voakcfkuieq4ch257vsburuid.onion,,https://x.com/fbgwls245/status/1948190393901916478 2025-07-24 01:16:00,fbgwls245,url,http://xssforumv3isucukbxhdhwz67hoa5e2voakcfkuieq4ch257vsburuid.onion,,https://x.com/fbgwls245/status/1948190393901916478 2025-07-24 01:23:18,Metemcyber,url,http://104.21.16.1,#phishing,https://x.com/Metemcyber/status/1948192232840061021 2025-07-24 01:23:18,Metemcyber,url,http://104.21.48.1,#phishing,https://x.com/Metemcyber/status/1948192232840061021 2025-07-24 01:23:18,Metemcyber,url,https://trackings-geniar.nwwdie.cn/japeanposder/,#phishing,https://x.com/Metemcyber/status/1948192232840061021 2025-07-24 01:23:18,Metemcyber,domain,trackings-geniar.nwwdie.cn,#phishing,https://x.com/Metemcyber/status/1948192232840061021 2025-07-24 01:23:18,Metemcyber,url,http://104.21.32.1,#phishing,https://x.com/Metemcyber/status/1948192232840061021 2025-07-24 01:23:18,Metemcyber,url,http://104.21.112.1,#phishing,https://x.com/Metemcyber/status/1948192232840061021 2025-07-24 02:00:09,urldna_bot,domain,webmailservice08.wixsite.com,#phishing #scam,https://x.com/urldna_bot/status/1948201507012161904 2025-07-24 02:00:09,urldna_bot,url,https://webmailservice08.wixsite.com/my-site,#phishing #scam,https://x.com/urldna_bot/status/1948201507012161904 2025-07-24 03:40:00,momomopas,url,https://gear-increases-prefers-gender.trycloudflare.com,#opendir,https://x.com/momomopas/status/1948226633896431816 2025-07-24 03:40:00,momomopas,url,https://golden-founded-liz-openings.trycloudflare.com,#opendir,https://x.com/momomopas/status/1948226633896431816 2025-07-24 03:40:00,momomopas,domain,golden-founded-liz-openings.trycloudflare.com,#opendir,https://x.com/momomopas/status/1948226633896431816 2025-07-24 03:40:00,momomopas,domain,gear-increases-prefers-gender.trycloudflare.com,#opendir,https://x.com/momomopas/status/1948226633896431816 2025-07-24 03:40:00,momomopas,url,https://science-payments-comics-dom.trycloudflare.com,#opendir,https://x.com/momomopas/status/1948226633896431816 2025-07-24 03:40:00,momomopas,domain,science-payments-comics-dom.trycloudflare.com,#opendir,https://x.com/momomopas/status/1948226633896431816 2025-07-24 04:00:05,urldna_bot,domain,pub-682ad3b65d944376b919745aae3c56d4.r2.dev,#scam #phishing,https://x.com/urldna_bot/status/1948231687558594584 2025-07-24 04:00:05,urldna_bot,url,http://pub-682ad3b65d944376b919745aae3c56d4.r2.dev/document29.html,#scam #phishing,https://x.com/urldna_bot/status/1948231687558594584 2025-07-24 04:00:05,urldna_bot,md5,682ad3b65d944376b919745aae3c56d4,#scam #phishing,https://x.com/urldna_bot/status/1948231687558594584 2025-07-24 05:57:01,Metemcyber,url,http://104.21.77.168,#phishing,https://x.com/Metemcyber/status/1948261115563037054 2025-07-24 05:57:01,Metemcyber,url,http://172.67.210.67,#phishing,https://x.com/Metemcyber/status/1948261115563037054 2025-07-24 05:57:01,Metemcyber,url,https://rznzi0.top/nsCCtsCdx/,#phishing,https://x.com/Metemcyber/status/1948261115563037054 2025-07-24 05:57:01,Metemcyber,domain,rznzi0.top,#phishing,https://x.com/Metemcyber/status/1948261115563037054 2025-07-24 06:00:06,urldna_bot,url,http://heranfirsatlaryakinlardasizleribekliyor.xyz/sadece-online-ozel/urun.php?r=75,#phishing #scam,https://x.com/urldna_bot/status/1948261891379241008 2025-07-24 06:00:06,urldna_bot,domain,heranfirsatlaryakinlardasizleribekliyor.xyz,#phishing #scam,https://x.com/urldna_bot/status/1948261891379241008 2025-07-24 06:05:04,Metemcyber,url,http://104.21.68.123,#phishing,https://x.com/Metemcyber/status/1948263141835477375 2025-07-24 06:05:04,Metemcyber,url,http://172.67.195.88,#phishing,https://x.com/Metemcyber/status/1948263141835477375 2025-07-24 06:05:04,Metemcyber,domain,1jfr2v.top,#phishing,https://x.com/Metemcyber/status/1948263141835477375 2025-07-24 06:05:04,Metemcyber,url,https://1jfr2v.top/nsCCtsCdx/,#phishing,https://x.com/Metemcyber/status/1948263141835477375 2025-07-24 06:08:10,harugasumi,url,https://shinkansen2-vestig.fphhvu.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/harugasumi/status/1948263920679944611 2025-07-24 06:08:10,harugasumi,domain,shinkansen2-vestig.fphhvu.cn,#phishing,https://x.com/harugasumi/status/1948263920679944611 2025-07-24 06:16:09,Metemcyber,url,http://172.67.133.110,#phishing,https://x.com/Metemcyber/status/1948265929231479102 2025-07-24 06:16:09,Metemcyber,domain,czb8r1.top,#phishing,https://x.com/Metemcyber/status/1948265929231479102 2025-07-24 06:16:09,Metemcyber,url,http://104.21.13.236,#phishing,https://x.com/Metemcyber/status/1948265929231479102 2025-07-24 06:16:09,Metemcyber,url,https://czb8r1.top/nsCCtsCdx/,#phishing,https://x.com/Metemcyber/status/1948265929231479102 2025-07-24 06:26:48,harugasumi,url,https://pimateck.jp,#phishing,https://x.com/harugasumi/status/1948268609450770901 2025-07-24 06:26:48,harugasumi,domain,pimateck.jp,#phishing,https://x.com/harugasumi/status/1948268609450770901 2025-07-24 06:45:55,drb_ra,url,http://47.105.51.165:2000,#C2 #Sliver,https://x.com/drb_ra/status/1948273423500656694 2025-07-24 06:45:55,drb_ra,ip,47.105.51.165,#C2 #Sliver,https://x.com/drb_ra/status/1948273423500656694 2025-07-24 06:47:59,drb_ra,url,http://85.102.13.26:9999,#AsyncRAT #C2,https://x.com/drb_ra/status/1948273942126374978 2025-07-24 06:48:05,drb_ra,ip,85.102.13.26,#AsyncRAT #C2,https://x.com/drb_ra/status/1948273964758774072 2025-07-24 06:48:05,drb_ra,url,http://85.102.13.26:3000,#AsyncRAT #C2,https://x.com/drb_ra/status/1948273964758774072 2025-07-24 06:48:10,drb_ra,url,http://172.81.62.139:9999,#AsyncRAT #C2,https://x.com/drb_ra/status/1948273986325922186 2025-07-24 06:48:10,drb_ra,ip,172.81.62.139,#AsyncRAT #C2,https://x.com/drb_ra/status/1948273986325922186 2025-07-24 06:48:15,drb_ra,ip,199.248.230.143,#Interactsh #C2,https://x.com/drb_ra/status/1948274008761286737 2025-07-24 06:48:15,drb_ra,url,http://199.248.230.143:80,#Interactsh #C2,https://x.com/drb_ra/status/1948274008761286737 2025-07-24 06:48:20,drb_ra,url,http://34.86.231.233:25,#Interactsh #C2,https://x.com/drb_ra/status/1948274031599259718 2025-07-24 06:48:26,drb_ra,url,http://85.208.84.56:45051,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1948274054445576247 2025-07-24 06:48:26,drb_ra,ip,85.208.84.56,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1948274054445576247 2025-07-24 06:48:31,drb_ra,url,http://2.50.53.227:443,#Qakbot #C2,https://x.com/drb_ra/status/1948274076805382214 2025-07-24 06:48:36,drb_ra,ip,54.242.171.49,#Havoc #C2,https://x.com/drb_ra/status/1948274098611565051 2025-07-24 06:48:36,drb_ra,url,http://54.242.171.49:443,#Havoc #C2,https://x.com/drb_ra/status/1948274098611565051 2025-07-24 06:48:42,drb_ra,url,http://181.174.164.139:443,#Havoc #C2,https://x.com/drb_ra/status/1948274121990713555 2025-07-24 06:48:42,drb_ra,ip,181.174.164.139,#Havoc #C2,https://x.com/drb_ra/status/1948274121990713555 2025-07-24 06:48:48,drb_ra,url,http://111.90.151.59:7443,#Mythic #C2,https://x.com/drb_ra/status/1948274145545875842 2025-07-24 06:48:48,drb_ra,ip,111.90.151.59,#Mythic #C2,https://x.com/drb_ra/status/1948274145545875842 2025-07-24 06:49:08,getriffsec,domain,XSS.is,#ransomware,https://x.com/getriffsec/status/1948274231080366553 2025-07-24 06:49:08,getriffsec,url,http://XSS.is,#ransomware,https://x.com/getriffsec/status/1948274231080366553 2025-07-24 06:50:51,drb_ra,url,http://91.99.136.143:11601,#C2,https://x.com/drb_ra/status/1948274663857004601 2025-07-24 06:50:51,drb_ra,ip,91.99.136.143,#C2,https://x.com/drb_ra/status/1948274663857004601 2025-07-24 06:50:57,drb_ra,url,http://47.107.234.40:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1948274687164723336 2025-07-24 06:50:57,drb_ra,ip,47.107.234.40,#Reverse_SSH #C2,https://x.com/drb_ra/status/1948274687164723336 2025-07-24 06:51:03,drb_ra,ip,13.232.71.100,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948274713995743365 2025-07-24 06:51:03,drb_ra,url,http://13.232.71.100:5222,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948274713995743365 2025-07-24 06:51:10,drb_ra,ip,130.164.181.230,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948274740587540861 2025-07-24 06:51:10,drb_ra,url,http://130.164.181.230:443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948274740587540861 2025-07-24 06:51:15,drb_ra,url,http://102.100.73.246:443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948274763631092218 2025-07-24 06:51:15,drb_ra,ip,102.100.73.246,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948274763631092218 2025-07-24 07:46:45,harugasumi,url,https://www2eponfaxfcardcojp.t4949.fit,#phishing,https://x.com/harugasumi/status/1948288729854169118 2025-07-24 07:46:45,harugasumi,domain,www2eponfaxfcardcojp.t4949.fit,#phishing,https://x.com/harugasumi/status/1948288729854169118 2025-07-24 07:56:53,ShadowOpCode,url,https://edeka.gewinnspiel.gratis,#phishing,https://x.com/ShadowOpCode/status/1948291281576251709 2025-07-24 07:56:53,ShadowOpCode,domain,edeka.gewinnspiel.gratis,#phishing,https://x.com/ShadowOpCode/status/1948291281576251709 2025-07-24 08:00:09,urldna_bot,domain,online-taxies.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1948292103861092819 2025-07-24 08:00:09,urldna_bot,url,https://online-taxies.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1948292103861092819 2025-07-24 08:24:27,ShadowOpCode,url,https://nerdflick.com,#phishing,https://x.com/ShadowOpCode/status/1948298219848405246 2025-07-24 08:24:27,ShadowOpCode,domain,nerdflick.com,#phishing,https://x.com/ShadowOpCode/status/1948298219848405246 2025-07-24 08:24:27,ShadowOpCode,url,https://promopeaks.lat,#phishing,https://x.com/ShadowOpCode/status/1948298219848405246 2025-07-24 08:24:27,ShadowOpCode,domain,promopeaks.lat,#phishing,https://x.com/ShadowOpCode/status/1948298219848405246 2025-07-24 08:46:48,skocherhan,domain,etwcz.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etver.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etmut.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etmut.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etver.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etkeh.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etkeh.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etmiy.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etmiy.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etwcz.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etetb.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etlbl.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etlbl.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,ip,45.194.36.87,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etwvt.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etnbv.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etnbv.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://45.194.36.87,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etetb.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etwvt.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,url,http://etpbt.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 08:46:48,skocherhan,domain,etpbt.com,#phishing,https://x.com/skocherhan/status/1948303844183584840 2025-07-24 09:55:48,Cyberteam008,ip,158.247.242.206,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,url,http://158.247.230.196,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,url,http://158.247.242.206,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,ip,158.247.230.196,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,url,http://158.247.204.137,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,ip,158.247.249.46,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,url,http://158.247.249.46,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,ip,158.247.204.137,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 09:55:48,Cyberteam008,sha256,bd049d589a4165a7b0e5541722f96fefa4c27b53c7949f41c66f155d03268a45,#APT #Kimsuky #malware,https://x.com/Cyberteam008/status/1948321207020876109 2025-07-24 10:47:47,luke92881,url,http://images-searcher.com,,https://x.com/luke92881/status/1948334289604518204 2025-07-24 10:47:47,luke92881,domain,pix-seek.com,,https://x.com/luke92881/status/1948334289604518204 2025-07-24 10:47:47,luke92881,domain,images-searcher.com,,https://x.com/luke92881/status/1948334289604518204 2025-07-24 10:47:47,luke92881,url,http://pix-seek.com,,https://x.com/luke92881/status/1948334289604518204 2025-07-24 11:13:23,ShadowChasing1,sha256,372c8dc7df9e584f117c9543f1fbe1cc3674e8e47a848feaefa049e8e71870dc,#Kimsuky #APT,https://x.com/ShadowChasing1/status/1948340732600975558 2025-07-24 11:40:52,masaomi346,domain,ausumengineering.com,#phishing,https://x.com/masaomi346/status/1948347647418617890 2025-07-24 11:40:52,masaomi346,url,https://ausumengineering.com/OR/Sites/index.html,#phishing,https://x.com/masaomi346/status/1948347647418617890 2025-07-24 11:40:52,masaomi346,url,https://ausumengineering.com/JP/Sites/index.html,#phishing,https://x.com/masaomi346/status/1948347647418617890 2025-07-24 12:00:06,urldna_bot,domain,svckhc.wixsite.com,#phishing #scam,https://x.com/urldna_bot/status/1948352488970567885 2025-07-24 12:00:06,urldna_bot,url,https://svckhc.wixsite.com/attmail,#phishing #scam,https://x.com/urldna_bot/status/1948352488970567885 2025-07-24 12:00:16,SarlackLab,url,http://147.185.221.30:31760,#C2 #Njrat,https://x.com/SarlackLab/status/1948352531291050130 2025-07-24 12:00:16,SarlackLab,domain,style-vitamin.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1948352531291050130 2025-07-24 12:00:16,SarlackLab,ip,147.185.221.30,#C2 #Njrat,https://x.com/SarlackLab/status/1948352531291050130 2025-07-24 12:00:16,SarlackLab,url,http://style-vitamin.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1948352531291050130 2025-07-24 12:25:54,skocherhan,md5,aa1b4aa4d2faec5723e4d9cb8a3c5ec0,,https://x.com/skocherhan/status/1948358981463707941 2025-07-24 12:25:54,skocherhan,md5,3becdef447c0b52db0907449be6b794f,,https://x.com/skocherhan/status/1948358981463707941 2025-07-24 12:25:54,skocherhan,md5,f72ad710abf413b5f7f4310ffba28749,,https://x.com/skocherhan/status/1948358981463707941 2025-07-24 12:26:39,skocherhan,domain,theazot.icu,,https://x.com/skocherhan/status/1948359170035433828 2025-07-24 12:26:39,skocherhan,url,http://breachforums.is,,https://x.com/skocherhan/status/1948359170035433828 2025-07-24 12:26:39,skocherhan,url,http://theazot.icu,,https://x.com/skocherhan/status/1948359170035433828 2025-07-24 12:26:39,skocherhan,domain,breachforums.is,,https://x.com/skocherhan/status/1948359170035433828 2025-07-24 12:26:39,skocherhan,url,http://theazot.xyz,,https://x.com/skocherhan/status/1948359170035433828 2025-07-24 12:26:39,skocherhan,domain,theazot.xyz,,https://x.com/skocherhan/status/1948359170035433828 2025-07-24 14:41:41,skocherhan,sha256,8b6acc087e403b913254dd7d99f09136dc54fa45cf3029a8566151120d34d1c2,,https://x.com/skocherhan/status/1948393151770550655 2025-07-24 14:41:41,skocherhan,sha256,969fb3e705ba8afe757ba7617e75d1096d4793d14796e2734613cfcc50675652,,https://x.com/skocherhan/status/1948393151770550655 2025-07-24 15:14:46,harugasumi,domain,hhmkwl.cn,#phishing,https://x.com/harugasumi/status/1948401477875278194 2025-07-24 15:14:46,harugasumi,url,https://www.hhmkwl.cn,#phishing,https://x.com/harugasumi/status/1948401477875278194 2025-07-24 15:40:24,harugasumi,ip,66.33.60.129,#phishing,https://x.com/harugasumi/status/1948407927846617226 2025-07-24 15:40:24,harugasumi,url,https://line.me/ti/p/AFhqAaG2fm,#phishing,https://x.com/harugasumi/status/1948407927846617226 2025-07-24 15:40:24,harugasumi,ip,76.76.21.93,#phishing,https://x.com/harugasumi/status/1948407927846617226 2025-07-24 15:40:24,harugasumi,domain,fbgg.online,#phishing,https://x.com/harugasumi/status/1948407927846617226 2025-07-24 15:40:24,harugasumi,url,https://fbgg.online/sdah,#phishing,https://x.com/harugasumi/status/1948407927846617226 2025-07-24 17:02:30,ReBensk,md5,bf73b53bb84355a0ef0db44eda904267,#Android #Trojan #malware,https://x.com/ReBensk/status/1948428588384223586 2025-07-24 17:23:27,ReBensk,md5,73d5fc8a679c256723ce041e7e166811,#malware #Android #Trojan,https://x.com/ReBensk/status/1948433861433852323 2025-07-24 17:27:54,skocherhan,domain,ecimg.cafe24img.com,,https://x.com/skocherhan/status/1948434982474564028 2025-07-24 17:27:54,skocherhan,url,http://ecimg.cafe24img.com/pg1661b51356846073/astrove810/web/tracking/index.html,,https://x.com/skocherhan/status/1948434982474564028 2025-07-24 18:00:07,urldna_bot,domain,zimfree.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948443087660871887 2025-07-24 18:00:07,urldna_bot,url,https://zimfree.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948443087660871887 2025-07-24 18:22:07,teamcymru_S2,url,http://techzcore.org,,https://x.com/teamcymru_S2/status/1948448626323099733 2025-07-24 18:22:07,teamcymru_S2,domain,cypowertech.org,,https://x.com/teamcymru_S2/status/1948448626323099733 2025-07-24 18:22:07,teamcymru_S2,url,http://cypowertech.org,,https://x.com/teamcymru_S2/status/1948448626323099733 2025-07-24 18:22:07,teamcymru_S2,domain,techzcore.org,,https://x.com/teamcymru_S2/status/1948448626323099733 2025-07-24 18:22:07,teamcymru_S2,ip,94.131.108.94,,https://x.com/teamcymru_S2/status/1948448626323099733 2025-07-24 18:39:13,SarlackLab,domain,compute.hwclouds-dns.com,,https://x.com/SarlackLab/status/1948452931084157048 2025-07-24 18:39:13,SarlackLab,url,http://compute.hwclouds-dns.com,,https://x.com/SarlackLab/status/1948452931084157048 2025-07-24 18:45:49,drb_ra,url,http://170.238.45.40:31337,#C2 #Sliver,https://x.com/drb_ra/status/1948454592275952080 2025-07-24 18:45:49,drb_ra,ip,170.238.45.40,#C2 #Sliver,https://x.com/drb_ra/status/1948454592275952080 2025-07-24 18:45:55,drb_ra,url,http://139.59.44.30:31337,#C2 #Sliver,https://x.com/drb_ra/status/1948454615491772843 2025-07-24 18:45:55,drb_ra,ip,139.59.44.30,#C2 #Sliver,https://x.com/drb_ra/status/1948454615491772843 2025-07-24 18:46:00,drb_ra,url,http://198.7.124.59:31337,#C2 #Sliver,https://x.com/drb_ra/status/1948454636668813785 2025-07-24 18:46:00,drb_ra,ip,198.7.124.59,#C2 #Sliver,https://x.com/drb_ra/status/1948454636668813785 2025-07-24 18:46:06,drb_ra,url,http://85.198.82.179:31337,#C2 #Sliver,https://x.com/drb_ra/status/1948454659812982914 2025-07-24 18:46:06,drb_ra,ip,85.198.82.179,#C2 #Sliver,https://x.com/drb_ra/status/1948454659812982914 2025-07-24 18:48:10,drb_ra,url,http://117.50.172.208:3333,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1948455179663409600 2025-07-24 18:48:10,drb_ra,ip,117.50.172.208,#C2 #EvilGoPhish #Evilginx,https://x.com/drb_ra/status/1948455179663409600 2025-07-24 18:48:15,drb_ra,url,http://102.209.118.14:443,#C2 #Havoc,https://x.com/drb_ra/status/1948455201590894916 2025-07-24 18:48:15,drb_ra,ip,102.209.118.14,#C2 #Havoc,https://x.com/drb_ra/status/1948455201590894916 2025-07-24 18:48:20,drb_ra,url,http://89.117.123.250:8443,#C2 #Havoc,https://x.com/drb_ra/status/1948455224018174106 2025-07-24 18:48:20,drb_ra,ip,89.117.123.250,#C2 #Havoc,https://x.com/drb_ra/status/1948455224018174106 2025-07-24 18:48:25,drb_ra,url,http://47.117.12.211:443,#C2 #Havoc,https://x.com/drb_ra/status/1948455245740474454 2025-07-24 18:48:25,drb_ra,ip,47.117.12.211,#C2 #Havoc,https://x.com/drb_ra/status/1948455245740474454 2025-07-24 18:48:31,drb_ra,url,http://18.252.140.23:443,#C2 #Deimos,https://x.com/drb_ra/status/1948455268062540060 2025-07-24 18:48:31,drb_ra,ip,18.252.140.23,#C2 #Deimos,https://x.com/drb_ra/status/1948455268062540060 2025-07-24 18:48:36,drb_ra,url,http://3.72.32.252:443,#C2 #Deimos,https://x.com/drb_ra/status/1948455289830654357 2025-07-24 18:48:41,drb_ra,url,http://15.200.139.55:443,#C2 #Deimos,https://x.com/drb_ra/status/1948455313369432421 2025-07-24 18:48:41,drb_ra,ip,15.200.139.55,#C2 #Deimos,https://x.com/drb_ra/status/1948455313369432421 2025-07-24 18:48:47,drb_ra,url,http://54.184.56.60:443,#C2 #Deimos,https://x.com/drb_ra/status/1948455336501039592 2025-07-24 18:48:47,drb_ra,ip,54.184.56.60,#C2 #Deimos,https://x.com/drb_ra/status/1948455336501039592 2025-07-24 18:48:52,drb_ra,url,http://87.228.114.68:7443,#C2 #Mythic,https://x.com/drb_ra/status/1948455357870998008 2025-07-24 18:48:52,drb_ra,ip,87.228.114.68,#C2 #Mythic,https://x.com/drb_ra/status/1948455357870998008 2025-07-24 18:48:58,drb_ra,url,http://109.196.100.217:7443,#C2 #Mythic,https://x.com/drb_ra/status/1948455381442703631 2025-07-24 18:48:58,drb_ra,ip,109.196.100.217,#C2 #Mythic,https://x.com/drb_ra/status/1948455381442703631 2025-07-24 18:49:04,drb_ra,url,http://45.78.225.208:7443,#C2 #Mythic,https://x.com/drb_ra/status/1948455409683235084 2025-07-24 18:49:04,drb_ra,ip,45.78.225.208,#C2 #Mythic,https://x.com/drb_ra/status/1948455409683235084 2025-07-24 18:51:08,drb_ra,url,http://212.193.2.162:3389,#C2,https://x.com/drb_ra/status/1948455928002424889 2025-07-24 18:51:08,drb_ra,ip,212.193.2.162,#C2,https://x.com/drb_ra/status/1948455928002424889 2025-07-24 18:51:13,drb_ra,url,http://206.189.111.244:443,#C2,https://x.com/drb_ra/status/1948455949917675584 2025-07-24 18:51:13,drb_ra,ip,206.189.111.244,#C2,https://x.com/drb_ra/status/1948455949917675584 2025-07-24 18:51:19,drb_ra,url,http://176.32.38.168:443,#C2,https://x.com/drb_ra/status/1948455974366286093 2025-07-24 18:51:19,drb_ra,ip,176.32.38.168,#C2,https://x.com/drb_ra/status/1948455974366286093 2025-07-24 18:51:25,drb_ra,url,http://8.139.5.71:47486,#C2,https://x.com/drb_ra/status/1948456000551616551 2025-07-24 18:51:31,drb_ra,url,http://3.96.189.206:1224,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948456023184081069 2025-07-24 18:51:36,drb_ra,url,http://3.96.189.206:1024,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948456047058059384 2025-07-24 18:51:42,drb_ra,url,http://16.51.166.161:8636,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948456069325267022 2025-07-24 18:51:42,drb_ra,ip,16.51.166.161,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948456069325267022 2025-07-24 18:51:48,drb_ra,url,http://34.23.44.248:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1948456094097146034 2025-07-24 18:51:53,drb_ra,url,http://34.250.176.156:80,#C2 #Interactsh,https://x.com/drb_ra/status/1948456117404926443 2025-07-24 18:51:53,drb_ra,ip,34.250.176.156,#C2 #Interactsh,https://x.com/drb_ra/status/1948456117404926443 2025-07-24 20:00:05,urldna_bot,domain,y3betbet.com,#scam #phishing,https://x.com/urldna_bot/status/1948473281910100218 2025-07-24 20:00:05,urldna_bot,url,http://y3betbet.com,#scam #phishing,https://x.com/urldna_bot/status/1948473281910100218 2025-07-24 21:00:03,threatquery,url,http://64.188.76.192,#malware #C2,https://x.com/threatquery/status/1948488372936151447 2025-07-24 21:00:03,threatquery,ip,64.188.76.192,#malware #C2,https://x.com/threatquery/status/1948488372936151447 2025-07-24 21:00:04,threatquery,url,http://104.207.140.146,#malware #C2,https://x.com/threatquery/status/1948488377226965441 2025-07-24 21:00:04,threatquery,ip,104.207.140.146,#malware #C2,https://x.com/threatquery/status/1948488377226965441 2025-07-24 21:00:04,threatquery,url,http://31.31.197.16,#malware #C2,https://x.com/threatquery/status/1948488375029137727 2025-07-24 21:00:04,threatquery,ip,31.31.197.16,#malware #C2,https://x.com/threatquery/status/1948488375029137727 2025-07-24 21:08:03,skocherhan,domain,blog.plustopmainstream.digital,,https://x.com/skocherhan/status/1948490384088195519 2025-07-24 21:08:03,skocherhan,url,http://blog.plustopmainstream.digital,,https://x.com/skocherhan/status/1948490384088195519 2025-07-24 22:00:06,urldna_bot,domain,akbarjoje.com,#scam #phishing,https://x.com/urldna_bot/status/1948503481733841271 2025-07-24 22:00:06,urldna_bot,url,https://akbarjoje.com/-/home.php,#scam #phishing,https://x.com/urldna_bot/status/1948503481733841271 2025-07-24 22:00:16,SarlackLab,url,http://34.23.44.248:1177,#Njrat #C2,https://x.com/SarlackLab/status/1948503524569997807 2025-07-24 22:13:50,skocherhan,domain,roofcolor.com,#APT,https://x.com/skocherhan/status/1948506939723579832 2025-07-24 22:13:50,skocherhan,url,http://www.roofcolor.com/wp-includes/js/src/list.php?f=%25computername%25[.]txt,#APT,https://x.com/skocherhan/status/1948506939723579832 2025-07-24 22:19:20,masaomi346,domain,jcxkb9.top,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 22:19:20,masaomi346,url,https://jcxkb9.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 22:19:20,masaomi346,domain,jd4xzw.top,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 22:19:20,masaomi346,url,https://jd4xzw.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 22:19:20,masaomi346,domain,jm7ew1.top,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 22:19:20,masaomi346,url,https://jm7ew1.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 22:19:20,masaomi346,domain,pm1dmm.top,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 22:19:20,masaomi346,url,https://pm1dmm.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1948508325521621041 2025-07-24 23:00:04,skocherhan,md5,cf3f59e2c4c8767697ea46475171697c,,https://x.com/skocherhan/status/1948518576048230645 2025-07-25 00:00:09,urldna_bot,domain,protonhb.eb-sites.com,#scam #phishing,https://x.com/urldna_bot/status/1948533693837885764 2025-07-25 00:00:09,urldna_bot,url,https://protonhb.eb-sites.com,#scam #phishing,https://x.com/urldna_bot/status/1948533693837885764 2025-07-25 02:00:06,urldna_bot,domain,attmalsdsddf.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948563881309122946 2025-07-25 02:00:06,urldna_bot,url,https://attmalsdsddf.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948563881309122946 2025-07-25 02:16:05,Metemcyber,domain,asmie.live,#phishing,https://x.com/Metemcyber/status/1948567904456241379 2025-07-25 02:16:05,Metemcyber,url,https://asmie.live/zkqylm?rbswv=gpuybohluu,#phishing,https://x.com/Metemcyber/status/1948567904456241379 2025-07-25 02:16:05,Metemcyber,url,http://104.21.20.244,#phishing,https://x.com/Metemcyber/status/1948567904456241379 2025-07-25 02:16:05,Metemcyber,url,http://172.67.194.227,#phishing,https://x.com/Metemcyber/status/1948567904456241379 2025-07-25 02:23:07,Metemcyber,url,https://vrblv.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:07,Metemcyber,url,https://pqrsxyz.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:07,Metemcyber,domain,vrblv.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:07,Metemcyber,domain,pqrsxyz.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:07,Metemcyber,url,https://qxmcsd.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:07,Metemcyber,domain,pxcfjv.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:07,Metemcyber,url,https://pxcfjv.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:07,Metemcyber,domain,qxmcsd.cn,#phishing,https://x.com/Metemcyber/status/1948569672116539707 2025-07-25 02:23:26,Metemcyber,url,https://ellqpv.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:26,Metemcyber,url,https://yctibb.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:26,Metemcyber,domain,yctibb.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:26,Metemcyber,domain,ellqpv.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:26,Metemcyber,domain,rjuqib.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:26,Metemcyber,domain,fppzj.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:26,Metemcyber,url,https://rjuqib.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:26,Metemcyber,url,https://fppzj.cn,#phishing,https://x.com/Metemcyber/status/1948569753808761249 2025-07-25 02:23:48,Metemcyber,url,https://nunshang.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:23:48,Metemcyber,url,https://wqbigo.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:23:48,Metemcyber,domain,wqbigo.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:23:48,Metemcyber,domain,nunshang.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:23:48,Metemcyber,domain,fiugpz.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:23:48,Metemcyber,domain,xojnbd.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:23:48,Metemcyber,url,https://fiugpz.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:23:48,Metemcyber,url,https://xojnbd.cn,#phishing,https://x.com/Metemcyber/status/1948569844913504286 2025-07-25 02:24:13,Metemcyber,url,https://yykmmx.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:13,Metemcyber,url,https://viwcr.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:13,Metemcyber,domain,viwcr.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:13,Metemcyber,domain,yykmmx.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:13,Metemcyber,url,https://xvelc.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:13,Metemcyber,domain,bojmuh.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:13,Metemcyber,domain,xvelc.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:13,Metemcyber,url,https://bojmuh.cn,#phishing,https://x.com/Metemcyber/status/1948569949728854456 2025-07-25 02:24:31,Metemcyber,url,https://dmnopq.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:31,Metemcyber,domain,dmnopq.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:31,Metemcyber,url,https://sgqxmj.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:31,Metemcyber,domain,sgqxmj.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:31,Metemcyber,domain,bpgdxg.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:31,Metemcyber,domain,gdqdvt.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:31,Metemcyber,url,https://bpgdxg.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:31,Metemcyber,url,https://gdqdvt.cn,#phishing,https://x.com/Metemcyber/status/1948570027776770504 2025-07-25 02:24:51,Metemcyber,url,https://vnupld.cn,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 02:24:51,Metemcyber,url,https://zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 02:24:51,Metemcyber,domain,vnupld.cn,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 02:24:51,Metemcyber,domain,zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 02:24:51,Metemcyber,url,https://fjktbt.cn,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 02:24:51,Metemcyber,domain,fjktbt.cn,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 02:24:51,Metemcyber,url,http://43.167.237.204,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 02:24:51,Metemcyber,ip,43.167.237.204,#phishing,https://x.com/Metemcyber/status/1948570110211367308 2025-07-25 03:16:06,romonlyht,ip,110.238.64.211,#phishing,https://x.com/romonlyht/status/1948583008724025434 2025-07-25 03:16:07,romonlyht,ip,202.61.198.34,#phishing,https://x.com/romonlyht/status/1948583013409063090 2025-07-25 03:16:07,romonlyht,url,https://bqbq.de/gjgkhfiy/bot.php,#phishing,https://x.com/romonlyht/status/1948583013409063090 2025-07-25 03:16:07,romonlyht,url,https://bqbq.de/gjgkhfiy/index.html?uid=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1948583013409063090 2025-07-25 03:16:07,romonlyht,domain,bqbq.de,#phishing,https://x.com/romonlyht/status/1948583013409063090 2025-07-25 04:00:07,urldna_bot,url,https://sweepstakess19.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1948594082617385052 2025-07-25 04:00:07,urldna_bot,domain,sweepstakess19.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1948594082617385052 2025-07-25 04:56:30,Metemcyber,url,http://172.67.218.165,#phishing,https://x.com/Metemcyber/status/1948608272547938392 2025-07-25 04:56:30,Metemcyber,url,https://4sjo2cu8.top/W0lBfYXZ/,#phishing,https://x.com/Metemcyber/status/1948608272547938392 2025-07-25 04:56:30,Metemcyber,url,http://104.21.59.78,#phishing,https://x.com/Metemcyber/status/1948608272547938392 2025-07-25 04:56:30,Metemcyber,domain,4sjo2cu8.top,#phishing,https://x.com/Metemcyber/status/1948608272547938392 2025-07-25 04:56:33,romonlyht,domain,ihsanprime.com,#phishing,https://x.com/romonlyht/status/1948608284245754136 2025-07-25 04:56:33,romonlyht,url,https://ihsanprime.com/gm/?uid=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1948608284245754136 2025-07-25 04:56:33,romonlyht,ip,185.127.92.11,#phishing,https://x.com/romonlyht/status/1948608284245754136 2025-07-25 04:56:33,romonlyht,ip,103.174.50.168,#phishing,https://x.com/romonlyht/status/1948608284245754136 2025-07-25 05:00:06,AddressIntel,url,https://srv24900hostertestmesa.cfolks.pl/sb,#phishing,https://x.com/AddressIntel/status/1948609181574992014 2025-07-25 05:00:06,AddressIntel,domain,srv24900hostertestmesa.cfolks.pl,#phishing,https://x.com/AddressIntel/status/1948609181574992014 2025-07-25 05:08:06,Metemcyber,domain,0rig9qk3.top,#phishing,https://x.com/Metemcyber/status/1948611192177787370 2025-07-25 05:08:06,Metemcyber,url,https://0rig9qk3.top/W0lBfYXZ/,#phishing,https://x.com/Metemcyber/status/1948611192177787370 2025-07-25 05:08:06,Metemcyber,url,http://104.21.63.6,#phishing,https://x.com/Metemcyber/status/1948611192177787370 2025-07-25 05:08:06,Metemcyber,url,http://172.67.168.246,#phishing,https://x.com/Metemcyber/status/1948611192177787370 2025-07-25 05:16:40,Metemcyber,ip,212.192.221.253,#phishing,https://x.com/Metemcyber/status/1948613350105252015 2025-07-25 05:16:40,Metemcyber,url,http://212.192.221.253,#phishing,https://x.com/Metemcyber/status/1948613350105252015 2025-07-25 05:16:40,Metemcyber,domain,wbemail.email,#phishing,https://x.com/Metemcyber/status/1948613350105252015 2025-07-25 05:16:40,Metemcyber,url,https://wbemail.email,#phishing,https://x.com/Metemcyber/status/1948613350105252015 2025-07-25 05:37:53,Metemcyber,url,http://104.21.84.59,#phishing,https://x.com/Metemcyber/status/1948618686836998174 2025-07-25 05:37:53,Metemcyber,url,https://wva0eb.top/nsCCtsCdx/,#phishing,https://x.com/Metemcyber/status/1948618686836998174 2025-07-25 05:37:53,Metemcyber,domain,wva0eb.top,#phishing,https://x.com/Metemcyber/status/1948618686836998174 2025-07-25 05:37:53,Metemcyber,url,http://172.67.187.29,#phishing,https://x.com/Metemcyber/status/1948618686836998174 2025-07-25 05:46:00,masaomi346,domain,monex-jp.quethat.com,#phishing,https://x.com/masaomi346/status/1948620730192757101 2025-07-25 05:46:00,masaomi346,url,https://monex-jp.quethat.com/support/,#phishing,https://x.com/masaomi346/status/1948620730192757101 2025-07-25 06:00:07,urldna_bot,domain,7565meduniwien-ac-at.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1948624282482848016 2025-07-25 06:00:07,urldna_bot,url,https://7565meduniwien-ac-at.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1948624282482848016 2025-07-25 06:00:25,SarlackLab,ip,176.46.152.46,#RedLine #C2,https://x.com/SarlackLab/status/1948624359507046902 2025-07-25 06:00:25,SarlackLab,url,http://176.46.152.46:1912,#RedLine #C2,https://x.com/SarlackLab/status/1948624359507046902 2025-07-25 06:32:05,JAMESWT_WT,ip,95.164.55.176,,https://x.com/JAMESWT_WT/status/1948632329616064810 2025-07-25 06:46:34,drb_ra,ip,87.228.17.73,#Deimos #C2,https://x.com/drb_ra/status/1948635972268081303 2025-07-25 06:46:34,drb_ra,url,http://87.228.17.73:443,#Deimos #C2,https://x.com/drb_ra/status/1948635972268081303 2025-07-25 06:46:39,drb_ra,url,http://49.207.177.87:443,#Mythic #C2,https://x.com/drb_ra/status/1948635995181928760 2025-07-25 06:46:39,drb_ra,ip,49.207.177.87,#Mythic #C2,https://x.com/drb_ra/status/1948635995181928760 2025-07-25 06:46:45,drb_ra,url,http://38.54.13.56:7443,#Mythic #C2,https://x.com/drb_ra/status/1948636018103484711 2025-07-25 06:46:45,drb_ra,ip,38.54.13.56,#Mythic #C2,https://x.com/drb_ra/status/1948636018103484711 2025-07-25 06:46:50,drb_ra,url,http://68.168.222.171:7443,#Mythic #C2,https://x.com/drb_ra/status/1948636040664600950 2025-07-25 06:46:50,drb_ra,ip,68.168.222.171,#Mythic #C2,https://x.com/drb_ra/status/1948636040664600950 2025-07-25 06:46:56,drb_ra,url,http://149.28.255.228:31337,#C2 #Sliver,https://x.com/drb_ra/status/1948636063557452033 2025-07-25 06:46:56,drb_ra,ip,149.28.255.228,#C2 #Sliver,https://x.com/drb_ra/status/1948636063557452033 2025-07-25 06:47:01,drb_ra,url,http://45.38.20.58:31337,#C2 #Sliver,https://x.com/drb_ra/status/1948636086265159931 2025-07-25 06:47:01,drb_ra,ip,45.38.20.58,#C2 #Sliver,https://x.com/drb_ra/status/1948636086265159931 2025-07-25 06:47:07,drb_ra,url,http://123.55.210.143:40000,#C2 #Sliver,https://x.com/drb_ra/status/1948636109442883806 2025-07-25 06:47:07,drb_ra,ip,123.55.210.143,#C2 #Sliver,https://x.com/drb_ra/status/1948636109442883806 2025-07-25 06:47:13,drb_ra,url,http://120.53.122.68:65535,#C2 #Sliver,https://x.com/drb_ra/status/1948636135506276528 2025-07-25 06:47:13,drb_ra,ip,120.53.122.68,#C2 #Sliver,https://x.com/drb_ra/status/1948636135506276528 2025-07-25 06:47:18,drb_ra,ip,50.116.10.29,#C2 #Sliver,https://x.com/drb_ra/status/1948636159275663429 2025-07-25 06:47:18,drb_ra,url,http://50.116.10.29:443,#C2 #Sliver,https://x.com/drb_ra/status/1948636159275663429 2025-07-25 06:47:24,drb_ra,ip,79.72.10.125,#C2 #Sliver,https://x.com/drb_ra/status/1948636183174451372 2025-07-25 06:47:24,drb_ra,url,http://79.72.10.125:443,#C2 #Sliver,https://x.com/drb_ra/status/1948636183174451372 2025-07-25 06:49:28,drb_ra,url,http://103.47.130.195:443,#C2,https://x.com/drb_ra/status/1948636702739669492 2025-07-25 06:49:28,drb_ra,ip,103.47.130.195,#C2,https://x.com/drb_ra/status/1948636702739669492 2025-07-25 06:49:33,drb_ra,url,http://3.21.206.81:2405,#Remcos #C2,https://x.com/drb_ra/status/1948636725242126447 2025-07-25 06:49:39,drb_ra,url,http://212.162.149.164:443,#Remcos #C2,https://x.com/drb_ra/status/1948636747635605668 2025-07-25 06:49:39,drb_ra,ip,212.162.149.164,#Remcos #C2,https://x.com/drb_ra/status/1948636747635605668 2025-07-25 06:49:45,drb_ra,url,http://167.86.89.37:2404,#Remcos #C2,https://x.com/drb_ra/status/1948636772797481033 2025-07-25 06:49:45,drb_ra,ip,167.86.89.37,#Remcos #C2,https://x.com/drb_ra/status/1948636772797481033 2025-07-25 06:49:50,drb_ra,url,http://54.64.166.20:33824,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636796629242233 2025-07-25 06:49:50,drb_ra,ip,54.64.166.20,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636796629242233 2025-07-25 06:49:57,drb_ra,url,http://3.28.185.133:2053,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636822864888324 2025-07-25 06:50:02,drb_ra,url,http://157.175.188.83:20001,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636846864695726 2025-07-25 06:50:08,drb_ra,ip,157.175.188.83,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636868591190058 2025-07-25 06:50:08,drb_ra,url,http://157.175.188.83:1201,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636868591190058 2025-07-25 06:50:13,drb_ra,ip,54.255.225.255,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636892662018391 2025-07-25 06:50:13,drb_ra,url,http://54.255.225.255:7078,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636892662018391 2025-07-25 06:50:19,drb_ra,url,http://18.231.52.182:8080,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636917957820598 2025-07-25 06:50:19,drb_ra,ip,18.231.52.182,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636917957820598 2025-07-25 06:50:26,drb_ra,url,http://15.237.190.215:2078,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636946550382763 2025-07-25 06:50:26,drb_ra,ip,15.237.190.215,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636946550382763 2025-07-25 06:50:32,drb_ra,url,http://35.183.198.97:56905,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636970802184628 2025-07-25 06:50:32,drb_ra,ip,35.183.198.97,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948636970802184628 2025-07-25 06:50:38,drb_ra,ip,190.70.120.31,#AsyncRAT #C2,https://x.com/drb_ra/status/1948636994545787082 2025-07-25 06:50:38,drb_ra,url,http://190.70.120.31:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1948636994545787082 2025-07-25 06:50:43,drb_ra,url,http://181.131.217.24:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1948637019141210286 2025-07-25 06:50:43,drb_ra,ip,181.131.217.24,#AsyncRAT #C2,https://x.com/drb_ra/status/1948637019141210286 2025-07-25 06:50:49,drb_ra,url,http://3.249.81.203:80,#Interactsh #C2,https://x.com/drb_ra/status/1948637041924669856 2025-07-25 06:50:54,drb_ra,url,http://23.21.82.111:443,#Interactsh #C2,https://x.com/drb_ra/status/1948637065047924759 2025-07-25 06:51:00,drb_ra,url,http://23.21.82.111:80,#Interactsh #C2,https://x.com/drb_ra/status/1948637088557224423 2025-07-25 06:51:00,drb_ra,ip,23.21.82.111,#Interactsh #C2,https://x.com/drb_ra/status/1948637088557224423 2025-07-25 06:51:06,drb_ra,ip,103.20.102.180,#Dcrat #C2,https://x.com/drb_ra/status/1948637112296743227 2025-07-25 06:51:06,drb_ra,url,http://103.20.102.180:8848,#Dcrat #C2,https://x.com/drb_ra/status/1948637112296743227 2025-07-25 06:51:11,drb_ra,url,http://45.88.76.50:445,#Havoc #C2,https://x.com/drb_ra/status/1948637135143403985 2025-07-25 06:51:11,drb_ra,ip,45.88.76.50,#Havoc #C2,https://x.com/drb_ra/status/1948637135143403985 2025-07-25 08:00:06,urldna_bot,url,https://vfyplntbkonl.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948654479831617779 2025-07-25 08:00:06,urldna_bot,domain,vfyplntbkonl.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948654479831617779 2025-07-25 09:23:57,c9lab_soc,domain,cloud-netcraft.bid,#scam #phishing,https://x.com/c9lab_soc/status/1948675578388779028 2025-07-25 09:23:57,c9lab_soc,url,http://cloud-netcraft.bid,#scam #phishing,https://x.com/c9lab_soc/status/1948675578388779028 2025-07-25 09:23:57,c9lab_soc,domain,rapidfort-google.com,#scam #phishing,https://x.com/c9lab_soc/status/1948675578388779028 2025-07-25 09:23:57,c9lab_soc,url,http://rapidfort-google.com,#scam #phishing,https://x.com/c9lab_soc/status/1948675578388779028 2025-07-25 09:23:57,c9lab_soc,domain,nj-linkedin.com,#scam #phishing,https://x.com/c9lab_soc/status/1948675578388779028 2025-07-25 09:23:57,c9lab_soc,url,http://nj-linkedin.com,#scam #phishing,https://x.com/c9lab_soc/status/1948675578388779028 2025-07-25 10:00:06,urldna_bot,domain,i.pilot45.com,#phishing #scam,https://x.com/urldna_bot/status/1948684676043886957 2025-07-25 10:00:06,urldna_bot,url,https://i.pilot45.com/index.html,#phishing #scam,https://x.com/urldna_bot/status/1948684676043886957 2025-07-25 10:02:23,drb_ra,url,https://ns1.nsebseshop.cloud/ms/625478102395,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:02:23,drb_ra,url,https://ns2.nsebseshop.cloud/v/741823546921,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:02:23,drb_ra,domain,ns2.nsebseshop.cloud,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:02:23,drb_ra,domain,ns1.nsebseshop.cloud,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:02:23,drb_ra,domain,ns3.nsebseshop.cloud,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:02:23,drb_ra,ip,47.236.130.154,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:02:23,drb_ra,url,http://47.236.130.154:53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:02:23,drb_ra,url,https://ns3.nsebseshop.cloud/v/741823546921,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948685251972366360 2025-07-25 10:16:34,drb_ra,url,http://110.42.57.182:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688819139870881 2025-07-25 10:16:34,drb_ra,ip,110.42.57.182,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688819139870881 2025-07-25 10:16:39,drb_ra,url,http://43.138.22.149:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688842652832226 2025-07-25 10:16:45,drb_ra,url,http://47.98.216.193:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688866728182006 2025-07-25 10:16:45,drb_ra,ip,47.98.216.193,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688866728182006 2025-07-25 10:16:51,drb_ra,url,http://117.72.107.255:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688891923628388 2025-07-25 10:16:51,drb_ra,ip,117.72.107.255,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688891923628388 2025-07-25 10:16:57,drb_ra,url,http://121.61.108.193:444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688919148781872 2025-07-25 10:16:57,drb_ra,ip,121.61.108.193,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688919148781872 2025-07-25 10:17:04,drb_ra,url,http://118.195.162.163:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688948773232889 2025-07-25 10:17:04,drb_ra,url,https://cnd.baiidu.vip/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688948773232889 2025-07-25 10:17:04,drb_ra,ip,118.195.162.163,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688948773232889 2025-07-25 10:17:04,drb_ra,domain,cnd.baiidu.vip,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688948773232889 2025-07-25 10:17:11,drb_ra,ip,43.143.114.43,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688975545159798 2025-07-25 10:17:11,drb_ra,url,http://43.143.114.43:8090,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948688975545159798 2025-07-25 10:17:18,drb_ra,url,http://47.242.129.79:2087,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689004574245275 2025-07-25 10:17:18,drb_ra,ip,47.242.129.79,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689004574245275 2025-07-25 10:17:25,drb_ra,domain,web.sparkfunding56.site,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689035506970928 2025-07-25 10:17:25,drb_ra,url,https://web.sparkfunding56.site/jquery-3.2.2.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689035506970928 2025-07-25 10:17:25,drb_ra,url,http://216.73.156.143:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689035506970928 2025-07-25 10:17:25,drb_ra,ip,216.73.156.143,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689035506970928 2025-07-25 10:17:32,drb_ra,url,http://43.138.22.149:8085,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689063784972318 2025-07-25 10:17:39,drb_ra,ip,47.109.88.26,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689094592397559 2025-07-25 10:17:39,drb_ra,url,http://47.109.88.26:7777,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689094592397559 2025-07-25 10:17:46,drb_ra,url,http://121.43.152.104:18081,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689123927359797 2025-07-25 10:17:46,drb_ra,ip,121.43.152.104,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689123927359797 2025-07-25 10:17:53,drb_ra,url,http://154.198.49.48:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689153761399203 2025-07-25 10:17:53,drb_ra,ip,154.198.49.48,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689153761399203 2025-07-25 10:18:00,drb_ra,url,http://47.122.152.65:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689181976170591 2025-07-25 10:18:00,drb_ra,ip,47.122.152.65,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689181976170591 2025-07-25 10:18:30,skocherhan,md5,bf1d250ca4e5672aada0817d4849da68,#APT,https://x.com/skocherhan/status/1948689308480659765 2025-07-25 10:18:30,skocherhan,md5,b326435c8ac36039300139fff3734db2,#APT,https://x.com/skocherhan/status/1948689308480659765 2025-07-25 10:18:30,skocherhan,ip,194.87.240.39,#APT,https://x.com/skocherhan/status/1948689308480659765 2025-07-25 10:18:30,skocherhan,url,http://194.87.240.39/static/version2324897981/frontend/HardToFind/htfr,#APT,https://x.com/skocherhan/status/1948689308480659765 2025-07-25 10:20:05,drb_ra,url,http://129.28.85.210:55112,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689705857638786 2025-07-25 10:20:05,drb_ra,ip,129.28.85.210,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689705857638786 2025-07-25 10:20:11,drb_ra,url,http://47.109.69.234:8088,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689730951840091 2025-07-25 10:20:11,drb_ra,ip,47.109.69.234,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689730951840091 2025-07-25 10:20:17,drb_ra,ip,39.104.22.29,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689755891179748 2025-07-25 10:20:17,drb_ra,url,http://39.104.22.29:8089,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689755891179748 2025-07-25 10:20:23,drb_ra,url,https://m.szpx.news.cn/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689782931951808 2025-07-25 10:20:23,drb_ra,domain,m.szpx.news.cn,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689782931951808 2025-07-25 10:20:30,drb_ra,url,https://aliwsapubboce.suning.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689811621183512 2025-07-25 10:20:30,drb_ra,domain,aliwsapubboce.suning.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689811621183512 2025-07-25 10:20:36,drb_ra,domain,cdn.soft.qianxin.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689838149956030 2025-07-25 10:20:36,drb_ra,url,https://cdn.soft.qianxin.com/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689838149956030 2025-07-25 10:20:43,drb_ra,domain,vhs.vivo.com.cn,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689867116085683 2025-07-25 10:20:43,drb_ra,url,https://vhs.vivo.com.cn/public/asset/font/script.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689867116085683 2025-07-25 10:20:50,drb_ra,domain,static.dingtalk.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1948689895305748851 2025-07-25 10:20:50,drb_ra,ip,120.79.64.164,#CobaltStrike #C2,https://x.com/drb_ra/status/1948689895305748851 2025-07-25 10:20:50,drb_ra,url,http://120.79.64.164:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1948689895305748851 2025-07-25 10:20:50,drb_ra,url,https://static.dingtalk.com/public/asset/font/script.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948689895305748851 2025-07-25 10:20:57,drb_ra,ip,175.24.47.254,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689923164258807 2025-07-25 10:20:57,drb_ra,url,http://175.24.47.254:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689923164258807 2025-07-25 10:21:04,drb_ra,url,http://43.138.22.149:8082,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689952646291622 2025-07-25 10:21:04,drb_ra,ip,43.138.22.149,#C2 #CobaltStrike,https://x.com/drb_ra/status/1948689952646291622 2025-07-25 10:53:59,executemalware,url,http://reported-id6736.com,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 10:53:59,executemalware,domain,extranet.com,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 10:53:59,executemalware,domain,reported-id6736.com,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 10:53:59,executemalware,url,http://extranet.com,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 10:53:59,executemalware,domain,id33kpartnet.com,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 10:53:59,executemalware,url,http://bookingcomplaint-id8873.live,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 10:53:59,executemalware,domain,bookingcomplaint-id8873.live,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 10:53:59,executemalware,url,http://id33kpartnet.com,,https://x.com/executemalware/status/1948698238032511445 2025-07-25 11:09:23,K_N1kolenko,domain,furwmsx.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,annwt.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,blihlo.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://blihlo.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,cidtfhh.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://cidtfhh.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,daruubs.top,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://daruubs.top,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://steamcommunity.com/profiles/76561199863199067,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://furwmsx.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,gigohe.top,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://rayrhs.top,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,rayrhs.top,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://annwt.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,mcaumnb.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://gigohe.top,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://greqjfu.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,domain,greqjfu.xyz,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:09:23,K_N1kolenko,url,http://mcaumnb.shop,#LummaStealer,https://x.com/K_N1kolenko/status/1948702114697367927 2025-07-25 11:20:03,ir0n_fe,url,https://thrifty249-bicpromo-club.translate.goog/?_x_tr_sl=auto&_x_tr_tl=om&_x_tr_hl=sw,#phishing,https://x.com/ir0n_fe/status/1948704796657004840 2025-07-25 11:20:03,ir0n_fe,url,https://www-akuten-co-jp.bicpromo.net/godaddy/#/,#phishing,https://x.com/ir0n_fe/status/1948704796657004840 2025-07-25 11:20:03,ir0n_fe,domain,www-akuten-co-jp.bicpromo.net,#phishing,https://x.com/ir0n_fe/status/1948704796657004840 2025-07-25 11:20:03,ir0n_fe,domain,thrifty249-bicpromo-club.translate.goog,#phishing,https://x.com/ir0n_fe/status/1948704796657004840 2025-07-25 11:24:49,ir0n_fe,url,https://www.eki.net.jp-paytolink.xykj888.com.cn/Personal/member/Login/index.php?oneTimeAccessID={,#phishing,https://x.com/ir0n_fe/status/1948705994759880821 2025-07-25 11:24:49,ir0n_fe,domain,eki.net.jp-paytolink.xykj888.com.cn,#phishing,https://x.com/ir0n_fe/status/1948705994759880821 2025-07-25 11:24:49,ir0n_fe,url,https://reurl.cc/bm2avy,#phishing,https://x.com/ir0n_fe/status/1948705994759880821 2025-07-25 11:24:49,ir0n_fe,domain,reurl.cc,#phishing,https://x.com/ir0n_fe/status/1948705994759880821 2025-07-25 11:39:28,skocherhan,ip,62.113.66.137,,https://x.com/skocherhan/status/1948709685491569036 2025-07-25 11:39:28,skocherhan,url,https://62.113.66.137/WindowsUpdat,,https://x.com/skocherhan/status/1948709685491569036 2025-07-25 11:39:28,skocherhan,url,https://62.113.66.137/WindowsUpdateService.ps1,,https://x.com/skocherhan/status/1948709685491569036 2025-07-25 11:58:19,K_N1kolenko,ip,139.99.17.177,#RAT #Xworm,https://x.com/K_N1kolenko/status/1948714425940127993 2025-07-25 11:58:19,K_N1kolenko,ip,103.82.26.162,#RAT #Xworm,https://x.com/K_N1kolenko/status/1948714425940127993 2025-07-25 11:58:19,K_N1kolenko,ip,103.42.30.170,#RAT #Xworm,https://x.com/K_N1kolenko/status/1948714425940127993 2025-07-25 11:58:19,K_N1kolenko,ip,147.124.215.237,#RAT #Xworm,https://x.com/K_N1kolenko/status/1948714425940127993 2025-07-25 11:58:19,K_N1kolenko,ip,85.203.4.232,#RAT #Xworm,https://x.com/K_N1kolenko/status/1948714425940127993 2025-07-25 11:58:19,K_N1kolenko,ip,204.12.203.92,#RAT #Xworm,https://x.com/K_N1kolenko/status/1948714425940127993 2025-07-25 12:00:10,urldna_bot,domain,fareadstcafe.wixsite.com,#phishing #scam,https://x.com/urldna_bot/status/1948714892816503074 2025-07-25 12:00:10,urldna_bot,url,https://fareadstcafe.wixsite.com/attsettings/,#phishing #scam,https://x.com/urldna_bot/status/1948714892816503074 2025-07-25 12:37:43,masaomi346,url,https://cod-luxurybag-jp.shop,#phishing,https://x.com/masaomi346/status/1948724342172561427 2025-07-25 12:37:43,masaomi346,domain,cod-luxurybag-jp.shop,#phishing,https://x.com/masaomi346/status/1948724342172561427 2025-07-25 12:49:41,SaptangLabs,domain,akribis-sys.com,#ransomware,https://x.com/SaptangLabs/status/1948727354597278166 2025-07-25 12:49:41,SaptangLabs,url,http://akribis-sys.com,#ransomware,https://x.com/SaptangLabs/status/1948727354597278166 2025-07-25 14:29:21,FalconFeedsio,domain,Algeria-dz.com,,https://x.com/FalconFeedsio/status/1948752434433851668 2025-07-25 14:29:21,FalconFeedsio,url,http://Algeria-dz.com,,https://x.com/FalconFeedsio/status/1948752434433851668 2025-07-25 14:33:55,harugasumi,domain,pocketcard-regio.wzwzsp.cn,#phishing,https://x.com/harugasumi/status/1948753586986647809 2025-07-25 14:33:55,harugasumi,url,https://pocketcard-regio.wzwzsp.cn/netservice/login/,#phishing,https://x.com/harugasumi/status/1948753586986647809 2025-07-25 16:00:08,urldna_bot,domain,uconnrequestcancellationform1.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948775280622833718 2025-07-25 16:00:08,urldna_bot,url,https://uconnrequestcancellationform1.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948775280622833718 2025-07-25 16:14:01,harugasumi,url,http://Trip.com,#phishing,https://x.com/harugasumi/status/1948778775308894553 2025-07-25 16:14:01,harugasumi,domain,Trip.com,#phishing,https://x.com/harugasumi/status/1948778775308894553 2025-07-25 16:14:01,harugasumi,domain,trip-fractern.ciyqbb.cn,#phishing,https://x.com/harugasumi/status/1948778775308894553 2025-07-25 16:14:01,harugasumi,url,https://trip-fractern.ciyqbb.cn/customer/announcement/,#phishing,https://x.com/harugasumi/status/1948778775308894553 2025-07-25 17:15:19,drb_ra,url,http://120.25.209.147:8888,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794204572058021 2025-07-25 17:15:19,drb_ra,ip,120.25.209.147,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794204572058021 2025-07-25 17:15:25,drb_ra,domain,1318387972-34ie6xy56d.ap-guangzhou.tencentscf.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794228731248663 2025-07-25 17:15:25,drb_ra,url,https://1318387972-34ie6xy56d.ap-guangzhou.tencentscf.com/api/get,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794228731248663 2025-07-25 17:15:25,drb_ra,url,http://1.12.235.6:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794228731248663 2025-07-25 17:15:30,drb_ra,url,https://101.200.193.211/ptj,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794248637120875 2025-07-25 17:15:30,drb_ra,url,http://101.200.193.211:8090,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794248637120875 2025-07-25 17:15:30,drb_ra,ip,101.200.193.211,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794248637120875 2025-07-25 17:15:35,drb_ra,url,http://47.109.176.248:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794272196821049 2025-07-25 17:15:35,drb_ra,ip,47.109.176.248,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794272196821049 2025-07-25 17:15:35,drb_ra,url,https://47.109.176.248/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794272196821049 2025-07-25 17:15:40,drb_ra,url,https://154.64.250.99/visit.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794292991877167 2025-07-25 17:15:40,drb_ra,url,http://154.64.250.99:6666,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794292991877167 2025-07-25 17:15:40,drb_ra,ip,154.64.250.99,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794292991877167 2025-07-25 17:15:46,drb_ra,url,https://43.138.22.149/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794316186681629 2025-07-25 17:15:46,drb_ra,url,http://43.138.22.149:8091,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794316186681629 2025-07-25 17:15:51,drb_ra,url,https://101.42.157.172/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794336558112811 2025-07-25 17:15:51,drb_ra,url,http://101.42.157.172:8087,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794336558112811 2025-07-25 17:15:51,drb_ra,ip,101.42.157.172,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794336558112811 2025-07-25 17:15:56,drb_ra,url,https://101.42.187.157/dot.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794358150693117 2025-07-25 17:15:56,drb_ra,url,http://49.232.159.121:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794358150693117 2025-07-25 17:15:56,drb_ra,ip,49.232.159.121,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794358150693117 2025-07-25 17:15:56,drb_ra,ip,101.42.187.157,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794358150693117 2025-07-25 17:18:00,drb_ra,ip,154.201.91.224,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794877992440294 2025-07-25 17:18:00,drb_ra,url,http://154.201.91.224:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794877992440294 2025-07-25 17:18:00,drb_ra,url,https://154.201.91.224/js/PromotionBanner.Main.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794877992440294 2025-07-25 17:18:06,drb_ra,url,http://101.201.108.173:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794902462300536 2025-07-25 17:18:06,drb_ra,domain,jmgle.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794902462300536 2025-07-25 17:18:06,drb_ra,url,https://www.jmgle.com/dist/css/bootstrap.min.css,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794902462300536 2025-07-25 17:18:06,drb_ra,ip,101.201.108.173,#CobaltStrike #C2,https://x.com/drb_ra/status/1948794902462300536 2025-07-25 18:00:06,urldna_bot,url,https://mbbtmailnukm.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948805474075193359 2025-07-25 18:00:06,urldna_bot,domain,mbbtmailnukm.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948805474075193359 2025-07-25 18:03:03,skocherhan,url,https://77.110.113.73/Documents/cu,,https://x.com/skocherhan/status/1948806217314517211 2025-07-25 18:03:03,skocherhan,ip,77.110.113.73,,https://x.com/skocherhan/status/1948806217314517211 2025-07-25 18:03:03,skocherhan,url,https://77.110.113.73/Documents/customer-receipt.pdf.lnk,,https://x.com/skocherhan/status/1948806217314517211 2025-07-25 18:03:03,skocherhan,domain,driverupdate.ue3hdn4-cdnsecurefile.com,,https://x.com/skocherhan/status/1948806217314517211 2025-07-25 18:03:03,skocherhan,url,https://driverupdate.ue3hdn4-cdnsecurefile.com/Chrono24-receipt.pdf,,https://x.com/skocherhan/status/1948806217314517211 2025-07-25 18:46:34,drb_ra,ip,103.190.232.199,#Deimos #C2,https://x.com/drb_ra/status/1948817168180936880 2025-07-25 18:46:34,drb_ra,url,http://103.190.232.199:46110,#Deimos #C2,https://x.com/drb_ra/status/1948817168180936880 2025-07-25 18:46:39,drb_ra,url,http://182.30.42.214:443,#Deimos #C2,https://x.com/drb_ra/status/1948817188862701632 2025-07-25 18:46:39,drb_ra,ip,182.30.42.214,#Deimos #C2,https://x.com/drb_ra/status/1948817188862701632 2025-07-25 18:46:44,drb_ra,url,http://45.9.2.214:7443,#Mythic #C2,https://x.com/drb_ra/status/1948817209524134137 2025-07-25 18:46:44,drb_ra,ip,45.9.2.214,#Mythic #C2,https://x.com/drb_ra/status/1948817209524134137 2025-07-25 18:46:49,drb_ra,url,http://217.60.38.16:6443,#Mythic #C2,https://x.com/drb_ra/status/1948817228511494318 2025-07-25 18:46:49,drb_ra,ip,217.60.38.16,#Mythic #C2,https://x.com/drb_ra/status/1948817228511494318 2025-07-25 18:46:54,drb_ra,url,http://139.59.190.193:7443,#Mythic #C2,https://x.com/drb_ra/status/1948817249428455847 2025-07-25 18:46:54,drb_ra,ip,139.59.190.193,#Mythic #C2,https://x.com/drb_ra/status/1948817249428455847 2025-07-25 18:46:59,drb_ra,url,http://2.37.23.207:9002,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1948817270651675028 2025-07-25 18:47:04,drb_ra,url,http://164.92.224.52:31337,#Sliver #C2,https://x.com/drb_ra/status/1948817291543449700 2025-07-25 18:47:04,drb_ra,ip,164.92.224.52,#Sliver #C2,https://x.com/drb_ra/status/1948817291543449700 2025-07-25 18:47:09,drb_ra,ip,206.189.1.112,#Sliver #C2,https://x.com/drb_ra/status/1948817312372371481 2025-07-25 18:47:09,drb_ra,url,http://206.189.1.112:31337,#Sliver #C2,https://x.com/drb_ra/status/1948817312372371481 2025-07-25 18:47:14,drb_ra,url,http://20.235.39.5:31337,#Sliver #C2,https://x.com/drb_ra/status/1948817335566868654 2025-07-25 18:47:14,drb_ra,ip,20.235.39.5,#Sliver #C2,https://x.com/drb_ra/status/1948817335566868654 2025-07-25 18:47:19,drb_ra,url,http://31.129.108.115:8888,#Sliver #C2,https://x.com/drb_ra/status/1948817356014194874 2025-07-25 18:47:24,drb_ra,url,http://31.129.108.115:31337,#Sliver #C2,https://x.com/drb_ra/status/1948817376390070581 2025-07-25 18:47:24,drb_ra,ip,31.129.108.115,#Sliver #C2,https://x.com/drb_ra/status/1948817376390070581 2025-07-25 18:49:28,drb_ra,url,http://13.48.178.184:389,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948817895217398054 2025-07-25 18:49:28,drb_ra,ip,13.48.178.184,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948817895217398054 2025-07-25 18:49:31,drb_ra,ip,54.155.253.62,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948817910815670721 2025-07-25 18:49:31,drb_ra,url,http://54.155.253.62:34011,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948817910815670721 2025-07-25 18:49:37,drb_ra,ip,43.198.184.116,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948817935252029882 2025-07-25 18:49:37,drb_ra,url,http://43.198.184.116:58000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948817935252029882 2025-07-25 18:49:42,drb_ra,url,http://185.208.158.241:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1948817954952675708 2025-07-25 18:49:42,drb_ra,ip,185.208.158.241,#AsyncRAT #C2,https://x.com/drb_ra/status/1948817954952675708 2025-07-25 18:49:45,drb_ra,url,http://88.198.90.187:8443,#Interactsh #C2,https://x.com/drb_ra/status/1948817969481384144 2025-07-25 18:49:50,drb_ra,url,http://88.198.90.187:8080,#Interactsh #C2,https://x.com/drb_ra/status/1948817990054502474 2025-07-25 18:49:56,drb_ra,url,http://88.198.90.187:587,#Interactsh #C2,https://x.com/drb_ra/status/1948818014389796905 2025-07-25 18:49:56,drb_ra,ip,88.198.90.187,#Interactsh #C2,https://x.com/drb_ra/status/1948818014389796905 2025-07-25 18:50:01,drb_ra,url,http://54.171.42.109:80,#Interactsh #C2,https://x.com/drb_ra/status/1948818033537060941 2025-07-25 18:50:01,drb_ra,ip,54.171.42.109,#Interactsh #C2,https://x.com/drb_ra/status/1948818033537060941 2025-07-25 18:50:05,drb_ra,url,http://216.144.226.186:587,#Interactsh #C2,https://x.com/drb_ra/status/1948818053468238023 2025-07-25 18:50:10,drb_ra,ip,216.144.226.186,#Interactsh #C2,https://x.com/drb_ra/status/1948818074553254388 2025-07-25 18:50:10,drb_ra,url,http://216.144.226.186:25,#Interactsh #C2,https://x.com/drb_ra/status/1948818074553254388 2025-07-25 18:50:15,drb_ra,url,http://54.75.108.37:80,#Interactsh #C2,https://x.com/drb_ra/status/1948818094777843959 2025-07-25 18:50:15,drb_ra,ip,54.75.108.37,#Interactsh #C2,https://x.com/drb_ra/status/1948818094777843959 2025-07-25 18:50:20,drb_ra,url,http://159.65.229.135:80,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1948818116126941622 2025-07-25 18:50:20,drb_ra,ip,159.65.229.135,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1948818116126941622 2025-07-25 18:50:25,drb_ra,url,http://202.158.249.27:80,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1948818137522077806 2025-07-25 18:50:25,drb_ra,ip,202.158.249.27,#Pegasus #C2 #Hookbot,https://x.com/drb_ra/status/1948818137522077806 2025-07-25 18:50:31,drb_ra,url,http://159.223.109.10:3333,#Evilginx #C2 #EvilGoPhish,https://x.com/drb_ra/status/1948818159038779574 2025-07-25 18:50:31,drb_ra,ip,159.223.109.10,#Evilginx #C2 #EvilGoPhish,https://x.com/drb_ra/status/1948818159038779574 2025-07-25 18:50:36,drb_ra,ip,109.248.162.66,#C2 #Supershell,https://x.com/drb_ra/status/1948818180161302991 2025-07-25 18:50:36,drb_ra,url,http://109.248.162.66:3100,#C2 #Supershell,https://x.com/drb_ra/status/1948818180161302991 2025-07-25 18:50:41,drb_ra,ip,86.54.42.147,#Dcrat #C2,https://x.com/drb_ra/status/1948818201506447501 2025-07-25 18:50:41,drb_ra,url,http://86.54.42.147:6699,#Dcrat #C2,https://x.com/drb_ra/status/1948818201506447501 2025-07-25 18:50:46,drb_ra,url,http://2.121.208.13:443,#Qakbot #C2,https://x.com/drb_ra/status/1948818222599602512 2025-07-25 18:50:51,drb_ra,url,http://67.60.72.232:443,#Qakbot #C2,https://x.com/drb_ra/status/1948818245147853088 2025-07-25 18:50:51,drb_ra,ip,67.60.72.232,#Qakbot #C2,https://x.com/drb_ra/status/1948818245147853088 2025-07-25 18:50:57,drb_ra,url,http://103.56.19.86:8443,#C2,https://x.com/drb_ra/status/1948818269764571253 2025-07-25 18:50:57,drb_ra,ip,103.56.19.86,#C2,https://x.com/drb_ra/status/1948818269764571253 2025-07-25 18:53:01,drb_ra,url,http://18.221.239.131:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1948818790613221735 2025-07-25 18:53:01,drb_ra,ip,18.221.239.131,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1948818790613221735 2025-07-25 18:53:07,drb_ra,url,http://89.22.169.22:443,#C2,https://x.com/drb_ra/status/1948818814462034114 2025-07-25 18:53:07,drb_ra,ip,89.22.169.22,#C2,https://x.com/drb_ra/status/1948818814462034114 2025-07-25 18:53:12,drb_ra,ip,185.241.208.104,#Remcos #C2,https://x.com/drb_ra/status/1948818834695016732 2025-07-25 18:53:12,drb_ra,url,http://185.241.208.104:2404,#Remcos #C2,https://x.com/drb_ra/status/1948818834695016732 2025-07-25 18:53:15,drb_ra,url,http://45.80.158.242:2404,#Remcos #C2,https://x.com/drb_ra/status/1948818850306216084 2025-07-25 18:53:22,drb_ra,url,http://45.80.158.242:2024,#Remcos #C2,https://x.com/drb_ra/status/1948818877087179020 2025-07-25 18:53:22,drb_ra,ip,45.80.158.242,#Remcos #C2,https://x.com/drb_ra/status/1948818877087179020 2025-07-25 20:00:07,urldna_bot,domain,norrydc.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948835675945505004 2025-07-25 20:00:07,urldna_bot,url,https://norrydc.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1948835675945505004 2025-07-25 20:00:18,SarlackLab,url,http://147.185.221.21:32644,#C2 #NanoCore,https://x.com/SarlackLab/status/1948835720887496985 2025-07-25 20:00:18,SarlackLab,domain,survey-push.gl.at.ply.gg,#C2 #NanoCore,https://x.com/SarlackLab/status/1948835720887496985 2025-07-25 20:00:18,SarlackLab,url,http://survey-push.gl.at.ply.gg,#C2 #NanoCore,https://x.com/SarlackLab/status/1948835720887496985 2025-07-25 20:00:18,SarlackLab,ip,147.185.221.21,#C2 #NanoCore,https://x.com/SarlackLab/status/1948835720887496985 2025-07-25 20:29:56,drb_ra,ip,144.172.95.154,#C2,https://x.com/drb_ra/status/1948843180775850259 2025-07-25 20:29:56,drb_ra,url,http://144.172.95.154:443,#C2,https://x.com/drb_ra/status/1948843180775850259 2025-07-25 20:29:56,drb_ra,url,https://144.172.95.154:443,#C2,https://x.com/drb_ra/status/1948843180775850259 2025-07-25 20:30:02,drb_ra,url,https://109.205.213.174:443,#C2,https://x.com/drb_ra/status/1948843204356223239 2025-07-25 20:30:02,drb_ra,url,http://109.205.213.174:443,#C2,https://x.com/drb_ra/status/1948843204356223239 2025-07-25 20:30:02,drb_ra,ip,109.205.213.174,#C2,https://x.com/drb_ra/status/1948843204356223239 2025-07-25 20:30:07,drb_ra,url,http://82.118.20.29:443,#C2,https://x.com/drb_ra/status/1948843226397364628 2025-07-25 20:30:07,drb_ra,ip,82.118.20.29,#C2,https://x.com/drb_ra/status/1948843226397364628 2025-07-25 20:30:07,drb_ra,url,https://82.118.20.29:443,#C2,https://x.com/drb_ra/status/1948843226397364628 2025-07-25 20:38:37,1LupeLaaw,domain,azdot.arizonaa.cc,#phishing,https://x.com/1LupeLaaw/status/1948845365454843916 2025-07-25 20:38:37,1LupeLaaw,url,http://azdot.arizonaa.cc,#phishing,https://x.com/1LupeLaaw/status/1948845365454843916 2025-07-25 21:00:04,threatquery,url,http://61.216.94.62,#C2 #malware,https://x.com/threatquery/status/1948850764811530365 2025-07-25 21:00:04,threatquery,ip,61.216.94.62,#C2 #malware,https://x.com/threatquery/status/1948850764811530365 2025-07-25 21:00:04,threatquery,url,http://120.221.22.109,#C2 #malware,https://x.com/threatquery/status/1948850763079266472 2025-07-25 21:00:04,threatquery,ip,120.221.22.109,#C2 #malware,https://x.com/threatquery/status/1948850763079266472 2025-07-25 21:00:04,threatquery,url,http://149.28.145.214,#C2 #malware,https://x.com/threatquery/status/1948850761485426739 2025-07-25 21:00:04,threatquery,ip,149.28.145.214,#C2 #malware,https://x.com/threatquery/status/1948850761485426739 2025-07-25 22:00:06,urldna_bot,domain,smartparcelchain.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1948865869544640787 2025-07-25 22:00:06,urldna_bot,url,https://smartparcelchain.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1948865869544640787 2025-07-25 23:04:58,drb_ra,url,https://176.46.152.35/cm,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882196854706261 2025-07-25 23:04:58,drb_ra,url,http://176.46.152.35:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882196854706261 2025-07-25 23:04:58,drb_ra,ip,176.46.152.35,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882196854706261 2025-07-25 23:05:04,drb_ra,url,https://115.190.151.227/en_US/all.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882221433323548 2025-07-25 23:05:04,drb_ra,url,http://115.190.151.227:801,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882221433323548 2025-07-25 23:05:04,drb_ra,ip,115.190.151.227,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882221433323548 2025-07-25 23:05:10,drb_ra,url,https://121.199.52.25/fwlink,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882243822256241 2025-07-25 23:05:10,drb_ra,url,http://121.199.52.25:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882243822256241 2025-07-25 23:05:10,drb_ra,ip,121.199.52.25,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882243822256241 2025-07-25 23:05:15,drb_ra,url,https://121.40.76.3/dot.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882267264483446 2025-07-25 23:05:15,drb_ra,url,http://121.40.76.3:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882267264483446 2025-07-25 23:05:15,drb_ra,ip,121.40.76.3,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882267264483446 2025-07-25 23:05:21,drb_ra,url,https://47.109.58.47/dpixel,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882292514095255 2025-07-25 23:05:21,drb_ra,url,http://47.109.58.47:8989,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882292514095255 2025-07-25 23:05:21,drb_ra,ip,47.109.58.47,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882292514095255 2025-07-25 23:05:26,drb_ra,url,https://59.110.12.179/load,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882314181616069 2025-07-25 23:05:26,drb_ra,url,http://59.110.12.179:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882314181616069 2025-07-25 23:05:26,drb_ra,ip,59.110.12.179,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882314181616069 2025-07-25 23:05:32,drb_ra,url,https://179.43.186.224/fwlink,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882338613801372 2025-07-25 23:05:32,drb_ra,url,http://179.43.186.224:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882338613801372 2025-07-25 23:05:32,drb_ra,ip,179.43.186.224,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882338613801372 2025-07-25 23:05:37,drb_ra,domain,web.vnpti.uk,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882360902250920 2025-07-25 23:05:37,drb_ra,url,https://web.vnpti.uk/visit.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882360902250920 2025-07-25 23:05:37,drb_ra,url,http://86.54.42.68:2052,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882360902250920 2025-07-25 23:05:37,drb_ra,ip,86.54.42.68,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882360902250920 2025-07-25 23:05:44,drb_ra,url,https://120.55.73.61/Anticipate/v1.56/4P2JXO8AR2UO,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882386420457500 2025-07-25 23:05:44,drb_ra,url,http://103.199.106.62:3389,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882386420457500 2025-07-25 23:05:44,drb_ra,ip,103.199.106.62,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882386420457500 2025-07-25 23:05:44,drb_ra,ip,120.55.73.61,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882386420457500 2025-07-25 23:07:47,drb_ra,domain,5ndg65b68274v.cfc-execute.bj.baidubce.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882905213645232 2025-07-25 23:07:47,drb_ra,url,https://5ndg65b68274v.cfc-execute.bj.baidubce.com/api/x,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882905213645232 2025-07-25 23:07:47,drb_ra,url,http://101.34.66.77:8089,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882905213645232 2025-07-25 23:07:47,drb_ra,ip,101.34.66.77,#CobaltStrike #C2,https://x.com/drb_ra/status/1948882905213645232 2025-07-26 00:00:08,urldna_bot,domain,inform-01.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1948896077467234396 2025-07-26 00:00:08,urldna_bot,url,https://inform-01.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1948896077467234396 2025-07-26 00:39:51,qrjxl,domain,brldgeumbria.org,#phishing,https://x.com/qrjxl/status/1948906074075267389 2025-07-26 00:39:51,qrjxl,url,https://brldgeumbria.org,#phishing,https://x.com/qrjxl/status/1948906074075267389 2025-07-26 01:04:31,SarlackLab,url,http://147.185.221.30:26212,#Njrat #C2,https://x.com/SarlackLab/status/1948912280038469761 2025-07-26 01:04:31,SarlackLab,domain,art-infinite.gl.at.ply.gg,#Njrat #C2,https://x.com/SarlackLab/status/1948912280038469761 2025-07-26 01:04:31,SarlackLab,url,http://art-infinite.gl.at.ply.gg,#Njrat #C2,https://x.com/SarlackLab/status/1948912280038469761 2025-07-26 01:04:31,SarlackLab,ip,147.185.221.30,#Njrat #C2,https://x.com/SarlackLab/status/1948912280038469761 2025-07-26 01:16:43,Ki__zzy,domain,gencatsupporthelpdeskadministradordept.weebly.com,#phishing,https://x.com/Ki__zzy/status/1948915351590404536 2025-07-26 01:16:43,Ki__zzy,url,https://gencatsupporthelpdeskadministradordept.weebly.com,#phishing,https://x.com/Ki__zzy/status/1948915351590404536 2025-07-26 02:00:06,urldna_bot,domain,hndfndf.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1948926270290477479 2025-07-26 02:00:06,urldna_bot,url,https://hndfndf.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1948926270290477479 2025-07-26 03:01:26,ReBensk,md5,f6b8aa93f70ebca070f268d2a4f62243,#malware #Android #Trojan,https://x.com/ReBensk/status/1948941702074695925 2025-07-26 03:06:23,ReBensk,md5,858e7405ad546bcdeb56ad309604dbff,#Trojan #malware #Android,https://x.com/ReBensk/status/1948942950693773777 2025-07-26 04:00:04,urldna_bot,domain,att-home-27e6df.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1948956460626362461 2025-07-26 04:00:04,urldna_bot,url,https://att-home-27e6df.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1948956460626362461 2025-07-26 05:00:06,AddressIntel,domain,btr6hfklamerd.cfolks.pl,#phishing,https://x.com/AddressIntel/status/1948971567498596666 2025-07-26 05:00:06,AddressIntel,url,https://btr6hfklamerd.cfolks.pl/a/io/auth/l,#phishing,https://x.com/AddressIntel/status/1948971567498596666 2025-07-26 05:08:02,ReBensk,md5,6cb7da5dfdb28f829b599bcdf5aad4f5,#Trojan #malware #Android,https://x.com/ReBensk/status/1948973562364395904 2025-07-26 05:41:36,askardyuss,url,https://github.com/313Team/313-AlmuntaqimVirus,#malware,https://x.com/askardyuss/status/1948982011374567753 2025-07-26 05:41:36,askardyuss,url,https://github.com/313Team/313-AlmuntaqimVirus/raw/refs/heads/main/313%20AlmuntaqimVirus.exe,#malware,https://x.com/askardyuss/status/1948982011374567753 2025-07-26 06:00:06,urldna_bot,domain,888365168.com,#phishing #scam,https://x.com/urldna_bot/status/1948986665592066181 2025-07-26 06:00:06,urldna_bot,url,http://www.888365168.com,#phishing #scam,https://x.com/urldna_bot/status/1948986665592066181 2025-07-26 06:46:17,drb_ra,url,http://45.79.249.239:443,#C2 #Sliver,https://x.com/drb_ra/status/1948998288050384906 2025-07-26 06:46:17,drb_ra,ip,45.79.249.239,#C2 #Sliver,https://x.com/drb_ra/status/1948998288050384906 2025-07-26 06:46:22,drb_ra,url,http://91.236.230.205:443,#C2 #Sliver,https://x.com/drb_ra/status/1948998310204764384 2025-07-26 06:46:22,drb_ra,ip,91.236.230.205,#C2 #Sliver,https://x.com/drb_ra/status/1948998310204764384 2025-07-26 06:48:26,drb_ra,url,http://15.161.93.7:135,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998828633227264 2025-07-26 06:48:26,drb_ra,ip,15.161.93.7,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998828633227264 2025-07-26 06:48:31,drb_ra,url,http://51.16.250.152:2376,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998851437768835 2025-07-26 06:48:31,drb_ra,ip,51.16.250.152,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998851437768835 2025-07-26 06:48:36,drb_ra,url,http://18.231.246.194:55615,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998874296635604 2025-07-26 06:48:36,drb_ra,ip,18.231.246.194,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998874296635604 2025-07-26 06:48:42,drb_ra,url,http://52.53.250.171:2375,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998897788998012 2025-07-26 06:48:42,drb_ra,ip,52.53.250.171,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998897788998012 2025-07-26 06:48:47,drb_ra,url,http://3.70.241.88:18245,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1948998920400433539 2025-07-26 06:48:53,drb_ra,url,http://85.107.57.112:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1948998943951475006 2025-07-26 06:48:53,drb_ra,ip,85.107.57.112,#C2 #AsyncRAT,https://x.com/drb_ra/status/1948998943951475006 2025-07-26 06:48:59,drb_ra,url,http://34.53.68.244:80,#C2 #AsyncRAT,https://x.com/drb_ra/status/1948998967619907827 2025-07-26 06:49:05,drb_ra,url,http://108.130.36.36:80,#C2 #Interactsh,https://x.com/drb_ra/status/1948998995763773828 2025-07-26 06:49:05,drb_ra,ip,108.130.36.36,#C2 #Interactsh,https://x.com/drb_ra/status/1948998995763773828 2025-07-26 06:49:11,drb_ra,url,http://54.78.18.220:80,#C2 #Interactsh,https://x.com/drb_ra/status/1948999018916315552 2025-07-26 06:49:11,drb_ra,ip,54.78.18.220,#C2 #Interactsh,https://x.com/drb_ra/status/1948999018916315552 2025-07-26 06:49:17,drb_ra,url,http://54.194.250.212:80,#C2 #Interactsh,https://x.com/drb_ra/status/1948999042412720465 2025-07-26 06:49:17,drb_ra,ip,54.194.250.212,#C2 #Interactsh,https://x.com/drb_ra/status/1948999042412720465 2025-07-26 06:49:22,drb_ra,url,http://159.0.42.113:443,#C2 #Qakbot,https://x.com/drb_ra/status/1948999065603047850 2025-07-26 06:49:22,drb_ra,ip,159.0.42.113,#C2 #Qakbot,https://x.com/drb_ra/status/1948999065603047850 2025-07-26 06:49:28,drb_ra,url,http://189.235.176.160:995,#C2 #Qakbot,https://x.com/drb_ra/status/1948999088965320969 2025-07-26 06:49:28,drb_ra,ip,189.235.176.160,#C2 #Qakbot,https://x.com/drb_ra/status/1948999088965320969 2025-07-26 08:30:03,drb_ra,url,https://185.14.31.158:443,#C2,https://x.com/drb_ra/status/1949024404349792326 2025-07-26 08:30:03,drb_ra,url,http://185.14.31.158:443,#C2,https://x.com/drb_ra/status/1949024404349792326 2025-07-26 08:30:03,drb_ra,ip,185.14.31.158,#C2,https://x.com/drb_ra/status/1949024404349792326 2025-07-26 08:30:09,drb_ra,url,https://77.233.6.176:4444,#C2,https://x.com/drb_ra/status/1949024426638389325 2025-07-26 08:30:09,drb_ra,url,http://77.233.6.176:4444,#C2,https://x.com/drb_ra/status/1949024426638389325 2025-07-26 08:30:09,drb_ra,ip,77.233.6.176,#C2,https://x.com/drb_ra/status/1949024426638389325 2025-07-26 09:42:27,masaomi346,domain,7i1egd.top,#phishing,https://x.com/masaomi346/status/1949042622393147571 2025-07-26 09:42:27,masaomi346,url,https://7i1egd.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949042622393147571 2025-07-26 09:42:27,masaomi346,domain,mj6xel.top,#phishing,https://x.com/masaomi346/status/1949042622393147571 2025-07-26 09:42:27,masaomi346,url,https://mj6xel.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949042622393147571 2025-07-26 09:42:27,masaomi346,domain,x8qotk.top,#phishing,https://x.com/masaomi346/status/1949042622393147571 2025-07-26 09:42:27,masaomi346,url,https://x8qotk.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949042622393147571 2025-07-26 10:00:09,urldna_bot,domain,allegrolokalnie.0a9192.shop,#phishing #scam,https://x.com/urldna_bot/status/1949047077729718602 2025-07-26 10:00:09,urldna_bot,url,https://allegrolokalnie.0a9192.shop,#phishing #scam,https://x.com/urldna_bot/status/1949047077729718602 2025-07-26 11:37:26,fbgwls245,md5,B3E5B0DDAB44F789DD51E8187EDCA0B7,#ransomware,https://x.com/fbgwls245/status/1949071561635545436 2025-07-26 11:46:11,kelly1fernandes,domain,careen.com,#phishing,https://x.com/kelly1fernandes/status/1949073762126569840 2025-07-26 11:46:11,kelly1fernandes,url,http://careen.com,#phishing,https://x.com/kelly1fernandes/status/1949073762126569840 2025-07-26 12:00:07,urldna_bot,domain,codebustler.github.io,#scam #phishing,https://x.com/urldna_bot/status/1949077268329902110 2025-07-26 12:00:07,urldna_bot,url,http://codebustler.github.io/insta-login-page/,#scam #phishing,https://x.com/urldna_bot/status/1949077268329902110 2025-07-26 12:27:00,skocherhan,domain,breached26tezcofqla4adzyn22notfqwcac7gpbrleg4usehljwkgqd.onion,,https://x.com/skocherhan/status/1949084033243119773 2025-07-26 12:27:00,skocherhan,url,http://breached26tezcofqla4adzyn22notfqwcac7gpbrleg4usehljwkgqd.onion,,https://x.com/skocherhan/status/1949084033243119773 2025-07-26 13:56:46,skocherhan,sha256,14137558073301053ccb26440d07e2def8a0add9029d42c4bf0776bf3c0f5659,,https://x.com/skocherhan/status/1949106624661963182 2025-07-26 14:00:06,urldna_bot,domain,feropmeratre.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949107463044682046 2025-07-26 14:00:06,urldna_bot,url,https://feropmeratre.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949107463044682046 2025-07-26 14:03:33,Power_licious,domain,coin-team.com,#phishing,https://x.com/Power_licious/status/1949108329646633271 2025-07-26 14:03:33,Power_licious,url,http://coin-team.com,#phishing,https://x.com/Power_licious/status/1949108329646633271 2025-07-26 14:03:33,Power_licious,domain,aqrl-trade.com,#phishing,https://x.com/Power_licious/status/1949108329646633271 2025-07-26 14:03:33,Power_licious,url,http://aqrl-trade.com,#phishing,https://x.com/Power_licious/status/1949108329646633271 2025-07-26 16:00:08,urldna_bot,domain,netfildd.top,#scam #phishing,https://x.com/urldna_bot/status/1949137672036876521 2025-07-26 16:00:08,urldna_bot,url,http://netfildd.top/Authenticate/,#scam #phishing,https://x.com/urldna_bot/status/1949137672036876521 2025-07-26 18:00:06,urldna_bot,domain,fawearsserviceatt.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949167861945004260 2025-07-26 18:00:06,urldna_bot,url,https://fawearsserviceatt.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949167861945004260 2025-07-26 19:20:46,SarlackLab,url,http://66.63.187.164:8595,#C2,https://x.com/SarlackLab/status/1949188161332002884 2025-07-26 19:20:46,SarlackLab,ip,66.63.187.164,#C2,https://x.com/SarlackLab/status/1949188161332002884 2025-07-26 19:21:15,SarlackLab,url,http://87.242.106.13:44333,#Njrat #C2,https://x.com/SarlackLab/status/1949188282106945546 2025-07-26 19:21:15,SarlackLab,ip,87.242.106.13,#Njrat #C2,https://x.com/SarlackLab/status/1949188282106945546 2025-07-26 20:00:06,urldna_bot,domain,outlook-secure.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1949198059218301258 2025-07-26 20:00:06,urldna_bot,url,https://outlook-secure.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1949198059218301258 2025-07-26 20:05:38,volrant136,domain,www-officialregistration-accounts.netlify.app,#phishing #APT,https://x.com/volrant136/status/1949199453102985695 2025-07-26 20:05:38,volrant136,url,http://www-officialregistration-accounts.netlify.app,#phishing #APT,https://x.com/volrant136/status/1949199453102985695 2025-07-26 20:05:38,volrant136,domain,www-navl-com-lk.pages.dev,#phishing #APT,https://x.com/volrant136/status/1949199453102985695 2025-07-26 20:05:38,volrant136,url,http://www-navl-com-lk.pages.dev,#phishing #APT,https://x.com/volrant136/status/1949199453102985695 2025-07-26 21:00:03,threatquery,url,http://151.242.63.30,#C2 #malware,https://x.com/threatquery/status/1949213144787603728 2025-07-26 21:00:03,threatquery,ip,151.242.63.30,#C2 #malware,https://x.com/threatquery/status/1949213144787603728 2025-07-26 21:00:04,threatquery,url,http://77.81.142.4,#C2 #Xworm #malware,https://x.com/threatquery/status/1949213152605827365 2025-07-26 21:00:04,threatquery,ip,77.81.142.4,#C2 #Xworm #malware,https://x.com/threatquery/status/1949213152605827365 2025-07-26 21:00:04,threatquery,url,http://103.42.30.170,#C2 #Xworm #malware,https://x.com/threatquery/status/1949213149866983543 2025-07-26 21:00:04,threatquery,ip,103.42.30.170,#C2 #Xworm #malware,https://x.com/threatquery/status/1949213149866983543 2025-07-26 21:00:19,SarlackLab,url,http://192.169.69.26:6903,#Njrat #C2,https://x.com/SarlackLab/status/1949213214488625219 2025-07-26 21:00:19,SarlackLab,domain,amiroxs.duckdns.org,#Njrat #C2,https://x.com/SarlackLab/status/1949213214488625219 2025-07-26 21:00:19,SarlackLab,url,http://amiroxs.duckdns.org,#Njrat #C2,https://x.com/SarlackLab/status/1949213214488625219 2025-07-26 21:00:19,SarlackLab,ip,192.169.69.26,#Njrat #C2,https://x.com/SarlackLab/status/1949213214488625219 2025-07-26 22:00:06,urldna_bot,domain,openseaczs.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1949228258521739359 2025-07-26 22:00:06,urldna_bot,url,http://www.openseaczs.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1949228258521739359 2025-07-26 22:01:47,SarlackLab,url,http://196.251.83.29:1912,#C2 #RedLine,https://x.com/SarlackLab/status/1949228681550774697 2025-07-26 22:01:47,SarlackLab,ip,196.251.83.29,#C2 #RedLine,https://x.com/SarlackLab/status/1949228681550774697 2025-07-27 00:00:09,urldna_bot,domain,jdjjdisisiisiss88.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949258471259439357 2025-07-27 00:00:09,urldna_bot,url,https://jdjjdisisiisiss88.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949258471259439357 2025-07-27 02:00:06,urldna_bot,domain,sstage.portfolio.metamask.cx,#scam #phishing,https://x.com/urldna_bot/status/1949288655232643149 2025-07-27 02:00:06,urldna_bot,url,https://sstage.portfolio.metamask.cx,#scam #phishing,https://x.com/urldna_bot/status/1949288655232643149 2025-07-27 04:00:05,urldna_bot,domain,wewewecodesadwewesadwe.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949318851788722448 2025-07-27 04:00:05,urldna_bot,url,https://wewewecodesadwewesadwe.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949318851788722448 2025-07-27 05:39:40,ReBensk,md5,b671a5d1b4c9d738bd8eda0718481500,#Android #Trojan #malware,https://x.com/ReBensk/status/1949343912977662390 2025-07-27 06:17:21,harugasumi,url,https://nunshang.cn,#phishing,https://x.com/harugasumi/status/1949353396999512503 2025-07-27 06:17:21,harugasumi,domain,nunshang.cn,#phishing,https://x.com/harugasumi/status/1949353396999512503 2025-07-27 06:31:23,harugasumi,url,https://shinkansen2-brach.wtfhlo.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/harugasumi/status/1949356926095216895 2025-07-27 06:31:23,harugasumi,domain,shinkansen2-brach.wtfhlo.cn,#phishing,https://x.com/harugasumi/status/1949356926095216895 2025-07-27 06:59:30,harugasumi,domain,pocketcard-onproof.uikiza.cn,#phishing,https://x.com/harugasumi/status/1949364001575772191 2025-07-27 06:59:30,harugasumi,url,https://pocketcard-onproof.uikiza.cn/netservice/login//,#phishing,https://x.com/harugasumi/status/1949364001575772191 2025-07-27 10:53:30,skocherhan,domain,pub-51656ae3d0ef4f2ba59cdfc6830c8098.r2.dev,,https://x.com/skocherhan/status/1949422893047111749 2025-07-27 10:53:30,skocherhan,md5,51656ae3d0ef4f2ba59cdfc6830c8098,,https://x.com/skocherhan/status/1949422893047111749 2025-07-27 10:53:30,skocherhan,url,http://one.ebext.in/openurl?nid=&user_id=&random_id=&thread_id=&from_email=&source=web_ext&url=http%3A%2F%2Fhubs.ly/Q037hZCD0,,https://x.com/skocherhan/status/1949422893047111749 2025-07-27 10:53:30,skocherhan,url,http://pub-51656ae3d0ef4f2ba59cdfc6830c8098.r2.dev/meeting.htm?utm_campaign=8634688-zm-30000&utm_source=ppc,,https://x.com/skocherhan/status/1949422893047111749 2025-07-27 10:53:30,skocherhan,url,http://hubs.ly/Q037hZCD0,,https://x.com/skocherhan/status/1949422893047111749 2025-07-27 10:53:30,skocherhan,domain,hubs.ly,,https://x.com/skocherhan/status/1949422893047111749 2025-07-27 10:53:30,skocherhan,domain,one.ebext.in,,https://x.com/skocherhan/status/1949422893047111749 2025-07-27 11:00:24,SarlackLab,ip,35.156.141.157,#C2 #Njrat,https://x.com/SarlackLab/status/1949424628390089019 2025-07-27 11:00:24,SarlackLab,url,http://35.156.141.157:1337,#C2 #Njrat,https://x.com/SarlackLab/status/1949424628390089019 2025-07-27 11:00:53,SarlackLab,url,http://3.126.224.214:18065,#C2 #Njrat,https://x.com/SarlackLab/status/1949424750389858435 2025-07-27 11:18:13,skocherhan,url,http://167.160.161.247/l838.exe,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,boltex.net,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://boltex.net/xpao,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,molefkx.com,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://molefkx.com/xalo,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,sponfht.com,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://sponfht.com/xrie,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,follcp.org,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://runuxs.org/zpla,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,berijng.net,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://follcp.org/atnr,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,md5,29f7b4a5017bd6710923bb2738ede799,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,ip,167.160.161.247,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://berijng.net/otir,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,remotuw.org,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://detrewb.net/aqyw,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,detrewb.net,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,url,http://remotuw.org/xiza,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:18:13,skocherhan,domain,runuxs.org,#Lumma,https://x.com/skocherhan/status/1949429111606194583 2025-07-27 11:33:31,skocherhan,url,http://xt.dev.review.technology,,https://x.com/skocherhan/status/1949432960840536145 2025-07-27 11:33:31,skocherhan,url,http://mx.smtp.review.digital,,https://x.com/skocherhan/status/1949432960840536145 2025-07-27 11:33:31,skocherhan,domain,xt.dev.review.technology,,https://x.com/skocherhan/status/1949432960840536145 2025-07-27 11:33:31,skocherhan,url,http://t.me/dz25gz,,https://x.com/skocherhan/status/1949432960840536145 2025-07-27 11:33:31,skocherhan,domain,mx.smtp.review.digital,,https://x.com/skocherhan/status/1949432960840536145 2025-07-27 11:47:39,masaomi346,domain,garciamerlos.com,#phishing,https://x.com/masaomi346/status/1949436519871283289 2025-07-27 11:47:39,masaomi346,url,https://garciamerlos.com/accountplalaupdate/Sites/index.html,#phishing,https://x.com/masaomi346/status/1949436519871283289 2025-07-27 11:57:23,BartekJuraszek_,url,http://kakaoroom.com,#scam,https://x.com/BartekJuraszek_/status/1949438968170156171 2025-07-27 11:57:23,BartekJuraszek_,domain,kakaoroom.com,#scam,https://x.com/BartekJuraszek_/status/1949438968170156171 2025-07-27 12:00:06,urldna_bot,domain,dievertine.github.io,#phishing #scam,https://x.com/urldna_bot/status/1949439651934048640 2025-07-27 12:00:06,urldna_bot,url,https://dievertine.github.io/Facebook/,#phishing #scam,https://x.com/urldna_bot/status/1949439651934048640 2025-07-27 13:12:41,fbgwls245,md5,68BD43A00BA948F435ECBDD402914298,#ransomware,https://x.com/fbgwls245/status/1949457917931045350 2025-07-27 13:12:41,fbgwls245,domain,zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion,#ransomware,https://x.com/fbgwls245/status/1949457917931045350 2025-07-27 13:12:41,fbgwls245,url,http://zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion/touchus.html,#ransomware,https://x.com/fbgwls245/status/1949457917931045350 2025-07-27 13:12:41,fbgwls245,md5,8A0B41E965E66689E78CA36D3477CB0C,#ransomware,https://x.com/fbgwls245/status/1949457917931045350 2025-07-27 14:00:07,urldna_bot,url,https://navlunara.com.wplanders.a2hosted.com,#phishing #scam,https://x.com/urldna_bot/status/1949469854924255537 2025-07-27 14:00:07,urldna_bot,domain,navlunara.com.wplanders.a2hosted.com,#phishing #scam,https://x.com/urldna_bot/status/1949469854924255537 2025-07-27 14:14:37,StopMalvertisin,url,https://getfiles.pro/scan/?wG1wGwd?utm=10jaSB,#Lumma,https://x.com/StopMalvertisin/status/1949473503675359311 2025-07-27 14:14:37,StopMalvertisin,domain,getfiles.pro,#Lumma,https://x.com/StopMalvertisin/status/1949473503675359311 2025-07-27 14:14:37,StopMalvertisin,url,https://mega.nz/file/z8h30B7Z#omohibWKsWtKR1LKZGW3vmZD_9na22mbsRDWCGinDI4,#Lumma,https://x.com/StopMalvertisin/status/1949473503675359311 2025-07-27 16:00:09,urldna_bot,domain,gencatsupporthelpdeskadministradordept.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949500061697642695 2025-07-27 16:00:09,urldna_bot,url,https://gencatsupporthelpdeskadministradordept.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949500061697642695 2025-07-27 16:04:34,SedimentIV,domain,myxstalk.lol,#phishing,https://x.com/SedimentIV/status/1949501172047602006 2025-07-27 16:04:34,SedimentIV,url,http://myxstalk.lol,#phishing,https://x.com/SedimentIV/status/1949501172047602006 2025-07-27 16:49:35,JAMESWT_WT,url,https://www.ziman.net/prodotto-p-329207.html,#scam,https://x.com/JAMESWT_WT/status/1949512500673642807 2025-07-27 16:49:35,JAMESWT_WT,domain,ziman.net,#scam,https://x.com/JAMESWT_WT/status/1949512500673642807 2025-07-27 18:16:21,skocherhan,url,http://tradingview.connect-app.us.com/cloudflare/,,https://x.com/skocherhan/status/1949534337927426362 2025-07-27 18:16:21,skocherhan,domain,tradingview.connect-app.us.com,,https://x.com/skocherhan/status/1949534337927426362 2025-07-27 18:50:54,volrant136,url,https://mail-mod-gov-np-account-file-data.netlify.app/bof.html,#APT #phishing,https://x.com/volrant136/status/1949543032547582120 2025-07-27 18:50:54,volrant136,domain,mail-mod-gov-np-account-file-data.netlify.app,#APT #phishing,https://x.com/volrant136/status/1949543032547582120 2025-07-27 20:00:07,urldna_bot,domain,atenasgroup.com,#scam #phishing,https://x.com/urldna_bot/status/1949560450535882985 2025-07-27 20:00:07,urldna_bot,url,https://atenasgroup.com,#scam #phishing,https://x.com/urldna_bot/status/1949560450535882985 2025-07-27 21:00:03,threatquery,url,http://45.144.29.222,#C2 #malware,https://x.com/threatquery/status/1949575534867775949 2025-07-27 21:00:03,threatquery,url,http://87.120.93.214,#C2 #malware #stealer,https://x.com/threatquery/status/1949575536520434024 2025-07-27 21:00:03,threatquery,ip,87.120.93.214,#C2 #malware #stealer,https://x.com/threatquery/status/1949575536520434024 2025-07-27 21:00:03,threatquery,ip,45.144.29.222,#C2 #malware,https://x.com/threatquery/status/1949575534867775949 2025-07-27 21:00:04,threatquery,url,http://15.152.35.176,#NetSupportRAT #C2 #malware,https://x.com/threatquery/status/1949575538172977471 2025-07-27 21:00:04,threatquery,ip,15.152.35.176,#NetSupportRAT #C2 #malware,https://x.com/threatquery/status/1949575538172977471 2025-07-27 21:29:20,drb_ra,url,http://117.78.41.31:5080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949582903312060776 2025-07-27 21:29:20,drb_ra,ip,117.78.41.31,#CobaltStrike #C2,https://x.com/drb_ra/status/1949582903312060776 2025-07-27 22:00:06,urldna_bot,domain,lkjhgvhyf675gygy.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949590645300994436 2025-07-27 22:00:06,urldna_bot,url,http://www.lkjhgvhyf675gygy.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949590645300994436 2025-07-27 22:47:45,masaomi346,domain,2czl5nw4.top,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,url,https://2czl5nw4.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,domain,3prl1ve5.top,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,url,https://3prl1ve5.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,domain,4faz2en8.top,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,url,https://4faz2en8.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,domain,5jiedt.top,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,url,https://5jiedt.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,domain,8lrj0tk8.top,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,url,https://8lrj0tk8.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,domain,kbwz1y.top,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,url,https://kbwz1y.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,domain,qrunu5.top,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:47:45,masaomi346,url,https://qrunu5.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949602638246662299 2025-07-27 22:49:39,masaomi346,domain,rs5ncs.top,#phishing,https://x.com/masaomi346/status/1949603115877163025 2025-07-27 22:49:39,masaomi346,url,https://rs5ncs.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949603115877163025 2025-07-27 22:49:39,masaomi346,domain,stkd7o.top,#phishing,https://x.com/masaomi346/status/1949603115877163025 2025-07-27 22:49:39,masaomi346,url,https://stkd7o.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949603115877163025 2025-07-27 22:49:39,masaomi346,domain,te1crk.top,#phishing,https://x.com/masaomi346/status/1949603115877163025 2025-07-27 22:49:39,masaomi346,url,https://te1crk.top/nsCCtsCdx/,#phishing,https://x.com/masaomi346/status/1949603115877163025 2025-07-28 00:00:08,urldna_bot,domain,notificationalserverwebmail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949620855589261764 2025-07-28 00:00:08,urldna_bot,url,https://notificationalserverwebmail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949620855589261764 2025-07-28 00:23:01,catnap707,domain,hzatict.cn,#scam #phishing,https://x.com/catnap707/status/1949626615064866854 2025-07-28 00:23:01,catnap707,url,http://www.hzatict.cn,#scam #phishing,https://x.com/catnap707/status/1949626615064866854 2025-07-28 00:23:01,catnap707,url,http://43.165.181.136,#scam #phishing,https://x.com/catnap707/status/1949626615064866854 2025-07-28 00:23:01,catnap707,ip,43.165.181.136,#scam #phishing,https://x.com/catnap707/status/1949626615064866854 2025-07-28 00:25:36,catnap707,domain,www-apple-jp.atienerji.com,#phishing,https://x.com/catnap707/status/1949627262896378302 2025-07-28 00:25:36,catnap707,url,http://www-apple-jp.atienerji.com/account/?offer=~,#phishing,https://x.com/catnap707/status/1949627262896378302 2025-07-28 00:25:36,catnap707,url,http://172.67.149.123,#phishing,https://x.com/catnap707/status/1949627262896378302 2025-07-28 01:51:13,skocherhan,url,http://github.com/TextesAV,,https://x.com/skocherhan/status/1949648810218528891 2025-07-28 02:00:09,urldna_bot,domain,pollo90.wuaze.com,#scam #phishing,https://x.com/urldna_bot/status/1949651056448741848 2025-07-28 02:00:09,urldna_bot,url,https://pollo90.wuaze.com,#scam #phishing,https://x.com/urldna_bot/status/1949651056448741848 2025-07-28 02:22:55,skocherhan,url,http://176.46.157.32/files/8111443583/YT1For2.exe,,https://x.com/skocherhan/status/1949656787671515356 2025-07-28 02:22:55,skocherhan,ip,176.46.157.32,,https://x.com/skocherhan/status/1949656787671515356 2025-07-28 02:22:55,skocherhan,md5,e5ce3951f82531943d68b4eb1a8e13c2,,https://x.com/skocherhan/status/1949656787671515356 2025-07-28 02:26:36,ShadowChasing1,domain,mail-mod-gov-np-account-file-data.netlify.app,#APT #phishing,https://x.com/ShadowChasing1/status/1949657714541609386 2025-07-28 02:26:36,ShadowChasing1,url,https://mail-mod-gov-np-account-file-data.netlify.app/bof.html,#APT #phishing,https://x.com/ShadowChasing1/status/1949657714541609386 2025-07-28 02:28:33,skocherhan,url,http://jul5050quasab.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,domain,jbsak.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,url,http://jbsak.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,domain,jul5050quasa.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,url,http://jul5050quasa.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,url,http://tvsanarch.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,domain,jul5050quasab.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,domain,venomfhd.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,url,http://venomfhd.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,domain,ygfbasync.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,url,http://ygfbasync.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,sha256,23d127279303b5f36f802617ed2c5b6172049955e67b0c11bcd1ae76f5860cd3,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:28:33,skocherhan,domain,tvsanarch.duckdns.org,,https://x.com/skocherhan/status/1949658203450479017 2025-07-28 02:42:09,skocherhan,domain,image-logo-popup-files.vercel.app,,https://x.com/skocherhan/status/1949661627235610955 2025-07-28 02:42:09,skocherhan,url,http://image-logo-popup-files.vercel.app/success.png,,https://x.com/skocherhan/status/1949661627235610955 2025-07-28 02:42:09,skocherhan,md5,721981853fb236e89169efc6ff3be9bf,,https://x.com/skocherhan/status/1949661627235610955 2025-07-28 02:42:09,skocherhan,md5,9825b88257b0e29c1be73d3758c0c98b,,https://x.com/skocherhan/status/1949661627235610955 2025-07-28 02:42:45,skocherhan,domain,dryskyholding.com,#APT,https://x.com/skocherhan/status/1949661776343146569 2025-07-28 02:42:45,skocherhan,url,https://dryskyholding.com/wp-includes/js/common/src/list.php,#APT,https://x.com/skocherhan/status/1949661776343146569 2025-07-28 02:51:40,ShadowChasing1,sha256,14137558073301053ccb26440d07e2def8a0add9029d42c4bf0776bf3c0f5659,,https://x.com/ShadowChasing1/status/1949664023877972449 2025-07-28 02:51:44,ShadowChasing1,url,https://datamero.org/biuA873q4jIUBoaFibnoianbscoia/sitrie,#APT,https://x.com/ShadowChasing1/status/1949664039149445388 2025-07-28 02:51:44,ShadowChasing1,domain,datamero.org,#APT,https://x.com/ShadowChasing1/status/1949664039149445388 2025-07-28 02:51:44,ShadowChasing1,md5,3699b8277299668f9e8489a465723be7,#APT,https://x.com/ShadowChasing1/status/1949664039149445388 2025-07-28 02:51:44,ShadowChasing1,md5,0dcef9d1e1cd96ed5b19c0befa1e6e7f,#APT,https://x.com/ShadowChasing1/status/1949664039149445388 2025-07-28 02:51:56,ShadowChasing1,md5,ba2f1868f2af9e191ebf47a5fab5cbab,,https://x.com/ShadowChasing1/status/1949664087933153602 2025-07-28 02:51:56,ShadowChasing1,md5,c5f0425dabd01d7ba80dfc3d5ca19841,,https://x.com/ShadowChasing1/status/1949664087933153602 2025-07-28 02:51:56,ShadowChasing1,domain,terminate.so,,https://x.com/ShadowChasing1/status/1949664087933153602 2025-07-28 02:51:56,ShadowChasing1,url,https://terminate.so,,https://x.com/ShadowChasing1/status/1949664087933153602 2025-07-28 02:51:56,ShadowChasing1,md5,1995682d600e329b7833003a01609252,,https://x.com/ShadowChasing1/status/1949664087933153602 2025-07-28 02:51:56,ShadowChasing1,md5,c697848015bb8c2cbb7cc1502905ba23,,https://x.com/ShadowChasing1/status/1949664087933153602 2025-07-28 02:51:58,ShadowChasing1,md5,5152410aeef667ffaf42d40746af4d84,,https://x.com/ShadowChasing1/status/1949664098565988408 2025-07-28 03:18:05,catnap707,domain,m-sbisec.hzcoolers.com,#phishing,https://x.com/catnap707/status/1949670670570557825 2025-07-28 03:18:05,catnap707,url,http://m-sbisec.hzcoolers.com/ETGate/?sbisec=~,#phishing,https://x.com/catnap707/status/1949670670570557825 2025-07-28 03:18:05,catnap707,url,http://172.67.148.156,#phishing,https://x.com/catnap707/status/1949670670570557825 2025-07-28 03:20:04,catnap707,domain,monex-jp.baotoujk.com,#phishing,https://x.com/catnap707/status/1949671170577735738 2025-07-28 03:20:04,catnap707,url,http://monex-jp.baotoujk.com/support/?login=~,#phishing,https://x.com/catnap707/status/1949671170577735738 2025-07-28 03:20:04,catnap707,url,http://172.67.181.47,#phishing,https://x.com/catnap707/status/1949671170577735738 2025-07-28 03:22:01,catnap707,domain,info-monex.algmoney.com,#phishing,https://x.com/catnap707/status/1949671661739131271 2025-07-28 03:22:01,catnap707,url,http://info-monex.algmoney.com/support/?login=~,#phishing,https://x.com/catnap707/status/1949671661739131271 2025-07-28 03:22:01,catnap707,url,http://104.21.16.1,#phishing,https://x.com/catnap707/status/1949671661739131271 2025-07-28 03:22:01,catnap707,url,http://104.21.32.1,#phishing,https://x.com/catnap707/status/1949671661739131271 2025-07-28 03:25:18,catnap707,domain,trip-nocfic.ecdnvv.cn,#phishing,https://x.com/catnap707/status/1949672485944766575 2025-07-28 03:25:18,catnap707,url,http://trip-nocfic.ecdnvv.cn/customer/announcement/,#phishing,https://x.com/catnap707/status/1949672485944766575 2025-07-28 03:25:18,catnap707,url,http://172.67.199.22,#phishing,https://x.com/catnap707/status/1949672485944766575 2025-07-28 04:00:09,urldna_bot,domain,arstmping002.web.app,#scam #phishing,https://x.com/urldna_bot/status/1949681257190662504 2025-07-28 04:00:09,urldna_bot,url,https://arstmping002.web.app,#scam #phishing,https://x.com/urldna_bot/status/1949681257190662504 2025-07-28 06:00:06,urldna_bot,domain,raeslmszqiomtre.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949711441658835152 2025-07-28 06:00:06,urldna_bot,url,https://raeslmszqiomtre.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949711441658835152 2025-07-28 06:20:40,ShadowChasing1,domain,www-officialregistration-accounts.netlify.app,#phishing #APT,https://x.com/ShadowChasing1/status/1949716619371905233 2025-07-28 06:20:40,ShadowChasing1,url,http://www-navl-com-lk.pages.dev,#phishing #APT,https://x.com/ShadowChasing1/status/1949716619371905233 2025-07-28 06:20:40,ShadowChasing1,url,http://www-officialregistration-accounts.netlify.app,#phishing #APT,https://x.com/ShadowChasing1/status/1949716619371905233 2025-07-28 06:20:40,ShadowChasing1,domain,www-navl-com-lk.pages.dev,#phishing #APT,https://x.com/ShadowChasing1/status/1949716619371905233 2025-07-28 06:21:05,ShadowChasing1,domain,www-srilankanavy-cabinet-decision.netlify.app,,https://x.com/ShadowChasing1/status/1949716722615037975 2025-07-28 06:21:05,ShadowChasing1,url,https://www-srilankanavy-cabinet-decision.netlify.app,,https://x.com/ShadowChasing1/status/1949716722615037975 2025-07-28 06:25:43,c9lab_soc,domain,e-bankofamerica.com,#scam #phishing,https://x.com/c9lab_soc/status/1949717891101675545 2025-07-28 06:25:43,c9lab_soc,url,http://e-bankofamerica.com,#scam #phishing,https://x.com/c9lab_soc/status/1949717891101675545 2025-07-28 06:25:43,c9lab_soc,domain,telegeram-qq.org,#scam #phishing,https://x.com/c9lab_soc/status/1949717891101675545 2025-07-28 06:25:43,c9lab_soc,url,http://telegeram-qq.org,#scam #phishing,https://x.com/c9lab_soc/status/1949717891101675545 2025-07-28 06:27:29,RakeshKrish12,ip,193.143.1.153,#stealer #CobaltStrike #ransomware #Lumma #malware,https://x.com/RakeshKrish12/status/1949718334414471218 2025-07-28 06:27:29,RakeshKrish12,ip,47.109.38.125,#stealer #CobaltStrike #ransomware #Lumma #malware,https://x.com/RakeshKrish12/status/1949718334414471218 2025-07-28 07:20:29,fbgwls245,domain,zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion,#ransomware,https://x.com/fbgwls245/status/1949731671512895785 2025-07-28 07:20:29,fbgwls245,url,http://zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion/touchus.html,#ransomware,https://x.com/fbgwls245/status/1949731671512895785 2025-07-28 07:20:29,fbgwls245,md5,8A0B41E965E66689E78CA36D3477CB0C,#ransomware,https://x.com/fbgwls245/status/1949731671512895785 2025-07-28 07:20:29,fbgwls245,md5,68BD43A00BA948F435ECBDD402914298,#ransomware,https://x.com/fbgwls245/status/1949731671512895785 2025-07-28 07:35:54,JAMESWT_WT,ip,104.223.84.8,#AgentTesla #GuLoader,https://x.com/JAMESWT_WT/status/1949735553206776224 2025-07-28 08:00:09,urldna_bot,domain,prronmerilca.netlify.app,#scam #phishing,https://x.com/urldna_bot/status/1949741654421750060 2025-07-28 08:00:09,urldna_bot,url,https://prronmerilca.netlify.app,#scam #phishing,https://x.com/urldna_bot/status/1949741654421750060 2025-07-28 08:17:26,Tino_jazz,domain,coin-team.com,#phishing,https://x.com/Tino_jazz/status/1949746002946396294 2025-07-28 08:17:26,Tino_jazz,url,http://coin-team.com,#phishing,https://x.com/Tino_jazz/status/1949746002946396294 2025-07-28 08:17:26,Tino_jazz,domain,aqrl-trade.com,#phishing,https://x.com/Tino_jazz/status/1949746002946396294 2025-07-28 08:17:26,Tino_jazz,url,http://aqrl-trade.com,#phishing,https://x.com/Tino_jazz/status/1949746002946396294 2025-07-28 08:47:34,K_N1kolenko,url,http://sponfht.com,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,runuxs.org,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,sponfht.com,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,follcp.org,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,molefkx.com,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,nortlmm.com,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://steamcommunity.com/profiles/76561199863199067,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://molefkx.com,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://runuxs.org,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://nortlmm.com,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,detrewb.net,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://berijng.net,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,berijng.net,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://detrewb.net,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,remotuw.org,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://boltex.net,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://follcp.org,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,url,http://remotuw.org,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 08:47:34,K_N1kolenko,domain,boltex.net,#LummaStealer,https://x.com/K_N1kolenko/status/1949753588424548840 2025-07-28 09:00:10,sdcyberresearch,domain,static6-jquery.com,#Magecart,https://x.com/sdcyberresearch/status/1949756756789174645 2025-07-28 09:00:10,sdcyberresearch,url,http://static6-jquery.com,#Magecart,https://x.com/sdcyberresearch/status/1949756756789174645 2025-07-28 09:35:20,skocherhan,domain,nihaocloud.com,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,url,http://nihaocloud.com,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,domain,mail.fiald.ro,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,url,http://mail.fiald.ro,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,domain,mail.j-fores.com,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,url,http://mail.j-fores.com,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,domain,mail.novochrom.us,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,url,http://mail.novochrom.us,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,domain,yettigretrading.com,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:35:20,skocherhan,url,http://yettigretrading.com,#AgentTesla,https://x.com/skocherhan/status/1949765605927575753 2025-07-28 09:37:20,masaomi346,domain,shinkansen2-minim.ovkhfq.cn,#phishing,https://x.com/masaomi346/status/1949766111085633762 2025-07-28 09:37:20,masaomi346,url,https://shinkansen2-minim.ovkhfq.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1949766111085633762 2025-07-28 09:37:20,masaomi346,url,https://shinkansen2-doxory.wlvoxq.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1949766111085633762 2025-07-28 09:37:20,masaomi346,url,https://shinkansen2-case.irbrcd.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1949766111085633762 2025-07-28 09:37:20,masaomi346,domain,shinkansen2-case.irbrcd.cn,#phishing,https://x.com/masaomi346/status/1949766111085633762 2025-07-28 09:37:20,masaomi346,domain,shinkansen2-doxory.wlvoxq.cn,#phishing,https://x.com/masaomi346/status/1949766111085633762 2025-07-28 10:00:08,urldna_bot,domain,wsu-edutyi.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949771847676891204 2025-07-28 10:00:08,urldna_bot,url,https://wsu-edutyi.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1949771847676891204 2025-07-28 12:00:06,urldna_bot,url,https://signeharmony.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949802041020133755 2025-07-28 12:00:06,urldna_bot,domain,signeharmony.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1949802041020133755 2025-07-28 12:26:35,abuse_ch,ip,178.22.24.12,,https://x.com/abuse_ch/status/1949808703927906424 2025-07-28 12:26:35,abuse_ch,ip,178.22.24.11,,https://x.com/abuse_ch/status/1949808703927906424 2025-07-28 12:45:59,Metemcyber,domain,oy4bhd.top,#phishing,https://x.com/Metemcyber/status/1949813588174274830 2025-07-28 12:45:59,Metemcyber,url,https://oy4bhd.top/EniNgYEUT/,#phishing,https://x.com/Metemcyber/status/1949813588174274830 2025-07-28 12:45:59,Metemcyber,url,http://104.21.80.1,#phishing,https://x.com/Metemcyber/status/1949813588174274830 2025-07-28 12:51:00,Metemcyber,url,http://104.21.31.20,#phishing,https://x.com/Metemcyber/status/1949814848860414136 2025-07-28 12:51:00,Metemcyber,domain,t8g6cy.top,#phishing,https://x.com/Metemcyber/status/1949814848860414136 2025-07-28 12:51:00,Metemcyber,url,http://172.67.174.167,#phishing,https://x.com/Metemcyber/status/1949814848860414136 2025-07-28 12:51:00,Metemcyber,url,https://t8g6cy.top/XpDG57SCXS/,#phishing,https://x.com/Metemcyber/status/1949814848860414136 2025-07-28 13:11:01,skocherhan,domain,phoenix-online-nexus.com,#opendir,https://x.com/skocherhan/status/1949819887322378360 2025-07-28 13:11:01,skocherhan,url,http://phoenix-online-nexus.com/mschat/cchat/,#opendir,https://x.com/skocherhan/status/1949819887322378360 2025-07-28 13:29:24,skocherhan,url,http://77.90.153.62,,https://x.com/skocherhan/status/1949824512586854417 2025-07-28 13:29:24,skocherhan,ip,77.90.153.62,,https://x.com/skocherhan/status/1949824512586854417 2025-07-28 13:40:00,harugasumi,url,https://ryevmmip.com?token=jxWq5jGHxJQcKMithTe2,#phishing,https://x.com/harugasumi/status/1949827178834923946 2025-07-28 13:40:00,harugasumi,domain,ryevmmip.com,#phishing,https://x.com/harugasumi/status/1949827178834923946 2025-07-28 13:41:01,skocherhan,url,http://176.46.158.8,,https://x.com/skocherhan/status/1949827435513500125 2025-07-28 13:41:01,skocherhan,ip,176.46.158.8,,https://x.com/skocherhan/status/1949827435513500125 2025-07-28 13:48:40,skocherhan,url,http://astfajy.click,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,airplzo.club,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,ancobkg.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://ancobkg.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://arethqg.lat,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://aphaecv.lol,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,arethqg.lat,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,astfajy.click,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,arnolfv.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://arnolfv.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,arsetca.lat,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://arsetca.lat,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,aspecqo.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://aspecqo.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,aphaecv.lol,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://airplzo.club,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://columnez.shop,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://colikvl.pics,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,breabm.pics,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://breabm.pics,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,bunhgks.click,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://bunhgks.click,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,chapaqr.click,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://chapaqr.click,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://courxbs.pics,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,columnez.shop,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,colikvl.pics,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,courxbs.pics,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,bedfelc.lol,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://coshas.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,domain,coshas.top,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:48:40,skocherhan,url,http://bedfelc.lol,#LummaStealer,https://x.com/skocherhan/status/1949829362137678132 2025-07-28 13:55:07,skocherhan,domain,steamcommunllity.com,#phishing,https://x.com/skocherhan/status/1949830985383621041 2025-07-28 13:55:07,skocherhan,url,http://steamcommunllity.com/id=5947221648,#phishing,https://x.com/skocherhan/status/1949830985383621041 2025-07-28 14:43:41,skocherhan,ip,91.196.34.1,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:43:41,skocherhan,url,http://91.196.34.1,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:43:41,skocherhan,domain,bookpopow.shop,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:43:41,skocherhan,domain,bookdownlur.xyz,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:43:41,skocherhan,domain,bookdownlue.xyz,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:43:41,skocherhan,url,http://bookdownlur.xyz,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:43:41,skocherhan,url,http://bookdownlue.xyz,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:43:41,skocherhan,url,http://bookpopow.shop,,https://x.com/skocherhan/status/1949843208214573258 2025-07-28 14:54:34,harugasumi,url,https://info-monex.corlubirey.com/support/,#phishing,https://x.com/harugasumi/status/1949845943903461672 2025-07-28 14:54:34,harugasumi,domain,info-monex.corlubirey.com,#phishing,https://x.com/harugasumi/status/1949845943903461672 2025-07-28 15:30:32,drb_ra,ip,47.98.216.119,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1949854998306636257 2025-07-28 15:30:32,drb_ra,url,http://47.98.216.119:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1949854998306636257 2025-07-28 15:30:39,drb_ra,url,http://154.31.216.212:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1949855027897545044 2025-07-28 15:30:39,drb_ra,ip,154.31.216.212,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1949855027897545044 2025-07-28 15:30:46,drb_ra,url,http://108.137.68.134:2077,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855053692502121 2025-07-28 15:30:46,drb_ra,ip,108.137.68.134,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855053692502121 2025-07-28 15:30:52,drb_ra,url,http://54.246.253.2:59068,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855079332249980 2025-07-28 15:30:52,drb_ra,ip,54.246.253.2,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855079332249980 2025-07-28 15:30:59,drb_ra,ip,52.89.245.59,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855108218458586 2025-07-28 15:30:59,drb_ra,url,http://52.89.245.59:44818,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855108218458586 2025-07-28 15:31:05,drb_ra,url,http://35.188.118.135:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1949855137406607389 2025-07-28 15:31:11,drb_ra,url,http://185.241.208.136:8080,#C2 #AsyncRAT,https://x.com/drb_ra/status/1949855161964224559 2025-07-28 15:31:11,drb_ra,ip,185.241.208.136,#C2 #AsyncRAT,https://x.com/drb_ra/status/1949855161964224559 2025-07-28 15:31:17,drb_ra,url,http://5.226.191.22:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1949855187335582172 2025-07-28 15:31:23,drb_ra,url,http://87.5.69.100:25,#Interactsh #C2,https://x.com/drb_ra/status/1949855213021458542 2025-07-28 15:31:23,drb_ra,ip,87.5.69.100,#Interactsh #C2,https://x.com/drb_ra/status/1949855213021458542 2025-07-28 15:31:29,drb_ra,url,http://143.92.49.235:22388,#Supershell #C2,https://x.com/drb_ra/status/1949855237684048096 2025-07-28 15:31:29,drb_ra,ip,143.92.49.235,#Supershell #C2,https://x.com/drb_ra/status/1949855237684048096 2025-07-28 15:31:35,drb_ra,url,http://201.192.179.236:443,#C2 #Qakbot,https://x.com/drb_ra/status/1949855261801291849 2025-07-28 15:31:35,drb_ra,ip,201.192.179.236,#C2 #Qakbot,https://x.com/drb_ra/status/1949855261801291849 2025-07-28 15:31:41,drb_ra,url,http://5.161.144.140:443,#C2 #Havoc,https://x.com/drb_ra/status/1949855286388216185 2025-07-28 15:31:46,drb_ra,url,http://196.251.70.55:443,#C2 #Havoc,https://x.com/drb_ra/status/1949855306747453540 2025-07-28 15:31:46,drb_ra,ip,196.251.70.55,#C2 #Havoc,https://x.com/drb_ra/status/1949855306747453540 2025-07-28 15:31:50,drb_ra,ip,99.23.35.131,#C2 #Deimos,https://x.com/drb_ra/status/1949855323575013469 2025-07-28 15:31:50,drb_ra,url,http://99.23.35.131:8843,#C2 #Deimos,https://x.com/drb_ra/status/1949855323575013469 2025-07-28 15:31:56,drb_ra,url,http://104.194.80.11:443,#C2 #Deimos,https://x.com/drb_ra/status/1949855348782694542 2025-07-28 15:31:56,drb_ra,ip,104.194.80.11,#C2 #Deimos,https://x.com/drb_ra/status/1949855348782694542 2025-07-28 15:32:02,drb_ra,ip,18.252.5.63,#C2 #Deimos,https://x.com/drb_ra/status/1949855374414053787 2025-07-28 15:32:02,drb_ra,url,http://18.252.5.63:443,#C2 #Deimos,https://x.com/drb_ra/status/1949855374414053787 2025-07-28 15:32:08,drb_ra,url,http://4.201.184.162:31337,#Sliver #C2,https://x.com/drb_ra/status/1949855398220923240 2025-07-28 15:32:14,drb_ra,url,http://93.113.25.131:31337,#Sliver #C2,https://x.com/drb_ra/status/1949855426440208849 2025-07-28 15:32:14,drb_ra,ip,93.113.25.131,#Sliver #C2,https://x.com/drb_ra/status/1949855426440208849 2025-07-28 15:32:20,drb_ra,url,http://206.189.95.226:443,#Sliver #C2,https://x.com/drb_ra/status/1949855451585130704 2025-07-28 15:32:20,drb_ra,ip,206.189.95.226,#Sliver #C2,https://x.com/drb_ra/status/1949855451585130704 2025-07-28 15:32:27,drb_ra,url,http://101.200.84.218:3389,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855478013383058 2025-07-28 15:32:33,drb_ra,ip,45.196.247.223,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855506169737594 2025-07-28 15:32:33,drb_ra,url,http://45.196.247.223:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855506169737594 2025-07-28 15:32:39,drb_ra,ip,45.196.247.224,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855531482406956 2025-07-28 15:32:39,drb_ra,url,http://45.196.247.224:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855531482406956 2025-07-28 15:32:45,drb_ra,url,http://43.138.22.149:8099,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855556920836116 2025-07-28 15:32:45,drb_ra,ip,43.138.22.149,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855556920836116 2025-07-28 15:32:51,drb_ra,ip,45.196.247.152,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855581977657631 2025-07-28 15:32:51,drb_ra,url,http://45.196.247.152:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855581977657631 2025-07-28 15:32:57,drb_ra,url,https://3.19.222.192/load,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855607168647651 2025-07-28 15:32:57,drb_ra,url,http://3.19.222.192:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855607168647651 2025-07-28 15:33:04,drb_ra,url,http://103.199.106.106:3389,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855632862912950 2025-07-28 15:33:04,drb_ra,ip,103.199.106.106,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855632862912950 2025-07-28 15:33:04,drb_ra,ip,101.200.84.218,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855632862912950 2025-07-28 15:33:09,drb_ra,url,http://45.196.247.153:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855657420546139 2025-07-28 15:33:09,drb_ra,ip,45.196.247.153,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855657420546139 2025-07-28 15:33:16,drb_ra,ip,193.112.239.170,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855684037661179 2025-07-28 15:33:16,drb_ra,ip,42.193.225.10,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855684037661179 2025-07-28 15:33:16,drb_ra,url,http://42.193.225.10:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949855684037661179 2025-07-28 15:33:22,drb_ra,ip,149.0.16.127,#C2,https://x.com/drb_ra/status/1949855710415626319 2025-07-28 15:33:22,drb_ra,url,https://149.0.16.127:443,#C2,https://x.com/drb_ra/status/1949855710415626319 2025-07-28 15:33:22,drb_ra,url,http://149.0.16.127:443,#C2,https://x.com/drb_ra/status/1949855710415626319 2025-07-28 15:33:28,drb_ra,ip,16.28.104.49,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855733480120447 2025-07-28 15:33:28,drb_ra,url,http://16.28.104.49:37404,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855733480120447 2025-07-28 15:33:34,drb_ra,url,http://3.39.254.225:11213,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855758461333791 2025-07-28 15:33:39,drb_ra,url,http://93.232.98.22:82,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855782968652199 2025-07-28 15:33:39,drb_ra,ip,93.232.98.22,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855782968652199 2025-07-28 15:33:45,drb_ra,url,http://51.95.70.41:55274,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855807912190435 2025-07-28 15:33:45,drb_ra,ip,51.95.70.41,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1949855807912190435 2025-07-28 15:33:51,drb_ra,ip,173.249.2.120,#Interactsh #C2,https://x.com/drb_ra/status/1949855832075558920 2025-07-28 15:33:51,drb_ra,url,http://173.249.2.120:587,#Interactsh #C2,https://x.com/drb_ra/status/1949855832075558920 2025-07-28 15:33:57,drb_ra,url,http://163.227.239.216:6000,#C2 #Dcrat,https://x.com/drb_ra/status/1949855857090465907 2025-07-28 15:33:57,drb_ra,ip,163.227.239.216,#C2 #Dcrat,https://x.com/drb_ra/status/1949855857090465907 2025-07-28 15:34:03,drb_ra,url,http://23.237.106.61:9999,#C2 #Dcrat,https://x.com/drb_ra/status/1949855881903935504 2025-07-28 15:34:03,drb_ra,ip,23.237.106.61,#C2 #Dcrat,https://x.com/drb_ra/status/1949855881903935504 2025-07-28 15:34:09,drb_ra,url,http://119.152.232.82:7779,#C2 #Dcrat,https://x.com/drb_ra/status/1949855907032051772 2025-07-28 15:34:09,drb_ra,ip,119.152.232.82,#C2 #Dcrat,https://x.com/drb_ra/status/1949855907032051772 2025-07-28 15:34:15,drb_ra,ip,46.246.145.99,#C2 #Qakbot,https://x.com/drb_ra/status/1949855931115749878 2025-07-28 15:34:15,drb_ra,url,http://46.246.145.99:995,#C2 #Qakbot,https://x.com/drb_ra/status/1949855931115749878 2025-07-28 15:34:21,drb_ra,url,http://117.247.198.235:443,#C2 #Havoc,https://x.com/drb_ra/status/1949855957070082393 2025-07-28 15:34:21,drb_ra,ip,117.247.198.235,#C2 #Havoc,https://x.com/drb_ra/status/1949855957070082393 2025-07-28 15:34:27,drb_ra,url,http://102.117.169.108:7443,#Mythic #C2,https://x.com/drb_ra/status/1949855980612735222 2025-07-28 15:34:27,drb_ra,ip,102.117.169.108,#Mythic #C2,https://x.com/drb_ra/status/1949855980612735222 2025-07-28 15:34:32,drb_ra,ip,188.166.69.208,#Sliver #C2,https://x.com/drb_ra/status/1949856004000055506 2025-07-28 15:34:32,drb_ra,url,http://188.166.69.208:443,#Sliver #C2,https://x.com/drb_ra/status/1949856004000055506 2025-07-28 15:34:38,drb_ra,url,http://152.110.70.52:31337,#Sliver #C2,https://x.com/drb_ra/status/1949856027953840633 2025-07-28 15:34:38,drb_ra,ip,152.110.70.52,#Sliver #C2,https://x.com/drb_ra/status/1949856027953840633 2025-07-28 15:34:44,drb_ra,url,http://161.35.226.130:8888,#Sliver #C2,https://x.com/drb_ra/status/1949856053442531698 2025-07-28 15:34:50,drb_ra,url,http://161.35.226.130:31337,#Sliver #C2,https://x.com/drb_ra/status/1949856077610115272 2025-07-28 15:34:50,drb_ra,ip,161.35.226.130,#Sliver #C2,https://x.com/drb_ra/status/1949856077610115272 2025-07-28 15:34:56,drb_ra,ip,43.142.19.208,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856104176849172 2025-07-28 15:34:56,drb_ra,url,http://43.142.19.208:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856104176849172 2025-07-28 15:34:56,drb_ra,url,https://www.expects-crucial-pest-bubble.club/include/template/isx.php,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856104176849172 2025-07-28 15:34:56,drb_ra,domain,expects-crucial-pest-bubble.club,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856104176849172 2025-07-28 15:35:01,drb_ra,url,http://45.196.247.226:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856125630702018 2025-07-28 15:35:01,drb_ra,ip,45.196.247.226,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856125630702018 2025-07-28 15:35:06,drb_ra,ip,45.196.247.156,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856146463879584 2025-07-28 15:35:06,drb_ra,url,https://120.55.73.61/admin/Start/Server/v1.84/API/BHTQUDRI0N,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856146463879584 2025-07-28 15:35:06,drb_ra,url,http://45.196.247.156:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856146463879584 2025-07-28 15:35:11,drb_ra,url,http://45.196.247.225:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856167745798579 2025-07-28 15:35:11,drb_ra,ip,45.196.247.225,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856167745798579 2025-07-28 15:35:11,drb_ra,ip,120.55.73.61,#CobaltStrike #C2,https://x.com/drb_ra/status/1949856167745798579 2025-07-28 15:43:47,drb_ra,url,https://43.138.22.149/s/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1949858329842356530 2025-07-28 15:43:47,drb_ra,url,http://43.138.22.149:8086,#CobaltStrike #C2,https://x.com/drb_ra/status/1949858329842356530 2025-07-28 15:43:52,drb_ra,url,http://45.196.247.227:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949858354118934570 2025-07-28 15:43:52,drb_ra,ip,45.196.247.227,#CobaltStrike #C2,https://x.com/drb_ra/status/1949858354118934570 2025-07-28 15:43:58,drb_ra,ip,117.78.41.31,#CobaltStrike #C2,https://x.com/drb_ra/status/1949858378576023852 2025-07-28 15:43:58,drb_ra,url,http://117.78.41.31:5080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949858378576023852 2025-07-28 15:44:52,drb_ra,url,http://3.23.92.222:56501,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858603042582627 2025-07-28 15:44:58,drb_ra,ip,18.61.252.144,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858627432411480 2025-07-28 15:44:58,drb_ra,url,http://18.61.252.144:11101,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858627432411480 2025-07-28 15:45:02,drb_ra,url,http://16.24.72.24:56769,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858646969459045 2025-07-28 15:45:02,drb_ra,ip,16.24.72.24,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858646969459045 2025-07-28 15:45:08,drb_ra,url,http://54.183.65.116:2404,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858670340112684 2025-07-28 15:45:08,drb_ra,ip,54.183.65.116,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858670340112684 2025-07-28 15:45:13,drb_ra,url,http://13.220.134.86:9080,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858693916324197 2025-07-28 15:45:13,drb_ra,ip,13.220.134.86,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858693916324197 2025-07-28 15:45:19,drb_ra,url,http://179.95.172.188:9990,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858718863999262 2025-07-28 15:45:19,drb_ra,ip,179.95.172.188,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949858718863999262 2025-07-28 15:45:55,drb_ra,ip,52.51.142.236,#Interactsh #C2,https://x.com/drb_ra/status/1949858867443036496 2025-07-28 15:45:55,drb_ra,url,http://52.51.142.236:80,#Interactsh #C2,https://x.com/drb_ra/status/1949858867443036496 2025-07-28 15:46:00,drb_ra,ip,121.91.174.161,#Supershell #C2,https://x.com/drb_ra/status/1949858891279266110 2025-07-28 15:46:00,drb_ra,url,http://121.91.174.161:8888,#Supershell #C2,https://x.com/drb_ra/status/1949858891279266110 2025-07-28 15:46:07,drb_ra,ip,206.82.6.254,#Supershell #C2,https://x.com/drb_ra/status/1949858918160622065 2025-07-28 15:46:07,drb_ra,url,http://206.82.6.254:8888,#Supershell #C2,https://x.com/drb_ra/status/1949858918160622065 2025-07-28 15:46:12,drb_ra,url,http://177.255.88.14:8081,#C2 #Dcrat,https://x.com/drb_ra/status/1949858941233504575 2025-07-28 15:46:12,drb_ra,ip,177.255.88.14,#C2 #Dcrat,https://x.com/drb_ra/status/1949858941233504575 2025-07-28 15:46:18,drb_ra,url,http://70.31.125.47:2222,#C2 #Qakbot,https://x.com/drb_ra/status/1949858965535224319 2025-07-28 15:46:18,drb_ra,ip,70.31.125.47,#C2 #Qakbot,https://x.com/drb_ra/status/1949858965535224319 2025-07-28 15:46:24,drb_ra,url,http://95.85.34.215:80,#Havoc #C2,https://x.com/drb_ra/status/1949858988876616029 2025-07-28 15:46:24,drb_ra,ip,95.85.34.215,#Havoc #C2,https://x.com/drb_ra/status/1949858988876616029 2025-07-28 15:46:29,drb_ra,url,http://15.197.129.209:443,#C2 #Deimos,https://x.com/drb_ra/status/1949859012247228567 2025-07-28 15:46:29,drb_ra,ip,15.197.129.209,#C2 #Deimos,https://x.com/drb_ra/status/1949859012247228567 2025-07-28 15:46:35,drb_ra,url,http://103.229.190.80:443,#C2 #Deimos,https://x.com/drb_ra/status/1949859036918100034 2025-07-28 15:46:35,drb_ra,ip,103.229.190.80,#C2 #Deimos,https://x.com/drb_ra/status/1949859036918100034 2025-07-28 15:46:41,drb_ra,url,http://18.252.157.3:443,#C2 #Deimos,https://x.com/drb_ra/status/1949859060330721444 2025-07-28 15:46:41,drb_ra,ip,18.252.157.3,#C2 #Deimos,https://x.com/drb_ra/status/1949859060330721444 2025-07-28 15:46:46,drb_ra,url,http://164.92.145.34:443,#Mythic #C2,https://x.com/drb_ra/status/1949859084213117375 2025-07-28 15:46:46,drb_ra,ip,164.92.145.34,#Mythic #C2,https://x.com/drb_ra/status/1949859084213117375 2025-07-28 15:46:52,drb_ra,url,http://172.245.5.160:443,#C2 #Sliver,https://x.com/drb_ra/status/1949859108611326316 2025-07-28 15:46:52,drb_ra,ip,172.245.5.160,#C2 #Sliver,https://x.com/drb_ra/status/1949859108611326316 2025-07-28 15:46:58,drb_ra,url,http://185.224.129.217:31337,#C2 #Sliver,https://x.com/drb_ra/status/1949859133034786933 2025-07-28 15:46:58,drb_ra,ip,185.224.129.217,#C2 #Sliver,https://x.com/drb_ra/status/1949859133034786933 2025-07-28 15:47:04,drb_ra,url,http://147.182.225.244:443,#C2 #Sliver,https://x.com/drb_ra/status/1949859158838137218 2025-07-28 15:47:04,drb_ra,ip,147.182.225.244,#C2 #Sliver,https://x.com/drb_ra/status/1949859158838137218 2025-07-28 15:47:10,drb_ra,url,http://175.178.34.215:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859183743954974 2025-07-28 15:47:10,drb_ra,ip,175.178.34.215,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859183743954974 2025-07-28 15:47:16,drb_ra,ip,111.230.161.5,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859207986954359 2025-07-28 15:47:16,drb_ra,url,https://111.230.161.5/hrmregister/corpTrial/get_permission,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859207986954359 2025-07-28 15:47:16,drb_ra,ip,111.230.29.245,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859207986954359 2025-07-28 15:47:16,drb_ra,url,http://111.230.29.245:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859207986954359 2025-07-28 15:47:22,drb_ra,url,http://45.196.247.101:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859231781322776 2025-07-28 15:47:22,drb_ra,ip,45.196.247.101,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859231781322776 2025-07-28 15:47:28,drb_ra,url,http://47.109.38.125:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859257601437891 2025-07-28 15:47:34,drb_ra,url,https://115.126.49.18/webmail/,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859282687557774 2025-07-28 15:47:34,drb_ra,url,http://115.126.49.18:2002,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859282687557774 2025-07-28 15:47:34,drb_ra,ip,115.126.49.18,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859282687557774 2025-07-28 15:47:40,drb_ra,url,http://47.109.140.12:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859307610104294 2025-07-28 15:47:40,drb_ra,ip,47.109.140.12,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859307610104294 2025-07-28 15:47:46,drb_ra,url,http://45.196.247.111:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859332280983638 2025-07-28 15:47:46,drb_ra,ip,45.196.247.111,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859332280983638 2025-07-28 15:47:52,drb_ra,url,http://45.196.247.119:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859358814187879 2025-07-28 15:47:52,drb_ra,ip,45.196.247.119,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859358814187879 2025-07-28 15:47:58,drb_ra,ip,43.167.235.175,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859382721749081 2025-07-28 15:47:58,drb_ra,url,http://43.167.235.175:9987,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859382721749081 2025-07-28 15:48:04,drb_ra,ip,45.196.247.186,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859408210534708 2025-07-28 15:48:04,drb_ra,url,http://45.196.247.186:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859408210534708 2025-07-28 15:48:09,drb_ra,url,http://45.196.247.222:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859432470290501 2025-07-28 15:48:09,drb_ra,ip,45.196.247.222,#CobaltStrike #C2,https://x.com/drb_ra/status/1949859432470290501 2025-07-28 15:48:15,drb_ra,url,http://45.142.195.242:80,#C2,https://x.com/drb_ra/status/1949859455333458390 2025-07-28 15:48:15,drb_ra,ip,45.142.195.242,#C2,https://x.com/drb_ra/status/1949859455333458390 2025-07-28 15:48:21,drb_ra,url,http://38.54.33.31:443,#C2,https://x.com/drb_ra/status/1949859478712492342 2025-07-28 15:48:21,drb_ra,ip,38.54.33.31,#C2,https://x.com/drb_ra/status/1949859478712492342 2025-07-28 15:48:26,drb_ra,url,http://107.172.132.40:2404,#C2 #Remcos,https://x.com/drb_ra/status/1949859502808805441 2025-07-28 15:48:26,drb_ra,ip,107.172.132.40,#C2 #Remcos,https://x.com/drb_ra/status/1949859502808805441 2025-07-28 15:48:32,drb_ra,url,http://51.20.250.182:2944,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949859525445476410 2025-07-28 15:48:32,drb_ra,ip,51.20.250.182,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949859525445476410 2025-07-28 15:48:37,drb_ra,ip,15.160.40.131,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949859549566951823 2025-07-28 15:48:37,drb_ra,url,http://15.160.40.131:59929,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949859549566951823 2025-07-28 15:54:45,drb_ra,ip,18.171.170.5,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949861092760355224 2025-07-28 15:54:45,drb_ra,url,http://18.171.170.5:20547,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949861092760355224 2025-07-28 16:00:06,urldna_bot,url,https://jobsmartic.co.ke/suivie/assets/index.php,#scam #phishing,https://x.com/urldna_bot/status/1949862436372205705 2025-07-28 16:00:06,urldna_bot,domain,jobsmartic.co.ke,#scam #phishing,https://x.com/urldna_bot/status/1949862436372205705 2025-07-28 16:00:53,drb_ra,url,http://15.160.233.53:3000,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949862633374416960 2025-07-28 16:00:53,drb_ra,ip,15.160.233.53,#NetSupportRAT #C2,https://x.com/drb_ra/status/1949862633374416960 2025-07-28 16:00:58,drb_ra,url,http://49.113.76.17:8888,#Supershell #C2,https://x.com/drb_ra/status/1949862656719954115 2025-07-28 16:00:58,drb_ra,ip,49.113.76.17,#Supershell #C2,https://x.com/drb_ra/status/1949862656719954115 2025-07-28 16:01:04,drb_ra,url,http://148.178.16.11:8000,#C2 #Dcrat,https://x.com/drb_ra/status/1949862680191217764 2025-07-28 16:01:04,drb_ra,ip,148.178.16.11,#C2 #Dcrat,https://x.com/drb_ra/status/1949862680191217764 2025-07-28 16:01:09,drb_ra,ip,52.64.215.39,#C2 #Deimos,https://x.com/drb_ra/status/1949862702576197980 2025-07-28 16:01:09,drb_ra,url,http://52.64.215.39:443,#C2 #Deimos,https://x.com/drb_ra/status/1949862702576197980 2025-07-28 16:01:15,drb_ra,url,http://197.224.237.243:7443,#Mythic #C2,https://x.com/drb_ra/status/1949862725753950679 2025-07-28 16:01:15,drb_ra,ip,197.224.237.243,#Mythic #C2,https://x.com/drb_ra/status/1949862725753950679 2025-07-28 16:01:20,drb_ra,ip,77.110.106.206,#C2 #Sliver,https://x.com/drb_ra/status/1949862749158191173 2025-07-28 16:01:20,drb_ra,url,http://77.110.106.206:443,#C2 #Sliver,https://x.com/drb_ra/status/1949862749158191173 2025-07-28 16:01:25,drb_ra,ip,141.98.10.88,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862769152434466 2025-07-28 16:01:25,drb_ra,domain,dns2.fjhfkjgfoufruyduyd.org,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862769152434466 2025-07-28 16:01:25,drb_ra,url,https://dns2.fjhfkjgfoufruyduyd.org/dot.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862769152434466 2025-07-28 16:01:25,drb_ra,url,http://141.98.10.88:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862769152434466 2025-07-28 16:01:31,drb_ra,url,http://47.236.130.154:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862793449980064 2025-07-28 16:01:31,drb_ra,domain,ns1.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862793449980064 2025-07-28 16:01:31,drb_ra,url,https://ns1.nsebseshop.cloud/v/741823546921,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862793449980064 2025-07-28 16:01:31,drb_ra,domain,ns2.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862793449980064 2025-07-28 16:01:31,drb_ra,url,https://ns2.nsebseshop.cloud/ms/625478102395,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862793449980064 2025-07-28 16:01:31,drb_ra,domain,ns3.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862793449980064 2025-07-28 16:01:31,drb_ra,url,https://ns3.nsebseshop.cloud/ms/625478102395,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862793449980064 2025-07-28 16:01:37,drb_ra,url,http://49.65.96.18:9292,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862818490032320 2025-07-28 16:01:37,drb_ra,url,https://49.65.96.18/sugrec,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862818490032320 2025-07-28 16:01:37,drb_ra,ip,49.65.96.18,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862818490032320 2025-07-28 16:01:43,drb_ra,url,http://103.176.145.162:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862845396504929 2025-07-28 16:01:43,drb_ra,ip,103.176.145.162,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862845396504929 2025-07-28 16:01:43,drb_ra,domain,dyn20fd74336408.sunny.edgevnpay.vn,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862845396504929 2025-07-28 16:01:43,drb_ra,url,https://dyn20fd74336408.sunny.edgevnpay.vn/architecture/well-architected/unknow,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862845396504929 2025-07-28 16:01:49,drb_ra,url,http://113.44.155.41:19999,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862870214209550 2025-07-28 16:01:49,drb_ra,ip,113.44.155.41,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862870214209550 2025-07-28 16:01:55,drb_ra,url,http://139.224.54.133:9443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862895224807931 2025-07-28 16:01:55,drb_ra,ip,139.224.54.133,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862895224807931 2025-07-28 16:02:01,drb_ra,url,http://47.109.194.84:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862920734589253 2025-07-28 16:02:07,drb_ra,ip,47.236.130.154,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862947267776855 2025-07-28 16:02:07,drb_ra,url,https://cioud.nsebseshop.cloud/v/741823546921,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862947267776855 2025-07-28 16:02:07,drb_ra,domain,cioud.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862947267776855 2025-07-28 16:02:07,drb_ra,url,http://47.236.130.154:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862947267776855 2025-07-28 16:02:14,drb_ra,url,http://47.109.194.84:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862972915884514 2025-07-28 16:02:14,drb_ra,ip,47.109.194.84,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862972915884514 2025-07-28 16:02:20,drb_ra,ip,85.17.9.58,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862998555623934 2025-07-28 16:02:20,drb_ra,url,http://85.17.9.58:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862998555623934 2025-07-28 16:02:20,drb_ra,url,https://192.168.140.158/dot.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862998555623934 2025-07-28 16:02:20,drb_ra,url,https://85.17.9.58/ga.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1949862998555623934 2025-07-28 16:02:25,drb_ra,url,https://117.50.175.19/wc/58462514417,#CobaltStrike #C2,https://x.com/drb_ra/status/1949863022769410359 2025-07-28 16:02:25,drb_ra,url,http://117.50.175.19:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1949863022769410359 2025-07-28 16:02:25,drb_ra,ip,117.50.175.19,#CobaltStrike #C2,https://x.com/drb_ra/status/1949863022769410359 2025-07-28 16:02:32,drb_ra,url,http://8.134.205.250:60133,#CobaltStrike #C2,https://x.com/drb_ra/status/1949863050091135381 2025-07-28 16:20:06,volrant136,domain,mail-mod-gov-bd-account-conf-files.netlify.app,#APT #phishing,https://x.com/volrant136/status/1949867469012685147 2025-07-28 16:20:06,volrant136,url,http://mail-mod-gov-bd-account-conf-files.netlify.app,#APT #phishing,https://x.com/volrant136/status/1949867469012685147 2025-07-28 18:00:09,urldna_bot,url,https://www.immortalnight.com/a/musaa456/mozart/index.html,#phishing #scam,https://x.com/urldna_bot/status/1949892650015887698 2025-07-28 18:00:09,urldna_bot,domain,immortalnight.com,#phishing #scam,https://x.com/urldna_bot/status/1949892650015887698 2025-07-28 18:39:52,SarlackLab,url,http://dianqi2.jiayongdianqi.xyz,,https://x.com/SarlackLab/status/1949902644501172727 2025-07-28 18:39:52,SarlackLab,domain,dianqi2.jiayongdianqi.xyz,,https://x.com/SarlackLab/status/1949902644501172727 2025-07-28 18:39:52,SarlackLab,domain,dianqi1.jiayongdianqi.xyz,,https://x.com/SarlackLab/status/1949902644501172727 2025-07-28 18:39:52,SarlackLab,url,http://dianqi1.jiayongdianqi.xyz,,https://x.com/SarlackLab/status/1949902644501172727 2025-07-28 18:57:04,skocherhan,url,http://8.218.16.243,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,url,http://xeyo.g0uxvrhz.com,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,domain,xeyo.g0uxvrhz.com,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,url,http://xmym2.rrdmasdfghjkl.com,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,domain,xmym2.rrdmasdfghjkl.com,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,domain,fyxmy22.mlcrosoft.asia,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,url,http://zhxmy2.mlcrosoft.win,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,domain,zhxmy2.mlcrosoft.win,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 18:57:04,skocherhan,url,http://fyxmy22.mlcrosoft.asia,,https://x.com/skocherhan/status/1949906973862089195 2025-07-28 19:50:05,skocherhan,domain,my-portal.pages.dev,,https://x.com/skocherhan/status/1949920314080534941 2025-07-28 19:50:05,skocherhan,url,http://my-portal.pages.dev/DataSync1752334096.exe,,https://x.com/skocherhan/status/1949920314080534941 2025-07-28 20:00:08,urldna_bot,url,http://eir-mobile-auth.com,#scam #phishing,https://x.com/urldna_bot/status/1949922842151100432 2025-07-28 20:00:08,urldna_bot,domain,eir-mobile-auth.com,#scam #phishing,https://x.com/urldna_bot/status/1949922842151100432 2025-07-28 20:00:19,SarlackLab,domain,previous-vietnamese.gl.at.ply.gg,#NanoCore #C2,https://x.com/SarlackLab/status/1949922888544358578 2025-07-28 20:00:19,SarlackLab,url,http://previous-vietnamese.gl.at.ply.gg,#NanoCore #C2,https://x.com/SarlackLab/status/1949922888544358578 2025-07-28 20:00:19,SarlackLab,url,http://147.185.221.30:40099,#NanoCore #C2,https://x.com/SarlackLab/status/1949922888544358578 2025-07-28 20:00:19,SarlackLab,ip,147.185.221.30,#NanoCore #C2,https://x.com/SarlackLab/status/1949922888544358578 2025-07-28 21:00:03,threatquery,url,http://18.221.254.211,#C2 #malware,https://x.com/threatquery/status/1949937923035468277 2025-07-28 21:00:03,threatquery,ip,18.221.254.211,#C2 #malware,https://x.com/threatquery/status/1949937923035468277 2025-07-28 21:00:04,threatquery,url,http://86.106.85.207,#C2 #malware #Sliver,https://x.com/threatquery/status/1949937926709674259 2025-07-28 21:00:04,threatquery,ip,86.106.85.207,#C2 #malware #Sliver,https://x.com/threatquery/status/1949937926709674259 2025-07-28 21:00:04,threatquery,url,http://161.97.135.253,#C2 #malware #Sliver,https://x.com/threatquery/status/1949937924776075605 2025-07-28 21:00:04,threatquery,ip,161.97.135.253,#C2 #malware #Sliver,https://x.com/threatquery/status/1949937924776075605 2025-07-28 21:15:42,skocherhan,url,http://208.89.73.157,,https://x.com/skocherhan/status/1949941859503022120 2025-07-28 21:15:42,skocherhan,ip,208.89.73.157,,https://x.com/skocherhan/status/1949941859503022120 2025-07-28 21:52:29,ir0n_fe,domain,superstaryg.jp,#phishing,https://x.com/ir0n_fe/status/1949951115891527834 2025-07-28 21:52:29,ir0n_fe,url,https://superstaryg.jp/jabank/Verifyidentity,#phishing,https://x.com/ir0n_fe/status/1949951115891527834 2025-07-28 21:52:29,ir0n_fe,domain,driect-jebnkcash.com,#phishing,https://x.com/ir0n_fe/status/1949951115891527834 2025-07-28 21:52:29,ir0n_fe,url,https://driect-jebnkcash.com/index/driect/ib/3210000,#phishing,https://x.com/ir0n_fe/status/1949951115891527834 2025-07-28 22:00:06,urldna_bot,domain,tts7324.webmo.fr,#scam #phishing,https://x.com/urldna_bot/status/1949953033757917664 2025-07-28 22:00:06,urldna_bot,url,https://tts7324.webmo.fr/NRD/2647f06/Sign_in.php,#scam #phishing,https://x.com/urldna_bot/status/1949953033757917664 2025-07-28 22:45:59,masaomi346,domain,bmmkyeip.com,#phishing,https://x.com/masaomi346/status/1949964579804434515 2025-07-28 22:45:59,masaomi346,url,https://bmmkyeip.com/account,#phishing,https://x.com/masaomi346/status/1949964579804434515 2025-07-28 23:10:54,JangPr0,domain,creativepackout.co,#APT,https://x.com/JangPr0/status/1949970852180549795 2025-07-28 23:10:54,JangPr0,url,https://creativepackout.co/wp-admin/js/widgets/hurryup/?rv=bear^&za=battle0,#APT,https://x.com/JangPr0/status/1949970852180549795 2025-07-28 23:10:54,JangPr0,md5,639b5489d2fb79bcb715905a046d4a54,#APT,https://x.com/JangPr0/status/1949970852180549795 2025-07-28 23:18:11,Ayyaan__1,domain,pzmqgow.top,#scam,https://x.com/Ayyaan__1/status/1949972683761828158 2025-07-28 23:18:11,Ayyaan__1,url,http://pzmqgow.top,#scam,https://x.com/Ayyaan__1/status/1949972683761828158 2025-07-29 00:00:10,urldna_bot,domain,community-ethereum.com,#scam #phishing,https://x.com/urldna_bot/status/1949983252422250661 2025-07-29 00:00:10,urldna_bot,url,https://community-ethereum.com,#scam #phishing,https://x.com/urldna_bot/status/1949983252422250661 2025-07-29 02:00:09,urldna_bot,domain,stu-ukznadministratorsupportupdate.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950013443525705816 2025-07-29 02:00:09,urldna_bot,url,https://stu-ukznadministratorsupportupdate.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950013443525705816 2025-07-29 02:25:55,Cyberteam008,md5,546cf5e93f11b51c96f52c7d9daf62f9,#malware,https://x.com/Cyberteam008/status/1950019927898837282 2025-07-29 02:25:55,Cyberteam008,md5,5eddcbbfc15659d8d6ad3f351819ae1e,#malware,https://x.com/Cyberteam008/status/1950019927898837282 2025-07-29 02:25:56,Cyberteam008,md5,9428d384055328b95d7190ac60d20c4d,#malware,https://x.com/Cyberteam008/status/1950019932059496605 2025-07-29 02:25:56,Cyberteam008,md5,f4376e3d6e0d350fa0abf86f9cb389d4,#malware,https://x.com/Cyberteam008/status/1950019932059496605 2025-07-29 02:25:57,Cyberteam008,url,http://filestore.space,#malware,https://x.com/Cyberteam008/status/1950019936484462923 2025-07-29 02:25:57,Cyberteam008,md5,929b636b5b8bdf9f1108f500974e894e,#malware,https://x.com/Cyberteam008/status/1950019936484462923 2025-07-29 02:25:57,Cyberteam008,md5,6ce6ff9a9664c8e9d3dd49be07a03a9c,#malware,https://x.com/Cyberteam008/status/1950019936484462923 2025-07-29 02:25:57,Cyberteam008,domain,Medical_Report_2025.pptx.zip,#malware,https://x.com/Cyberteam008/status/1950019936484462923 2025-07-29 02:25:57,Cyberteam008,domain,filestore.space,#malware,https://x.com/Cyberteam008/status/1950019936484462923 2025-07-29 02:25:57,Cyberteam008,url,http://Medical_Report_2025.pptx.zip,#malware,https://x.com/Cyberteam008/status/1950019936484462923 2025-07-29 03:02:07,skocherhan,md5,134972f67d41047e98fcfbd634358b40,#Remcos,https://x.com/skocherhan/status/1950029038061273582 2025-07-29 03:02:07,skocherhan,domain,okglobalconcept.com:2555,#Remcos,https://x.com/skocherhan/status/1950029038061273582 2025-07-29 03:02:07,skocherhan,url,http://okglobalconcept.com:2555,#Remcos,https://x.com/skocherhan/status/1950029038061273582 2025-07-29 03:09:58,skocherhan,ip,198.55.102.43,#Remcos,https://x.com/skocherhan/status/1950031015159709902 2025-07-29 03:09:58,skocherhan,url,http://198.55.102.43:14646,#Remcos,https://x.com/skocherhan/status/1950031015159709902 2025-07-29 03:09:58,skocherhan,url,http://angeleviagivenmebestthingsforbetterfeell.duckdns.org,#Remcos,https://x.com/skocherhan/status/1950031015159709902 2025-07-29 03:09:58,skocherhan,domain,angeleviagivenmebestthingsforbetterfeell.duckdns.org,#Remcos,https://x.com/skocherhan/status/1950031015159709902 2025-07-29 03:38:06,skocherhan,url,http://serverdata-cloud.cloud,#Remcos,https://x.com/skocherhan/status/1950038093622362344 2025-07-29 03:38:06,skocherhan,domain,serverdata-cloud.cloud,#Remcos,https://x.com/skocherhan/status/1950038093622362344 2025-07-29 03:38:06,skocherhan,url,http://shadow.steelpanman.com,#Remcos,https://x.com/skocherhan/status/1950038093622362344 2025-07-29 03:38:06,skocherhan,domain,shadow.steelpanman.com,#Remcos,https://x.com/skocherhan/status/1950038093622362344 2025-07-29 03:38:06,skocherhan,md5,513f1a59273fb5ead33d5c14252565c4,#Remcos,https://x.com/skocherhan/status/1950038093622362344 2025-07-29 03:48:40,skocherhan,domain,zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion,#ransomware,https://x.com/skocherhan/status/1950040753847111976 2025-07-29 03:48:40,skocherhan,md5,68BD43A00BA948F435ECBDD402914298,#ransomware,https://x.com/skocherhan/status/1950040753847111976 2025-07-29 03:48:40,skocherhan,md5,8A0B41E965E66689E78CA36D3477CB0C,#ransomware,https://x.com/skocherhan/status/1950040753847111976 2025-07-29 03:48:40,skocherhan,url,http://zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion/touchus.html,#ransomware,https://x.com/skocherhan/status/1950040753847111976 2025-07-29 03:56:46,skocherhan,url,http://scanqris.me,#Remcos,https://x.com/skocherhan/status/1950042792568238440 2025-07-29 03:56:46,skocherhan,domain,scanqris.me,#Remcos,https://x.com/skocherhan/status/1950042792568238440 2025-07-29 04:00:09,urldna_bot,url,http://ipfs.io/ipfs/bafkreibn6b7inojjz3cmczkt6a3y324jjcqvlk7s2d5kb4vwqfcsvprrt4,#phishing #scam,https://x.com/urldna_bot/status/1950043644729131352 2025-07-29 04:11:31,skocherhan,url,http://okserver29.com/K3K_222_Weuxfrrljzj,#Remcos,https://x.com/skocherhan/status/1950046504829296829 2025-07-29 04:11:31,skocherhan,domain,okserver29.com,#Remcos,https://x.com/skocherhan/status/1950046504829296829 2025-07-29 04:11:31,skocherhan,md5,c711e7057b156662dfca760326a3ec72,#Remcos,https://x.com/skocherhan/status/1950046504829296829 2025-07-29 05:35:25,ReBensk,md5,af3ea9365d474b52fd2201b13af28df6,#Trojan #Android #malware,https://x.com/ReBensk/status/1950067620813697177 2025-07-29 05:39:18,suyog41,md5,5185886a46551de0f08d6fc6301dc590,#RAT,https://x.com/suyog41/status/1950068595951616215 2025-07-29 05:44:57,skocherhan,url,http://genkidama.site,,https://x.com/skocherhan/status/1950070017652847079 2025-07-29 05:44:57,skocherhan,md5,91067aef4819b66a68eb3f45e928e2c7,,https://x.com/skocherhan/status/1950070017652847079 2025-07-29 05:44:57,skocherhan,domain,genkidama.site,,https://x.com/skocherhan/status/1950070017652847079 2025-07-29 06:00:22,SarlackLab,ip,176.46.152.46,#RedLine #C2,https://x.com/SarlackLab/status/1950073899795783992 2025-07-29 06:00:22,SarlackLab,url,http://176.46.152.46:1911,#RedLine #C2,https://x.com/SarlackLab/status/1950073899795783992 2025-07-29 06:27:29,JAMESWT_WT,ip,144.172.122.69,,https://x.com/JAMESWT_WT/status/1950080721294397491 2025-07-29 07:27:42,Fact_Finder03,ip,217.60.37.55,,https://x.com/Fact_Finder03/status/1950095876430385440 2025-07-29 08:00:09,urldna_bot,domain,vfyamarillonvrfy.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950104040466993394 2025-07-29 08:00:09,urldna_bot,url,https://vfyamarillonvrfy.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950104040466993394 2025-07-29 08:40:35,c9lab_soc,url,http://csp-bank-com.l.ink,#phishing #scam,https://x.com/c9lab_soc/status/1950114217949818943 2025-07-29 08:40:35,c9lab_soc,domain,csp-bank-com.l.ink,#phishing #scam,https://x.com/c9lab_soc/status/1950114217949818943 2025-07-29 08:40:35,c9lab_soc,url,http://paypal-kundencenter.com,#phishing #scam,https://x.com/c9lab_soc/status/1950114217949818943 2025-07-29 08:40:35,c9lab_soc,domain,paypal-kundencenter.com,#phishing #scam,https://x.com/c9lab_soc/status/1950114217949818943 2025-07-29 08:40:35,c9lab_soc,url,http://spy-signal.com,#phishing #scam,https://x.com/c9lab_soc/status/1950114217949818943 2025-07-29 08:40:35,c9lab_soc,domain,spy-signal.com,#phishing #scam,https://x.com/c9lab_soc/status/1950114217949818943 2025-07-29 08:58:13,skocherhan,ip,178.22.24.11,,https://x.com/skocherhan/status/1950118653162066002 2025-07-29 08:58:13,skocherhan,ip,178.22.24.12,,https://x.com/skocherhan/status/1950118653162066002 2025-07-29 09:17:42,drb_ra,url,http://18.158.61.80:19646,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123559147180491 2025-07-29 09:17:48,drb_ra,ip,18.158.61.80,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123585386823990 2025-07-29 09:17:48,drb_ra,url,http://18.158.61.80:14596,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123585386823990 2025-07-29 09:17:54,drb_ra,ip,13.48.138.122,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123610166743341 2025-07-29 09:17:54,drb_ra,url,http://13.48.138.122:35791,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123610166743341 2025-07-29 09:18:00,drb_ra,url,http://13.211.143.231:6640,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123634908868688 2025-07-29 09:18:00,drb_ra,ip,13.211.143.231,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123634908868688 2025-07-29 09:18:06,drb_ra,url,http://13.126.101.250:8010,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123658648654210 2025-07-29 09:18:06,drb_ra,ip,13.126.101.250,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950123658648654210 2025-07-29 09:18:45,drb_ra,url,http://143.92.49.232:22388,#Supershell #C2,https://x.com/drb_ra/status/1950123822989885806 2025-07-29 09:18:45,drb_ra,ip,143.92.49.232,#Supershell #C2,https://x.com/drb_ra/status/1950123822989885806 2025-07-29 09:18:51,drb_ra,url,http://68.64.177.239:18888,#Supershell #C2,https://x.com/drb_ra/status/1950123847170101527 2025-07-29 09:18:51,drb_ra,ip,68.64.177.239,#Supershell #C2,https://x.com/drb_ra/status/1950123847170101527 2025-07-29 09:18:57,drb_ra,ip,120.24.61.56,#Supershell #C2,https://x.com/drb_ra/status/1950123871522476342 2025-07-29 09:18:57,drb_ra,url,http://120.24.61.56:8888,#Supershell #C2,https://x.com/drb_ra/status/1950123871522476342 2025-07-29 09:19:02,drb_ra,url,http://88.247.16.132:1604,#Dcrat #C2,https://x.com/drb_ra/status/1950123893244465609 2025-07-29 09:19:02,drb_ra,ip,88.247.16.132,#Dcrat #C2,https://x.com/drb_ra/status/1950123893244465609 2025-07-29 09:19:07,drb_ra,ip,67.60.205.18,#C2 #Qakbot,https://x.com/drb_ra/status/1950123916535435299 2025-07-29 09:19:07,drb_ra,url,http://67.60.205.18:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950123916535435299 2025-07-29 09:19:13,drb_ra,url,http://35.180.234.10:443,#Havoc #C2,https://x.com/drb_ra/status/1950123938584920512 2025-07-29 09:19:13,drb_ra,ip,35.180.234.10,#Havoc #C2,https://x.com/drb_ra/status/1950123938584920512 2025-07-29 09:19:18,drb_ra,url,http://80.92.206.8:443,#Havoc #C2,https://x.com/drb_ra/status/1950123961368322424 2025-07-29 09:19:18,drb_ra,ip,80.92.206.8,#Havoc #C2,https://x.com/drb_ra/status/1950123961368322424 2025-07-29 09:19:24,drb_ra,url,http://34.69.221.5:7443,#Mythic #C2,https://x.com/drb_ra/status/1950123984336421256 2025-07-29 09:19:29,drb_ra,ip,79.110.49.105,#Mythic #C2,https://x.com/drb_ra/status/1950124008059383946 2025-07-29 09:19:29,drb_ra,url,http://79.110.49.105:7443,#Mythic #C2,https://x.com/drb_ra/status/1950124008059383946 2025-07-29 09:19:35,drb_ra,url,http://139.59.111.220:7443,#Mythic #C2,https://x.com/drb_ra/status/1950124031618723872 2025-07-29 09:19:35,drb_ra,ip,139.59.111.220,#Mythic #C2,https://x.com/drb_ra/status/1950124031618723872 2025-07-29 09:19:40,drb_ra,url,http://4.201.139.41:31337,#Sliver #C2,https://x.com/drb_ra/status/1950124054674899113 2025-07-29 09:19:46,drb_ra,url,http://38.114.100.139:31337,#Sliver #C2,https://x.com/drb_ra/status/1950124077131203031 2025-07-29 09:19:46,drb_ra,ip,38.114.100.139,#Sliver #C2,https://x.com/drb_ra/status/1950124077131203031 2025-07-29 09:19:51,drb_ra,ip,46.101.158.51,#Sliver #C2,https://x.com/drb_ra/status/1950124099159609835 2025-07-29 09:19:51,drb_ra,url,http://46.101.158.51:31337,#Sliver #C2,https://x.com/drb_ra/status/1950124099159609835 2025-07-29 09:19:57,drb_ra,url,http://198.206.134.133:8989,#Sliver #C2,https://x.com/drb_ra/status/1950124125747343688 2025-07-29 09:20:03,drb_ra,url,http://198.206.134.133:31337,#Sliver #C2,https://x.com/drb_ra/status/1950124149847785744 2025-07-29 09:20:03,drb_ra,ip,198.206.134.133,#Sliver #C2,https://x.com/drb_ra/status/1950124149847785744 2025-07-29 09:20:09,drb_ra,url,http://154.216.157.235:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124174317433270 2025-07-29 09:20:09,drb_ra,ip,154.216.157.235,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124174317433270 2025-07-29 09:20:15,drb_ra,url,http://175.27.168.31:44333,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124198988251543 2025-07-29 09:20:21,drb_ra,ip,101.126.144.111,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124226112802824 2025-07-29 09:20:21,drb_ra,url,http://101.126.144.111:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124226112802824 2025-07-29 09:20:27,drb_ra,url,http://1.14.58.96:8088,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124250506854687 2025-07-29 09:20:33,drb_ra,domain,edufinder.ir,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124274498367545 2025-07-29 09:20:33,drb_ra,url,https://edufinder.ir/cm,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124274498367545 2025-07-29 09:20:33,drb_ra,url,http://87.248.155.251:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124274498367545 2025-07-29 09:20:33,drb_ra,ip,87.248.155.251,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124274498367545 2025-07-29 09:20:38,drb_ra,ip,166.108.200.194,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124298464641446 2025-07-29 09:20:38,drb_ra,url,http://166.108.200.194:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124298464641446 2025-07-29 09:20:44,drb_ra,url,http://124.222.32.224:8780,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124321881395204 2025-07-29 09:20:44,drb_ra,ip,124.222.32.224,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124321881395204 2025-07-29 09:20:50,drb_ra,url,http://192.144.232.209:4433,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124346506084380 2025-07-29 09:20:50,drb_ra,ip,192.144.232.209,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124346506084380 2025-07-29 09:20:56,drb_ra,url,http://39.100.73.141:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124371395190919 2025-07-29 09:20:56,drb_ra,ip,39.100.73.141,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124371395190919 2025-07-29 09:21:02,drb_ra,ip,43.142.19.208,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124395357196453 2025-07-29 09:21:02,drb_ra,url,http://43.142.19.208:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124395357196453 2025-07-29 09:21:07,drb_ra,url,http://101.43.150.197:7443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124420212691281 2025-07-29 09:21:14,drb_ra,ip,175.27.168.31,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124445617516848 2025-07-29 09:21:14,drb_ra,url,http://175.27.168.31:2222,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124445617516848 2025-07-29 09:21:14,drb_ra,url,https://175.27.168.31/api/v1/get,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124445617516848 2025-07-29 09:21:20,drb_ra,url,http://1.15.62.170:7777,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124470720507991 2025-07-29 09:21:25,drb_ra,url,http://8.137.100.162:7011,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124494175035807 2025-07-29 09:21:32,drb_ra,url,http://101.43.150.197:9443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124521207324712 2025-07-29 09:21:32,drb_ra,ip,101.43.150.197,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950124521207324712 2025-07-29 09:21:37,drb_ra,url,http://3.87.72.135:443,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1950124545274220827 2025-07-29 09:21:43,drb_ra,url,http://3.87.72.135:80,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1950124568464531556 2025-07-29 09:35:39,drb_ra,url,http://83.166.242.24:11601,#C2,https://x.com/drb_ra/status/1950128075074593141 2025-07-29 09:35:39,drb_ra,ip,83.166.242.24,#C2,https://x.com/drb_ra/status/1950128075074593141 2025-07-29 09:36:12,drb_ra,ip,198.135.49.81,#C2 #Remcos,https://x.com/drb_ra/status/1950128213931233490 2025-07-29 09:36:12,drb_ra,url,http://198.135.49.81:1987,#C2 #Remcos,https://x.com/drb_ra/status/1950128213931233490 2025-07-29 09:36:45,drb_ra,ip,107.172.132.32,#C2 #Remcos,https://x.com/drb_ra/status/1950128352175559041 2025-07-29 09:36:45,drb_ra,url,http://107.172.132.32:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950128352175559041 2025-07-29 09:37:18,drb_ra,ip,143.92.49.235,#Reverse_SSH #C2,https://x.com/drb_ra/status/1950128490092609831 2025-07-29 09:37:18,drb_ra,url,http://143.92.49.235:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1950128490092609831 2025-07-29 09:37:51,drb_ra,url,http://3.76.34.46:34341,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950128628039036962 2025-07-29 09:38:24,drb_ra,ip,16.24.71.107,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950128767260651875 2025-07-29 09:38:24,drb_ra,url,http://16.24.71.107:21842,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950128767260651875 2025-07-29 09:38:57,drb_ra,url,http://139.64.25.160:443,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950128905307717846 2025-07-29 09:38:57,drb_ra,ip,139.64.25.160,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950128905307717846 2025-07-29 09:39:30,drb_ra,url,http://4.216.156.191:3333,#EvilGoPhish #Evilginx #C2,https://x.com/drb_ra/status/1950129044093042926 2025-07-29 09:40:03,drb_ra,ip,101.43.83.47,#Supershell #C2,https://x.com/drb_ra/status/1950129181498449976 2025-07-29 09:40:03,drb_ra,url,http://101.43.83.47:8888,#Supershell #C2,https://x.com/drb_ra/status/1950129181498449976 2025-07-29 09:40:36,drb_ra,ip,189.140.16.196,#Qakbot #C2,https://x.com/drb_ra/status/1950129319419797991 2025-07-29 09:40:36,drb_ra,url,http://189.140.16.196:443,#Qakbot #C2,https://x.com/drb_ra/status/1950129319419797991 2025-07-29 09:41:09,drb_ra,url,http://176.9.163.47:10443,#Havoc #C2,https://x.com/drb_ra/status/1950129457756352658 2025-07-29 09:41:09,drb_ra,ip,176.9.163.47,#Havoc #C2,https://x.com/drb_ra/status/1950129457756352658 2025-07-29 09:41:33,romonlyht,url,https://sublocacaorj.com/dow/update/silk/ito/?zonealldom=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1950129562202812669 2025-07-29 09:41:33,romonlyht,ip,108.167.168.55,#phishing,https://x.com/romonlyht/status/1950129562202812669 2025-07-29 09:41:34,romonlyht,url,https://sublocacaorj.com/dow/update/silk/ito/system.php?praga=87009f7ef17fa8e9001b96af7a1ebbd4&pid=87009f7ef17fa8e9001b96af7a1ebbd4&framework87009f7ef17fa8e9001b96af7a1ebbd4=87009f7ef17fa8e9001b96af7a1ebbd4&zonealldom=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1950129565780890104 2025-07-29 09:41:35,romonlyht,domain,sublocacaorj.com,#phishing,https://x.com/romonlyht/status/1950129568393691564 2025-07-29 09:41:35,romonlyht,url,https://sublocacaorj.com/dow/update/silk/ito/auth.php,#phishing,https://x.com/romonlyht/status/1950129568393691564 2025-07-29 09:41:35,romonlyht,md5,87009f7ef17fa8e9001b96af7a1ebbd4,#phishing,https://x.com/romonlyht/status/1950129568393691564 2025-07-29 09:41:42,drb_ra,url,http://138.201.85.33:8081,#Havoc #C2,https://x.com/drb_ra/status/1950129597304971556 2025-07-29 09:41:42,drb_ra,ip,138.201.85.33,#Havoc #C2,https://x.com/drb_ra/status/1950129597304971556 2025-07-29 09:42:15,drb_ra,url,http://139.177.206.95:443,#Havoc #C2,https://x.com/drb_ra/status/1950129736446881911 2025-07-29 09:42:15,drb_ra,ip,139.177.206.95,#Havoc #C2,https://x.com/drb_ra/status/1950129736446881911 2025-07-29 09:42:48,drb_ra,ip,74.50.88.4,#Bianlian #C2,https://x.com/drb_ra/status/1950129874095554857 2025-07-29 09:42:48,drb_ra,url,http://74.50.88.4:8080,#Bianlian #C2,https://x.com/drb_ra/status/1950129874095554857 2025-07-29 09:43:21,drb_ra,ip,23.153.72.85,#Deimos #C2,https://x.com/drb_ra/status/1950130012159394302 2025-07-29 09:43:21,drb_ra,url,http://23.153.72.85:8881,#Deimos #C2,https://x.com/drb_ra/status/1950130012159394302 2025-07-29 09:43:21,romonlyht,url,https://kaido.run/Webmail/1/Webmail/webmail.php?email=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1950130015091208275 2025-07-29 09:43:21,romonlyht,domain,kaido.run,#phishing,https://x.com/romonlyht/status/1950130015091208275 2025-07-29 09:43:21,romonlyht,ip,74.208.66.189,#phishing,https://x.com/romonlyht/status/1950130015091208275 2025-07-29 09:43:22,romonlyht,domain,coolhuntershop.com,#phishing,https://x.com/romonlyht/status/1950130017884590525 2025-07-29 09:43:22,romonlyht,url,https://coolhuntershop.com/wp-admin/loginn.php,#phishing,https://x.com/romonlyht/status/1950130017884590525 2025-07-29 09:43:53,drb_ra,url,http://197.224.236.16:7443,#Mythic #C2,https://x.com/drb_ra/status/1950130149308891514 2025-07-29 09:43:53,drb_ra,ip,197.224.236.16,#Mythic #C2,https://x.com/drb_ra/status/1950130149308891514 2025-07-29 09:44:26,drb_ra,ip,147.93.5.173,#Sliver #C2,https://x.com/drb_ra/status/1950130286177529968 2025-07-29 09:44:26,drb_ra,url,http://147.93.5.173:443,#Sliver #C2,https://x.com/drb_ra/status/1950130286177529968 2025-07-29 09:52:28,skocherhan,ip,47.76.201.31,#phishing,https://x.com/skocherhan/status/1950132305613209931 2025-07-29 09:52:28,skocherhan,url,https://l5tps6.top/sbeni3s,#phishing,https://x.com/skocherhan/status/1950132305613209931 2025-07-29 09:52:28,skocherhan,domain,l5tps6.top,#phishing,https://x.com/skocherhan/status/1950132305613209931 2025-07-29 09:52:28,skocherhan,url,https://l5tps6.top/sbeni3s/,#phishing,https://x.com/skocherhan/status/1950132305613209931 2025-07-29 10:59:32,drb_ra,url,http://47.99.60.17:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950149187070271545 2025-07-29 10:59:32,drb_ra,ip,47.99.60.17,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950149187070271545 2025-07-29 12:00:09,urldna_bot,domain,repermaiec.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950164442173378883 2025-07-29 12:00:09,urldna_bot,url,https://repermaiec.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950164442173378883 2025-07-29 12:28:37,drb_ra,domain,server-web-cdn.nefixeg373.workers.dev,#C2,https://x.com/drb_ra/status/1950171603729371518 2025-07-29 12:28:37,drb_ra,url,http://server-web-cdn.nefixeg373.workers.dev,#C2,https://x.com/drb_ra/status/1950171603729371518 2025-07-29 12:28:37,drb_ra,url,http://104.21.42.145:80,#C2,https://x.com/drb_ra/status/1950171603729371518 2025-07-29 14:00:06,urldna_bot,domain,usalall11.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950194626087792812 2025-07-29 14:00:06,urldna_bot,url,https://usalall11.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950194626087792812 2025-07-29 16:00:09,urldna_bot,domain,peoplesbkmo.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950224839869857887 2025-07-29 16:00:09,urldna_bot,url,https://peoplesbkmo.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950224839869857887 2025-07-29 17:59:51,skocherhan,md5,af084c9a9c19c7353d313c744bf95c01,,https://x.com/skocherhan/status/1950254961801220235 2025-07-29 17:59:51,skocherhan,ip,88.214.58.8,,https://x.com/skocherhan/status/1950254961801220235 2025-07-29 17:59:51,skocherhan,url,http://88.214.58.8:4782,,https://x.com/skocherhan/status/1950254961801220235 2025-07-29 18:45:42,drb_ra,ip,209.38.83.123,#Sliver #C2,https://x.com/drb_ra/status/1950266500239282416 2025-07-29 18:45:42,drb_ra,url,http://209.38.83.123:443,#Sliver #C2,https://x.com/drb_ra/status/1950266500239282416 2025-07-29 18:46:15,drb_ra,url,http://16.176.209.90:443,#Sliver #C2,https://x.com/drb_ra/status/1950266637493686323 2025-07-29 18:46:15,drb_ra,ip,16.176.209.90,#Sliver #C2,https://x.com/drb_ra/status/1950266637493686323 2025-07-29 18:48:48,drb_ra,url,http://78.181.216.57:222,#C2 #AsyncRAT,https://x.com/drb_ra/status/1950267281491247507 2025-07-29 18:49:21,drb_ra,url,http://78.181.216.57:3000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1950267419169038722 2025-07-29 18:49:21,drb_ra,ip,78.181.216.57,#C2 #AsyncRAT,https://x.com/drb_ra/status/1950267419169038722 2025-07-29 18:49:54,drb_ra,ip,45.74.6.236,#C2 #AsyncRAT,https://x.com/drb_ra/status/1950267557703012717 2025-07-29 18:49:54,drb_ra,url,http://45.74.6.236:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1950267557703012717 2025-07-29 18:50:27,drb_ra,ip,196.251.85.116,#C2 #AsyncRAT,https://x.com/drb_ra/status/1950267694319632804 2025-07-29 18:50:27,drb_ra,url,http://196.251.85.116:5000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1950267694319632804 2025-07-29 18:51:00,drb_ra,ip,159.65.129.136,#C2 #Interactsh,https://x.com/drb_ra/status/1950267833876648318 2025-07-29 18:51:00,drb_ra,url,http://159.65.129.136:25,#C2 #Interactsh,https://x.com/drb_ra/status/1950267833876648318 2025-07-29 18:51:33,drb_ra,url,http://52.18.205.240:80,#C2 #Interactsh,https://x.com/drb_ra/status/1950267971168776505 2025-07-29 18:51:33,drb_ra,ip,52.18.205.240,#C2 #Interactsh,https://x.com/drb_ra/status/1950267971168776505 2025-07-29 18:52:05,drb_ra,url,http://3.105.187.205:443,#C2 #Interactsh,https://x.com/drb_ra/status/1950268108150550935 2025-07-29 18:52:38,drb_ra,url,http://149.202.248.199:587,#C2 #Interactsh,https://x.com/drb_ra/status/1950268245249761596 2025-07-29 18:53:11,drb_ra,url,http://149.202.248.199:25,#C2 #Interactsh,https://x.com/drb_ra/status/1950268382659362894 2025-07-29 18:53:11,drb_ra,ip,149.202.248.199,#C2 #Interactsh,https://x.com/drb_ra/status/1950268382659362894 2025-07-29 18:53:44,drb_ra,url,http://12.53.37.87:16000,#C2 #Interactsh,https://x.com/drb_ra/status/1950268521830613110 2025-07-29 18:53:44,drb_ra,ip,12.53.37.87,#C2 #Interactsh,https://x.com/drb_ra/status/1950268521830613110 2025-07-29 18:54:17,drb_ra,url,http://154.12.83.175:8888,#C2 #Supershell,https://x.com/drb_ra/status/1950268660544917729 2025-07-29 18:54:17,drb_ra,ip,154.12.83.175,#C2 #Supershell,https://x.com/drb_ra/status/1950268660544917729 2025-07-29 18:54:50,drb_ra,url,http://189.140.25.174:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950268800131101123 2025-07-29 18:54:50,drb_ra,ip,189.140.25.174,#C2 #Qakbot,https://x.com/drb_ra/status/1950268800131101123 2025-07-29 18:55:23,drb_ra,url,http://1.161.85.171:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950268936991256927 2025-07-29 18:55:56,drb_ra,url,http://85.239.63.3:443,#Havoc #C2,https://x.com/drb_ra/status/1950269075608776843 2025-07-29 18:55:56,drb_ra,ip,85.239.63.3,#Havoc #C2,https://x.com/drb_ra/status/1950269075608776843 2025-07-29 18:56:29,drb_ra,ip,34.232.181.197,#C2 #Deimos,https://x.com/drb_ra/status/1950269213303550099 2025-07-29 18:56:29,drb_ra,url,http://34.232.181.197:443,#C2 #Deimos,https://x.com/drb_ra/status/1950269213303550099 2025-07-29 18:57:02,drb_ra,url,http://92.112.127.132:2053,#C2 #Deimos,https://x.com/drb_ra/status/1950269351313232211 2025-07-29 18:57:02,drb_ra,ip,92.112.127.132,#C2 #Deimos,https://x.com/drb_ra/status/1950269351313232211 2025-07-29 18:57:35,drb_ra,url,http://16.78.217.162:443,#C2 #Deimos,https://x.com/drb_ra/status/1950269489745915955 2025-07-29 18:57:35,drb_ra,ip,16.78.217.162,#C2 #Deimos,https://x.com/drb_ra/status/1950269489745915955 2025-07-29 18:58:08,drb_ra,url,http://102.117.165.178:7443,#C2 #Mythic,https://x.com/drb_ra/status/1950269628288004283 2025-07-29 18:58:08,drb_ra,ip,102.117.165.178,#C2 #Mythic,https://x.com/drb_ra/status/1950269628288004283 2025-07-29 19:00:42,drb_ra,url,http://178.15.47.110:80,#C2,https://x.com/drb_ra/status/1950270276387688642 2025-07-29 19:00:42,drb_ra,ip,178.15.47.110,#C2,https://x.com/drb_ra/status/1950270276387688642 2025-07-29 19:01:15,drb_ra,url,http://79.110.50.8:14305,#C2 #Remcos,https://x.com/drb_ra/status/1950270413562433815 2025-07-29 19:01:15,drb_ra,ip,79.110.50.8,#C2 #Remcos,https://x.com/drb_ra/status/1950270413562433815 2025-07-29 19:01:48,drb_ra,url,http://179.13.0.116:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950270553803075636 2025-07-29 19:01:48,drb_ra,ip,179.13.0.116,#C2 #Remcos,https://x.com/drb_ra/status/1950270553803075636 2025-07-29 19:02:21,drb_ra,url,http://155.254.24.175:58834,#C2 #Remcos,https://x.com/drb_ra/status/1950270691481161977 2025-07-29 19:02:21,drb_ra,ip,155.254.24.175,#C2 #Remcos,https://x.com/drb_ra/status/1950270691481161977 2025-07-29 19:02:54,drb_ra,url,http://51.112.53.216:4443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950270830174413305 2025-07-29 19:02:54,drb_ra,ip,51.112.53.216,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950270830174413305 2025-07-29 19:53:44,skocherhan,domain,binancetlr.xyz,#phishing,https://x.com/skocherhan/status/1950283621476020337 2025-07-29 19:53:44,skocherhan,url,http://binancetlr.xyz,#phishing,https://x.com/skocherhan/status/1950283621476020337 2025-07-29 20:00:06,urldna_bot,domain,stndatt.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950285224677441570 2025-07-29 20:00:06,urldna_bot,url,https://stndatt.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950285224677441570 2025-07-29 20:03:01,skocherhan,domain,ng0jw0rijs.bbk0ku.duckdns.org,#phishing,https://x.com/skocherhan/status/1950285958257029330 2025-07-29 20:03:01,skocherhan,url,http://ng0jw0rijs.bbk0ku.duckdns.org,#phishing,https://x.com/skocherhan/status/1950285958257029330 2025-07-29 20:03:01,skocherhan,url,http://103.99.210.5,#phishing,https://x.com/skocherhan/status/1950285958257029330 2025-07-29 20:03:01,skocherhan,ip,103.99.210.5,#phishing,https://x.com/skocherhan/status/1950285958257029330 2025-07-29 20:17:25,skocherhan,domain,ecttromjjh.duckdns.org,#phishing,https://x.com/skocherhan/status/1950289582601490865 2025-07-29 20:17:25,skocherhan,url,http://ecttromjjh.duckdns.org/ja/,#phishing,https://x.com/skocherhan/status/1950289582601490865 2025-07-29 20:17:25,skocherhan,url,http://103.80.134.11,#phishing,https://x.com/skocherhan/status/1950289582601490865 2025-07-29 20:17:25,skocherhan,ip,103.80.134.11,#phishing,https://x.com/skocherhan/status/1950289582601490865 2025-07-29 20:19:53,drb_ra,url,http://143.92.39.50:8880,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950290203626684857 2025-07-29 20:20:27,drb_ra,url,http://143.92.39.50:2096,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950290342764278048 2025-07-29 20:20:27,drb_ra,ip,143.92.39.50,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950290342764278048 2025-07-29 20:21:00,drb_ra,url,https://8.141.5.49/assets/login_guide.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950290481625158085 2025-07-29 20:21:00,drb_ra,url,http://8.141.5.49:10000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950290481625158085 2025-07-29 21:00:03,threatquery,url,http://31.210.50.205,#malware #C2,https://x.com/threatquery/status/1950300311261712741 2025-07-29 21:00:03,threatquery,ip,31.210.50.205,#malware #C2,https://x.com/threatquery/status/1950300311261712741 2025-07-29 21:00:04,threatquery,url,http://196.251.85.116,#malware #AsyncRAT #C2,https://x.com/threatquery/status/1950300314696815042 2025-07-29 21:00:04,threatquery,url,http://95.138.160.116,#malware #C2,https://x.com/threatquery/status/1950300313128174061 2025-07-29 21:00:04,threatquery,ip,95.138.160.116,#malware #C2,https://x.com/threatquery/status/1950300313128174061 2025-07-29 22:00:06,urldna_bot,domain,mengovwebmaintenance.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950315421384442240 2025-07-29 22:00:06,urldna_bot,url,https://mengovwebmaintenance.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950315421384442240 2025-07-29 23:10:01,masaomi346,domain,shinkansen2-ement.ueclbnlvrt.cn,#phishing,https://x.com/masaomi346/status/1950333017672847479 2025-07-29 23:10:01,masaomi346,url,https://shinkansen2-ement.ueclbnlvrt.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1950333017672847479 2025-07-29 23:10:01,masaomi346,domain,shinkansen2-ndred.upaloop.cn,#phishing,https://x.com/masaomi346/status/1950333017672847479 2025-07-29 23:10:01,masaomi346,url,https://shinkansen2-ndred.upaloop.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1950333017672847479 2025-07-29 23:10:01,masaomi346,domain,shinkansen2-sutin.ujienhouji.cn,#phishing,https://x.com/masaomi346/status/1950333017672847479 2025-07-29 23:10:01,masaomi346,url,https://shinkansen2-sutin.ujienhouji.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1950333017672847479 2025-07-29 23:11:56,masaomi346,domain,shinkansen2-thinga.sudzby.cn,#phishing,https://x.com/masaomi346/status/1950333500797911047 2025-07-29 23:11:56,masaomi346,url,https://shinkansen2-thinga.sudzby.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1950333500797911047 2025-07-29 23:25:59,JangPr0,domain,dryskyholding.com,#APT,https://x.com/JangPr0/status/1950337034645885285 2025-07-29 23:25:59,JangPr0,url,https://dryskyholding.com/wp-includes/js/common/inc/get.php,#APT,https://x.com/JangPr0/status/1950337034645885285 2025-07-29 23:25:59,JangPr0,md5,5a59b2fb4603062e2d469f51b0647a64,#APT,https://x.com/JangPr0/status/1950337034645885285 2025-07-30 00:00:07,urldna_bot,domain,mycciservicemail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950345627390394374 2025-07-30 00:00:07,urldna_bot,url,https://mycciservicemail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950345627390394374 2025-07-30 00:15:02,JRoosen,domain,zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion,#ransomware,https://x.com/JRoosen/status/1950349377806995951 2025-07-30 00:15:02,JRoosen,url,http://zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion/touchus.html,#ransomware,https://x.com/JRoosen/status/1950349377806995951 2025-07-30 00:15:02,JRoosen,md5,8A0B41E965E66689E78CA36D3477CB0C,#ransomware,https://x.com/JRoosen/status/1950349377806995951 2025-07-30 00:15:02,JRoosen,md5,68BD43A00BA948F435ECBDD402914298,#ransomware,https://x.com/JRoosen/status/1950349377806995951 2025-07-30 00:53:34,masaomi346,domain,ssobiglobenejp.weebly.com,#phishing,https://x.com/masaomi346/status/1950359075797291045 2025-07-30 00:53:34,masaomi346,url,https://ssobiglobenejp.weebly.com,#phishing,https://x.com/masaomi346/status/1950359075797291045 2025-07-30 01:38:50,skocherhan,domain,sgsmtp12.sgcloudhosting.com,#Remcos #GuLoader,https://x.com/skocherhan/status/1950370468747497872 2025-07-30 01:38:50,skocherhan,url,http://sgsmtp12.sgcloudhosting.com,#Remcos #GuLoader,https://x.com/skocherhan/status/1950370468747497872 2025-07-30 01:51:45,fbgwls245,domain,beast6azu4f7fxjakiayhnssybibsgjnmy77a6duufqw5afjzfjhzuqd.onion,,https://x.com/fbgwls245/status/1950373718930444623 2025-07-30 01:51:45,fbgwls245,url,http://beast6azu4f7fxjakiayhnssybibsgjnmy77a6duufqw5afjzfjhzuqd.onion,,https://x.com/fbgwls245/status/1950373718930444623 2025-07-30 02:00:06,urldna_bot,domain,yy5670yxe.cc,#scam #phishing,https://x.com/urldna_bot/status/1950375819240407368 2025-07-30 02:00:06,urldna_bot,url,https://www.yy5670yxe.cc,#scam #phishing,https://x.com/urldna_bot/status/1950375819240407368 2025-07-30 02:05:33,masaomi346,domain,auth.sos.growvmark.com,#phishing,https://x.com/masaomi346/status/1950377193680576996 2025-07-30 02:05:33,masaomi346,url,https://www.auth.sos.growvmark.com,#phishing,https://x.com/masaomi346/status/1950377193680576996 2025-07-30 02:49:07,suyog41,md5,7706c058d22910da05272d94f96ddc5a,,https://x.com/suyog41/status/1950388154273583396 2025-07-30 02:49:07,suyog41,md5,f89ff0b3a6469ce953cdcd53152fbfa2,,https://x.com/suyog41/status/1950388154273583396 2025-07-30 02:49:07,suyog41,md5,8958868a9ad4c2f8335496c23c8a1ff1,,https://x.com/suyog41/status/1950388154273583396 2025-07-30 02:49:07,suyog41,md5,53de31e1747b21f0762550ad2cac3b98,,https://x.com/suyog41/status/1950388154273583396 2025-07-30 02:49:07,suyog41,md5,0d027529c342e2ef2bc4d01b1d96a47c,,https://x.com/suyog41/status/1950388154273583396 2025-07-30 03:04:34,skocherhan,domain,indiagov.support,,https://x.com/skocherhan/status/1950392043202658485 2025-07-30 03:04:34,skocherhan,url,http://indiagov.support,,https://x.com/skocherhan/status/1950392043202658485 2025-07-30 03:13:18,skocherhan,domain,flixkart.xyz,#phishing,https://x.com/skocherhan/status/1950394241370202291 2025-07-30 03:13:18,skocherhan,url,http://flixkart.xyz/cb/test650/,#phishing,https://x.com/skocherhan/status/1950394241370202291 2025-07-30 03:13:18,skocherhan,domain,americansourcebooks.com,#phishing,https://x.com/skocherhan/status/1950394241370202291 2025-07-30 03:13:18,skocherhan,url,http://americansourcebooks.com/tamil/asdasd/lp1/tm/?fbclid,#phishing,https://x.com/skocherhan/status/1950394241370202291 2025-07-30 04:00:07,urldna_bot,domain,pub-9d425aa9335c4307a502c0721d499bdd.r2.dev,#scam #phishing,https://x.com/urldna_bot/status/1950406022197121461 2025-07-30 04:00:07,urldna_bot,url,http://pub-9d425aa9335c4307a502c0721d499bdd.r2.dev/7MSoutlook4.html,#scam #phishing,https://x.com/urldna_bot/status/1950406022197121461 2025-07-30 04:00:07,urldna_bot,md5,9d425aa9335c4307a502c0721d499bdd,#scam #phishing,https://x.com/urldna_bot/status/1950406022197121461 2025-07-30 05:50:03,ReBensk,md5,9ee94b23bbc51e7c0d0261fc581512b7,#Android #Trojan #malware,https://x.com/ReBensk/status/1950433691110609047 2025-07-30 05:53:38,ReBensk,md5,9966193fa9fa9a0a165803d5ed89fe80,#Android #Trojan #malware,https://x.com/ReBensk/status/1950434591992590459 2025-07-30 06:00:06,urldna_bot,domain,govappinfo.com,#scam #phishing,https://x.com/urldna_bot/status/1950436218757419225 2025-07-30 06:00:06,urldna_bot,url,https://govappinfo.com,#scam #phishing,https://x.com/urldna_bot/status/1950436218757419225 2025-07-30 06:04:51,BlinkzSec,domain,privatebin.net,#phishing,https://x.com/BlinkzSec/status/1950437415472287763 2025-07-30 06:04:51,BlinkzSec,url,https://privatebin.net/?7492f60e91c53722#C6H7igpFctz3a5z6BsGs7bNMZhFfXefazeriDeMkohLT,#phishing,https://x.com/BlinkzSec/status/1950437415472287763 2025-07-30 06:19:55,drb_ra,domain,xx.xinxiangnancs.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441206921449732 2025-07-30 06:19:55,drb_ra,url,https://xx.xinxiangnancs.com/IE9CompatViewList.xml,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441206921449732 2025-07-30 06:19:55,drb_ra,url,http://143.92.39.50:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441206921449732 2025-07-30 06:19:55,drb_ra,ip,143.92.39.50,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441206921449732 2025-07-30 06:20:30,drb_ra,url,https://183.230.68.139/hrmregister/corpTrial/get_permission,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441350480208215 2025-07-30 06:20:30,drb_ra,url,http://124.221.9.167:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441350480208215 2025-07-30 06:20:30,drb_ra,ip,124.221.9.167,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441350480208215 2025-07-30 06:20:30,drb_ra,ip,183.230.68.139,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950441350480208215 2025-07-30 06:47:15,drb_ra,url,http://50.232.172.114:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950448084082729149 2025-07-30 06:47:15,drb_ra,ip,50.232.172.114,#C2 #Qakbot,https://x.com/drb_ra/status/1950448084082729149 2025-07-30 06:47:48,drb_ra,url,http://64.4.225.218:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950448222788329517 2025-07-30 06:47:48,drb_ra,ip,64.4.225.218,#C2 #Qakbot,https://x.com/drb_ra/status/1950448222788329517 2025-07-30 06:48:21,drb_ra,url,http://118.161.7.158:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950448361938547001 2025-07-30 06:48:21,drb_ra,ip,118.161.7.158,#C2 #Qakbot,https://x.com/drb_ra/status/1950448361938547001 2025-07-30 06:48:54,drb_ra,url,http://70.31.125.197:2078,#C2 #Qakbot,https://x.com/drb_ra/status/1950448500115931330 2025-07-30 06:48:54,drb_ra,ip,70.31.125.197,#C2 #Qakbot,https://x.com/drb_ra/status/1950448500115931330 2025-07-30 06:49:27,drb_ra,url,http://5.230.70.57:5555,#C2 #Havoc,https://x.com/drb_ra/status/1950448638464807369 2025-07-30 06:50:00,drb_ra,url,http://13.37.250.113:443,#C2 #Havoc,https://x.com/drb_ra/status/1950448776964923513 2025-07-30 06:50:00,drb_ra,ip,13.37.250.113,#C2 #Havoc,https://x.com/drb_ra/status/1950448776964923513 2025-07-30 06:50:33,drb_ra,url,http://45.31.209.24:8080,#C2 #Havoc,https://x.com/drb_ra/status/1950448915469230129 2025-07-30 06:50:33,drb_ra,ip,45.31.209.24,#C2 #Havoc,https://x.com/drb_ra/status/1950448915469230129 2025-07-30 06:51:06,drb_ra,url,http://80.149.60.139:443,#C2 #Havoc,https://x.com/drb_ra/status/1950449052895604844 2025-07-30 06:51:06,drb_ra,ip,80.149.60.139,#C2 #Havoc,https://x.com/drb_ra/status/1950449052895604844 2025-07-30 06:51:39,drb_ra,url,http://99.83.209.212:443,#C2 #Deimos,https://x.com/drb_ra/status/1950449191156842748 2025-07-30 06:51:39,drb_ra,ip,99.83.209.212,#C2 #Deimos,https://x.com/drb_ra/status/1950449191156842748 2025-07-30 06:52:12,drb_ra,url,http://4.230.4.109:443,#C2 #Deimos,https://x.com/drb_ra/status/1950449329396686994 2025-07-30 06:52:45,drb_ra,url,http://172.233.97.159:7443,#Mythic #C2,https://x.com/drb_ra/status/1950449468546908222 2025-07-30 06:52:45,drb_ra,ip,172.233.97.159,#Mythic #C2,https://x.com/drb_ra/status/1950449468546908222 2025-07-30 06:53:18,drb_ra,url,http://159.65.155.15:7443,#Mythic #C2,https://x.com/drb_ra/status/1950449606636052840 2025-07-30 06:53:18,drb_ra,ip,159.65.155.15,#Mythic #C2,https://x.com/drb_ra/status/1950449606636052840 2025-07-30 06:53:51,drb_ra,url,http://86.106.85.207:31337,#C2 #Sliver,https://x.com/drb_ra/status/1950449744125243565 2025-07-30 06:53:51,drb_ra,ip,86.106.85.207,#C2 #Sliver,https://x.com/drb_ra/status/1950449744125243565 2025-07-30 06:54:24,drb_ra,url,http://185.177.239.38:31337,#C2 #Sliver,https://x.com/drb_ra/status/1950449882533183544 2025-07-30 06:54:24,drb_ra,ip,185.177.239.38,#C2 #Sliver,https://x.com/drb_ra/status/1950449882533183544 2025-07-30 06:54:57,drb_ra,url,http://172.104.110.213:443,#C2 #Sliver,https://x.com/drb_ra/status/1950450020903506398 2025-07-30 06:54:57,drb_ra,ip,172.104.110.213,#C2 #Sliver,https://x.com/drb_ra/status/1950450020903506398 2025-07-30 06:55:30,drb_ra,url,http://161.97.135.253:31337,#C2 #Sliver,https://x.com/drb_ra/status/1950450158916833663 2025-07-30 06:55:30,drb_ra,ip,161.97.135.253,#C2 #Sliver,https://x.com/drb_ra/status/1950450158916833663 2025-07-30 06:56:03,drb_ra,url,http://49.13.51.178:31337,#C2 #Sliver,https://x.com/drb_ra/status/1950450296817107011 2025-07-30 06:56:03,drb_ra,ip,49.13.51.178,#C2 #Sliver,https://x.com/drb_ra/status/1950450296817107011 2025-07-30 06:58:36,drb_ra,url,http://91.236.116.22:80,#C2,https://x.com/drb_ra/status/1950450942270160905 2025-07-30 06:58:36,drb_ra,ip,91.236.116.22,#C2,https://x.com/drb_ra/status/1950450942270160905 2025-07-30 06:59:09,drb_ra,url,http://3.104.135.43:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1950451080740884851 2025-07-30 06:59:43,drb_ra,url,http://196.251.118.181:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950451219442651499 2025-07-30 06:59:43,drb_ra,ip,196.251.118.181,#C2 #Remcos,https://x.com/drb_ra/status/1950451219442651499 2025-07-30 07:00:16,drb_ra,url,http://196.251.114.40:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950451358026322139 2025-07-30 07:00:16,drb_ra,ip,196.251.114.40,#C2 #Remcos,https://x.com/drb_ra/status/1950451358026322139 2025-07-30 07:00:49,drb_ra,url,http://45.145.228.142:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950451498837582160 2025-07-30 07:00:49,drb_ra,ip,45.145.228.142,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950451498837582160 2025-07-30 07:01:22,drb_ra,url,http://103.146.159.70:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950451638386512288 2025-07-30 07:01:22,drb_ra,ip,103.146.159.70,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950451638386512288 2025-07-30 07:01:55,drb_ra,url,http://38.55.199.160:8080,#C2,https://x.com/drb_ra/status/1950451776701764058 2025-07-30 07:01:55,drb_ra,ip,38.55.199.160,#C2,https://x.com/drb_ra/status/1950451776701764058 2025-07-30 07:02:29,drb_ra,url,http://63.176.95.110:20001,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950451915856499016 2025-07-30 07:02:29,drb_ra,ip,63.176.95.110,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950451915856499016 2025-07-30 07:03:02,drb_ra,url,http://43.198.225.38:5061,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950452054813450660 2025-07-30 07:03:02,drb_ra,ip,43.198.225.38,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950452054813450660 2025-07-30 07:03:35,drb_ra,url,http://18.231.172.205:1963,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950452194039218217 2025-07-30 07:03:35,drb_ra,ip,18.231.172.205,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950452194039218217 2025-07-30 07:04:08,drb_ra,url,http://104.238.35.235:24551,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950452332480655491 2025-07-30 07:04:08,drb_ra,ip,104.238.35.235,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950452332480655491 2025-07-30 07:04:41,drb_ra,url,http://45.77.188.10:8888,#AsyncRAT #C2,https://x.com/drb_ra/status/1950452471542739084 2025-07-30 07:04:41,drb_ra,ip,45.77.188.10,#AsyncRAT #C2,https://x.com/drb_ra/status/1950452471542739084 2025-07-30 07:05:14,drb_ra,url,http://172.245.187.3:587,#C2 #Interactsh,https://x.com/drb_ra/status/1950452610504212884 2025-07-30 07:05:47,drb_ra,url,http://172.245.187.3:465,#C2 #Interactsh,https://x.com/drb_ra/status/1950452749566656965 2025-07-30 07:06:20,drb_ra,url,http://172.245.187.3:443,#C2 #Interactsh,https://x.com/drb_ra/status/1950452888443998361 2025-07-30 07:06:54,drb_ra,url,http://172.245.187.3:80,#C2 #Interactsh,https://x.com/drb_ra/status/1950453027556499715 2025-07-30 07:07:27,drb_ra,url,http://172.245.187.3:25,#C2 #Interactsh,https://x.com/drb_ra/status/1950453165716918683 2025-07-30 07:08:00,drb_ra,url,http://172.245.187.3:8443,#C2 #Interactsh,https://x.com/drb_ra/status/1950453306595201041 2025-07-30 07:08:00,drb_ra,ip,172.245.187.3,#C2 #Interactsh,https://x.com/drb_ra/status/1950453306595201041 2025-07-30 07:08:33,drb_ra,url,http://3.250.122.146:80,#C2 #Interactsh,https://x.com/drb_ra/status/1950453444478980297 2025-07-30 07:09:06,drb_ra,url,http://52.11.10.85:80,#C2 #Interactsh,https://x.com/drb_ra/status/1950453583352066066 2025-07-30 07:09:39,drb_ra,url,http://52.11.10.85:25,#C2 #Interactsh,https://x.com/drb_ra/status/1950453721818943922 2025-07-30 07:09:39,drb_ra,ip,52.11.10.85,#C2 #Interactsh,https://x.com/drb_ra/status/1950453721818943922 2025-07-30 07:10:12,drb_ra,url,http://54.246.162.135:80,#C2 #Interactsh,https://x.com/drb_ra/status/1950453861094944971 2025-07-30 07:10:12,drb_ra,ip,54.246.162.135,#C2 #Interactsh,https://x.com/drb_ra/status/1950453861094944971 2025-07-30 07:10:45,drb_ra,url,http://3.144.26.0:25,#C2 #Interactsh,https://x.com/drb_ra/status/1950453998630150285 2025-07-30 07:11:18,drb_ra,url,http://43.134.9.57:8888,#C2 #Supershell,https://x.com/drb_ra/status/1950454137617076439 2025-07-30 07:11:18,drb_ra,ip,43.134.9.57,#C2 #Supershell,https://x.com/drb_ra/status/1950454137617076439 2025-07-30 07:11:51,drb_ra,url,http://47.99.159.237:18088,#C2 #Supershell,https://x.com/drb_ra/status/1950454276733751514 2025-07-30 07:11:51,drb_ra,ip,47.99.159.237,#C2 #Supershell,https://x.com/drb_ra/status/1950454276733751514 2025-07-30 07:12:25,drb_ra,url,http://124.222.81.246:8888,#C2 #Supershell,https://x.com/drb_ra/status/1950454416060141658 2025-07-30 07:12:25,drb_ra,ip,124.222.81.246,#C2 #Supershell,https://x.com/drb_ra/status/1950454416060141658 2025-07-30 07:12:57,drb_ra,url,http://45.153.34.67:2000,#Dcrat #C2,https://x.com/drb_ra/status/1950454553654002034 2025-07-30 07:12:57,drb_ra,ip,45.153.34.67,#Dcrat #C2,https://x.com/drb_ra/status/1950454553654002034 2025-07-30 07:13:31,drb_ra,url,http://167.160.161.43:1888,#Dcrat #C2,https://x.com/drb_ra/status/1950454693152637089 2025-07-30 07:13:31,drb_ra,ip,167.160.161.43,#Dcrat #C2,https://x.com/drb_ra/status/1950454693152637089 2025-07-30 08:00:08,urldna_bot,domain,revdioaplomerd.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950466424440303746 2025-07-30 08:00:08,urldna_bot,url,https://revdioaplomerd.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950466424440303746 2025-07-30 08:14:18,PrakkiSathwik,ip,164.92.238.177,#phishing #Mythic #C2 #APT,https://x.com/PrakkiSathwik/status/1950469991142445180 2025-07-30 08:14:18,PrakkiSathwik,ip,46.101.246.74,#phishing #Mythic #C2 #APT,https://x.com/PrakkiSathwik/status/1950469991142445180 2025-07-30 08:14:18,PrakkiSathwik,md5,8b4f9f707a7ba6cf9a22e0b52ded18d8,#phishing #Mythic #C2 #APT,https://x.com/PrakkiSathwik/status/1950469991142445180 2025-07-30 08:14:18,PrakkiSathwik,md5,afe6ce1c9298dad1f2eb058d7ef5bc05,#phishing #Mythic #C2 #APT,https://x.com/PrakkiSathwik/status/1950469991142445180 2025-07-30 08:14:18,PrakkiSathwik,md5,5d08d498ccd70e05d7fa50fe429f36a5,#phishing #Mythic #C2 #APT,https://x.com/PrakkiSathwik/status/1950469991142445180 2025-07-30 08:14:19,PrakkiSathwik,ip,209.38.207.232,#phishing #APT,https://x.com/PrakkiSathwik/status/1950469995273863504 2025-07-30 08:14:19,PrakkiSathwik,ip,134.122.75.150,#phishing #APT,https://x.com/PrakkiSathwik/status/1950469995273863504 2025-07-30 08:14:19,PrakkiSathwik,md5,01b4c2cc0536f2bde928624dc60121f0,#phishing #APT,https://x.com/PrakkiSathwik/status/1950469995273863504 2025-07-30 08:14:19,PrakkiSathwik,md5,afdeca3eb5862e49b77ccdd6e1fa675e,#phishing #APT,https://x.com/PrakkiSathwik/status/1950469995273863504 2025-07-30 08:22:07,WebMarkeThink,domain,isimtescilyenileme.eu,#phishing,https://x.com/WebMarkeThink/status/1950471959881347448 2025-07-30 08:22:07,WebMarkeThink,url,https://www.isimtescilyenileme.eu/?56SFSHH1=76TZYGZUGYZ,#phishing,https://x.com/WebMarkeThink/status/1950471959881347448 2025-07-30 08:22:07,WebMarkeThink,domain,accountmain-loginservice.kraamzorgtane.nl,#phishing,https://x.com/WebMarkeThink/status/1950471959881347448 2025-07-30 08:22:07,WebMarkeThink,url,https://accountmain-loginservice.kraamzorgtane.nl/orzds04jmsnokp33k2535psqfig3q72zokapmyaett05cd25p0q4f2k99qlcmm504pyf1x6ir4dxlscz,#phishing,https://x.com/WebMarkeThink/status/1950471959881347448 2025-07-30 09:14:43,JAMESWT_WT,domain,p7v.14c.myftpupload.com,#phishing,https://x.com/JAMESWT_WT/status/1950485194072322252 2025-07-30 09:14:43,JAMESWT_WT,url,https://p7v.14c.myftpupload.com/0R6M1/,#phishing,https://x.com/JAMESWT_WT/status/1950485194072322252 2025-07-30 09:16:35,JAMESWT_WT,domain,museuvirtualdoseguro.pt,#phishing,https://x.com/JAMESWT_WT/status/1950485667244589117 2025-07-30 09:16:35,JAMESWT_WT,url,https://museuvirtualdoseguro.pt/wp-admin/user/1/,#phishing,https://x.com/JAMESWT_WT/status/1950485667244589117 2025-07-30 10:00:07,urldna_bot,domain,coibaseprooologiynnnn.godaddysites.com,#phishing #scam,https://x.com/urldna_bot/status/1950496619780010090 2025-07-30 10:00:07,urldna_bot,url,https://coibaseprooologiynnnn.godaddysites.com,#phishing #scam,https://x.com/urldna_bot/status/1950496619780010090 2025-07-30 10:12:40,c9lab_soc,domain,ineco-bank.top,#scam #phishing,https://x.com/c9lab_soc/status/1950499777331822705 2025-07-30 10:12:40,c9lab_soc,url,http://ineco-bank.top,#scam #phishing,https://x.com/c9lab_soc/status/1950499777331822705 2025-07-30 10:12:40,c9lab_soc,domain,acba-bank.top,#scam #phishing,https://x.com/c9lab_soc/status/1950499777331822705 2025-07-30 10:12:40,c9lab_soc,url,http://acba-bank.top,#scam #phishing,https://x.com/c9lab_soc/status/1950499777331822705 2025-07-30 11:07:57,drb_ra,url,http://180.97.220.91:8765,#CobaltStrike #C2,https://x.com/drb_ra/status/1950513691218292914 2025-07-30 11:07:57,drb_ra,ip,180.97.220.91,#CobaltStrike #C2,https://x.com/drb_ra/status/1950513691218292914 2025-07-30 11:08:30,drb_ra,url,http://103.12.149.83:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1950513830305337458 2025-07-30 11:08:30,drb_ra,ip,103.12.149.83,#CobaltStrike #C2,https://x.com/drb_ra/status/1950513830305337458 2025-07-30 11:09:04,drb_ra,domain,cf.xinxiangnancs.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1950513971389227419 2025-07-30 11:09:04,drb_ra,url,https://cf.xinxiangnancs.com/__utm.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1950513971389227419 2025-07-30 11:09:04,drb_ra,url,http://143.92.39.50:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1950513971389227419 2025-07-30 11:09:37,drb_ra,url,http://8.130.9.18:4444,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514111701307658 2025-07-30 11:10:10,drb_ra,url,http://1.117.62.197:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514251258335577 2025-07-30 11:10:44,drb_ra,url,http://47.102.87.217:60443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514391943925894 2025-07-30 11:10:44,drb_ra,ip,47.102.87.217,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514391943925894 2025-07-30 11:11:17,drb_ra,url,https://1.14.243.132/omp/api/get_page_config,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514532301869290 2025-07-30 11:11:17,drb_ra,url,http://1.14.243.132:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514532301869290 2025-07-30 11:11:51,drb_ra,domain,dev.twcdn.org,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514671905096120 2025-07-30 11:11:51,drb_ra,url,https://dev.twcdn.org/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514671905096120 2025-07-30 11:11:51,drb_ra,url,http://45.32.250.246:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514671905096120 2025-07-30 11:11:51,drb_ra,ip,45.32.250.246,#CobaltStrike #C2,https://x.com/drb_ra/status/1950514671905096120 2025-07-30 11:26:32,skocherhan,url,http://155.94.155.229,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,christchurchappomattox.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://christchurchappomattox.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,habbeza.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://habbeza.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,priyankashahra.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://priyankashahra.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,williamshipp.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://williamshipp.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,pongata.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://pongata.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,tapthemicradio.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://tapthemicradio.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,schenk-trading.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://schenk-trading.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,allpowersolarsystem.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://allpowersolarsystem.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,domain,voyagerproductdesign.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,url,http://voyagerproductdesign.com,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:26:32,skocherhan,ip,155.94.155.229,,https://x.com/skocherhan/status/1950518366734553525 2025-07-30 11:34:35,drb_ra,domain,cdn1.cowivat156.workers.dev,#C2,https://x.com/drb_ra/status/1950520395536253301 2025-07-30 11:34:35,drb_ra,url,http://cdn1.cowivat156.workers.dev,#C2,https://x.com/drb_ra/status/1950520395536253301 2025-07-30 11:34:35,drb_ra,url,http://104.21.112.1:443,#C2,https://x.com/drb_ra/status/1950520395536253301 2025-07-30 11:41:03,skocherhan,domain,ukr.somee.com,,https://x.com/skocherhan/status/1950522020279750858 2025-07-30 11:41:03,skocherhan,url,http://ukr.somee.com/gw/ep.txt,,https://x.com/skocherhan/status/1950522020279750858 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping10.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping10.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping3.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping3.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping4.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping4.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping5.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping5.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping6.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping6.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping7.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping7.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping8.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping8.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,domain,ms-team-ping9.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:44:57,skocherhan,url,http://ms-team-ping9.com,,https://x.com/skocherhan/status/1950523004586221789 2025-07-30 11:59:55,skocherhan,md5,8beece81a6dca4e5a8483f56917344ff,,https://x.com/skocherhan/status/1950526767531200640 2025-07-30 12:00:07,urldna_bot,domain,kssiu.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950526819116916977 2025-07-30 12:00:07,urldna_bot,url,https://kssiu.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950526819116916977 2025-07-30 12:00:15,SarlackLab,url,http://34.41.139.193:80,#Lokibot #C2,https://x.com/SarlackLab/status/1950526854047125563 2025-07-30 12:00:15,SarlackLab,domain,reudic.ga,#Lokibot #C2,https://x.com/SarlackLab/status/1950526854047125563 2025-07-30 12:00:15,SarlackLab,url,http://reudic.ga,#Lokibot #C2,https://x.com/SarlackLab/status/1950526854047125563 2025-07-30 12:32:19,skocherhan,ip,174.138.186.157,,https://x.com/skocherhan/status/1950534921052684564 2025-07-30 12:32:19,skocherhan,sha256,3393ea2658320ea0ba5c6583ca85700ed389fb0188c5ed4a8ace7a00a7018696,,https://x.com/skocherhan/status/1950534921052684564 2025-07-30 12:32:19,skocherhan,sha256,28a94a1d5105e7460d9e0540fe634dd1935fae1208ff0662a4ec210cbad7d7fd,#APT,https://x.com/skocherhan/status/1950534921052684564 2025-07-30 13:02:06,MeridianEU,domain,pypj.org,#phishing,https://x.com/MeridianEU/status/1950542419138621561 2025-07-30 13:02:06,MeridianEU,url,http://pypj.org,#phishing,https://x.com/MeridianEU/status/1950542419138621561 2025-07-30 13:04:12,skocherhan,url,http://31.59.58.87,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,qmabkngserccaptura.org,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://qmabkngserccaptura.org,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,admin-extranetrsvrv-cstmrv.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://admin-extranetrsvrv-cstmrv.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,mistyexycapt.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://mistyexycapt.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,admin-captcha-properties-095908401.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://admin-captcha-properties-095908401.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,admin-extranetrsvrv-cstmrs.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://admin-extranetrsvrv-cstmrs.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,admin-properties-captcha.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://admin-properties-captcha.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,bkngadmchecks.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://bkngadmchecks.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,domain,bknpnt.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,url,http://bknpnt.com,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:04:12,skocherhan,ip,31.59.58.87,,https://x.com/skocherhan/status/1950542946140340232 2025-07-30 13:07:34,skocherhan,ip,45.134.26.74,,https://x.com/skocherhan/status/1950543793448501626 2025-07-30 13:14:55,skocherhan,domain,metsions861.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://metsions861.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,minesqvoretqsma.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://minesqvoretqsma.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,micromissingservice86checksup.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://micromissingservice86checksup.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,micromissingservicex86checksup.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://micromissingservicex86checksup.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,micromissingservicx86checksup.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://micromissingservicx86checksup.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,qoiwexsoftamicros821.info,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://qoiwexsoftamicros821.info,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,summiteriqosconvietnt.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://summiteriqosconvietnt.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,sunsetvismarketsoliocosca.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://sunsetvismarketsoliocosca.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,domain,superiormagazinecos.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:14:55,skocherhan,url,http://superiormagazinecos.com,,https://x.com/skocherhan/status/1950545643878875185 2025-07-30 13:44:55,skocherhan,domain,artsciencephysio.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://artsciencephysio.com/l1kl,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,domain,booking.id28k666partnet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://booking.id28k666partnet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,domain,booking.revers-id-237extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://booking.revers-id-237extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,domain,booking.revers-id-732extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://booking.revers-id-732extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,domain,booking.revers-id-837extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://booking.revers-id-837extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,domain,booking.revers-id-672extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://booking.revers-id-672extranet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,domain,booking.id28k222partnet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://booking.id28k222partnet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,domain,booking.id28k772partnet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 13:44:55,skocherhan,url,http://booking.id28k772partnet.com,,https://x.com/skocherhan/status/1950553194632782310 2025-07-30 14:00:06,urldna_bot,domain,noygittn2025.com,#scam #phishing,https://x.com/urldna_bot/status/1950557015882780885 2025-07-30 14:00:06,urldna_bot,url,https://noygittn2025.com/pages/index/login.php,#scam #phishing,https://x.com/urldna_bot/status/1950557015882780885 2025-07-30 14:21:50,skocherhan,domain,rustyquill.top,#APT,https://x.com/skocherhan/status/1950562483078385812 2025-07-30 14:21:50,skocherhan,url,https://rustyquill.top/shw/the-magnus-protoco1.jpg,#APT,https://x.com/skocherhan/status/1950562483078385812 2025-07-30 14:27:46,fbgwls245,domain,ooie6tet7ggcmlgvtmyvok4s6vha6ecwczssbchbyxrg2r6v2m6zkkad.onion,#ransomware,https://x.com/fbgwls245/status/1950563977433694242 2025-07-30 14:27:46,fbgwls245,url,http://ooie6tet7ggcmlgvtmyvok4s6vha6ecwczssbchbyxrg2r6v2m6zkkad.onion,#ransomware,https://x.com/fbgwls245/status/1950563977433694242 2025-07-30 14:43:37,JRoosen,domain,SSL.com,,https://x.com/JRoosen/status/1950567965075689881 2025-07-30 14:43:37,JRoosen,url,http://SSL.com,,https://x.com/JRoosen/status/1950567965075689881 2025-07-30 14:43:37,JRoosen,md5,ddf9bba66ffc5f2638682a0d6712e177,,https://x.com/JRoosen/status/1950567965075689881 2025-07-30 14:59:12,marcandrebeaul1,ip,91.208.206.158,#phishing,https://x.com/marcandrebeaul1/status/1950571888863826268 2025-07-30 15:52:38,harugasumi,domain,xvelc.cn,#phishing,https://x.com/harugasumi/status/1950585332510097714 2025-07-30 15:52:38,harugasumi,url,https://xvelc.cn,#phishing,https://x.com/harugasumi/status/1950585332510097714 2025-07-30 16:00:06,urldna_bot,domain,universityofarkansascampus.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950587212212433184 2025-07-30 16:00:06,urldna_bot,url,https://universityofarkansascampus.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950587212212433184 2025-07-30 16:23:31,drb_ra,url,http://189.1.220.31:48443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950593108023947786 2025-07-30 16:23:31,drb_ra,ip,189.1.220.31,#CobaltStrike #C2,https://x.com/drb_ra/status/1950593108023947786 2025-07-30 16:44:14,1ZRR4H,domain,admin-properties-captcha-extranet.com,,https://x.com/1ZRR4H/status/1950598321740849547 2025-07-30 16:44:14,1ZRR4H,url,https://admin-properties-captcha-extranet.com,,https://x.com/1ZRR4H/status/1950598321740849547 2025-07-30 17:09:59,skocherhan,url,http://111.254.202.51,,https://x.com/skocherhan/status/1950604798954180739 2025-07-30 17:09:59,skocherhan,ip,111.254.202.51,,https://x.com/skocherhan/status/1950604798954180739 2025-07-30 17:14:44,JAMESWT_WT,domain,2011.filemail.com,,https://x.com/JAMESWT_WT/status/1950605994637303957 2025-07-30 17:14:44,JAMESWT_WT,url,https://2011.filemail.com/api/file/get?filekey=Exsd44RH9Z6htYM0mINzzIHWgZALh7P1XKn0_fgbXO3EpAeobpBQHcsn1I6GohiE&pk_vid=e02883b622f101aa1753858042c1eb95,,https://x.com/JAMESWT_WT/status/1950605994637303957 2025-07-30 17:14:44,JAMESWT_WT,md5,e02883b622f101aa1753858042c1eb95,,https://x.com/JAMESWT_WT/status/1950605994637303957 2025-07-30 17:16:31,drb_ra,domain,ns1.shgsfhdjstjsttjgjzddshgrw.info,#CobaltStrike #C2,https://x.com/drb_ra/status/1950606442831991128 2025-07-30 17:16:31,drb_ra,url,https://ns1.shgsfhdjstjsttjgjzddshgrw.info/fwlink,#CobaltStrike #C2,https://x.com/drb_ra/status/1950606442831991128 2025-07-30 17:16:31,drb_ra,url,http://141.98.10.88:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1950606442831991128 2025-07-30 17:16:31,drb_ra,ip,141.98.10.88,#CobaltStrike #C2,https://x.com/drb_ra/status/1950606442831991128 2025-07-30 17:17:04,drb_ra,url,http://91.208.162.61:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1950606583798366614 2025-07-30 17:17:04,drb_ra,ip,91.208.162.61,#CobaltStrike #C2,https://x.com/drb_ra/status/1950606583798366614 2025-07-30 17:17:04,drb_ra,ip,107.174.147.15,#CobaltStrike #C2,https://x.com/drb_ra/status/1950606583798366614 2025-07-30 18:00:06,urldna_bot,domain,jal-co.bond,#phishing #scam,https://x.com/urldna_bot/status/1950617414112051244 2025-07-30 18:00:06,urldna_bot,url,http://jal-co.bond,#phishing #scam,https://x.com/urldna_bot/status/1950617414112051244 2025-07-30 18:46:54,drb_ra,url,http://49.12.240.231:31337,#Sliver #C2,https://x.com/drb_ra/status/1950629191138881887 2025-07-30 18:46:54,drb_ra,ip,49.12.240.231,#Sliver #C2,https://x.com/drb_ra/status/1950629191138881887 2025-07-30 18:47:27,drb_ra,url,http://144.172.89.250:31337,#Sliver #C2,https://x.com/drb_ra/status/1950629329790017669 2025-07-30 18:47:27,drb_ra,ip,144.172.89.250,#Sliver #C2,https://x.com/drb_ra/status/1950629329790017669 2025-07-30 18:48:01,drb_ra,url,http://64.23.249.98:31337,#Sliver #C2,https://x.com/drb_ra/status/1950629469988995414 2025-07-30 18:48:01,drb_ra,ip,64.23.249.98,#Sliver #C2,https://x.com/drb_ra/status/1950629469988995414 2025-07-30 18:48:33,drb_ra,url,http://146.59.228.67:31337,#Sliver #C2,https://x.com/drb_ra/status/1950629607344140597 2025-07-30 18:48:33,drb_ra,ip,146.59.228.67,#Sliver #C2,https://x.com/drb_ra/status/1950629607344140597 2025-07-30 18:49:06,drb_ra,url,http://196.251.83.162:31337,#Sliver #C2,https://x.com/drb_ra/status/1950629745026126312 2025-07-30 18:49:06,drb_ra,ip,196.251.83.162,#Sliver #C2,https://x.com/drb_ra/status/1950629745026126312 2025-07-30 18:49:39,drb_ra,url,http://45.15.66.42:31337,#Sliver #C2,https://x.com/drb_ra/status/1950629883467710920 2025-07-30 18:49:39,drb_ra,ip,45.15.66.42,#Sliver #C2,https://x.com/drb_ra/status/1950629883467710920 2025-07-30 18:50:13,drb_ra,url,http://43.138.222.83:31337,#Sliver #C2,https://x.com/drb_ra/status/1950630025838924184 2025-07-30 18:50:47,drb_ra,url,http://43.138.222.83:9999,#Sliver #C2,https://x.com/drb_ra/status/1950630168306848033 2025-07-30 18:50:47,drb_ra,ip,43.138.222.83,#Sliver #C2,https://x.com/drb_ra/status/1950630168306848033 2025-07-30 18:53:21,drb_ra,url,http://5.189.184.115:80,#C2,https://x.com/drb_ra/status/1950630814460563719 2025-07-30 18:53:55,drb_ra,url,http://94.237.93.183:443,#C2,https://x.com/drb_ra/status/1950630954281869437 2025-07-30 18:53:55,drb_ra,ip,94.237.93.183,#C2,https://x.com/drb_ra/status/1950630954281869437 2025-07-30 18:54:28,drb_ra,url,http://206.123.152.42:33862,#Remcos #C2,https://x.com/drb_ra/status/1950631092412723501 2025-07-30 18:54:28,drb_ra,ip,206.123.152.42,#Remcos #C2,https://x.com/drb_ra/status/1950631092412723501 2025-07-30 18:55:01,drb_ra,url,http://45.156.87.226:9373,#C2 #Remcos,https://x.com/drb_ra/status/1950631231357321239 2025-07-30 18:55:01,drb_ra,ip,45.156.87.226,#C2 #Remcos,https://x.com/drb_ra/status/1950631231357321239 2025-07-30 18:55:34,drb_ra,url,http://85.208.84.28:6002,#C2 #Remcos,https://x.com/drb_ra/status/1950631370008715308 2025-07-30 18:55:34,drb_ra,ip,85.208.84.28,#C2 #Remcos,https://x.com/drb_ra/status/1950631370008715308 2025-07-30 18:56:07,drb_ra,url,http://196.251.80.30:5000,#C2 #Remcos,https://x.com/drb_ra/status/1950631507975893459 2025-07-30 18:56:07,drb_ra,ip,196.251.80.30,#C2 #Remcos,https://x.com/drb_ra/status/1950631507975893459 2025-07-30 18:56:40,drb_ra,url,http://139.159.238.207:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1950631648732614979 2025-07-30 18:56:40,drb_ra,ip,139.159.238.207,#Reverse_SSH #C2,https://x.com/drb_ra/status/1950631648732614979 2025-07-30 18:57:13,drb_ra,url,http://13.245.75.9:1433,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950631788050886927 2025-07-30 18:57:47,drb_ra,url,http://13.245.75.9:833,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950631926852681975 2025-07-30 18:57:47,drb_ra,ip,13.245.75.9,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950631926852681975 2025-07-30 18:58:20,drb_ra,url,http://35.180.127.3:51005,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950632065281794098 2025-07-30 18:58:53,drb_ra,url,http://35.180.127.3:50805,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950632204037677522 2025-07-30 18:58:53,drb_ra,ip,35.180.127.3,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950632204037677522 2025-07-30 18:59:26,drb_ra,url,http://176.46.152.46:6606,#AsyncRAT #C2,https://x.com/drb_ra/status/1950632342118371598 2025-07-30 18:59:26,drb_ra,ip,176.46.152.46,#AsyncRAT #C2,https://x.com/drb_ra/status/1950632342118371598 2025-07-30 18:59:59,drb_ra,url,http://185.242.5.90:8525,#AsyncRAT #C2,https://x.com/drb_ra/status/1950632481008554165 2025-07-30 18:59:59,drb_ra,ip,185.242.5.90,#AsyncRAT #C2,https://x.com/drb_ra/status/1950632481008554165 2025-07-30 19:00:32,drb_ra,url,http://54.160.220.169:443,#Interactsh #C2,https://x.com/drb_ra/status/1950632619613597925 2025-07-30 19:00:32,drb_ra,ip,54.160.220.169,#Interactsh #C2,https://x.com/drb_ra/status/1950632619613597925 2025-07-30 19:01:05,drb_ra,url,http://52.209.52.25:80,#Interactsh #C2,https://x.com/drb_ra/status/1950632760147910817 2025-07-30 19:01:05,drb_ra,ip,52.209.52.25,#Interactsh #C2,https://x.com/drb_ra/status/1950632760147910817 2025-07-30 19:01:38,drb_ra,url,http://18.202.77.34:80,#Interactsh #C2,https://x.com/drb_ra/status/1950632898215956806 2025-07-30 19:01:38,drb_ra,ip,18.202.77.34,#Interactsh #C2,https://x.com/drb_ra/status/1950632898215956806 2025-07-30 19:02:11,drb_ra,url,http://3.255.172.20:80,#Interactsh #C2,https://x.com/drb_ra/status/1950633037106139622 2025-07-30 19:02:44,drb_ra,url,http://54.154.237.176:443,#Interactsh #C2,https://x.com/drb_ra/status/1950633175329436140 2025-07-30 19:02:44,drb_ra,ip,54.154.237.176,#Interactsh #C2,https://x.com/drb_ra/status/1950633175329436140 2025-07-30 19:03:17,drb_ra,url,http://108.130.28.158:80,#Interactsh #C2,https://x.com/drb_ra/status/1950633314311623042 2025-07-30 19:03:17,drb_ra,ip,108.130.28.158,#Interactsh #C2,https://x.com/drb_ra/status/1950633314311623042 2025-07-30 19:03:50,drb_ra,url,http://108.130.96.169:80,#Interactsh #C2,https://x.com/drb_ra/status/1950633452568469746 2025-07-30 19:03:50,drb_ra,ip,108.130.96.169,#Interactsh #C2,https://x.com/drb_ra/status/1950633452568469746 2025-07-30 19:04:23,drb_ra,url,http://81.181.166.190:8443,#Interactsh #C2,https://x.com/drb_ra/status/1950633591530201372 2025-07-30 19:04:23,drb_ra,ip,81.181.166.190,#Interactsh #C2,https://x.com/drb_ra/status/1950633591530201372 2025-07-30 19:04:56,drb_ra,url,http://116.203.139.44:8080,#Interactsh #C2,https://x.com/drb_ra/status/1950633729669419434 2025-07-30 19:04:56,drb_ra,ip,116.203.139.44,#Interactsh #C2,https://x.com/drb_ra/status/1950633729669419434 2025-07-30 19:05:30,drb_ra,url,http://83.229.112.185:3333,#Evilginx #C2 #EvilGoPhish,https://x.com/drb_ra/status/1950633869470040456 2025-07-30 19:05:30,drb_ra,ip,83.229.112.185,#Evilginx #C2 #EvilGoPhish,https://x.com/drb_ra/status/1950633869470040456 2025-07-30 19:06:03,drb_ra,url,http://78.168.170.251:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950634007496130938 2025-07-30 19:06:03,drb_ra,ip,78.168.170.251,#C2 #Qakbot,https://x.com/drb_ra/status/1950634007496130938 2025-07-30 19:06:36,drb_ra,url,http://217.165.152.8:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950634147220992175 2025-07-30 19:06:36,drb_ra,ip,217.165.152.8,#C2 #Qakbot,https://x.com/drb_ra/status/1950634147220992175 2025-07-30 19:07:09,drb_ra,url,http://70.27.138.135:2222,#C2 #Qakbot,https://x.com/drb_ra/status/1950634284571566253 2025-07-30 19:07:09,drb_ra,ip,70.27.138.135,#C2 #Qakbot,https://x.com/drb_ra/status/1950634284571566253 2025-07-30 19:07:42,drb_ra,url,http://24.158.34.168:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950634423965413434 2025-07-30 19:07:42,drb_ra,ip,24.158.34.168,#C2 #Qakbot,https://x.com/drb_ra/status/1950634423965413434 2025-07-30 19:08:15,drb_ra,url,http://34.47.138.207:443,#C2 #Havoc,https://x.com/drb_ra/status/1950634561848652225 2025-07-30 19:08:48,drb_ra,url,http://99.83.149.190:443,#Deimos #C2,https://x.com/drb_ra/status/1950634700978139161 2025-07-30 19:08:48,drb_ra,ip,99.83.149.190,#Deimos #C2,https://x.com/drb_ra/status/1950634700978139161 2025-07-30 19:09:24,drb_ra,url,http://208.254.122.210:4443,#Deimos #C2,https://x.com/drb_ra/status/1950634850320572728 2025-07-30 19:09:24,drb_ra,ip,208.254.122.210,#Deimos #C2,https://x.com/drb_ra/status/1950634850320572728 2025-07-30 19:09:57,drb_ra,url,http://102.117.165.215:7443,#Mythic #C2,https://x.com/drb_ra/status/1950634989273669928 2025-07-30 19:09:57,drb_ra,ip,102.117.165.215,#Mythic #C2,https://x.com/drb_ra/status/1950634989273669928 2025-07-30 19:25:59,TeamDreier,domain,danskebank-payments.com,#phishing,https://x.com/TeamDreier/status/1950639025250836609 2025-07-30 19:25:59,TeamDreier,url,https://danskebank-payments.com,#phishing,https://x.com/TeamDreier/status/1950639025250836609 2025-07-30 20:00:09,urldna_bot,domain,lelevant.net,#scam #phishing,https://x.com/urldna_bot/status/1950647623162982451 2025-07-30 20:00:09,urldna_bot,url,https://www.lelevant.net/tax/via.admin.ch.php?data=card,#scam #phishing,https://x.com/urldna_bot/status/1950647623162982451 2025-07-30 21:00:04,threatquery,url,http://99.83.149.190,#malware #C2,https://x.com/threatquery/status/1950662703535546674 2025-07-30 21:00:05,threatquery,url,http://70.27.138.135,#malware #Qakbot #C2,https://x.com/threatquery/status/1950662707494969432 2025-07-30 21:00:05,threatquery,url,http://78.168.170.251,#malware #Qakbot #C2,https://x.com/threatquery/status/1950662705670447235 2025-07-30 21:00:19,SarlackLab,url,http://87.242.106.13:52703,#C2 #Njrat,https://x.com/SarlackLab/status/1950662767175684601 2025-07-30 21:00:19,SarlackLab,domain,tpc.cloudpub.ru,#C2 #Njrat,https://x.com/SarlackLab/status/1950662767175684601 2025-07-30 21:00:19,SarlackLab,url,http://tpc.cloudpub.ru,#C2 #Njrat,https://x.com/SarlackLab/status/1950662767175684601 2025-07-30 21:00:19,SarlackLab,ip,87.242.106.13,#C2 #Njrat,https://x.com/SarlackLab/status/1950662767175684601 2025-07-30 21:09:28,drb_ra,url,http://118.89.73.78:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950665067294265502 2025-07-30 21:09:28,drb_ra,ip,118.89.73.78,#CobaltStrike #C2,https://x.com/drb_ra/status/1950665067294265502 2025-07-30 21:57:47,P4nd3m1cb0y,domain,cadastromotorista.online,#Android #malware,https://x.com/P4nd3m1cb0y/status/1950677225835036810 2025-07-30 21:57:47,P4nd3m1cb0y,url,https://cadastromotorista.online,#Android #malware,https://x.com/P4nd3m1cb0y/status/1950677225835036810 2025-07-30 21:57:47,P4nd3m1cb0y,domain,descargarseguro.store,#Android #malware,https://x.com/P4nd3m1cb0y/status/1950677225835036810 2025-07-30 21:57:47,P4nd3m1cb0y,url,https://www.descargarseguro.store,#Android #malware,https://x.com/P4nd3m1cb0y/status/1950677225835036810 2025-07-30 21:57:47,P4nd3m1cb0y,domain,baixarseguro.store,#Android #malware,https://x.com/P4nd3m1cb0y/status/1950677225835036810 2025-07-30 21:57:47,P4nd3m1cb0y,url,https://www.baixarseguro.store,#Android #malware,https://x.com/P4nd3m1cb0y/status/1950677225835036810 2025-07-30 22:00:07,urldna_bot,domain,suporte.jimpike.com.au,#scam #phishing,https://x.com/urldna_bot/status/1950677815038259345 2025-07-30 22:00:07,urldna_bot,url,https://www.suporte.jimpike.com.au/mobile/front/,#scam #phishing,https://x.com/urldna_bot/status/1950677815038259345 2025-07-30 22:11:31,skocherhan,ip,147.124.219.201,,https://x.com/skocherhan/status/1950680683304583415 2025-07-30 22:11:31,skocherhan,md5,b2647b263c14226c62fe743dbff5c70a,,https://x.com/skocherhan/status/1950680683304583415 2025-07-30 23:06:39,masaomi346,domain,fri66g.top,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:06:39,masaomi346,url,https://fri66g.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:06:39,masaomi346,domain,i6o9o1.top,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:06:39,masaomi346,url,https://i6o9o1.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:06:39,masaomi346,domain,kh23mi.top,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:06:39,masaomi346,url,https://kh23mi.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:06:39,masaomi346,domain,qz0htw.top,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:06:39,masaomi346,url,https://qz0htw.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1950694558469402690 2025-07-30 23:15:03,drb_ra,url,https://45.86.153.106/owa/u82PGyZFTRBV0tNkIDrKlcKM,#CobaltStrike #C2,https://x.com/drb_ra/status/1950696671983128596 2025-07-30 23:15:03,drb_ra,url,http://45.86.153.106:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950696671983128596 2025-07-30 23:15:03,drb_ra,ip,45.86.153.106,#CobaltStrike #C2,https://x.com/drb_ra/status/1950696671983128596 2025-07-30 23:15:36,drb_ra,url,http://59.110.64.250:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1950696812270207421 2025-07-30 23:15:36,drb_ra,ip,59.110.64.250,#CobaltStrike #C2,https://x.com/drb_ra/status/1950696812270207421 2025-07-30 23:16:09,drb_ra,url,http://101.35.95.220:18062,#CobaltStrike #C2,https://x.com/drb_ra/status/1950696950715551930 2025-07-30 23:16:09,drb_ra,ip,101.35.95.220,#CobaltStrike #C2,https://x.com/drb_ra/status/1950696950715551930 2025-07-30 23:16:43,drb_ra,domain,api.dnstools.im,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697091329847555 2025-07-30 23:16:43,drb_ra,url,https://api.dnstools.im/api/3,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697091329847555 2025-07-30 23:16:43,drb_ra,url,http://148.135.90.66:2095,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697091329847555 2025-07-30 23:16:43,drb_ra,ip,148.135.90.66,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697091329847555 2025-07-30 23:17:16,drb_ra,url,http://8.153.163.236:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697229808771076 2025-07-30 23:17:49,drb_ra,url,http://110.41.15.186:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697370477572245 2025-07-30 23:17:49,drb_ra,ip,110.41.15.186,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697370477572245 2025-07-30 23:18:23,drb_ra,url,https://156.238.243.78/watch,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697509015240982 2025-07-30 23:18:23,drb_ra,url,http://156.238.243.78:54321,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697509015240982 2025-07-30 23:18:23,drb_ra,ip,156.238.243.78,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697509015240982 2025-07-30 23:18:56,drb_ra,domain,junk-essex-vocals-stays.trycloudflare.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697650711326916 2025-07-30 23:18:56,drb_ra,url,https://junk-essex-vocals-stays.trycloudflare.com/wp06/wp-includes/po.php,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697650711326916 2025-07-30 23:18:56,drb_ra,url,http://43.142.19.208:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697650711326916 2025-07-30 23:18:56,drb_ra,ip,43.142.19.208,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697650711326916 2025-07-30 23:19:03,skocherhan,domain,grandchem.online,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.grandchem.online/ghuc/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,augmentingdata.xyz,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.augmentingdata.xyz/yf4t/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,instantcomputer.xyz,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.instantcomputer.xyz/wo5k/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,nonamesms.online,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.nonamesms.online/amnv/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,rocketkava.xyz,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.rocketkava.xyz/hftv/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,av11.top,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.av11.top/6p0a/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,financialbalance.xyz,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.financialbalance.xyz/22lr/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,rangersorange.click,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.rangersorange.click/gvj5/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,domain,596767.top,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:03,skocherhan,url,http://www.596767.top/mrjo/,,https://x.com/skocherhan/status/1950697679102808352 2025-07-30 23:19:29,drb_ra,url,http://122.51.235.217:8065,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697789727351013 2025-07-30 23:19:29,drb_ra,ip,122.51.235.217,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697789727351013 2025-07-30 23:20:03,drb_ra,domain,etcprofile.biying007.xyz,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697930748506134 2025-07-30 23:20:03,drb_ra,url,https://etcprofile.biying007.xyz/jquery-3.3.1.min.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697930748506134 2025-07-30 23:20:03,drb_ra,url,http://173.44.62.141:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697930748506134 2025-07-30 23:20:03,drb_ra,ip,173.44.62.141,#CobaltStrike #C2,https://x.com/drb_ra/status/1950697930748506134 2025-07-30 23:20:36,drb_ra,url,https://bfm2024.xyz/visit.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698070108512339 2025-07-30 23:20:36,drb_ra,url,http://39.99.141.149:2053,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698070108512339 2025-07-30 23:23:10,drb_ra,url,http://78.24.223.191:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698716215623775 2025-07-30 23:23:10,drb_ra,ip,78.24.223.191,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698716215623775 2025-07-30 23:23:44,drb_ra,url,http://39.105.165.37:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698855873605935 2025-07-30 23:23:44,drb_ra,ip,39.105.165.37,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698855873605935 2025-07-30 23:24:17,drb_ra,domain,bfm2024.xyz,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698995535257999 2025-07-30 23:24:17,drb_ra,url,https://bfm2024.xyz/pixel.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698995535257999 2025-07-30 23:24:17,drb_ra,url,http://39.99.141.149:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698995535257999 2025-07-30 23:24:17,drb_ra,ip,39.99.141.149,#CobaltStrike #C2,https://x.com/drb_ra/status/1950698995535257999 2025-07-30 23:24:50,drb_ra,url,http://47.254.149.115:8081,#CobaltStrike #C2,https://x.com/drb_ra/status/1950699135251714414 2025-07-30 23:24:50,drb_ra,ip,47.254.149.115,#CobaltStrike #C2,https://x.com/drb_ra/status/1950699135251714414 2025-07-31 00:00:11,urldna_bot,domain,appsuite-sources.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950708028627386875 2025-07-31 00:00:11,urldna_bot,url,https://appsuite-sources.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950708028627386875 2025-07-31 00:01:35,skocherhan,domain,offworldempires.com,,https://x.com/skocherhan/status/1950708382106620148 2025-07-31 00:01:35,skocherhan,url,http://offworldempires.com/mrtech-solutions.com,,https://x.com/skocherhan/status/1950708382106620148 2025-07-31 00:10:31,catnap707,domain,eki-net-vapeer.shyzdsm.cn,#phishing,https://x.com/catnap707/status/1950710631105253419 2025-07-31 00:10:31,catnap707,url,http://eki-net-vapeer.shyzdsm.cn/Perosnal_member/,#phishing,https://x.com/catnap707/status/1950710631105253419 2025-07-31 00:10:31,catnap707,url,http://172.67.166.60,#phishing,https://x.com/catnap707/status/1950710631105253419 2025-07-31 00:45:05,fbgwls245,url,http://ooie6tet7ggcmlgvtmyvok4s6vha6ecwczssbchbyxrg2r6v2m6zkkad.onion,#ransomware,https://x.com/fbgwls245/status/1950719329265385544 2025-07-31 00:45:05,fbgwls245,domain,ooie6tet7ggcmlgvtmyvok4s6vha6ecwczssbchbyxrg2r6v2m6zkkad.onion,#ransomware,https://x.com/fbgwls245/status/1950719329265385544 2025-07-31 01:11:22,Metemcyber,domain,trackings-torset.wtsssds.cn,#phishing,https://x.com/Metemcyber/status/1950725943124779088 2025-07-31 01:11:22,Metemcyber,url,https://trackings-torset.wtsssds.cn/japeanposder/,#phishing,https://x.com/Metemcyber/status/1950725943124779088 2025-07-31 01:11:22,Metemcyber,url,http://104.21.26.153,#phishing,https://x.com/Metemcyber/status/1950725943124779088 2025-07-31 01:11:22,Metemcyber,url,http://172.67.136.138,#phishing,https://x.com/Metemcyber/status/1950725943124779088 2025-07-31 01:19:07,Metemcyber,url,http://172.67.203.64,#phishing,https://x.com/Metemcyber/status/1950727894499787144 2025-07-31 01:19:07,Metemcyber,url,https://mastercard-identi.vhgdcvntd.cn/features-benefits/,#phishing,https://x.com/Metemcyber/status/1950727894499787144 2025-07-31 01:19:07,Metemcyber,domain,mastercard-identi.vhgdcvntd.cn,#phishing,https://x.com/Metemcyber/status/1950727894499787144 2025-07-31 01:19:07,Metemcyber,url,http://104.21.44.193,#phishing,https://x.com/Metemcyber/status/1950727894499787144 2025-07-31 01:29:06,Metemcyber,url,http://104.21.15.46,#phishing,https://x.com/Metemcyber/status/1950730406996873328 2025-07-31 01:29:06,Metemcyber,url,https://dhl-couldment.veryyes.cn/portal_login_exp/getQuoteTab/,#phishing,https://x.com/Metemcyber/status/1950730406996873328 2025-07-31 01:29:06,Metemcyber,domain,dhl-couldment.veryyes.cn,#phishing,https://x.com/Metemcyber/status/1950730406996873328 2025-07-31 01:29:06,Metemcyber,url,http://172.67.205.135,#phishing,https://x.com/Metemcyber/status/1950730406996873328 2025-07-31 01:36:19,Metemcyber,url,https://i1r2e9.top/yqTd5jtNmj,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 01:36:19,Metemcyber,ip,47.85.82.194,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 01:36:19,Metemcyber,url,http://47.85.82.194,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 01:36:19,Metemcyber,domain,i1r2e9.top,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 01:36:19,Metemcyber,domain,wxqno5.top,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 01:36:19,Metemcyber,domain,zo6qtf.top,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 01:36:19,Metemcyber,url,https://wxqno5.top/yqTd5jtNmj,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 01:36:19,Metemcyber,url,https://zo6qtf.top/yqTd5jtNmj,#phishing,https://x.com/Metemcyber/status/1950732223671669018 2025-07-31 02:00:07,urldna_bot,domain,buscaonline9.shop,#scam #phishing,https://x.com/urldna_bot/status/1950738210771894328 2025-07-31 02:00:07,urldna_bot,url,https://buscaonline9.shop,#scam #phishing,https://x.com/urldna_bot/status/1950738210771894328 2025-07-31 02:30:50,romonlyht,ip,202.61.198.34,#phishing,https://x.com/romonlyht/status/1950745944355754145 2025-07-31 02:30:50,romonlyht,ip,110.238.64.211,#phishing,https://x.com/romonlyht/status/1950745942539558977 2025-07-31 02:30:50,romonlyht,ip,159.253.120.237,#phishing,https://x.com/romonlyht/status/1950745942539558977 2025-07-31 02:30:50,romonlyht,url,http://bqbq.de/gjgkhfiy/index.html?uid=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1950745944355754145 2025-07-31 02:30:50,romonlyht,domain,bqbq.de,#phishing,https://x.com/romonlyht/status/1950745944355754145 2025-07-31 02:30:50,romonlyht,url,http://bqbq.de/gjgkhfiy/bot.php,#phishing,https://x.com/romonlyht/status/1950745944355754145 2025-07-31 02:35:56,catnap707,url,http://104.21.48.1,#phishing,https://x.com/catnap707/status/1950747225556148495 2025-07-31 02:35:56,catnap707,url,http://104.21.32.1,#phishing,https://x.com/catnap707/status/1950747225556148495 2025-07-31 02:35:56,catnap707,url,http://104.21.16.1,#phishing,https://x.com/catnap707/status/1950747225556148495 2025-07-31 02:35:56,catnap707,domain,info-monex.rywak.com,#phishing,https://x.com/catnap707/status/1950747225556148495 2025-07-31 02:35:56,catnap707,url,http://info-monex.rywak.com/support/?login=~,#phishing,https://x.com/catnap707/status/1950747225556148495 2025-07-31 02:43:33,skocherhan,url,http://www.16zipai.xyz/t0ik/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,3533callegavanzo.com,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,1996baokd.top,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.1996baokd.top/9seb/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.14jewxn.sbs/ds0w/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.3533callegavanzo.com/f3ip/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,3egcfl.cyou,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.3egcfl.cyou/dunk/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,16zipai.xyz,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,0543cq.com,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,127368.buzz,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.0w3jy.com/dhxt/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,0w3jy.com,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.0543cq.com/ermr/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,14jewxn.sbs,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.031234440.xyz/cc2i/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,domain,031234440.xyz,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 02:43:33,skocherhan,url,http://www.127368.buzz/ohdd/,#Formbook,https://x.com/skocherhan/status/1950749142000488458 2025-07-31 04:00:07,urldna_bot,domain,bybit-log-in-auth.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1950768412734459930 2025-07-31 04:00:07,urldna_bot,url,http://bybit-log-in-auth.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1950768412734459930 2025-07-31 05:09:28,JangPr0,md5,d98ed7f95003332a873fbb03c9ec1237,#APT,https://x.com/JangPr0/status/1950785865305018870 2025-07-31 05:30:42,JangPr0,md5,20b6d0b1f9b2bfa388510e35b7fece61,#APT,https://x.com/JangPr0/status/1950791209003425796 2025-07-31 05:58:01,Metemcyber,domain,etc-mentsav.dbqegb.cn,#phishing,https://x.com/Metemcyber/status/1950798080523042995 2025-07-31 05:58:01,Metemcyber,url,https://etc-mentsav.dbqegb.cn/Rfuncc1013000extfunc/,#phishing,https://x.com/Metemcyber/status/1950798080523042995 2025-07-31 05:58:01,Metemcyber,url,http://172.67.207.146,#phishing,https://x.com/Metemcyber/status/1950798080523042995 2025-07-31 05:58:01,Metemcyber,url,http://104.21.15.219,#phishing,https://x.com/Metemcyber/status/1950798080523042995 2025-07-31 06:06:57,Metemcyber,domain,eki-zonship.jmfore.cn,#phishing,https://x.com/Metemcyber/status/1950800330318651612 2025-07-31 06:06:57,Metemcyber,url,https://eki-zonship.jmfore.cn/Perosnal_member/,#phishing,https://x.com/Metemcyber/status/1950800330318651612 2025-07-31 06:06:57,Metemcyber,url,http://104.21.112.1,#phishing,https://x.com/Metemcyber/status/1950800330318651612 2025-07-31 06:19:11,Metemcyber,url,http://104.21.45.54,#phishing,https://x.com/Metemcyber/status/1950803408375439647 2025-07-31 06:19:11,Metemcyber,domain,mygas-sheati.caxahw.cn,#phishing,https://x.com/Metemcyber/status/1950803408375439647 2025-07-31 06:19:11,Metemcyber,url,http://172.67.210.77,#phishing,https://x.com/Metemcyber/status/1950803408375439647 2025-07-31 06:19:11,Metemcyber,url,https://mygas-sheati.caxahw.cn/mtgalogin/,#phishing,https://x.com/Metemcyber/status/1950803408375439647 2025-07-31 06:36:31,galkofahi,url,http://23.177.184.243:8080,#malware #opendir,https://x.com/galkofahi/status/1950807771496026215 2025-07-31 06:36:31,galkofahi,ip,23.177.184.243,#malware #opendir,https://x.com/galkofahi/status/1950807771496026215 2025-07-31 06:46:40,drb_ra,url,http://3.228.141.131:443,#Deimos #C2,https://x.com/drb_ra/status/1950810324648493070 2025-07-31 06:47:15,drb_ra,url,http://54.159.231.42:9601,#Deimos #C2,https://x.com/drb_ra/status/1950810472208298179 2025-07-31 06:47:15,drb_ra,ip,54.159.231.42,#Deimos #C2,https://x.com/drb_ra/status/1950810472208298179 2025-07-31 06:47:49,drb_ra,url,http://144.24.71.247:443,#Deimos #C2,https://x.com/drb_ra/status/1950810612801392664 2025-07-31 06:47:49,drb_ra,ip,144.24.71.247,#Deimos #C2,https://x.com/drb_ra/status/1950810612801392664 2025-07-31 06:48:22,drb_ra,ip,99.83.191.129,#Deimos #C2,https://x.com/drb_ra/status/1950810752656306642 2025-07-31 06:48:22,drb_ra,url,http://99.83.191.129:443,#Deimos #C2,https://x.com/drb_ra/status/1950810752656306642 2025-07-31 06:49:28,drb_ra,ip,144.34.226.54,#Deimos #C2,https://x.com/drb_ra/status/1950811030096916870 2025-07-31 06:49:28,drb_ra,url,http://144.34.226.54:36430,#Deimos #C2,https://x.com/drb_ra/status/1950811030096916870 2025-07-31 06:50:01,drb_ra,ip,34.238.232.4,#Mythic #C2,https://x.com/drb_ra/status/1950811169050046892 2025-07-31 06:50:01,drb_ra,url,http://34.238.232.4:443,#Mythic #C2,https://x.com/drb_ra/status/1950811169050046892 2025-07-31 06:50:34,drb_ra,url,http://138.124.123.107:7443,#Mythic #C2,https://x.com/drb_ra/status/1950811308078580148 2025-07-31 06:50:34,drb_ra,ip,138.124.123.107,#Mythic #C2,https://x.com/drb_ra/status/1950811308078580148 2025-07-31 06:51:08,drb_ra,url,http://117.247.198.235:31337,#Sliver #C2,https://x.com/drb_ra/status/1950811447497232568 2025-07-31 06:51:08,drb_ra,ip,117.247.198.235,#Sliver #C2,https://x.com/drb_ra/status/1950811447497232568 2025-07-31 06:51:41,drb_ra,url,http://123.163.223.199:40000,#Sliver #C2,https://x.com/drb_ra/status/1950811586773274874 2025-07-31 06:51:41,drb_ra,ip,123.163.223.199,#Sliver #C2,https://x.com/drb_ra/status/1950811586773274874 2025-07-31 06:52:14,drb_ra,ip,66.102.138.57,#Sliver #C2,https://x.com/drb_ra/status/1950811724463874516 2025-07-31 06:52:14,drb_ra,url,http://66.102.138.57:31337,#Sliver #C2,https://x.com/drb_ra/status/1950811724463874516 2025-07-31 06:52:48,drb_ra,ip,167.99.198.194,#Sliver #C2,https://x.com/drb_ra/status/1950811866717934058 2025-07-31 06:52:48,drb_ra,url,http://167.99.198.194:31337,#Sliver #C2,https://x.com/drb_ra/status/1950811866717934058 2025-07-31 06:53:21,drb_ra,url,http://134.122.79.159:443,#Sliver #C2,https://x.com/drb_ra/status/1950812005238997493 2025-07-31 06:53:21,drb_ra,ip,134.122.79.159,#Sliver #C2,https://x.com/drb_ra/status/1950812005238997493 2025-07-31 06:53:53,drb_ra,url,http://152.89.218.30:443,#Sliver #C2,https://x.com/drb_ra/status/1950812143143539016 2025-07-31 06:53:53,drb_ra,ip,152.89.218.30,#Sliver #C2,https://x.com/drb_ra/status/1950812143143539016 2025-07-31 06:54:27,drb_ra,url,http://216.126.225.57:443,#Sliver #C2,https://x.com/drb_ra/status/1950812283111612546 2025-07-31 06:55:00,drb_ra,url,http://216.126.225.57:31337,#Sliver #C2,https://x.com/drb_ra/status/1950812421020422224 2025-07-31 06:55:00,drb_ra,ip,216.126.225.57,#Sliver #C2,https://x.com/drb_ra/status/1950812421020422224 2025-07-31 06:57:34,drb_ra,ip,159.75.155.46,#C2,https://x.com/drb_ra/status/1950813067136114855 2025-07-31 06:57:34,drb_ra,url,http://159.75.155.46:4321,#C2,https://x.com/drb_ra/status/1950813067136114855 2025-07-31 06:58:07,drb_ra,url,http://34.38.216.20:443,#C2,https://x.com/drb_ra/status/1950813205975990712 2025-07-31 06:58:40,drb_ra,url,http://176.46.158.42:8808,#Remcos #C2,https://x.com/drb_ra/status/1950813344115359992 2025-07-31 06:59:13,drb_ra,url,http://176.46.158.42:2404,#Remcos #C2,https://x.com/drb_ra/status/1950813482485449177 2025-07-31 06:59:46,drb_ra,ip,176.46.158.42,#Remcos #C2,https://x.com/drb_ra/status/1950813621476380957 2025-07-31 06:59:46,drb_ra,url,http://176.46.158.42:443,#Remcos #C2,https://x.com/drb_ra/status/1950813621476380957 2025-07-31 07:00:19,drb_ra,url,http://216.9.224.52:2077,#Remcos #C2,https://x.com/drb_ra/status/1950813761608044704 2025-07-31 07:00:19,drb_ra,ip,216.9.224.52,#Remcos #C2,https://x.com/drb_ra/status/1950813761608044704 2025-07-31 07:00:52,drb_ra,url,http://147.124.223.67:2404,#Remcos #C2,https://x.com/drb_ra/status/1950813900712079659 2025-07-31 07:00:52,drb_ra,ip,147.124.223.67,#Remcos #C2,https://x.com/drb_ra/status/1950813900712079659 2025-07-31 07:01:26,drb_ra,ip,179.15.140.131,#Remcos #C2,https://x.com/drb_ra/status/1950814039845540249 2025-07-31 07:01:26,drb_ra,url,http://179.15.140.131:2404,#Remcos #C2,https://x.com/drb_ra/status/1950814039845540249 2025-07-31 07:01:59,drb_ra,ip,172.81.62.139,#Remcos #C2,https://x.com/drb_ra/status/1950814177842344077 2025-07-31 07:01:59,drb_ra,url,http://172.81.62.139:8888,#Remcos #C2,https://x.com/drb_ra/status/1950814177842344077 2025-07-31 07:02:32,drb_ra,url,http://185.241.208.170:2404,#Remcos #C2,https://x.com/drb_ra/status/1950814316921299005 2025-07-31 07:02:32,drb_ra,ip,185.241.208.170,#Remcos #C2,https://x.com/drb_ra/status/1950814316921299005 2025-07-31 07:03:05,drb_ra,url,http://104.36.83.75:2505,#C2 #Remcos,https://x.com/drb_ra/status/1950814455329145272 2025-07-31 07:03:05,drb_ra,ip,104.36.83.75,#C2 #Remcos,https://x.com/drb_ra/status/1950814455329145272 2025-07-31 07:03:38,drb_ra,ip,196.251.88.9,#C2 #Remcos,https://x.com/drb_ra/status/1950814593741095356 2025-07-31 07:03:38,drb_ra,url,http://196.251.88.9:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950814593741095356 2025-07-31 07:04:11,drb_ra,url,http://216.9.224.34:16090,#C2 #Remcos,https://x.com/drb_ra/status/1950814732916527550 2025-07-31 07:04:44,drb_ra,url,http://216.9.224.34:16070,#C2 #Remcos,https://x.com/drb_ra/status/1950814871047606459 2025-07-31 07:04:44,drb_ra,ip,216.9.224.34,#C2 #Remcos,https://x.com/drb_ra/status/1950814871047606459 2025-07-31 07:05:17,drb_ra,url,http://91.92.120.100:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950815010155802762 2025-07-31 07:05:17,drb_ra,ip,91.92.120.100,#C2 #Remcos,https://x.com/drb_ra/status/1950815010155802762 2025-07-31 07:05:50,drb_ra,url,http://128.90.113.153:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950815147905184238 2025-07-31 07:05:50,drb_ra,ip,128.90.113.153,#C2 #Remcos,https://x.com/drb_ra/status/1950815147905184238 2025-07-31 07:06:23,drb_ra,url,http://196.251.113.21:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950815286635974975 2025-07-31 07:06:23,drb_ra,ip,196.251.113.21,#C2 #Remcos,https://x.com/drb_ra/status/1950815286635974975 2025-07-31 07:06:56,drb_ra,url,http://179.14.11.248:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950815425056411746 2025-07-31 07:06:56,drb_ra,ip,179.14.11.248,#C2 #Remcos,https://x.com/drb_ra/status/1950815425056411746 2025-07-31 07:07:29,drb_ra,url,http://194.26.192.177:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950815563279647025 2025-07-31 07:07:29,drb_ra,ip,194.26.192.177,#C2 #Remcos,https://x.com/drb_ra/status/1950815563279647025 2025-07-31 07:08:02,drb_ra,ip,196.251.114.179,#C2 #Remcos,https://x.com/drb_ra/status/1950815701830156676 2025-07-31 07:08:02,drb_ra,url,http://196.251.114.179:5000,#C2 #Remcos,https://x.com/drb_ra/status/1950815701830156676 2025-07-31 07:08:35,drb_ra,url,http://185.143.228.159:9090,#C2 #Remcos,https://x.com/drb_ra/status/1950815840510619979 2025-07-31 07:08:35,drb_ra,ip,185.143.228.159,#C2 #Remcos,https://x.com/drb_ra/status/1950815840510619979 2025-07-31 07:09:08,drb_ra,ip,38.242.237.39,#C2 #Remcos,https://x.com/drb_ra/status/1950815979300175982 2025-07-31 07:09:08,drb_ra,url,http://38.242.237.39:2404,#C2 #Remcos,https://x.com/drb_ra/status/1950815979300175982 2025-07-31 07:09:41,drb_ra,ip,143.92.49.221,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950816117653447108 2025-07-31 07:09:41,drb_ra,url,http://143.92.49.221:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950816117653447108 2025-07-31 07:10:14,drb_ra,url,http://103.140.239.174:80,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950816257286013060 2025-07-31 07:10:14,drb_ra,ip,103.140.239.174,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1950816257286013060 2025-07-31 07:10:47,drb_ra,url,http://3.101.63.107:4840,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950816395941359916 2025-07-31 07:11:20,drb_ra,url,http://3.99.188.26:35547,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1950816534428836130 2025-07-31 07:11:53,drb_ra,url,http://45.10.244.209:7443,#C2 #Interactsh,https://x.com/drb_ra/status/1950816672115224640 2025-07-31 07:11:53,drb_ra,ip,45.10.244.209,#C2 #Interactsh,https://x.com/drb_ra/status/1950816672115224640 2025-07-31 07:12:26,drb_ra,url,http://151.115.78.120:443,#C2 #Interactsh,https://x.com/drb_ra/status/1950816810200101016 2025-07-31 07:12:59,drb_ra,url,http://151.115.78.120:80,#C2 #Interactsh,https://x.com/drb_ra/status/1950816948335391126 2025-07-31 07:13:32,drb_ra,url,http://151.115.78.120:25,#C2 #Interactsh,https://x.com/drb_ra/status/1950817086214738092 2025-07-31 07:14:05,drb_ra,url,http://151.115.78.120:587,#C2 #Interactsh,https://x.com/drb_ra/status/1950817224777777525 2025-07-31 07:14:05,drb_ra,ip,151.115.78.120,#C2 #Interactsh,https://x.com/drb_ra/status/1950817224777777525 2025-07-31 07:14:38,drb_ra,url,http://35.223.178.212:587,#C2 #Interactsh,https://x.com/drb_ra/status/1950817364066324777 2025-07-31 07:15:06,catnap707,url,http://172.67.182.4,#phishing,https://x.com/catnap707/status/1950817479875240386 2025-07-31 07:15:06,catnap707,url,http://yodobashi-citizen.hqoxfc.cn/login_index/,#phishing,https://x.com/catnap707/status/1950817479875240386 2025-07-31 07:15:06,catnap707,domain,yodobashi-citizen.hqoxfc.cn,#phishing,https://x.com/catnap707/status/1950817479875240386 2025-07-31 07:15:11,drb_ra,url,http://35.223.178.212:465,#C2 #Interactsh,https://x.com/drb_ra/status/1950817502872670646 2025-07-31 07:15:44,drb_ra,url,http://35.223.178.212:443,#C2 #Interactsh,https://x.com/drb_ra/status/1950817641712554300 2025-07-31 07:16:17,drb_ra,url,http://35.223.178.212:80,#C2 #Interactsh,https://x.com/drb_ra/status/1950817780527214594 2025-07-31 07:16:51,drb_ra,url,http://35.223.178.212:25,#C2 #Interactsh,https://x.com/drb_ra/status/1950817919501242816 2025-07-31 07:16:51,drb_ra,ip,35.223.178.212,#C2 #Interactsh,https://x.com/drb_ra/status/1950817919501242816 2025-07-31 07:17:24,drb_ra,url,http://101.126.151.38:8888,#C2 #Supershell,https://x.com/drb_ra/status/1950818057846194581 2025-07-31 07:17:24,drb_ra,ip,101.126.151.38,#C2 #Supershell,https://x.com/drb_ra/status/1950818057846194581 2025-07-31 07:17:57,drb_ra,url,http://23.27.169.64:9898,#C2 #Dcrat,https://x.com/drb_ra/status/1950818196803502269 2025-07-31 07:17:57,drb_ra,ip,23.27.169.64,#C2 #Dcrat,https://x.com/drb_ra/status/1950818196803502269 2025-07-31 07:18:30,drb_ra,url,http://149.109.82.24:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950818334653448438 2025-07-31 07:18:30,drb_ra,ip,149.109.82.24,#C2 #Qakbot,https://x.com/drb_ra/status/1950818334653448438 2025-07-31 07:19:03,drb_ra,url,http://5.163.185.134:995,#C2 #Qakbot,https://x.com/drb_ra/status/1950818472977478047 2025-07-31 07:19:36,drb_ra,ip,217.165.61.21,#C2 #Qakbot,https://x.com/drb_ra/status/1950818612152795424 2025-07-31 07:19:36,drb_ra,url,http://217.165.61.21:443,#C2 #Qakbot,https://x.com/drb_ra/status/1950818612152795424 2025-07-31 07:20:09,drb_ra,ip,20.171.239.168,#C2,https://x.com/drb_ra/status/1950818752590713258 2025-07-31 07:20:09,drb_ra,url,http://20.171.239.168:80,#C2,https://x.com/drb_ra/status/1950818752590713258 2025-07-31 07:20:42,drb_ra,ip,192.248.154.28,#C2,https://x.com/drb_ra/status/1950818890725908531 2025-07-31 07:20:42,drb_ra,url,http://192.248.154.28:443,#C2,https://x.com/drb_ra/status/1950818890725908531 2025-07-31 07:21:15,drb_ra,ip,35.180.135.155,#C2 #Havoc,https://x.com/drb_ra/status/1950819028366143974 2025-07-31 07:21:15,drb_ra,url,http://35.180.135.155:443,#C2 #Havoc,https://x.com/drb_ra/status/1950819028366143974 2025-07-31 07:21:48,drb_ra,url,http://3.212.35.166:443,#C2 #Deimos,https://x.com/drb_ra/status/1950819167289909698 2025-07-31 07:22:21,drb_ra,url,http://120.223.239.172:10250,#C2 #Deimos,https://x.com/drb_ra/status/1950819304808517777 2025-07-31 07:22:21,drb_ra,ip,120.223.239.172,#C2 #Deimos,https://x.com/drb_ra/status/1950819304808517777 2025-07-31 07:22:54,drb_ra,url,http://185.143.220.95:8384,#C2 #Deimos,https://x.com/drb_ra/status/1950819444130795543 2025-07-31 07:22:54,drb_ra,ip,185.143.220.95,#C2 #Deimos,https://x.com/drb_ra/status/1950819444130795543 2025-07-31 07:23:27,drb_ra,url,http://18.252.164.90:443,#Deimos #C2,https://x.com/drb_ra/status/1950819582983217255 2025-07-31 07:23:27,drb_ra,ip,18.252.164.90,#Deimos #C2,https://x.com/drb_ra/status/1950819582983217255 2025-07-31 07:24:00,drb_ra,url,http://75.2.13.64:443,#Deimos #C2,https://x.com/drb_ra/status/1950819721630060954 2025-07-31 07:24:00,drb_ra,ip,75.2.13.64,#Deimos #C2,https://x.com/drb_ra/status/1950819721630060954 2025-07-31 07:24:33,drb_ra,url,http://140.233.190.88:40008,#Deimos #C2,https://x.com/drb_ra/status/1950819860121879003 2025-07-31 07:24:33,drb_ra,ip,140.233.190.88,#Deimos #C2,https://x.com/drb_ra/status/1950819860121879003 2025-07-31 07:57:30,SaptangLabs,domain,tissotindustrie.com,#ransomware,https://x.com/SaptangLabs/status/1950828149127954777 2025-07-31 07:57:30,SaptangLabs,url,http://tissotindustrie.com,#ransomware,https://x.com/SaptangLabs/status/1950828149127954777 2025-07-31 08:00:08,urldna_bot,url,https://webmailnetplusrs.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950828811903181224 2025-07-31 08:00:08,urldna_bot,domain,webmailnetplusrs.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950828811903181224 2025-07-31 08:38:36,c9lab_soc,url,http://wordplay.ing,#scam #phishing,https://x.com/c9lab_soc/status/1950838494374617433 2025-07-31 08:38:36,c9lab_soc,domain,login-linkedin.com,#scam #phishing,https://x.com/c9lab_soc/status/1950838494374617433 2025-07-31 08:38:36,c9lab_soc,url,http://login-linkedin.com,#scam #phishing,https://x.com/c9lab_soc/status/1950838494374617433 2025-07-31 08:38:36,c9lab_soc,domain,wordplay.ing,#scam #phishing,https://x.com/c9lab_soc/status/1950838494374617433 2025-07-31 09:07:31,JAMESWT_WT,url,https://x.com/zerodayx1,#ransomware,https://x.com/JAMESWT_WT/status/1950845770879693267 2025-07-31 09:07:31,JAMESWT_WT,url,http://yywhylvqeqynzik6ibocb53o2nat7lmzn5ynjpar3stndzcgmy6dkgid.onion,#ransomware,https://x.com/JAMESWT_WT/status/1950845770879693267 2025-07-31 09:07:31,JAMESWT_WT,domain,yywhylvqeqynzik6ibocb53o2nat7lmzn5ynjpar3stndzcgmy6dkgid.onion,#ransomware,https://x.com/JAMESWT_WT/status/1950845770879693267 2025-07-31 09:21:47,galkofahi,domain,craxsrat-craxrat-craxsrats-craxs-rat-official.net,#RAT #malware,https://x.com/galkofahi/status/1950849361669214551 2025-07-31 09:21:47,galkofahi,url,http://craxsrat-craxrat-craxsrats-craxs-rat-official.net,#RAT #malware,https://x.com/galkofahi/status/1950849361669214551 2025-07-31 10:00:07,urldna_bot,domain,jeffersonfinancialmvn.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950859007070986422 2025-07-31 10:00:07,urldna_bot,url,https://jeffersonfinancialmvn.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1950859007070986422 2025-07-31 10:06:32,SedimentIV,domain,myxstalk.sbs,#phishing,https://x.com/SedimentIV/status/1950860621970366469 2025-07-31 10:06:32,SedimentIV,url,http://myxstalk.sbs,#phishing,https://x.com/SedimentIV/status/1950860621970366469 2025-07-31 10:19:31,suyog41,md5,e8f81d0347fcb14e53db86f79f7e66f9,#stealer,https://x.com/suyog41/status/1950863888943100111 2025-07-31 10:42:42,drb_ra,url,http://104.21.96.1:443,#C2,https://x.com/drb_ra/status/1950869723345735696 2025-07-31 10:43:15,drb_ra,url,http://104.21.96.1:80,#C2,https://x.com/drb_ra/status/1950869864148513093 2025-07-31 10:43:15,drb_ra,domain,server-web-cdn.vosax32455.workers.dev,#C2,https://x.com/drb_ra/status/1950869864148513093 2025-07-31 10:43:15,drb_ra,url,http://server-web-cdn.vosax32455.workers.dev,#C2,https://x.com/drb_ra/status/1950869864148513093 2025-07-31 10:48:41,ShadowChasing1,sha256,b008997d6b39af478ea4c661f474b4d6930f4d77caf747145690580c70354180,#APT,https://x.com/ShadowChasing1/status/1950871232636924412 2025-07-31 11:01:57,drb_ra,url,http://47.111.14.25:25941,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874569004208289 2025-07-31 11:01:57,drb_ra,ip,47.111.14.25,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874569004208289 2025-07-31 11:01:57,drb_ra,url,https://47.111.14.25/pixel.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874569004208289 2025-07-31 11:02:30,drb_ra,url,http://8.213.198.50:8081,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874708724912520 2025-07-31 11:03:04,drb_ra,ip,65.99.193.152,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874849271779799 2025-07-31 11:03:04,drb_ra,url,http://65.99.193.152:8088,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874849271779799 2025-07-31 11:03:37,drb_ra,url,http://142.171.168.59:2083,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874988921188732 2025-07-31 11:03:37,drb_ra,ip,142.171.168.59,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950874988921188732 2025-07-31 11:04:11,drb_ra,url,https://www.qlchacha.top/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875131300946196 2025-07-31 11:04:11,drb_ra,domain,qlchacha.top,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875131300946196 2025-07-31 11:04:11,drb_ra,ip,49.0.254.101,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875131300946196 2025-07-31 11:04:11,drb_ra,url,http://49.0.254.101:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875131300946196 2025-07-31 11:04:45,drb_ra,domain,web.d-you.uk,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875272040902868 2025-07-31 11:04:45,drb_ra,url,https://web.d-you.uk/resource/jquery.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875272040902868 2025-07-31 11:04:45,drb_ra,url,http://117.72.79.68:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875272040902868 2025-07-31 11:04:45,drb_ra,ip,117.72.79.68,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875272040902868 2025-07-31 11:05:18,drb_ra,url,http://47.83.202.108:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950875412252221732 2025-07-31 11:07:52,drb_ra,url,http://47.83.202.108:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950876060196749760 2025-07-31 11:07:52,drb_ra,ip,47.83.202.108,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950876060196749760 2025-07-31 11:18:30,drb_ra,ip,47.121.26.42,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950878735344767459 2025-07-31 11:18:30,drb_ra,url,http://47.121.26.42:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950878735344767459 2025-07-31 11:19:04,drb_ra,url,http://115.29.202.62:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950878875795267945 2025-07-31 11:19:04,drb_ra,ip,115.29.202.62,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950878875795267945 2025-07-31 12:00:11,urldna_bot,domain,zimbrafree1.godaddysites.com,#phishing #scam,https://x.com/urldna_bot/status/1950889222224609719 2025-07-31 12:00:11,urldna_bot,url,https://zimbrafree1.godaddysites.com,#phishing #scam,https://x.com/urldna_bot/status/1950889222224609719 2025-07-31 12:09:42,skocherhan,domain,lasoriodrens.com,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:09:42,skocherhan,ip,155.94.155.173,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:09:42,skocherhan,domain,asioklaydpory.com,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:09:42,skocherhan,url,http://asioklaydpory.com/work/,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:09:42,skocherhan,url,http://155.94.155.173,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:09:42,skocherhan,url,http://lasoriodrens.com/work/,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:09:42,skocherhan,ip,155.94.155.226,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:09:42,skocherhan,url,http://155.94.155.226,,https://x.com/skocherhan/status/1950891621337215269 2025-07-31 12:17:26,masaomi346,domain,zixroj.click,#phishing,https://x.com/masaomi346/status/1950893566345252922 2025-07-31 12:17:26,masaomi346,url,https://zixroj.click/plalaupdate25/Sites/index.html,#phishing,https://x.com/masaomi346/status/1950893566345252922 2025-07-31 12:21:13,skocherhan,domain,bardbig.my,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,stranlk.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,visctix.lol,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://stranlk.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,ip,45.61.165.8,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://visctix.lol,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://tuead.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://boxmc.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,iscouzfya.top,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://iscouzfya.top,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://hejwrgb.club,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://bardbig.my,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,tuead.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,hejwrgb.club,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,fritron.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,mocadia.com,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://45.61.165.8,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://ripenue.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,vishneviyjazz.ru,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,ripenue.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://fritron.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://vishneviyjazz.ru,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,wrenthu.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://wrenthu.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,mindlevqtg.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://mindlevqtg.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,domain,boxmc.xyz,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:13,skocherhan,url,http://mocadia.com,#Lumma,https://x.com/skocherhan/status/1950894519261475020 2025-07-31 12:21:27,skocherhan,ip,77.239.106.57,#Trojan,https://x.com/skocherhan/status/1950894576031474133 2025-07-31 12:21:27,skocherhan,ip,84.21.189.68,#Trojan,https://x.com/skocherhan/status/1950894576031474133 2025-07-31 13:03:05,suyog41,md5,377735661c0d5c333e29399b1c9b7d21,,https://x.com/suyog41/status/1950905054757892293 2025-07-31 13:03:05,suyog41,md5,061ca158a91bdfd03b702b64c86e5ac5,,https://x.com/suyog41/status/1950905054757892293 2025-07-31 13:03:05,suyog41,md5,efafbedccf69f98685d78dc1d8bb544b,,https://x.com/suyog41/status/1950905054757892293 2025-07-31 13:03:05,suyog41,md5,4fca1804b022996c7e2d26560c29cd11,,https://x.com/suyog41/status/1950905054757892293 2025-07-31 13:03:05,suyog41,md5,626493333e1ccaa1da20cc8ed808c64e,,https://x.com/suyog41/status/1950905054757892293 2025-07-31 13:12:08,JAMESWT_WT,ip,198.12.83.69,,https://x.com/JAMESWT_WT/status/1950907331278970979 2025-07-31 14:00:08,urldna_bot,domain,connectblockchains.web.app,#phishing #scam,https://x.com/urldna_bot/status/1950919409049960612 2025-07-31 14:00:08,urldna_bot,url,https://connectblockchains.web.app,#phishing #scam,https://x.com/urldna_bot/status/1950919409049960612 2025-07-31 14:25:36,skocherhan,domain,speake.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://portxo.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://ptyctdu.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://daubhmg.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,portxo.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,resigev.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,daubhmg.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://spirbjj.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://resigev.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://speake.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://evolftp.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,ptyctdu.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,evolftp.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,spirbjj.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://loostny.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,goldfih.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://goldfih.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://nonmoyj.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://lineqkd.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,lineqkd.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,wealy.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,loostny.lat,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,docugfe.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://docugfe.pics,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,domain,nonmoyj.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:25:36,skocherhan,url,http://wealy.lol,#Lumma,https://x.com/skocherhan/status/1950925819536199847 2025-07-31 14:32:41,FalconFeedsio,domain,v.tw,,https://x.com/FalconFeedsio/status/1950927600152437064 2025-07-31 14:32:41,FalconFeedsio,url,http://v.tw,,https://x.com/FalconFeedsio/status/1950927600152437064 2025-07-31 15:01:25,jh__1995,domain,5615e47XYZ.nxcli.io,#phishing,https://x.com/jh__1995/status/1950934834626408947 2025-07-31 15:01:25,jh__1995,url,http://5615e47XYZ.nxcli.io,#phishing,https://x.com/jh__1995/status/1950934834626408947 2025-07-31 15:01:25,jh__1995,domain,thelocpod.com,#phishing,https://x.com/jh__1995/status/1950934834626408947 2025-07-31 15:01:25,jh__1995,url,http://ff4a0a3XYZ.nxcli.io,#phishing,https://x.com/jh__1995/status/1950934834626408947 2025-07-31 15:01:25,jh__1995,url,https://thelocpod.com,#phishing,https://x.com/jh__1995/status/1950934834626408947 2025-07-31 15:01:25,jh__1995,domain,ff4a0a3XYZ.nxcli.io,#phishing,https://x.com/jh__1995/status/1950934834626408947 2025-07-31 15:23:33,drb_ra,url,http://47.236.130.154:53,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 15:23:33,drb_ra,ip,47.236.130.154,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 15:23:33,drb_ra,url,https://ns3.nsebseshop.cloud/v/741823546921,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 15:23:33,drb_ra,domain,ns3.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 15:23:33,drb_ra,url,https://ns2.nsebseshop.cloud/v/741823546921,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 15:23:33,drb_ra,domain,ns2.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 15:23:33,drb_ra,domain,ns1.nsebseshop.cloud,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 15:23:33,drb_ra,url,https://ns1.nsebseshop.cloud/v/741823546921,#CobaltStrike #C2,https://x.com/drb_ra/status/1950940401650504123 2025-07-31 16:00:09,urldna_bot,domain,gnav-8j0.s3.us-east-2.amazonaws.com,#phishing #scam,https://x.com/urldna_bot/status/1950949613386477951 2025-07-31 16:00:09,urldna_bot,url,http://gnav-8j0.s3.us-east-2.amazonaws.com/pinnav.html,#phishing #scam,https://x.com/urldna_bot/status/1950949613386477951 2025-07-31 16:10:28,drb_ra,url,http://18.136.205.188:801,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952209018933344 2025-07-31 16:10:28,drb_ra,ip,18.136.205.188,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952209018933344 2025-07-31 16:11:01,drb_ra,url,http://47.83.218.228:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952350408990821 2025-07-31 16:11:01,drb_ra,ip,47.83.218.228,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952350408990821 2025-07-31 16:11:35,drb_ra,url,http://43.138.22.149:8089,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952492860055849 2025-07-31 16:11:35,drb_ra,ip,43.138.22.149,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952492860055849 2025-07-31 16:12:09,drb_ra,url,https://192.168.52.150/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952633977483411 2025-07-31 16:12:09,drb_ra,url,http://107.172.140.211:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952633977483411 2025-07-31 16:12:09,drb_ra,ip,107.172.140.211,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950952633977483411 2025-07-31 16:14:44,drb_ra,ip,39.101.74.162,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950953283088007629 2025-07-31 16:14:44,drb_ra,url,http://39.101.74.162:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950953283088007629 2025-07-31 16:14:44,drb_ra,domain,musician.kugou.com,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950953283088007629 2025-07-31 16:14:44,drb_ra,url,https://musician.kugou.com/dist/css/bootstrap.min.css,#C2 #CobaltStrike,https://x.com/drb_ra/status/1950953283088007629 2025-07-31 16:40:23,skocherhan,sha256,eb5558d414c6f96efeb30db704734c463eb08758a3feacf452d743ba5f8fe662,,https://x.com/skocherhan/status/1950959739212345674 2025-07-31 16:51:28,skocherhan,domain,decently.hrstatefarm.pro,#phishing,https://x.com/skocherhan/status/1950962528915238993 2025-07-31 16:51:28,skocherhan,url,http://decently.hrstatefarm.pro/6SALYBlZ07SZ6XD/,#phishing,https://x.com/skocherhan/status/1950962528915238993 2025-07-31 17:00:42,ReBensk,md5,51cec87191ec324c6f946c493a86bc74,#malware #Android #Trojan,https://x.com/ReBensk/status/1950964851741978882 2025-07-31 17:04:45,skocherhan,url,http://smokesignal-pncb-h9cuhnfjgqf8cwh8.eastus2-01.azurewebsites.net,,https://x.com/skocherhan/status/1950965871431586126 2025-07-31 17:04:45,skocherhan,domain,smokesignal-pncb-h9cuhnfjgqf8cwh8.eastus2-01.azurewebsites.net,,https://x.com/skocherhan/status/1950965871431586126 2025-07-31 18:00:09,urldna_bot,domain,westneoouyr.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950979814157881395 2025-07-31 18:00:09,urldna_bot,url,https://westneoouyr.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1950979814157881395 2025-07-31 18:08:19,skocherhan,domain,afrilifehoney.com,#phishing,https://x.com/skocherhan/status/1950981868058202477 2025-07-31 18:08:19,skocherhan,url,http://afrilifehoney.com/wp-load.html,#phishing,https://x.com/skocherhan/status/1950981868058202477 2025-07-31 18:46:27,drb_ra,url,http://45.78.6.141:443,#C2 #Deimos,https://x.com/drb_ra/status/1950991466190270509 2025-07-31 18:46:27,drb_ra,ip,45.78.6.141,#C2 #Deimos,https://x.com/drb_ra/status/1950991466190270509 2025-07-31 18:47:01,drb_ra,url,http://8.209.214.148:8446,#C2 #Deimos,https://x.com/drb_ra/status/1950991605302747158 2025-07-31 18:47:33,drb_ra,url,http://176.123.2.6:7443,#C2 #Mythic,https://x.com/drb_ra/status/1950991743156977717 2025-07-31 18:47:33,drb_ra,ip,176.123.2.6,#C2 #Mythic,https://x.com/drb_ra/status/1950991743156977717 2025-07-31 18:48:07,drb_ra,url,http://143.198.144.177:7443,#C2 #Mythic,https://x.com/drb_ra/status/1950991882038698080 2025-07-31 18:48:07,drb_ra,ip,143.198.144.177,#C2 #Mythic,https://x.com/drb_ra/status/1950991882038698080 2025-07-31 18:48:39,drb_ra,ip,51.75.205.189,#C2 #Covenant,https://x.com/drb_ra/status/1950992019872162003 2025-07-31 18:48:39,drb_ra,url,http://51.75.205.189:8443,#C2 #Covenant,https://x.com/drb_ra/status/1950992019872162003 2025-07-31 18:49:12,drb_ra,url,http://158.247.241.219:443,#C2 #Sliver,https://x.com/drb_ra/status/1950992158216839464 2025-07-31 18:49:12,drb_ra,ip,158.247.241.219,#C2 #Sliver,https://x.com/drb_ra/status/1950992158216839464 2025-07-31 18:49:45,drb_ra,url,http://35.180.193.218:443,#C2 #Sliver,https://x.com/drb_ra/status/1950992296599539937 2025-07-31 18:49:45,drb_ra,ip,35.180.193.218,#C2 #Sliver,https://x.com/drb_ra/status/1950992296599539937 2025-07-31 18:50:18,drb_ra,url,http://123.56.160.155:13443,#C2 #Sliver,https://x.com/drb_ra/status/1950992434961195092 2025-07-31 18:50:18,drb_ra,ip,123.56.160.155,#C2 #Sliver,https://x.com/drb_ra/status/1950992434961195092 2025-07-31 18:52:52,drb_ra,url,http://24.255.243.54:2404,#Remcos #C2,https://x.com/drb_ra/status/1950993081299243377 2025-07-31 18:52:52,drb_ra,ip,24.255.243.54,#Remcos #C2,https://x.com/drb_ra/status/1950993081299243377 2025-07-31 18:53:26,drb_ra,url,http://88.214.59.189:2404,#Remcos #C2,https://x.com/drb_ra/status/1950993220923478083 2025-07-31 18:53:26,drb_ra,ip,88.214.59.189,#Remcos #C2,https://x.com/drb_ra/status/1950993220923478083 2025-07-31 18:53:59,drb_ra,ip,203.202.232.196,#Remcos #C2,https://x.com/drb_ra/status/1950993359696257457 2025-07-31 18:53:59,drb_ra,url,http://203.202.232.196:6374,#Remcos #C2,https://x.com/drb_ra/status/1950993359696257457 2025-07-31 18:54:32,drb_ra,url,http://196.251.117.47:5000,#Remcos #C2,https://x.com/drb_ra/status/1950993499626807791 2025-07-31 18:54:32,drb_ra,ip,196.251.117.47,#Remcos #C2,https://x.com/drb_ra/status/1950993499626807791 2025-07-31 18:55:05,drb_ra,ip,84.38.133.210,#Remcos #C2,https://x.com/drb_ra/status/1950993638420349123 2025-07-31 18:55:05,drb_ra,url,http://84.38.133.210:2404,#Remcos #C2,https://x.com/drb_ra/status/1950993638420349123 2025-07-31 18:55:38,drb_ra,url,http://101.126.148.104:3789,#Reverse_SSH #C2,https://x.com/drb_ra/status/1950993776949768432 2025-07-31 18:55:38,drb_ra,ip,101.126.148.104,#Reverse_SSH #C2,https://x.com/drb_ra/status/1950993776949768432 2025-07-31 18:56:11,drb_ra,url,http://15.157.71.70:18082,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950993915869331587 2025-07-31 18:56:45,drb_ra,ip,15.157.71.70,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994057318011349 2025-07-31 18:56:45,drb_ra,url,http://15.157.71.70:8082,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994057318011349 2025-07-31 18:57:19,drb_ra,url,http://34.247.188.220:6699,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994197583917394 2025-07-31 18:57:52,drb_ra,url,http://34.247.188.220:3299,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994335958286349 2025-07-31 18:57:52,drb_ra,ip,34.247.188.220,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994335958286349 2025-07-31 18:58:25,drb_ra,url,http://3.92.21.197:14548,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994475376923075 2025-07-31 18:58:58,drb_ra,url,http://109.195.115.106:3321,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994614384517209 2025-07-31 18:58:58,drb_ra,ip,109.195.115.106,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994614384517209 2025-07-31 18:59:31,drb_ra,ip,43.198.245.54,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994752607752431 2025-07-31 18:59:31,drb_ra,url,http://43.198.245.54:10699,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994752607752431 2025-07-31 19:00:04,drb_ra,ip,13.62.49.104,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994891724423432 2025-07-31 19:00:04,drb_ra,url,http://13.62.49.104:41795,#NetSupportRAT #C2,https://x.com/drb_ra/status/1950994891724423432 2025-07-31 19:00:37,drb_ra,url,http://3.253.35.244:80,#Interactsh #C2,https://x.com/drb_ra/status/1950995029935398928 2025-07-31 19:01:10,drb_ra,url,http://123.56.48.58:8888,#Supershell #C2,https://x.com/drb_ra/status/1950995168515014824 2025-07-31 19:01:10,drb_ra,ip,123.56.48.58,#Supershell #C2,https://x.com/drb_ra/status/1950995168515014824 2025-07-31 19:01:43,drb_ra,ip,85.143.217.68,#Deimos #C2,https://x.com/drb_ra/status/1950995306482467121 2025-07-31 19:01:43,drb_ra,url,http://85.143.217.68:8443,#Deimos #C2,https://x.com/drb_ra/status/1950995306482467121 2025-07-31 19:02:16,drb_ra,url,http://43.141.131.221:10250,#Deimos #C2,https://x.com/drb_ra/status/1950995445410369785 2025-07-31 19:02:16,drb_ra,ip,43.141.131.221,#Deimos #C2,https://x.com/drb_ra/status/1950995445410369785 2025-07-31 19:02:49,drb_ra,url,http://192.9.150.144:443,#Deimos #C2,https://x.com/drb_ra/status/1950995584350888195 2025-07-31 19:02:49,drb_ra,ip,192.9.150.144,#Deimos #C2,https://x.com/drb_ra/status/1950995584350888195 2025-07-31 19:03:22,drb_ra,url,http://18.252.157.156:443,#Deimos #C2,https://x.com/drb_ra/status/1950995722863558778 2025-07-31 19:03:22,drb_ra,ip,18.252.157.156,#Deimos #C2,https://x.com/drb_ra/status/1950995722863558778 2025-07-31 19:13:09,skocherhan,domain,docsignauthorizationpoint.regmil.cyou,#phishing,https://x.com/skocherhan/status/1950998182126813487 2025-07-31 19:13:09,skocherhan,url,http://docsignauthorizationpoint.regmil.cyou/doc/viewpoint,#phishing,https://x.com/skocherhan/status/1950998182126813487 2025-07-31 19:15:49,1ZRR4H,ip,84.21.189.133,,https://x.com/1ZRR4H/status/1950998856549736510 2025-07-31 19:16:01,drb_ra,ip,210.79.155.133,#CobaltStrike #C2,https://x.com/drb_ra/status/1950998906877386921 2025-07-31 19:16:01,drb_ra,url,http://210.79.155.133:8000,#CobaltStrike #C2,https://x.com/drb_ra/status/1950998906877386921 2025-07-31 19:17:52,1ZRR4H,sha256,14e6171511d17cca3b66efc7cc9a63eab66fd529445b33d071d8ef4a45e0172a,,https://x.com/1ZRR4H/status/1950999369303425192 2025-07-31 19:17:52,1ZRR4H,url,http://praise-ambien-infected-inform.trycloudflare.com/second.html,,https://x.com/1ZRR4H/status/1950999369303425192 2025-07-31 19:17:52,1ZRR4H,url,http://vvindowsupdate.org/Cisco-AnyConnect-win-4.11.msi,,https://x.com/1ZRR4H/status/1950999369303425192 2025-07-31 19:17:52,1ZRR4H,domain,vvindowsupdate.org,,https://x.com/1ZRR4H/status/1950999369303425192 2025-07-31 19:17:52,1ZRR4H,domain,praise-ambien-infected-inform.trycloudflare.com,,https://x.com/1ZRR4H/status/1950999369303425192 2025-07-31 19:34:01,skocherhan,url,http://104.206.82.44,,https://x.com/skocherhan/status/1951003436226585064 2025-07-31 19:34:01,skocherhan,domain,ghczyzsttmudspezbhnmcwiv.com,,https://x.com/skocherhan/status/1951003436226585064 2025-07-31 19:34:01,skocherhan,url,http://ghczyzsttmudspezbhnmcwiv.com,,https://x.com/skocherhan/status/1951003436226585064 2025-07-31 19:34:01,skocherhan,ip,104.206.82.44,,https://x.com/skocherhan/status/1951003436226585064 2025-07-31 19:39:05,skocherhan,domain,manageswiftuberthe-file.top,#phishing,https://x.com/skocherhan/status/1951004708207759745 2025-07-31 19:39:05,skocherhan,url,http://manageswiftuberthe-file.top/4FitZop346oaRoxIaKETo0RUD4zbs_e8cOL9OgTH7wk/?cn_par2=540092&cn_par3=fec9db8509054821b929237bb313aafe&cn_par1=2F78NK7,#phishing,https://x.com/skocherhan/status/1951004708207759745 2025-07-31 19:39:05,skocherhan,md5,fec9db8509054821b929237bb313aafe,#phishing,https://x.com/skocherhan/status/1951004708207759745 2025-07-31 20:00:09,urldna_bot,domain,onlineadminshaw1mail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1951010013046063226 2025-07-31 20:00:09,urldna_bot,url,https://onlineadminshaw1mail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1951010013046063226 2025-07-31 21:00:04,threatquery,url,http://85.143.217.68,#C2 #malware,https://x.com/threatquery/status/1951025088653828176 2025-07-31 21:00:04,threatquery,url,http://8.209.214.148,#C2 #malware,https://x.com/threatquery/status/1951025090461593988 2025-07-31 21:00:18,SarlackLab,url,http://147.185.221.30:44132,#C2 #Njrat,https://x.com/SarlackLab/status/1951025147034353744 2025-07-31 21:00:18,SarlackLab,domain,lower-sam.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1951025147034353744 2025-07-31 21:00:18,SarlackLab,url,http://lower-sam.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1951025147034353744 2025-07-31 21:00:18,SarlackLab,ip,147.185.221.30,#C2 #Njrat,https://x.com/SarlackLab/status/1951025147034353744 2025-07-31 21:49:47,s3curetheweb,domain,auth-facebook-zh-hk.weebly.com,#phishing,https://x.com/s3curetheweb/status/1951037602200477706 2025-07-31 21:49:47,s3curetheweb,url,https://auth-facebook-zh-hk.weebly.com,#phishing,https://x.com/s3curetheweb/status/1951037602200477706 2025-07-31 21:53:11,skocherhan,url,http://103.255.237.10/login.php,,https://x.com/skocherhan/status/1951038455829373025 2025-07-31 21:53:11,skocherhan,ip,103.255.237.10,,https://x.com/skocherhan/status/1951038455829373025 2025-07-31 21:59:27,skocherhan,domain,fra1.digitaloceanspaces.com,#phishing,https://x.com/skocherhan/status/1951040033969799604 2025-07-31 21:59:27,skocherhan,url,http://fra1.digitaloceanspaces.com/docu-sign31072025xgue379390docu0388390secured83082/docu.html,#phishing,https://x.com/skocherhan/status/1951040033969799604 2025-07-31 22:00:05,urldna_bot,url,http://v1-ledgerlive.netlify.app,#scam #phishing,https://x.com/urldna_bot/status/1951040196100620342 2025-07-31 22:00:05,urldna_bot,domain,v1-ledgerlive.netlify.app,#scam #phishing,https://x.com/urldna_bot/status/1951040196100620342 2025-07-31 22:00:20,SarlackLab,url,http://vemvemserver.duckdns.org,#Njrat #C2,https://x.com/SarlackLab/status/1951040256095965351 2025-07-31 22:00:20,SarlackLab,ip,192.169.69.25,#Njrat #C2,https://x.com/SarlackLab/status/1951040256095965351 2025-07-31 22:00:20,SarlackLab,url,http://192.169.69.25:52132,#Njrat #C2,https://x.com/SarlackLab/status/1951040256095965351 2025-07-31 22:00:20,SarlackLab,domain,vemvemserver.duckdns.org,#Njrat #C2,https://x.com/SarlackLab/status/1951040256095965351 2025-07-31 22:12:51,skocherhan,url,http://uniccshop.su,,https://x.com/skocherhan/status/1951043405166825965 2025-07-31 22:12:51,skocherhan,url,http://93.95.226.202,,https://x.com/skocherhan/status/1951043405166825965 2025-07-31 22:12:51,skocherhan,domain,uniccshop.su,,https://x.com/skocherhan/status/1951043405166825965 2025-07-31 22:12:51,skocherhan,ip,93.95.226.202,,https://x.com/skocherhan/status/1951043405166825965 2025-07-31 22:14:15,skocherhan,domain,briansclub.work,,https://x.com/skocherhan/status/1951043758297858160 2025-07-31 22:14:15,skocherhan,url,http://briansclub.work/login.php,,https://x.com/skocherhan/status/1951043758297858160 2025-07-31 22:24:41,skocherhan,url,http://89.116.133.168,,https://x.com/skocherhan/status/1951046383571509674 2025-07-31 22:24:41,skocherhan,ip,89.116.133.168,,https://x.com/skocherhan/status/1951046383571509674 2025-07-31 22:26:05,skocherhan,url,http://web.archive.org/web/*/chatgpt.com/share/*,,https://x.com/skocherhan/status/1951046737700811023 2025-07-31 22:31:34,masaomi346,domain,ae1db4.top,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,url,https://ae1db4.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,domain,bc1xdy.top,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,url,https://bc1xdy.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,domain,fy2hsd.top,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,url,https://fy2hsd.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,domain,gk1niq.top,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,url,https://gk1niq.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,domain,i9kdjk.top,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,url,https://i9kdjk.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,domain,qj1ili.top,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,url,https://qj1ili.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,domain,xk0dvf.top,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:31:34,masaomi346,url,https://xk0dvf.top/EvVfglLOg/,#phishing,https://x.com/masaomi346/status/1951048116020584473 2025-07-31 22:39:13,skocherhan,domain,pub-01c3d3d13dcc4aaa9e7f2f736299e065.r2.dev,#phishing,https://x.com/skocherhan/status/1951050043055624576 2025-07-31 22:39:13,skocherhan,url,http://pub-01c3d3d13dcc4aaa9e7f2f736299e065.r2.dev/doll1.html,#phishing,https://x.com/skocherhan/status/1951050043055624576 2025-07-31 22:39:13,skocherhan,domain,djda-rick.com,#phishing,https://x.com/skocherhan/status/1951050043055624576 2025-07-31 22:39:13,skocherhan,url,http://djda-rick.com,#phishing,https://x.com/skocherhan/status/1951050043055624576 2025-07-31 22:39:13,skocherhan,md5,01c3d3d13dcc4aaa9e7f2f736299e065,#phishing,https://x.com/skocherhan/status/1951050043055624576 2025-08-01 00:00:11,urldna_bot,domain,zmwe.nhsaportal.com,#scam #phishing,https://x.com/urldna_bot/status/1951070419319963794 2025-08-01 00:00:11,urldna_bot,url,https://zmwe.nhsaportal.com,#scam #phishing,https://x.com/urldna_bot/status/1951070419319963794 2025-08-01 01:32:44,Metemcyber,domain,fishnew.cn,#phishing,https://x.com/Metemcyber/status/1951093708847534504 2025-08-01 01:32:44,Metemcyber,url,https://fishnew.cn,#phishing,https://x.com/Metemcyber/status/1951093708847534504 2025-08-01 01:32:44,Metemcyber,domain,nunshang.cn,#phishing,https://x.com/Metemcyber/status/1951093708847534504 2025-08-01 01:32:44,Metemcyber,url,https://nunshang.cn,#phishing,https://x.com/Metemcyber/status/1951093708847534504 2025-08-01 01:32:44,Metemcyber,domain,fggbutf.cn,#phishing,https://x.com/Metemcyber/status/1951093708847534504 2025-08-01 01:32:44,Metemcyber,url,https://fggbutf.cn,#phishing,https://x.com/Metemcyber/status/1951093708847534504 2025-08-01 01:33:01,Metemcyber,url,https://hmdpqhf.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:01,Metemcyber,domain,hmdpqhf.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:01,Metemcyber,domain,dmnopq.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:01,Metemcyber,url,https://dmnopq.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:01,Metemcyber,url,https://knewlog.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:01,Metemcyber,url,https://eyyonline.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:01,Metemcyber,domain,knewlog.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:01,Metemcyber,domain,eyyonline.cn,#phishing,https://x.com/Metemcyber/status/1951093778590343640 2025-08-01 01:33:19,Metemcyber,domain,viwcr.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:19,Metemcyber,url,https://vrblv.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:19,Metemcyber,url,https://viwcr.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:19,Metemcyber,domain,vrblv.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:19,Metemcyber,url,https://liuzhikun.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:19,Metemcyber,url,https://laiyeling.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:19,Metemcyber,domain,liuzhikun.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:19,Metemcyber,domain,laiyeling.cn,#phishing,https://x.com/Metemcyber/status/1951093854121447706 2025-08-01 01:33:36,Metemcyber,url,https://fubolai.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:36,Metemcyber,domain,duolalife.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:36,Metemcyber,domain,fubolai.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:36,Metemcyber,url,https://duolalife.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:36,Metemcyber,domain,fananba.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:36,Metemcyber,url,https://fananba.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:36,Metemcyber,url,https://hbzhigu.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:36,Metemcyber,domain,hbzhigu.cn,#phishing,https://x.com/Metemcyber/status/1951093928092114991 2025-08-01 01:33:54,Metemcyber,url,https://geagent.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:33:54,Metemcyber,url,https://pqrsxyz.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:33:54,Metemcyber,domain,pqrsxyz.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:33:54,Metemcyber,domain,geagent.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:33:54,Metemcyber,domain,lihuawang.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:33:54,Metemcyber,url,https://lihuawang.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:33:54,Metemcyber,url,https://fppzj.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:33:54,Metemcyber,domain,fppzj.cn,#phishing,https://x.com/Metemcyber/status/1951094000943042932 2025-08-01 01:34:12,Metemcyber,domain,klkpobh.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:12,Metemcyber,url,https://klkpobh.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:12,Metemcyber,url,https://xvelc.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:12,Metemcyber,domain,xvelc.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:12,Metemcyber,url,https://erqhism.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:12,Metemcyber,domain,hackwps.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:12,Metemcyber,url,https://hackwps.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:12,Metemcyber,domain,erqhism.cn,#phishing,https://x.com/Metemcyber/status/1951094076377538652 2025-08-01 01:34:25,Metemcyber,url,http://43.167.237.204,#phishing,https://x.com/Metemcyber/status/1951094132887396623 2025-08-01 01:34:25,Metemcyber,url,https://zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1951094132887396623 2025-08-01 01:34:25,Metemcyber,domain,zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1951094132887396623 2025-08-01 01:34:25,Metemcyber,ip,43.167.237.204,#phishing,https://x.com/Metemcyber/status/1951094132887396623 2025-08-01 02:00:07,urldna_bot,url,https://eblagheee.xlphp.net,#scam #phishing,https://x.com/urldna_bot/status/1951100602458542361 2025-08-01 02:00:07,urldna_bot,domain,eblagheee.xlphp.net,#scam #phishing,https://x.com/urldna_bot/status/1951100602458542361 2025-08-01 02:04:49,Metemcyber,url,https://au4dfa.top/7gy56s2H/,#phishing,https://x.com/Metemcyber/status/1951101785231466880 2025-08-01 02:04:49,Metemcyber,domain,au4dfa.top,#phishing,https://x.com/Metemcyber/status/1951101785231466880 2025-08-01 02:04:49,Metemcyber,ip,43.165.186.152,#phishing,https://x.com/Metemcyber/status/1951101785231466880 2025-08-01 02:04:49,Metemcyber,url,http://43.165.186.152,#phishing,https://x.com/Metemcyber/status/1951101785231466880 2025-08-01 02:19:05,Metemcyber,url,http://172.67.195.22,#phishing,https://x.com/Metemcyber/status/1951105373378846823 2025-08-01 02:19:05,Metemcyber,url,https://monex-jp.mt-baidu.com/support/,#phishing,https://x.com/Metemcyber/status/1951105373378846823 2025-08-01 02:19:05,Metemcyber,domain,monex-jp.mt-baidu.com,#phishing,https://x.com/Metemcyber/status/1951105373378846823 2025-08-01 02:19:05,Metemcyber,url,http://104.21.44.49,#phishing,https://x.com/Metemcyber/status/1951105373378846823 2025-08-01 04:00:10,urldna_bot,domain,fyrtheupwyj.web.app,#phishing #scam,https://x.com/urldna_bot/status/1951130811706548471 2025-08-01 04:00:10,urldna_bot,url,https://fyrtheupwyj.web.app,#phishing #scam,https://x.com/urldna_bot/status/1951130811706548471 2025-08-01 04:18:27,fbgwls245,domain,ooie6tet7ggcmlgvtmyvok4s6vha6ecwczssbchbyxrg2r6v2m6zkkad.onion,#ransomware,https://x.com/fbgwls245/status/1951135414070419506 2025-08-01 04:18:27,fbgwls245,url,http://ooie6tet7ggcmlgvtmyvok4s6vha6ecwczssbchbyxrg2r6v2m6zkkad.onion,#ransomware,https://x.com/fbgwls245/status/1951135414070419506 2025-08-01 04:36:24,JAMESWT_WT,url,http://praise-ambien-infected-inform.trycloudflare.com/second.html,,https://x.com/JAMESWT_WT/status/1951139928777150692 2025-08-01 04:36:24,JAMESWT_WT,domain,praise-ambien-infected-inform.trycloudflare.com,,https://x.com/JAMESWT_WT/status/1951139928777150692 2025-08-01 04:36:24,JAMESWT_WT,url,http://vvindowsupdate.org/Cisco-AnyConnect-win-4.11.msi,,https://x.com/JAMESWT_WT/status/1951139928777150692 2025-08-01 04:36:24,JAMESWT_WT,domain,vvindowsupdate.org,,https://x.com/JAMESWT_WT/status/1951139928777150692 2025-08-01 04:36:24,JAMESWT_WT,sha256,14e6171511d17cca3b66efc7cc9a63eab66fd529445b33d071d8ef4a45e0172a,,https://x.com/JAMESWT_WT/status/1951139928777150692 2025-08-01 06:00:08,urldna_bot,url,https://officialliker.co,#scam #phishing,https://x.com/urldna_bot/status/1951161002684235795 2025-08-01 06:00:08,urldna_bot,domain,officialliker.co,#scam #phishing,https://x.com/urldna_bot/status/1951161002684235795 2025-08-01 06:08:03,Metemcyber,url,http://47.239.169.128,#phishing,https://x.com/Metemcyber/status/1951162994811085260 2025-08-01 06:08:03,Metemcyber,domain,gl21gf.top,#phishing,https://x.com/Metemcyber/status/1951162994811085260 2025-08-01 06:08:03,Metemcyber,url,https://gl21gf.top/appelug/,#phishing,https://x.com/Metemcyber/status/1951162994811085260 2025-08-01 06:08:03,Metemcyber,ip,47.239.169.128,#phishing,https://x.com/Metemcyber/status/1951162994811085260 2025-08-01 06:17:25,Metemcyber,domain,f0meuc.top,#phishing,https://x.com/Metemcyber/status/1951165351238180892 2025-08-01 06:17:25,Metemcyber,url,https://f0meuc.top/EvVfglLOg/,#phishing,https://x.com/Metemcyber/status/1951165351238180892 2025-08-01 06:17:35,ReBensk,md5,3e2512be2fe26790b3a370051e96999a,#Android #Trojan #malware,https://x.com/ReBensk/status/1951165394489864621 2025-08-01 06:20:36,ReBensk,md5,0cf8f4e13f168ac1ec0421af5945c5a3,#Android #Trojan #malware,https://x.com/ReBensk/status/1951166151876329557 2025-08-01 06:26:09,Metemcyber,url,https://v2t4zy.top/EvVfglLOg/,#phishing,https://x.com/Metemcyber/status/1951167550680866952 2025-08-01 06:26:09,Metemcyber,domain,v2t4zy.top,#phishing,https://x.com/Metemcyber/status/1951167550680866952 2025-08-01 06:26:09,Metemcyber,url,http://104.21.16.1,#phishing,https://x.com/Metemcyber/status/1951167550680866952 2025-08-01 06:26:09,Metemcyber,url,http://104.21.112.1,#phishing,https://x.com/Metemcyber/status/1951167550680866952 2025-08-01 06:26:09,Metemcyber,url,http://104.21.48.1,#phishing,https://x.com/Metemcyber/status/1951167550680866952 2025-08-01 06:26:09,Metemcyber,url,http://104.21.32.1,#phishing,https://x.com/Metemcyber/status/1951167550680866952 2025-08-01 06:45:51,drb_ra,ip,84.200.77.114,#Sliver #C2,https://x.com/drb_ra/status/1951172508415049892 2025-08-01 06:45:51,drb_ra,url,http://84.200.77.114:31337,#Sliver #C2,https://x.com/drb_ra/status/1951172508415049892 2025-08-01 06:46:24,drb_ra,url,http://77.110.123.63:31337,#Sliver #C2,https://x.com/drb_ra/status/1951172645967323634 2025-08-01 06:46:24,drb_ra,ip,77.110.123.63,#Sliver #C2,https://x.com/drb_ra/status/1951172645967323634 2025-08-01 06:46:57,drb_ra,ip,85.9.205.40,#Sliver #C2,https://x.com/drb_ra/status/1951172784282894463 2025-08-01 06:46:57,drb_ra,url,http://85.9.205.40:443,#Sliver #C2,https://x.com/drb_ra/status/1951172784282894463 2025-08-01 06:47:30,drb_ra,ip,123.163.206.136,#Sliver #C2,https://x.com/drb_ra/status/1951172924456518076 2025-08-01 06:47:30,drb_ra,url,http://123.163.206.136:40000,#Sliver #C2,https://x.com/drb_ra/status/1951172924456518076 2025-08-01 06:50:05,drb_ra,ip,16.24.70.88,#NetSupportRAT #C2,https://x.com/drb_ra/status/1951173572728148042 2025-08-01 06:50:05,drb_ra,url,http://16.24.70.88:7170,#NetSupportRAT #C2,https://x.com/drb_ra/status/1951173572728148042 2025-08-01 06:50:38,drb_ra,url,http://13.247.60.219:55615,#NetSupportRAT #C2,https://x.com/drb_ra/status/1951173710947217493 2025-08-01 06:50:39,suyog41,md5,5aa109e379e15bcc885e4cd114878fb9,#stealer,https://x.com/suyog41/status/1951173713715667054 2025-08-01 06:51:11,drb_ra,url,http://13.247.60.219:25565,#NetSupportRAT #C2,https://x.com/drb_ra/status/1951173850437234898 2025-08-01 06:51:11,drb_ra,ip,13.247.60.219,#NetSupportRAT #C2,https://x.com/drb_ra/status/1951173850437234898 2025-08-01 06:51:44,drb_ra,url,http://5.226.191.18:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1951173989302411424 2025-08-01 06:52:17,drb_ra,ip,147.93.177.187,#AsyncRAT #C2,https://x.com/drb_ra/status/1951174126711762988 2025-08-01 06:52:17,drb_ra,url,http://147.93.177.187:45500,#AsyncRAT #C2,https://x.com/drb_ra/status/1951174126711762988 2025-08-01 06:52:50,drb_ra,url,http://147.182.145.138:80,#Interactsh #C2,https://x.com/drb_ra/status/1951174266336190528 2025-08-01 06:53:23,drb_ra,ip,147.182.145.138,#Interactsh #C2,https://x.com/drb_ra/status/1951174403439440104 2025-08-01 06:53:23,drb_ra,url,http://147.182.145.138:25,#Interactsh #C2,https://x.com/drb_ra/status/1951174403439440104 2025-08-01 06:53:56,drb_ra,url,http://83.217.220.229:443,#Interactsh #C2,https://x.com/drb_ra/status/1951174542363337184 2025-08-01 06:54:29,drb_ra,url,http://83.217.220.229:80,#Interactsh #C2,https://x.com/drb_ra/status/1951174679751688273 2025-08-01 06:54:29,drb_ra,ip,83.217.220.229,#Interactsh #C2,https://x.com/drb_ra/status/1951174679751688273 2025-08-01 06:55:02,drb_ra,url,http://93.127.142.157:80,#Hookbot #Pegasus #C2,https://x.com/drb_ra/status/1951174819107520782 2025-08-01 06:55:02,drb_ra,ip,93.127.142.157,#Hookbot #Pegasus #C2,https://x.com/drb_ra/status/1951174819107520782 2025-08-01 06:55:36,drb_ra,url,http://162.213.249.133:4000,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1951174960048906267 2025-08-01 06:55:36,drb_ra,ip,162.213.249.133,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1951174960048906267 2025-08-01 06:56:08,drb_ra,url,http://124.221.221.58:8888,#Supershell #C2,https://x.com/drb_ra/status/1951175096694899094 2025-08-01 06:56:08,drb_ra,ip,124.221.221.58,#Supershell #C2,https://x.com/drb_ra/status/1951175096694899094 2025-08-01 06:56:42,drb_ra,url,http://103.233.8.39:8888,#Supershell #C2,https://x.com/drb_ra/status/1951175237183189193 2025-08-01 06:56:42,drb_ra,ip,103.233.8.39,#Supershell #C2,https://x.com/drb_ra/status/1951175237183189193 2025-08-01 06:57:15,drb_ra,url,http://34.242.71.219:445,#C2,https://x.com/drb_ra/status/1951175376392339947 2025-08-01 06:57:15,drb_ra,ip,34.242.71.219,#C2,https://x.com/drb_ra/status/1951175376392339947 2025-08-01 06:57:48,drb_ra,ip,147.182.244.59,#C2,https://x.com/drb_ra/status/1951175513759723629 2025-08-01 06:57:48,drb_ra,url,http://147.182.244.59:443,#C2,https://x.com/drb_ra/status/1951175513759723629 2025-08-01 06:58:21,drb_ra,ip,137.59.231.46,#C2,https://x.com/drb_ra/status/1951175655040684283 2025-08-01 06:58:21,drb_ra,url,http://137.59.231.46:40181,#C2,https://x.com/drb_ra/status/1951175655040684283 2025-08-01 06:58:55,drb_ra,ip,202.71.14.166,#Havoc #C2,https://x.com/drb_ra/status/1951175795738812786 2025-08-01 06:58:55,drb_ra,url,http://202.71.14.166:443,#Havoc #C2,https://x.com/drb_ra/status/1951175795738812786 2025-08-01 06:59:29,drb_ra,ip,143.198.91.116,#Havoc #C2,https://x.com/drb_ra/status/1951175940467306905 2025-08-01 06:59:29,drb_ra,url,http://143.198.91.116:8080,#Havoc #C2,https://x.com/drb_ra/status/1951175940467306905 2025-08-01 07:00:03,drb_ra,ip,82.153.138.122,#Havoc #C2,https://x.com/drb_ra/status/1951176080737574967 2025-08-01 07:00:03,drb_ra,url,http://82.153.138.122:443,#Havoc #C2,https://x.com/drb_ra/status/1951176080737574967 2025-08-01 07:00:36,drb_ra,url,http://16.171.254.61:443,#Havoc #C2,https://x.com/drb_ra/status/1951176220076560486 2025-08-01 07:00:36,drb_ra,ip,16.171.254.61,#Havoc #C2,https://x.com/drb_ra/status/1951176220076560486 2025-08-01 07:01:09,drb_ra,url,http://31.57.63.237:443,#Havoc #C2,https://x.com/drb_ra/status/1951176358257700997 2025-08-01 07:01:09,drb_ra,ip,31.57.63.237,#Havoc #C2,https://x.com/drb_ra/status/1951176358257700997 2025-08-01 07:01:42,drb_ra,url,http://66.63.187.17:443,#Havoc #C2,https://x.com/drb_ra/status/1951176497340748128 2025-08-01 07:01:42,drb_ra,ip,66.63.187.17,#Havoc #C2,https://x.com/drb_ra/status/1951176497340748128 2025-08-01 07:02:16,drb_ra,url,http://18.143.195.26:443,#Bianlian #C2,https://x.com/drb_ra/status/1951176639771017379 2025-08-01 07:02:16,drb_ra,ip,18.143.195.26,#Bianlian #C2,https://x.com/drb_ra/status/1951176639771017379 2025-08-01 07:02:49,drb_ra,ip,54.244.234.231,#C2 #Deimos,https://x.com/drb_ra/status/1951176777742610749 2025-08-01 07:02:49,drb_ra,url,http://54.244.234.231:443,#C2 #Deimos,https://x.com/drb_ra/status/1951176777742610749 2025-08-01 07:03:22,drb_ra,ip,45.55.67.75,#Mythic #C2,https://x.com/drb_ra/status/1951176916448473430 2025-08-01 07:03:22,drb_ra,url,http://45.55.67.75:7443,#Mythic #C2,https://x.com/drb_ra/status/1951176916448473430 2025-08-01 07:03:55,drb_ra,url,http://102.117.172.39:7443,#Mythic #C2,https://x.com/drb_ra/status/1951177055112143040 2025-08-01 07:03:55,drb_ra,ip,102.117.172.39,#Mythic #C2,https://x.com/drb_ra/status/1951177055112143040 2025-08-01 07:04:28,drb_ra,ip,57.182.176.173,#C2 #Brute_Ratel_C4,https://x.com/drb_ra/status/1951177192429531403 2025-08-01 07:04:28,drb_ra,url,http://57.182.176.173:80,#C2 #Brute_Ratel_C4,https://x.com/drb_ra/status/1951177192429531403 2025-08-01 07:05:01,drb_ra,url,http://108.61.205.235:8443,#Sliver #C2,https://x.com/drb_ra/status/1951177332330246165 2025-08-01 07:05:01,drb_ra,ip,108.61.205.235,#Sliver #C2,https://x.com/drb_ra/status/1951177332330246165 2025-08-01 07:05:34,drb_ra,url,http://38.47.120.26:31337,#Sliver #C2,https://x.com/drb_ra/status/1951177471161933848 2025-08-01 07:05:34,drb_ra,ip,38.47.120.26,#Sliver #C2,https://x.com/drb_ra/status/1951177471161933848 2025-08-01 07:08:08,drb_ra,ip,144.172.122.100,#C2,https://x.com/drb_ra/status/1951178116467958019 2025-08-01 07:08:08,drb_ra,url,http://144.172.122.100:8443,#C2,https://x.com/drb_ra/status/1951178116467958019 2025-08-01 07:08:41,drb_ra,ip,72.10.134.202,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1951178252728332642 2025-08-01 07:08:41,drb_ra,url,http://72.10.134.202:8888,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1951178252728332642 2025-08-01 07:09:14,drb_ra,ip,37.221.66.178,#C2,https://x.com/drb_ra/status/1951178392197341221 2025-08-01 07:09:14,drb_ra,url,http://37.221.66.178:3306,#C2,https://x.com/drb_ra/status/1951178392197341221 2025-08-01 07:09:47,drb_ra,url,http://84.247.182.55:80,#C2,https://x.com/drb_ra/status/1951178530617753841 2025-08-01 07:09:47,drb_ra,ip,84.247.182.55,#C2,https://x.com/drb_ra/status/1951178530617753841 2025-08-01 07:10:20,drb_ra,url,http://62.113.66.7:443,#C2,https://x.com/drb_ra/status/1951178668253811143 2025-08-01 07:10:20,drb_ra,ip,62.113.66.7,#C2,https://x.com/drb_ra/status/1951178668253811143 2025-08-01 07:10:53,drb_ra,ip,172.111.244.101,#C2 #Remcos,https://x.com/drb_ra/status/1951178807135621281 2025-08-01 07:10:53,drb_ra,url,http://172.111.244.101:37830,#C2 #Remcos,https://x.com/drb_ra/status/1951178807135621281 2025-08-01 07:11:25,drb_ra,ip,172.94.18.114,#C2 #Remcos,https://x.com/drb_ra/status/1951178943748284450 2025-08-01 07:11:25,drb_ra,url,http://172.94.18.114:2404,#C2 #Remcos,https://x.com/drb_ra/status/1951178943748284450 2025-08-01 07:11:59,drb_ra,url,http://51.68.244.175:2404,#C2 #Remcos,https://x.com/drb_ra/status/1951179085427663135 2025-08-01 07:11:59,drb_ra,ip,51.68.244.175,#C2 #Remcos,https://x.com/drb_ra/status/1951179085427663135 2025-08-01 07:12:32,drb_ra,url,http://2.58.56.225:2404,#C2 #Remcos,https://x.com/drb_ra/status/1951179223135047938 2025-08-01 07:13:05,drb_ra,url,http://1.13.164.149:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1951179359923957853 2025-08-01 07:13:38,drb_ra,ip,93.198.181.242,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951179497610330590 2025-08-01 07:13:38,drb_ra,url,http://93.198.181.242:81,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951179497610330590 2025-08-01 07:14:10,drb_ra,url,http://13.250.126.10:8013,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951179634688553448 2025-08-01 07:14:10,drb_ra,ip,13.250.126.10,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951179634688553448 2025-08-01 07:57:07,K_N1kolenko,url,http://mastwin.in/qsaz,#LummaStealer,https://x.com/K_N1kolenko/status/1951190444261400939 2025-08-01 07:57:07,K_N1kolenko,url,http://cezgroup.contact,#LummaStealer,https://x.com/K_N1kolenko/status/1951190444261400939 2025-08-01 07:57:07,K_N1kolenko,domain,cezgroup.contact,#LummaStealer,https://x.com/K_N1kolenko/status/1951190444261400939 2025-08-01 07:57:07,K_N1kolenko,domain,mastwin.in,#LummaStealer,https://x.com/K_N1kolenko/status/1951190444261400939 2025-08-01 08:00:10,urldna_bot,url,http://booking.xingkech5.com,#scam #phishing,https://x.com/urldna_bot/status/1951191211814899769 2025-08-01 08:00:10,urldna_bot,domain,booking.xingkech5.com,#scam #phishing,https://x.com/urldna_bot/status/1951191211814899769 2025-08-01 08:00:50,skocherhan,ip,38.181.20.6,,https://x.com/skocherhan/status/1951191376286138662 2025-08-01 08:13:11,skocherhan,url,http://envs.sh/0EB.exe,,https://x.com/skocherhan/status/1951194487138435498 2025-08-01 08:13:11,skocherhan,md5,d405313a5f89758fafd947cd0e008f75,,https://x.com/skocherhan/status/1951194487138435498 2025-08-01 08:13:11,skocherhan,domain,envs.sh,,https://x.com/skocherhan/status/1951194487138435498 2025-08-01 08:30:09,RyanProgrammer_,domain,XRPmining.com,#scam,https://x.com/RyanProgrammer_/status/1951198754188529780 2025-08-01 08:30:09,RyanProgrammer_,url,http://XRPmining.com,#scam,https://x.com/RyanProgrammer_/status/1951198754188529780 2025-08-01 08:36:51,skocherhan,ip,195.58.39.75,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,url,http://disciply.nl,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,domain,cobyrose.com,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,url,http://cobyrose.com,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,url,http://195.58.39.75,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,url,http://solanges.info,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,url,http://euthemis.com,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,domain,solanges.info,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,domain,disciply.nl,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:36:51,skocherhan,domain,euthemis.com,#SmokeLoader,https://x.com/skocherhan/status/1951200439665397832 2025-08-01 08:49:37,skocherhan,url,http://t.me/reusmey,#Lumma,https://x.com/skocherhan/status/1951203654788104207 2025-08-01 08:49:37,skocherhan,domain,nucleji.my,#Lumma,https://x.com/skocherhan/status/1951203654788104207 2025-08-01 08:49:37,skocherhan,url,http://nucleji.my/ituw,#Lumma,https://x.com/skocherhan/status/1951203654788104207 2025-08-01 08:52:53,skocherhan,domain,mnvgp.click,,https://x.com/skocherhan/status/1951204478322987313 2025-08-01 08:52:53,skocherhan,url,http://mnvgp.click/tiri,,https://x.com/skocherhan/status/1951204478322987313 2025-08-01 08:52:53,skocherhan,url,http://t.me/vtmaa,,https://x.com/skocherhan/status/1951204478322987313 2025-08-01 08:57:30,skocherhan,url,http://allegrolokalnle.pl5341.cfd,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,domain,allegro.pl-kategorie7127371548167.sbs,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,domain,allegrolokalnie.pl-oferta9034.icu,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,domain,allegrolokalnie.pl-kategorie7127371548167.sbs,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,url,http://allegrolokalnie.pl-kategorie7127371548167.sbs,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,url,http://allegro.pl-kategorie7127371548167.sbs,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,url,http://allegrolokalnie.pl-oferta9034.icu,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,domain,allegrolokalnie.oferta287484.cfd,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,domain,allegrolokalnle.pl5341.cfd,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,url,http://allegro.pl-oferta9563717.shop,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,domain,allegro.pl-oferta9563717.shop,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,url,http://allegro.pl-oferta9587793.icu,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,url,http://allegrolokalnie.oferta287484.cfd,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 08:57:30,skocherhan,domain,allegro.pl-oferta9587793.icu,,https://x.com/skocherhan/status/1951205638534541648 2025-08-01 09:01:19,siri_urz,md5,6221B0BF4D365454D40C546CF7133570,#ransomware,https://x.com/siri_urz/status/1951206600422646039 2025-08-01 09:15:35,skocherhan,md5,4247a32258aeb6b2008a7869005158e8,,https://x.com/skocherhan/status/1951210189333336564 2025-08-01 09:15:35,skocherhan,url,http://188.114.97.3:1337,,https://x.com/skocherhan/status/1951210189333336564 2025-08-01 09:24:21,c9lab_soc,url,http://discord.clothing,#phishing #scam,https://x.com/c9lab_soc/status/1951212396472574326 2025-08-01 09:24:21,c9lab_soc,domain,discord.clothing,#phishing #scam,https://x.com/c9lab_soc/status/1951212396472574326 2025-08-01 09:24:21,c9lab_soc,domain,razorpay.asia,#phishing #scam,https://x.com/c9lab_soc/status/1951212396472574326 2025-08-01 09:24:21,c9lab_soc,url,http://razorpay.asia,#phishing #scam,https://x.com/c9lab_soc/status/1951212396472574326 2025-08-01 09:55:40,JAMESWT_WT,url,https://staff-area.ddns.net/2/carrello/index.php,#phishing,https://x.com/JAMESWT_WT/status/1951220278073168172 2025-08-01 09:55:40,JAMESWT_WT,domain,staff-area.ddns.net,#phishing,https://x.com/JAMESWT_WT/status/1951220278073168172 2025-08-01 10:00:06,urldna_bot,domain,smart-lilac.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1951221392591958070 2025-08-01 10:00:06,urldna_bot,url,https://smart-lilac.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1951221392591958070 2025-08-01 10:35:19,K_N1kolenko,url,http://mocadia.com/iuew,#LummaStealer,https://x.com/K_N1kolenko/status/1951230254699151665 2025-08-01 10:35:19,K_N1kolenko,domain,mocadia.com,#LummaStealer,https://x.com/K_N1kolenko/status/1951230254699151665 2025-08-01 10:39:14,skocherhan,domain,cas-cn.org,#APT,https://x.com/skocherhan/status/1951231240004108702 2025-08-01 10:39:14,skocherhan,url,http://cas-cn.org,#APT,https://x.com/skocherhan/status/1951231240004108702 2025-08-01 10:39:14,skocherhan,md5,1ba6d40966b024bb99770ee9a4df27f2,#APT,https://x.com/skocherhan/status/1951231240004108702 2025-08-01 10:39:14,skocherhan,md5,3f285f7af7383550e7f0fe7848a3b3c7,#APT,https://x.com/skocherhan/status/1951231240004108702 2025-08-01 10:40:18,JAMESWT_WT,url,https://www.in.gov/iot/nts/Shared%20Documents/VPN/,,https://x.com/JAMESWT_WT/status/1951231510792515967 2025-08-01 10:40:18,JAMESWT_WT,domain,in.gov,,https://x.com/JAMESWT_WT/status/1951231510792515967 2025-08-01 10:40:18,JAMESWT_WT,url,https://www.in.gov/iot/nts/Shared%20Documents/VPN/secureclient51474/cisco-secure-client-win-5.1.4.74-core-vpn-predeploy-k9.msi,,https://x.com/JAMESWT_WT/status/1951231510792515967 2025-08-01 11:08:53,s3curetheweb,url,https://auth-facebook-my-en.weebly.com,#phishing,https://x.com/s3curetheweb/status/1951238700660125754 2025-08-01 11:08:53,s3curetheweb,domain,auth-facebook-my-en.weebly.com,#phishing,https://x.com/s3curetheweb/status/1951238700660125754 2025-08-01 11:08:53,s3curetheweb,url,https://auth-facebook-zh-hk.weebly.com,#phishing,https://x.com/s3curetheweb/status/1951238700660125754 2025-08-01 11:08:53,s3curetheweb,domain,auth-facebook-zh-hk.weebly.com,#phishing,https://x.com/s3curetheweb/status/1951238700660125754 2025-08-01 11:10:42,drb_ra,ip,114.55.147.24,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239161131803056 2025-08-01 11:10:42,drb_ra,url,https://114.55.147.24/j.ad,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239161131803056 2025-08-01 11:10:42,drb_ra,url,http://114.55.147.24:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239161131803056 2025-08-01 11:11:16,drb_ra,url,https://45.86.153.106/owa/Q5gPb76xgLDlTkoqBUCBXJ1J6gf-sk5Veh5,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239303280898187 2025-08-01 11:11:16,drb_ra,url,http://45.86.153.106:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239303280898187 2025-08-01 11:11:16,drb_ra,ip,45.86.153.106,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239303280898187 2025-08-01 11:11:50,drb_ra,url,http://8.134.126.64:3389,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239443760717936 2025-08-01 11:12:23,drb_ra,ip,47.109.83.84,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239583611408526 2025-08-01 11:12:23,drb_ra,url,http://47.109.83.84:18180,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239583611408526 2025-08-01 11:12:23,drb_ra,url,https://47.109.83.84/dpixel,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239583611408526 2025-08-01 11:12:57,drb_ra,ip,43.142.19.208,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239726054228241 2025-08-01 11:12:57,drb_ra,url,http://43.142.19.208:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239726054228241 2025-08-01 11:12:57,drb_ra,domain,himself-checks-blood-receptors.trycloudflare.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239726054228241 2025-08-01 11:12:57,drb_ra,url,https://himself-checks-blood-receptors.trycloudflare.com/cdn-cgi/images/trace,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239726054228241 2025-08-01 11:13:31,drb_ra,ip,10.10.16.19,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239866735337850 2025-08-01 11:13:31,drb_ra,url,http://95.111.251.4:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239866735337850 2025-08-01 11:13:31,drb_ra,ip,95.111.251.4,#CobaltStrike #C2,https://x.com/drb_ra/status/1951239866735337850 2025-08-01 11:14:05,drb_ra,url,http://47.83.218.228:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240008918049133 2025-08-01 11:14:05,drb_ra,url,https://47.83.218.228/update_wapp2.aspx,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240008918049133 2025-08-01 11:14:05,drb_ra,ip,47.83.218.228,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240008918049133 2025-08-01 11:16:40,drb_ra,url,https://www.queirozdesign.com/push,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,domain,ag3battery.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,url,https://www.ag3battery.com/updates.rss,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,domain,cannabispatientcare.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,url,https://www.cannabispatientcare.com/cm,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,domain,mediawick.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,url,https://www.mediawick.com/pixel,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,domain,queirozdesign.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,domain,crownmagnetics.com,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,url,https://www.crownmagnetics.com/pixel,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,url,http://213.209.150.214:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:16:40,drb_ra,ip,213.209.150.214,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240660775813620 2025-08-01 11:17:13,drb_ra,ip,196.251.87.111,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240801192755246 2025-08-01 11:17:13,drb_ra,url,http://196.251.87.111:8888,#CobaltStrike #C2,https://x.com/drb_ra/status/1951240801192755246 2025-08-01 11:24:41,K_N1kolenko,ip,94.141.123.139,#Xworm #RAT,https://x.com/K_N1kolenko/status/1951242678361825558 2025-08-01 11:24:41,K_N1kolenko,ip,192.3.108.238,#Xworm #RAT,https://x.com/K_N1kolenko/status/1951242678361825558 2025-08-01 11:24:41,K_N1kolenko,ip,31.56.48.161,#Xworm #RAT,https://x.com/K_N1kolenko/status/1951242678361825558 2025-08-01 11:24:41,K_N1kolenko,ip,23.95.206.253,#Xworm #RAT,https://x.com/K_N1kolenko/status/1951242678361825558 2025-08-01 11:24:41,K_N1kolenko,ip,103.59.160.219,#Xworm #RAT,https://x.com/K_N1kolenko/status/1951242678361825558 2025-08-01 11:24:41,K_N1kolenko,ip,147.50.253.17,#Xworm #RAT,https://x.com/K_N1kolenko/status/1951242678361825558 2025-08-01 11:24:41,K_N1kolenko,ip,172.245.21.131,#Xworm #RAT,https://x.com/K_N1kolenko/status/1951242678361825558 2025-08-01 12:00:08,urldna_bot,domain,authe-phantom-wallet---sso.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1951251600091021763 2025-08-01 12:00:08,urldna_bot,url,https://authe-phantom-wallet---sso.webflow.io,#phishing #scam,https://x.com/urldna_bot/status/1951251600091021763 2025-08-01 13:00:14,SarlackLab,url,http://41.103.158.248:999,#Njrat #C2,https://x.com/SarlackLab/status/1951266725762117744 2025-08-01 13:00:14,SarlackLab,ip,41.103.158.248,#Njrat #C2,https://x.com/SarlackLab/status/1951266725762117744 2025-08-01 14:00:10,urldna_bot,domain,usciscenter.com,#phishing #scam,https://x.com/urldna_bot/status/1951281805723574465 2025-08-01 14:00:10,urldna_bot,url,https://usciscenter.com/humanitarian.html,#phishing #scam,https://x.com/urldna_bot/status/1951281805723574465 2025-08-01 14:26:01,ShadowChasing1,url,http://axigen-web-expired-paknavy-files.netlify.app,#APT,https://x.com/ShadowChasing1/status/1951288310804128038 2025-08-01 14:26:01,ShadowChasing1,domain,axigen-web-expired-paknavy-files.netlify.app,#APT,https://x.com/ShadowChasing1/status/1951288310804128038 2025-08-01 14:28:11,ShadowChasing1,domain,encrypted-files-paknavy-0pen.netlify.app,#APT,https://x.com/ShadowChasing1/status/1951288855958561148 2025-08-01 14:28:11,ShadowChasing1,url,https://encrypted-files-paknavy-0pen.netlify.app,#APT,https://x.com/ShadowChasing1/status/1951288855958561148 2025-08-01 14:31:46,ShadowChasing1,md5,5bfeeae3cc9386513dc7c301c61e67a7,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,url,http://modindia.serveminecraft.net,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,domain,modgovindia.space,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,domain,modindia.serveminecraft.net,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,domain,kavach.space,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,url,http://kavach.space,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,md5,311f9894297fb1624a2c99ac5c8d8abf,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,url,http://modgovindia.space,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:31:46,ShadowChasing1,md5,10b7139952e3daae8f9d7ee407696ccf,#RAT #APT #phishing,https://x.com/ShadowChasing1/status/1951289758245884297 2025-08-01 14:52:42,Merlax_,url,https://servidor2025.com/control/admin2/,#opendir,https://x.com/Merlax_/status/1951295026627060091 2025-08-01 14:52:42,Merlax_,domain,servidor2025.com,#opendir,https://x.com/Merlax_/status/1951295026627060091 2025-08-01 14:52:42,Merlax_,url,https://servidor2025.com/gpt.php,#opendir,https://x.com/Merlax_/status/1951295026627060091 2025-08-01 15:44:14,sicehice,ip,198.98.56.220,,https://x.com/sicehice/status/1951307997151461575 2025-08-01 16:00:10,urldna_bot,domain,bnpromerc.z13.web.core.windows.net,#scam #phishing,https://x.com/urldna_bot/status/1951312004234293723 2025-08-01 16:00:10,urldna_bot,url,https://bnpromerc.z13.web.core.windows.net,#scam #phishing,https://x.com/urldna_bot/status/1951312004234293723 2025-08-01 17:34:07,s3curetheweb,domain,capital-one-sign-in-form.netlify.app,#phishing,https://x.com/s3curetheweb/status/1951335650235654214 2025-08-01 17:34:07,s3curetheweb,url,https://capital-one-sign-in-form.netlify.app,#phishing,https://x.com/s3curetheweb/status/1951335650235654214 2025-08-01 18:00:06,urldna_bot,domain,bigpond.durablesites.com,#scam #phishing,https://x.com/urldna_bot/status/1951342190128496875 2025-08-01 18:00:06,urldna_bot,url,https://bigpond.durablesites.com,#scam #phishing,https://x.com/urldna_bot/status/1951342190128496875 2025-08-01 18:45:21,drb_ra,url,http://166.0.132.184:443,#Sliver #C2,https://x.com/drb_ra/status/1951353576540016690 2025-08-01 18:45:21,drb_ra,ip,166.0.132.184,#Sliver #C2,https://x.com/drb_ra/status/1951353576540016690 2025-08-01 18:47:56,drb_ra,url,http://91.241.93.244:4000,#EvilGoPhish #Evilginx #C2,https://x.com/drb_ra/status/1951354224874496288 2025-08-01 18:47:56,drb_ra,ip,91.241.93.244,#EvilGoPhish #Evilginx #C2,https://x.com/drb_ra/status/1951354224874496288 2025-08-01 18:48:29,drb_ra,url,http://67.71.45.64:2222,#Qakbot #C2,https://x.com/drb_ra/status/1951354362489389358 2025-08-01 18:48:29,drb_ra,ip,67.71.45.64,#Qakbot #C2,https://x.com/drb_ra/status/1951354362489389358 2025-08-01 18:49:02,drb_ra,url,http://52.48.172.163:443,#Deimos #C2,https://x.com/drb_ra/status/1951354501526384967 2025-08-01 18:49:02,drb_ra,ip,52.48.172.163,#Deimos #C2,https://x.com/drb_ra/status/1951354501526384967 2025-08-01 18:49:35,drb_ra,url,http://182.30.8.113:443,#C2 #Deimos,https://x.com/drb_ra/status/1951354640487813234 2025-08-01 18:49:35,drb_ra,ip,182.30.8.113,#C2 #Deimos,https://x.com/drb_ra/status/1951354640487813234 2025-08-01 18:50:08,drb_ra,url,http://194.87.239.112:443,#C2 #Deimos,https://x.com/drb_ra/status/1951354780841873624 2025-08-01 18:50:08,drb_ra,ip,194.87.239.112,#C2 #Deimos,https://x.com/drb_ra/status/1951354780841873624 2025-08-01 18:50:41,drb_ra,url,http://18.220.79.189:443,#C2 #Mythic,https://x.com/drb_ra/status/1951354919346118842 2025-08-01 18:50:41,drb_ra,ip,18.220.79.189,#C2 #Mythic,https://x.com/drb_ra/status/1951354919346118842 2025-08-01 18:51:15,drb_ra,url,http://4.210.171.193:7443,#C2 #Mythic,https://x.com/drb_ra/status/1951355058471510444 2025-08-01 18:51:48,drb_ra,url,http://188.124.51.141:7443,#C2 #Mythic,https://x.com/drb_ra/status/1951355199668244694 2025-08-01 18:51:48,drb_ra,ip,188.124.51.141,#C2 #Mythic,https://x.com/drb_ra/status/1951355199668244694 2025-08-01 18:52:21,drb_ra,url,http://89.197.168.150:7443,#C2 #Mythic,https://x.com/drb_ra/status/1951355337212125628 2025-08-01 18:52:21,drb_ra,ip,89.197.168.150,#C2 #Mythic,https://x.com/drb_ra/status/1951355337212125628 2025-08-01 18:52:54,drb_ra,url,http://146.190.161.203:7443,#C2 #Mythic,https://x.com/drb_ra/status/1951355475448176981 2025-08-01 18:52:54,drb_ra,ip,146.190.161.203,#C2 #Mythic,https://x.com/drb_ra/status/1951355475448176981 2025-08-01 18:55:28,drb_ra,url,http://94.237.95.180:8080,#C2,https://x.com/drb_ra/status/1951356120330645538 2025-08-01 18:55:28,drb_ra,ip,94.237.95.180,#C2,https://x.com/drb_ra/status/1951356120330645538 2025-08-01 18:56:01,drb_ra,url,http://95.99.61.198:443,#C2,https://x.com/drb_ra/status/1951356259229131164 2025-08-01 18:56:01,drb_ra,ip,95.99.61.198,#C2,https://x.com/drb_ra/status/1951356259229131164 2025-08-01 18:56:34,drb_ra,url,http://206.82.6.254:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1951356399247569026 2025-08-01 18:56:34,drb_ra,ip,206.82.6.254,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1951356399247569026 2025-08-01 18:57:07,drb_ra,url,http://154.44.28.33:8080,#C2,https://x.com/drb_ra/status/1951356537122750927 2025-08-01 18:57:07,drb_ra,ip,154.44.28.33,#C2,https://x.com/drb_ra/status/1951356537122750927 2025-08-01 18:57:40,drb_ra,url,http://15.168.61.27:1311,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951356675421790323 2025-08-01 18:57:40,drb_ra,ip,15.168.61.27,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951356675421790323 2025-08-01 18:58:13,drb_ra,url,http://16.78.2.231:2086,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951356813363888301 2025-08-01 18:58:13,drb_ra,ip,16.78.2.231,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951356813363888301 2025-08-01 18:58:46,drb_ra,url,http://54.198.55.119:47587,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951356952816070685 2025-08-01 18:58:46,drb_ra,ip,54.198.55.119,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951356952816070685 2025-08-01 18:59:19,drb_ra,url,http://43.203.255.221:15443,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951357091085451420 2025-08-01 18:59:19,drb_ra,ip,43.203.255.221,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1951357091085451420 2025-08-01 18:59:52,drb_ra,url,http://45.80.158.122:7077,#AsyncRAT #C2,https://x.com/drb_ra/status/1951357229249995122 2025-08-01 18:59:52,drb_ra,ip,45.80.158.122,#AsyncRAT #C2,https://x.com/drb_ra/status/1951357229249995122 2025-08-01 19:00:25,drb_ra,url,http://82.25.93.235:443,#C2 #Interactsh,https://x.com/drb_ra/status/1951357367536468058 2025-08-01 19:00:25,drb_ra,ip,82.25.93.235,#C2 #Interactsh,https://x.com/drb_ra/status/1951357367536468058 2025-08-01 19:23:26,anand_himanshu,domain,riosaladohp.com,#phishing,https://x.com/anand_himanshu/status/1951363159282901317 2025-08-01 19:23:26,anand_himanshu,url,https://riosaladohp.com/godaddys/assets/,#phishing,https://x.com/anand_himanshu/status/1951363159282901317 2025-08-01 20:00:06,urldna_bot,domain,newucoffice.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951372387284369552 2025-08-01 20:00:06,urldna_bot,url,https://newucoffice.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951372387284369552 2025-08-01 21:00:03,threatquery,url,http://43.203.255.221,#malware #NetSupportRAT #C2,https://x.com/threatquery/status/1951387475865149948 2025-08-01 21:00:04,threatquery,url,http://45.204.213.69,#malware #C2,https://x.com/threatquery/status/1951387479392608754 2025-08-01 21:00:04,threatquery,ip,45.204.213.69,#malware #C2,https://x.com/threatquery/status/1951387479392608754 2025-08-01 21:00:04,threatquery,url,http://45.80.158.122,#AsyncRAT #malware #C2,https://x.com/threatquery/status/1951387477517746321 2025-08-01 21:18:05,drb_ra,url,http://47.116.34.88:9000,#CobaltStrike #C2,https://x.com/drb_ra/status/1951392011636056089 2025-08-01 21:18:05,drb_ra,ip,47.116.34.88,#CobaltStrike #C2,https://x.com/drb_ra/status/1951392011636056089 2025-08-01 22:00:08,urldna_bot,domain,mejillones-a01ce.web.app,#phishing #scam,https://x.com/urldna_bot/status/1951402595349631229 2025-08-01 22:00:08,urldna_bot,url,https://mejillones-a01ce.web.app,#phishing #scam,https://x.com/urldna_bot/status/1951402595349631229 2025-08-01 22:46:54,s3curetheweb,domain,tranquil-jalebi-2c4377.netlify.app,#phishing,https://x.com/s3curetheweb/status/1951414362947649685 2025-08-01 22:46:54,s3curetheweb,url,https://tranquil-jalebi-2c4377.netlify.app,#phishing,https://x.com/s3curetheweb/status/1951414362947649685 2025-08-01 23:05:26,drb_ra,url,http://106.75.214.122:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419029748339182 2025-08-01 23:06:00,drb_ra,url,http://140.143.194.26:3389,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419168768578036 2025-08-01 23:06:00,drb_ra,ip,140.143.194.26,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419168768578036 2025-08-01 23:06:33,drb_ra,url,http://101.201.75.136:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419310250815491 2025-08-01 23:06:33,drb_ra,ip,101.201.75.136,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419310250815491 2025-08-01 23:07:06,drb_ra,url,http://42.113.217.220:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419449304604962 2025-08-01 23:07:06,drb_ra,ip,42.113.217.220,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419449304604962 2025-08-01 23:07:40,drb_ra,url,http://121.43.131.115:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419589226533193 2025-08-01 23:07:40,drb_ra,ip,121.43.131.115,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419589226533193 2025-08-01 23:07:40,drb_ra,ip,39.103.62.252,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419589226533193 2025-08-01 23:08:14,drb_ra,url,https://himself-checks-blood-receptors.trycloudflare.com/submit.php,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419733250609462 2025-08-01 23:08:47,drb_ra,url,http://120.46.72.74:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419872073642049 2025-08-01 23:08:47,drb_ra,ip,120.46.72.74,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951419872073642049 2025-08-01 23:09:20,drb_ra,url,http://106.75.214.122:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951420011228147725 2025-08-01 23:09:20,drb_ra,ip,106.75.214.122,#C2 #CobaltStrike,https://x.com/drb_ra/status/1951420011228147725 2025-08-01 23:19:32,masaomi346,domain,mail.eleven.com.bo,#phishing,https://x.com/masaomi346/status/1951422575898431667 2025-08-01 23:19:32,masaomi346,url,https://mail.eleven.com.bo/wordpress/wp-content/uploads/2025/Sites/web1.plala.or.jp/cgi-bin/mail/plus/webmail_login.php,#phishing,https://x.com/masaomi346/status/1951422575898431667 2025-08-02 00:00:09,urldna_bot,domain,btconnect-voicemail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1951432798331396294 2025-08-02 00:00:09,urldna_bot,url,https://btconnect-voicemail.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1951432798331396294 2025-08-02 00:22:08,fbgwls245,md5,6221B0BF4D365454D40C546CF7133570,#ransomware,https://x.com/fbgwls245/status/1951438330694082876 2025-08-02 01:04:14,skocherhan,domain,06.top,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.06.top/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,2zyo6w.top,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.2zyo6w.top/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,8dqy8.top,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.8dqy8.top/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,ainianoffice.net,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.ainianoffice.net/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,alentabroadgroup.shop,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.alentabroadgroup.shop/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,alentedgegrouphq.top,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.alentedgegrouphq.top/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,allantit.net,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.allantit.net/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,andsbyen-nh.art,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.andsbyen-nh.art/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,domain,antwedding.food,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 01:04:14,skocherhan,url,http://www.antwedding.food/l36c/,#Formbook,https://x.com/skocherhan/status/1951448923811217693 2025-08-02 02:00:07,urldna_bot,domain,meatsmkluugine.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1951462988738675028 2025-08-02 02:00:07,urldna_bot,url,https://meatsmkluugine.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1951462988738675028 2025-08-02 02:50:36,skocherhan,domain,SSL.com,,https://x.com/skocherhan/status/1951475694220820753 2025-08-02 02:50:36,skocherhan,url,http://SSL.com,,https://x.com/skocherhan/status/1951475694220820753 2025-08-02 02:50:36,skocherhan,md5,ddf9bba66ffc5f2638682a0d6712e177,,https://x.com/skocherhan/status/1951475694220820753 2025-08-02 03:04:51,skocherhan,url,http://198.55.98.29/fod4/,#opendir,https://x.com/skocherhan/status/1951479279222464603 2025-08-02 03:04:51,skocherhan,ip,198.55.98.29,#opendir,https://x.com/skocherhan/status/1951479279222464603 2025-08-02 03:52:58,skocherhan,domain,78449973.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,9axgb6.vip,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://78451658.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,78451658.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://78449973.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://429s233s.top,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://596767.top,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,achtzehngrad.net,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,429s233s.top,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://2026xr.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://9axgb6.vip,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,2026xr.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://achtzehngrad.net,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,596767.top,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://ascendia.club,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,md5,bdb92d611372578a89c0329832214331,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://clearairways1st.net,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,clearairways1st.net,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://buymydomain.today,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,buymydomain.today,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://biologyedtech.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,ascendia.club,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://batchcopilot.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,batchcopilot.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,url,http://augmentingdata.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,augmentingdata.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 03:52:58,skocherhan,domain,biologyedtech.xyz,#Formbook,https://x.com/skocherhan/status/1951491387179888910 2025-08-02 04:00:07,urldna_bot,url,https://logontoaccessweb.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951493188411117909 2025-08-02 04:00:07,urldna_bot,domain,logontoaccessweb.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951493188411117909 2025-08-02 04:00:36,SarlackLab,ip,35.158.159.254,#Njrat #C2,https://x.com/SarlackLab/status/1951493308527608158 2025-08-02 04:00:36,SarlackLab,url,http://3.121.139.82:16995,#Njrat #C2,https://x.com/SarlackLab/status/1951493308527608158 2025-08-02 04:00:36,SarlackLab,url,http://3.127.253.86:16995,#Njrat #C2,https://x.com/SarlackLab/status/1951493308527608158 2025-08-02 04:00:36,SarlackLab,url,http://35.158.159.254:16995,#Njrat #C2,https://x.com/SarlackLab/status/1951493308527608158 2025-08-02 06:00:10,urldna_bot,domain,temporarymailerexpress.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951523396799410403 2025-08-02 06:00:10,urldna_bot,url,https://temporarymailerexpress.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951523396799410403 2025-08-02 08:00:06,urldna_bot,url,https://myonlinevisionsfedscuweblogonhtmlmainphp.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951553580197953560 2025-08-02 08:00:06,urldna_bot,domain,myonlinevisionsfedscuweblogonhtmlmainphp.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951553580197953560 2025-08-02 09:43:32,masaomi346,domain,tangsong.vip,#phishing,https://x.com/masaomi346/status/1951579610191434172 2025-08-02 09:43:32,masaomi346,url,https://tangsong.vip/L1HE/,#phishing,https://x.com/masaomi346/status/1951579610191434172 2025-08-02 10:00:11,urldna_bot,domain,kindbea48.activehosted.com,#phishing #scam,https://x.com/urldna_bot/status/1951583802595127520 2025-08-02 10:00:11,urldna_bot,url,https://kindbea48.activehosted.com,#phishing #scam,https://x.com/urldna_bot/status/1951583802595127520 2025-08-02 10:27:39,Fact_Finder03,ip,185.93.89.63,#stealer,https://x.com/Fact_Finder03/status/1951590712488903139 2025-08-02 11:42:54,skocherhan,md5,f8e99cd0501918f17dee315a9f342567,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,url,http://www.ukinky.shop/ha9l/,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,domain,ukinky.shop,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,url,http://www.twd60.top/riay/,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,url,http://www.incisozluk.com.tr/zkyw/,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,domain,twd60.top,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,url,http://www.autonomyvirtual.xyz/2v2x/,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,domain,autonomyvirtual.xyz,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,url,http://www.atomicmanager.xyz/qw9o/,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,domain,atomicmanager.xyz,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,url,http://www.9axgb6.vip/e0nt/,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:42:54,skocherhan,domain,incisozluk.com.tr,#Formbook,https://x.com/skocherhan/status/1951609651822203289 2025-08-02 11:44:27,JRoosen,domain,ourappointment.de,,https://x.com/JRoosen/status/1951610041011671475 2025-08-02 11:44:27,JRoosen,url,https://ourappointment.de/excel/windows/invite.php,,https://x.com/JRoosen/status/1951610041011671475 2025-08-02 11:50:20,JRoosen,sha256,eb5558d414c6f96efeb30db704734c463eb08758a3feacf452d743ba5f8fe662,,https://x.com/JRoosen/status/1951611522548953462 2025-08-02 11:58:15,harugasumi,domain,pay.llustrationu.com,#phishing,https://x.com/harugasumi/status/1951613512457064765 2025-08-02 11:58:15,harugasumi,url,https://pay.llustrationu.com,#phishing,https://x.com/harugasumi/status/1951613512457064765 2025-08-02 12:00:07,urldna_bot,url,https://kjgyuhuikgyuhlid.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951613982441116015 2025-08-02 12:00:07,urldna_bot,domain,kjgyuhuikgyuhlid.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951613982441116015 2025-08-02 12:48:22,skocherhan,url,http://45.204.213.69,#C2 #malware,https://x.com/skocherhan/status/1951626124523380765 2025-08-02 12:48:22,skocherhan,ip,45.204.213.69,#C2 #malware,https://x.com/skocherhan/status/1951626124523380765 2025-08-02 12:48:25,skocherhan,domain,mail-modp-gov-pk-view.netlify.app,#APT,https://x.com/skocherhan/status/1951626136569450533 2025-08-02 12:48:25,skocherhan,url,https://mail-modp-gov-pk-view.netlify.app/error.html,#APT,https://x.com/skocherhan/status/1951626136569450533 2025-08-02 16:00:07,urldna_bot,domain,zweryfikowac683859.click,#scam #phishing,https://x.com/urldna_bot/status/1951674381278548050 2025-08-02 16:00:07,urldna_bot,url,https://zweryfikowac683859.click,#scam #phishing,https://x.com/urldna_bot/status/1951674381278548050 2025-08-02 16:13:10,skocherhan,domain,daily.alltop.asia,#APT,https://x.com/skocherhan/status/1951677664114171937 2025-08-02 16:13:10,skocherhan,url,http://daily.alltop.asia/blog/article/d2.php,#APT,https://x.com/skocherhan/status/1951677664114171937 2025-08-02 16:13:10,skocherhan,url,http://daily.alltop.asia/blog/article/del2.php,#APT,https://x.com/skocherhan/status/1951677664114171937 2025-08-02 16:13:10,skocherhan,sha256,d8d86b15e68889bf76b3cf8e335f43afe0287b9b20aeb18b136b90a516695989,#APT,https://x.com/skocherhan/status/1951677664114171937 2025-08-02 16:50:19,skocherhan,domain,bc-game.icu,#phishing,https://x.com/skocherhan/status/1951687015059042317 2025-08-02 16:50:19,skocherhan,url,http://bc-game.icu,#phishing,https://x.com/skocherhan/status/1951687015059042317 2025-08-02 16:50:19,skocherhan,sha256,393a5a6dfc60be0498402043769134cce07b6a878d705d47f279b03ab9f63a80,#phishing,https://x.com/skocherhan/status/1951687015059042317 2025-08-02 17:30:03,skocherhan,domain,51-cg.pro,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.51-cg.pro,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,51580.vip,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.51580.vip,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,altcoinmusic.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.altcoinmusic.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,alunos.fun,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.alunos.fun,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,amp4dslot.beauty,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.amp4dslot.beauty,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,automationsweep.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.automationsweep.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,br316164.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.br316164.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,brokensilenze.cfd,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.brokensilenze.cfd,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,checkurl.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.checkurl.xyz,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,domain,clario-services.info,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,url,http://www.clario-services.info,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 17:30:03,skocherhan,md5,3fb6b4a8b9db3999c16d98095e6644a5,#Formbook,https://x.com/skocherhan/status/1951697011993919720 2025-08-02 18:00:08,urldna_bot,domain,bafybeicedalcolwlvq7fjhtcvzj3vivz4pdfd7b3cgr4gm55mafkj7geua.ipfs.dweb.link,#scam #phishing,https://x.com/urldna_bot/status/1951704585816420366 2025-08-02 18:00:08,urldna_bot,url,https://bafybeicedalcolwlvq7fjhtcvzj3vivz4pdfd7b3cgr4gm55mafkj7geua.ipfs.dweb.link,#scam #phishing,https://x.com/urldna_bot/status/1951704585816420366 2025-08-02 18:04:15,skocherhan,url,http://gitlab.com/hi4201225/,,https://x.com/skocherhan/status/1951705620933128580 2025-08-02 18:04:15,skocherhan,url,http://github.com/ud-progen2/,,https://x.com/skocherhan/status/1951705620933128580 2025-08-02 18:04:15,skocherhan,url,http://github.com/mrw-2,,https://x.com/skocherhan/status/1951705620933128580 2025-08-02 19:20:28,skocherhan,url,http://t.me/iry2am,,https://x.com/skocherhan/status/1951724802005221462 2025-08-02 19:20:28,skocherhan,domain,api.organica.tv,,https://x.com/skocherhan/status/1951724802005221462 2025-08-02 19:20:28,skocherhan,url,http://api.organica.tv,,https://x.com/skocherhan/status/1951724802005221462 2025-08-02 19:23:14,skocherhan,domain,allan.clayrat.top,,https://x.com/skocherhan/status/1951725497437897094 2025-08-02 19:23:14,skocherhan,url,http://allan.clayrat.top,,https://x.com/skocherhan/status/1951725497437897094 2025-08-02 19:27:05,skocherhan,domain,ataev.claybaster.top,,https://x.com/skocherhan/status/1951726467613897112 2025-08-02 19:27:05,skocherhan,url,http://ataev.claybaster.top,,https://x.com/skocherhan/status/1951726467613897112 2025-08-02 19:32:29,skocherhan,domain,blocket.aqvqe.sbs,#phishing,https://x.com/skocherhan/status/1951727825293295881 2025-08-02 19:32:29,skocherhan,url,http://blocket.aqvqe.sbs/order/8nHHmq8gAl5C/,#phishing,https://x.com/skocherhan/status/1951727825293295881 2025-08-02 20:00:06,urldna_bot,domain,loginacguyanefridp11profileoidcauthorizexecutioe2e2.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951734776106299441 2025-08-02 20:00:06,urldna_bot,url,https://loginacguyanefridp11profileoidcauthorizexecutioe2e2.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951734776106299441 2025-08-02 21:00:03,threatquery,url,http://13.210.0.111,#C2 #malware,https://x.com/threatquery/status/1951749862803816767 2025-08-02 21:00:03,threatquery,ip,13.210.0.111,#C2 #malware,https://x.com/threatquery/status/1951749862803816767 2025-08-02 21:00:03,threatquery,url,http://94.158.244.156,#C2 #malware #NetSupportRAT,https://x.com/threatquery/status/1951749861004525965 2025-08-02 21:00:03,threatquery,ip,94.158.244.156,#C2 #malware #NetSupportRAT,https://x.com/threatquery/status/1951749861004525965 2025-08-02 21:00:04,threatquery,url,http://196.251.115.244,#C2 #malware #AsyncRAT,https://x.com/threatquery/status/1951749864519254097 2025-08-02 21:00:04,threatquery,ip,196.251.115.244,#C2 #malware #AsyncRAT,https://x.com/threatquery/status/1951749864519254097 2025-08-02 22:00:06,urldna_bot,domain,maildefence.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951764976076574807 2025-08-02 22:00:06,urldna_bot,url,https://maildefence.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951764976076574807 2025-08-03 00:00:12,urldna_bot,domain,u3212790.isp.regruhosting.ru,#scam #phishing,https://x.com/urldna_bot/status/1951795196665954389 2025-08-03 00:00:12,urldna_bot,url,http://u3212790.isp.regruhosting.ru/DGT_ES/,#scam #phishing,https://x.com/urldna_bot/status/1951795196665954389 2025-08-03 02:00:06,urldna_bot,domain,mailinfortelstr.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1951825372913254639 2025-08-03 02:00:06,urldna_bot,url,https://mailinfortelstr.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1951825372913254639 2025-08-03 04:00:09,urldna_bot,domain,bet73007.com,#phishing #scam,https://x.com/urldna_bot/status/1951855585151914477 2025-08-03 04:00:09,urldna_bot,url,https://bet73007.com/fish/76,#phishing #scam,https://x.com/urldna_bot/status/1951855585151914477 2025-08-03 05:54:23,K_N1kolenko,domain,bittsgly.my,#LummaStealer,https://x.com/K_N1kolenko/status/1951884331196064127 2025-08-03 05:54:23,K_N1kolenko,url,http://bittsgly.my/atop,#LummaStealer,https://x.com/K_N1kolenko/status/1951884331196064127 2025-08-03 06:00:10,urldna_bot,url,https://0592asre850.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951885784878862793 2025-08-03 06:00:10,urldna_bot,domain,0592asre850.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1951885784878862793 2025-08-03 06:12:33,harugasumi,url,https://www1-janetbank-inforelease-rog.tuanlan.shop,#phishing,https://x.com/harugasumi/status/1951888904157827230 2025-08-03 06:12:33,harugasumi,domain,www1-janetbank-inforelease-rog.tuanlan.shop,#phishing,https://x.com/harugasumi/status/1951888904157827230 2025-08-03 08:00:10,urldna_bot,domain,ashish-v-ai.github.io,#phishing #scam,https://x.com/urldna_bot/status/1951915985604075869 2025-08-03 08:00:10,urldna_bot,url,https://ashish-v-ai.github.io/Netflix-clone/,#phishing #scam,https://x.com/urldna_bot/status/1951915985604075869 2025-08-03 09:07:07,galkofahi,url,http://92.118.112.17:8080,#opendir #malware #Trojan,https://x.com/galkofahi/status/1951932833158619176 2025-08-03 09:07:07,galkofahi,ip,92.118.112.17,#opendir #malware #Trojan,https://x.com/galkofahi/status/1951932833158619176 2025-08-03 09:07:07,galkofahi,sha256,db09f8ba6b1ec60f3e02eb61451690beedecb2ff2cf8ef9731736c22f17b32d2,#opendir #malware #Trojan,https://x.com/galkofahi/status/1951932833158619176 2025-08-03 09:45:42,skocherhan,domain,rlim.com,,https://x.com/skocherhan/status/1951942543798645099 2025-08-03 09:45:42,skocherhan,url,http://rlim.com/MicrosoftCur/raw,,https://x.com/skocherhan/status/1951942543798645099 2025-08-03 09:55:11,skocherhan,sha256,51afcd5539ca6270fae45979cfd5f434d3635a4fc747b8231cf3a60906b32b2a,,https://x.com/skocherhan/status/1951944930143678951 2025-08-03 10:00:07,urldna_bot,url,http://signin.microsoft.com.cerblos.ch,#scam #phishing,https://x.com/urldna_bot/status/1951946171129176309 2025-08-03 10:00:07,urldna_bot,domain,signin.microsoft.com.cerblos.ch,#scam #phishing,https://x.com/urldna_bot/status/1951946171129176309 2025-08-03 10:00:20,SarlackLab,url,http://technology-rome.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1951946226628255976 2025-08-03 10:00:20,SarlackLab,ip,147.185.221.30,#C2 #Njrat,https://x.com/SarlackLab/status/1951946226628255976 2025-08-03 10:00:20,SarlackLab,url,http://147.185.221.30:45022,#C2 #Njrat,https://x.com/SarlackLab/status/1951946226628255976 2025-08-03 10:00:20,SarlackLab,domain,technology-rome.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1951946226628255976 2025-08-03 11:10:55,skocherhan,ip,207.189.164.137,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 11:10:55,skocherhan,ip,165.140.86.154,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 11:10:55,skocherhan,ip,147.124.213.232,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 11:10:55,skocherhan,ip,147.124.213.19,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 11:10:55,skocherhan,url,http://207.189.164.137:1244,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 11:10:55,skocherhan,url,http://165.140.86.154:1244,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 11:10:55,skocherhan,url,http://147.124.213.232:1244,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 11:10:55,skocherhan,url,http://147.124.213.19:1244,#APT #Lazarus,https://x.com/skocherhan/status/1951963990403289159 2025-08-03 12:00:08,urldna_bot,domain,walletauthenticators.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1951976374144581721 2025-08-03 12:00:08,urldna_bot,url,https://walletauthenticators.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1951976374144581721 2025-08-03 12:04:36,skocherhan,url,https://check-host.net/check-report/2aabbc9ck68f,,https://x.com/skocherhan/status/1951977501267202502 2025-08-03 12:04:36,skocherhan,domain,check-host.net,,https://x.com/skocherhan/status/1951977501267202502 2025-08-03 12:10:44,skocherhan,url,http://microskinuk.com/dkshskdjgkjhsljsklksj/dsvjhvhshjbdskjlndskjlns/EJYHGAVUYSHAUYVEUYUA&sa=D&source=editors&ust=1754226376938033&usg=AOvVaw2QvEBnOiRE4QripYvdZcJQ,#phishing,https://x.com/skocherhan/status/1951979044288844197 2025-08-03 12:10:44,skocherhan,domain,microskinuk.com,#phishing,https://x.com/skocherhan/status/1951979044288844197 2025-08-03 12:10:44,skocherhan,url,http://docs.google.com/presentation/d/1JWK6KTsJHAk4PhUBXbip8bBzsU8kkj7qzcqCL-Io-5M/preview?pli=1#slide=id.p,#phishing,https://x.com/skocherhan/status/1951979044288844197 2025-08-03 13:26:05,skocherhan,url,http://dr16899.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,codeveinsurance.info,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://codeveinsurance.info/1/,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,kingsbkup1.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,opy.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://opy.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,zyg.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://zyg.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,che.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://che.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,dr16899.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://kingsbkup1.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,bin12.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://bin12.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,bin14.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://bin14.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,smfcs1.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://smfcs1.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,win32.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,domain,smfcs3.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://smfcs3.ydns.eu:3908,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,md5,89f7e9298369151b1ee3316350988e39,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 13:26:05,skocherhan,url,http://win32.ydns.eu,,https://x.com/skocherhan/status/1951998006686839018 2025-08-03 14:00:07,urldna_bot,url,https://venom--mozilla--org.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1952006570394489203 2025-08-03 14:00:07,urldna_bot,domain,venom--mozilla--org.webflow.io,#scam #phishing,https://x.com/urldna_bot/status/1952006570394489203 2025-08-03 14:51:06,fbgwls245,md5,6221B0BF4D365454D40C546CF7133570,#ransomware,https://x.com/fbgwls245/status/1952019399529156797 2025-08-03 16:00:07,urldna_bot,domain,hskyzvrcwbfx.web.app,#scam #phishing,https://x.com/urldna_bot/status/1952036768917684449 2025-08-03 16:00:07,urldna_bot,url,https://hskyzvrcwbfx.web.app,#scam #phishing,https://x.com/urldna_bot/status/1952036768917684449 2025-08-03 16:41:47,skocherhan,url,https://mailserver-lk.com/Cabinet/decision.php,,https://x.com/skocherhan/status/1952047255122243994 2025-08-03 16:42:05,skocherhan,domain,mailserver-lk.com,,https://x.com/skocherhan/status/1952047328367628523 2025-08-03 16:42:05,skocherhan,url,https://mailserver-lk.com/Official/registraion.php,,https://x.com/skocherhan/status/1952047328367628523 2025-08-03 16:49:41,skocherhan,url,http://github.com/AI-USE,,https://x.com/skocherhan/status/1952049241641439268 2025-08-03 16:49:41,skocherhan,domain,reverse-g355.onrender.com,,https://x.com/skocherhan/status/1952049241641439268 2025-08-03 16:49:41,skocherhan,url,http://reverse-g355.onrender.com,,https://x.com/skocherhan/status/1952049241641439268 2025-08-03 17:07:22,skocherhan,url,http://169.150.231.246:57744,,https://x.com/skocherhan/status/1952053694645633406 2025-08-03 17:07:22,skocherhan,ip,169.150.231.246,,https://x.com/skocherhan/status/1952053694645633406 2025-08-03 18:24:24,skocherhan,md5,0f1f51e0a3090d8d30a5dba831a6757c,,https://x.com/skocherhan/status/1952073078734778513 2025-08-03 18:24:24,skocherhan,url,http://76.46.157.65,,https://x.com/skocherhan/status/1952073078734778513 2025-08-03 18:24:24,skocherhan,ip,76.46.157.65,,https://x.com/skocherhan/status/1952073078734778513 2025-08-03 18:36:30,skocherhan,domain,systemloop.online:4444,,https://x.com/skocherhan/status/1952076123249979603 2025-08-03 18:36:30,skocherhan,url,http://systemloop.online:4444,,https://x.com/skocherhan/status/1952076123249979603 2025-08-03 18:36:30,skocherhan,md5,b1aeaef812a9abc1f6d4d92f911bbdc1,,https://x.com/skocherhan/status/1952076123249979603 2025-08-03 18:40:13,skocherhan,url,http://c2.skelet.lol,#C2 #malware,https://x.com/skocherhan/status/1952077057971609815 2025-08-03 18:40:13,skocherhan,domain,c2.skelet.lol,#C2 #malware,https://x.com/skocherhan/status/1952077057971609815 2025-08-03 18:40:13,skocherhan,url,http://91.147.113.214,#C2 #malware,https://x.com/skocherhan/status/1952077057971609815 2025-08-03 18:40:13,skocherhan,ip,91.147.113.214,#C2 #malware,https://x.com/skocherhan/status/1952077057971609815 2025-08-03 18:52:53,skocherhan,ip,15.156.136.113,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://167.114.145.155,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://3.149.190.172,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://15.156.136.113,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,ip,167.114.145.155,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,domain,kala1.duckdns.org,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://kala007.duckdns.org,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://kala1.duckdns.org,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://homesafe1000.duckdns.org,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,domain,homesafe1000.duckdns.org,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://seoudy.duckdns.org:7001,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,domain,seoudy.duckdns.org:7001,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,url,http://pulsarmuna.duckdns.org:4404,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,domain,pulsarmuna.duckdns.org:4404,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 18:52:53,skocherhan,domain,kala007.duckdns.org,#AsyncRAT #Xworm,https://x.com/skocherhan/status/1952080247609844120 2025-08-03 19:40:36,skocherhan,md5,735ef2743617497a79ce7cb3a1d4b9c9,#GuLoader,https://x.com/skocherhan/status/1952092253687554283 2025-08-03 19:40:36,skocherhan,md5,d9dd561ce8a6f0898846d47a613306d8,#GuLoader,https://x.com/skocherhan/status/1952092253687554283 2025-08-03 19:40:36,skocherhan,domain,cia.tf,#GuLoader,https://x.com/skocherhan/status/1952092253687554283 2025-08-03 19:40:36,skocherhan,url,http://cia.tf/735ef2743617497a79ce7cb3a1d4b9c9.vdf,#GuLoader,https://x.com/skocherhan/status/1952092253687554283 2025-08-03 20:00:07,urldna_bot,domain,ref-orange-login-vocal.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952097168455594144 2025-08-03 20:00:07,urldna_bot,url,https://ref-orange-login-vocal.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952097168455594144 2025-08-03 21:00:04,threatquery,url,http://52.27.181.0,#C2 #malware,https://x.com/threatquery/status/1952112252301008929 2025-08-03 21:00:04,threatquery,url,http://34.82.165.200,#C2 #malware,https://x.com/threatquery/status/1952112255819972882 2025-08-03 21:00:04,threatquery,url,http://44.237.77.82,#C2 #malware,https://x.com/threatquery/status/1952112254079418493 2025-08-03 21:00:04,threatquery,ip,44.237.77.82,#C2 #malware,https://x.com/threatquery/status/1952112254079418493 2025-08-03 21:21:47,skocherhan,md5,ae2bb7218dfc264fc6380e7b83fe629b,,https://x.com/skocherhan/status/1952117717290369291 2025-08-03 21:21:47,skocherhan,url,http://scapqep.club/xwir,,https://x.com/skocherhan/status/1952117717290369291 2025-08-03 21:21:47,skocherhan,url,http://t.me/wd3f2r32rewt,,https://x.com/skocherhan/status/1952117717290369291 2025-08-03 21:21:47,skocherhan,domain,scapqep.club,,https://x.com/skocherhan/status/1952117717290369291 2025-08-03 21:37:01,CryptoRecoverCF,url,http://aqrl-trade.com,#phishing,https://x.com/CryptoRecoverCF/status/1952121551840792787 2025-08-03 21:37:01,CryptoRecoverCF,domain,aqrl-trade.com,#phishing,https://x.com/CryptoRecoverCF/status/1952121551840792787 2025-08-03 21:37:01,CryptoRecoverCF,url,http://coin-team.com,#phishing,https://x.com/CryptoRecoverCF/status/1952121551840792787 2025-08-03 21:37:01,CryptoRecoverCF,domain,coin-team.com,#phishing,https://x.com/CryptoRecoverCF/status/1952121551840792787 2025-08-03 22:00:08,urldna_bot,domain,site-tzjljqpn4.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1952127368677491191 2025-08-03 22:00:08,urldna_bot,url,https://site-tzjljqpn4.godaddysites.com,#scam #phishing,https://x.com/urldna_bot/status/1952127368677491191 2025-08-03 22:01:07,skocherhan,md5,4e14793601b6cf7d3f2b5bc0ddd0681c,,https://x.com/skocherhan/status/1952127619291402550 2025-08-03 22:01:07,skocherhan,url,http://mail.zada.ba,,https://x.com/skocherhan/status/1952127619291402550 2025-08-03 22:01:07,skocherhan,domain,mail.zada.ba,,https://x.com/skocherhan/status/1952127619291402550 2025-08-03 22:01:07,skocherhan,url,http://amila.music@zada.ba,,https://x.com/skocherhan/status/1952127619291402550 2025-08-03 22:01:07,skocherhan,domain,amila.music@zada.ba,,https://x.com/skocherhan/status/1952127619291402550 2025-08-03 22:01:07,skocherhan,url,http://chief.accountant@kome88.com.vn,,https://x.com/skocherhan/status/1952127619291402550 2025-08-03 22:01:07,skocherhan,domain,chief.accountant@kome88.com.vn,,https://x.com/skocherhan/status/1952127619291402550 2025-08-03 22:06:57,skocherhan,md5,eeb45d4a7cb22900d7c2d2ed0fc4bc92,,https://x.com/skocherhan/status/1952129085569716520 2025-08-03 22:06:57,skocherhan,url,http://mail.multisecure.co.id,,https://x.com/skocherhan/status/1952129085569716520 2025-08-03 22:06:57,skocherhan,domain,mail.multisecure.co.id,,https://x.com/skocherhan/status/1952129085569716520 2025-08-03 22:06:57,skocherhan,url,http://multisecure.co.id,,https://x.com/skocherhan/status/1952129085569716520 2025-08-03 22:06:57,skocherhan,domain,multisecure.co.id,,https://x.com/skocherhan/status/1952129085569716520 2025-08-03 22:13:20,skocherhan,domain,roxane.vn,,https://x.com/skocherhan/status/1952130691820319129 2025-08-03 22:13:20,skocherhan,url,http://roxane.vn,,https://x.com/skocherhan/status/1952130691820319129 2025-08-03 22:13:20,skocherhan,domain,mpsv-hnz-k.ba,,https://x.com/skocherhan/status/1952130691820319129 2025-08-03 22:13:20,skocherhan,url,http://mpsv-hnz-k.ba,,https://x.com/skocherhan/status/1952130691820319129 2025-08-03 22:13:20,skocherhan,domain,mail.mpsv-hnz-k.ba,,https://x.com/skocherhan/status/1952130691820319129 2025-08-03 22:13:20,skocherhan,url,http://mail.mpsv-hnz-k.ba,,https://x.com/skocherhan/status/1952130691820319129 2025-08-03 22:13:20,skocherhan,md5,f3dbb90f61361304a50031af30416e95,,https://x.com/skocherhan/status/1952130691820319129 2025-08-03 22:22:03,skocherhan,domain,mcnzxz.com,,https://x.com/skocherhan/status/1952132887085556154 2025-08-03 22:22:03,skocherhan,url,http://mcnzxz.com,,https://x.com/skocherhan/status/1952132887085556154 2025-08-03 22:22:03,skocherhan,domain,cphost14.qhoster.net,,https://x.com/skocherhan/status/1952132887085556154 2025-08-03 22:22:03,skocherhan,url,http://cphost14.qhoster.net,,https://x.com/skocherhan/status/1952132887085556154 2025-08-03 22:22:03,skocherhan,md5,6d6a4a091d976e78b58cdb5dec11a43d,,https://x.com/skocherhan/status/1952132887085556154 2025-08-03 22:26:26,skocherhan,url,http://kilimanjaro.crabdance.com:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,domain,kilimanjaro.bigmoney.biz:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,domain,kilimanjaro.crabdance.com:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,url,http://kilimanjaro.bigmoney.biz:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,domain,kilimanjaro.theworkpc.com:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,url,http://kilimanjaro.run.place:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,domain,kilimanjaro.run.place:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,url,http://kilimanjaro.theworkpc.com:8812,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:26:26,skocherhan,md5,812455a70780bd8e89750435819438dd,,https://x.com/skocherhan/status/1952133989512225229 2025-08-03 22:47:38,skocherhan,url,http://103.82.36.216/15429.txt,,https://x.com/skocherhan/status/1952139322766827622 2025-08-03 22:47:38,skocherhan,url,http://103.82.36.216/protected_RuntimeBroker_20250425_153651.txt,,https://x.com/skocherhan/status/1952139322766827622 2025-08-03 22:47:38,skocherhan,url,http://103.82.36.216/protected_testrytt_20250305_193453.txt,,https://x.com/skocherhan/status/1952139322766827622 2025-08-03 22:47:38,skocherhan,url,http://103.82.36.216/protected_WindowsComp_20250507_080239.txt,,https://x.com/skocherhan/status/1952139322766827622 2025-08-03 22:47:38,skocherhan,url,http://103.82.36.216/thungforme216.bin,,https://x.com/skocherhan/status/1952139322766827622 2025-08-03 22:47:38,skocherhan,ip,103.82.36.216,,https://x.com/skocherhan/status/1952139322766827622 2025-08-03 22:55:57,masaomi346,domain,open-monex.aoelive.com,#phishing,https://x.com/masaomi346/status/1952141418002362400 2025-08-03 22:55:57,masaomi346,url,https://open-monex.aoelive.com/support/,#phishing,https://x.com/masaomi346/status/1952141418002362400 2025-08-03 22:55:57,masaomi346,domain,www-monex.mabeibei.com,#phishing,https://x.com/masaomi346/status/1952141418002362400 2025-08-03 22:55:57,masaomi346,url,https://www-monex.mabeibei.com/support/,#phishing,https://x.com/masaomi346/status/1952141418002362400 2025-08-03 23:07:21,skocherhan,url,http://104.233.236.65/protected_slhosti_20250730_124937.txt,#Xworm,https://x.com/skocherhan/status/1952144284599321014 2025-08-03 23:07:21,skocherhan,url,http://137.220.229.14:8000,#Xworm,https://x.com/skocherhan/status/1952144284599321014 2025-08-03 23:07:21,skocherhan,url,http://27.124.12.33:8000,#Xworm,https://x.com/skocherhan/status/1952144284599321014 2025-08-03 23:07:21,skocherhan,ip,104.233.236.65,#Xworm,https://x.com/skocherhan/status/1952144284599321014 2025-08-03 23:07:21,skocherhan,ip,137.220.229.14,#Xworm,https://x.com/skocherhan/status/1952144284599321014 2025-08-03 23:07:21,skocherhan,ip,27.124.12.33,#Xworm,https://x.com/skocherhan/status/1952144284599321014 2025-08-03 23:07:21,skocherhan,md5,413e17069119525bdb6ddec90099a116,#Xworm,https://x.com/skocherhan/status/1952144284599321014 2025-08-03 23:19:16,skocherhan,domain,scorpiocrypter.cc,,https://x.com/skocherhan/status/1952147286386983058 2025-08-03 23:19:16,skocherhan,url,http://scorpiocrypter.cc,,https://x.com/skocherhan/status/1952147286386983058 2025-08-04 00:00:08,urldna_bot,domain,ebawightmancoded.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952157570661073368 2025-08-04 00:00:08,urldna_bot,url,https://ebawightmancoded.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952157570661073368 2025-08-04 00:04:41,skocherhan,domain,bytes.press,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,domain,031233414.xyz,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.031233414.xyz,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,domain,99fxz.net,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.99fxz.net,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.bionanosurf.info,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,domain,borneolab.net,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.borneolab.net,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,domain,bionanosurf.info,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.bytes.press,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,domain,dietproio.info,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.dietproio.info,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,domain,drgnmoney-98.buzz,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.drgnmoney-98.buzz,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,domain,earnshill.com,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,md5,d8e0597482281218846e38360bf6fa04,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,md5,7d7e3acbeb93396c76ebdbb4785682ef,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:41,skocherhan,url,http://www.earnshill.com,#Formbook,https://x.com/skocherhan/status/1952158714066047220 2025-08-04 00:04:50,skocherhan,ip,203.245.0.121,#Kimsuky,https://x.com/skocherhan/status/1952158753240793190 2025-08-04 00:04:50,skocherhan,url,http://203.245.0.121,#Kimsuky,https://x.com/skocherhan/status/1952158753240793190 2025-08-04 00:48:48,Gabby_Recvry,url,http://Hireinfluence.it,#scam,https://x.com/Gabby_Recvry/status/1952169817231994913 2025-08-04 00:48:48,Gabby_Recvry,domain,Hireinfluence.it,#scam,https://x.com/Gabby_Recvry/status/1952169817231994913 2025-08-04 00:48:48,Gabby_Recvry,domain,ethfarm.live,#scam,https://x.com/Gabby_Recvry/status/1952169817231994913 2025-08-04 00:48:48,Gabby_Recvry,url,http://ethfarm.live,#scam,https://x.com/Gabby_Recvry/status/1952169817231994913 2025-08-04 01:12:06,G60930953,domain,m.123huodong.com.cloud.cdntip.com.s2-web.dogedns.com,#CobaltStrike,https://x.com/G60930953/status/1952175678243397889 2025-08-04 01:12:06,G60930953,url,http://m.123huodong.com.cloud.cdntip.com.s2-web.dogedns.com,#CobaltStrike,https://x.com/G60930953/status/1952175678243397889 2025-08-04 01:12:06,G60930953,sha256,6573136f9b804ddc637f6be3a4536ed0013da7a5592b2f3a3cd37c0c71926365,#CobaltStrike,https://x.com/G60930953/status/1952175678243397889 2025-08-04 02:00:07,urldna_bot,url,https://sarerererer.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952187764314628313 2025-08-04 02:00:07,urldna_bot,domain,sarerererer.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952187764314628313 2025-08-04 03:30:00,momomopas,url,http://define-clusters-american-counters.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 03:30:00,momomopas,url,http://rush-poetry-stations-disciplinary.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 03:30:00,momomopas,domain,rush-poetry-stations-disciplinary.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 03:30:00,momomopas,domain,define-clusters-american-counters.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 03:30:00,momomopas,url,http://architects-mins-emails-dimensions.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 03:30:00,momomopas,domain,architects-mins-emails-dimensions.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 03:30:00,momomopas,url,http://inbox-mixer-mysql-gmbh.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 03:30:00,momomopas,domain,inbox-mixer-mysql-gmbh.trycloudflare.com,#opendir,https://x.com/momomopas/status/1952210385504719274 2025-08-04 04:00:07,urldna_bot,domain,italocovas.github.io,#scam #phishing,https://x.com/urldna_bot/status/1952217963370516808 2025-08-04 04:00:07,urldna_bot,url,https://italocovas.github.io/instagram-ui-clone/index.html,#scam #phishing,https://x.com/urldna_bot/status/1952217963370516808 2025-08-04 05:26:58,K_N1kolenko,url,http://t.me/sadfgsdfgdfg124,#LummaStealer,https://x.com/K_N1kolenko/status/1952239821210165479 2025-08-04 05:26:58,K_N1kolenko,domain,fillettx.xin,#LummaStealer,https://x.com/K_N1kolenko/status/1952239821210165479 2025-08-04 05:26:58,K_N1kolenko,url,http://fillettx.xin/otiq,#LummaStealer,https://x.com/K_N1kolenko/status/1952239821210165479 2025-08-04 05:27:29,catnap707,domain,trip-plains.shjkahdjah.cn,#phishing,https://x.com/catnap707/status/1952239947995554084 2025-08-04 05:27:29,catnap707,url,http://trip-plains.shjkahdjah.cn/customer/announcement/,#phishing,https://x.com/catnap707/status/1952239947995554084 2025-08-04 05:27:29,catnap707,url,http://104.21.95.192,#phishing,https://x.com/catnap707/status/1952239947995554084 2025-08-04 05:33:34,catnap707,url,http://172.67.165.235,#phishing,https://x.com/catnap707/status/1952241478954328575 2025-08-04 05:33:34,catnap707,domain,icloud-putage.jnbkw.cn,#phishing,https://x.com/catnap707/status/1952241478954328575 2025-08-04 05:33:34,catnap707,url,http://icloud-putage.jnbkw.cn/gvIY2S/,#phishing,https://x.com/catnap707/status/1952241478954328575 2025-08-04 06:00:07,urldna_bot,domain,zimbrafixit.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952248163680608599 2025-08-04 06:00:07,urldna_bot,url,https://zimbrafixit.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952248163680608599 2025-08-04 06:03:11,fbgwls245,md5,6221B0BF4D365454D40C546CF7133570,#ransomware,https://x.com/fbgwls245/status/1952248934086451468 2025-08-04 06:38:39,ShadowChasing1,url,http://daily.alltop.asia/blog/article/del2.php,#APT,https://x.com/ShadowChasing1/status/1952257858948804856 2025-08-04 06:38:39,ShadowChasing1,url,http://daily.alltop.asia/blog/article/d2.php,#APT,https://x.com/ShadowChasing1/status/1952257858948804856 2025-08-04 06:38:39,ShadowChasing1,sha256,d8d86b15e68889bf76b3cf8e335f43afe0287b9b20aeb18b136b90a516695989,#APT,https://x.com/ShadowChasing1/status/1952257858948804856 2025-08-04 06:38:39,ShadowChasing1,domain,daily.alltop.asia,#APT,https://x.com/ShadowChasing1/status/1952257858948804856 2025-08-04 06:41:48,ShadowChasing1,domain,mail-baf-mil-bd-account-data-files-document.pages.dev,#APT,https://x.com/ShadowChasing1/status/1952258650325795077 2025-08-04 06:41:48,ShadowChasing1,url,https://mail-baf-mil-bd-account-data-files-document.pages.dev,#APT,https://x.com/ShadowChasing1/status/1952258650325795077 2025-08-04 06:41:57,ShadowChasing1,domain,mail-modp-gov-pk-view.netlify.app,#APT,https://x.com/ShadowChasing1/status/1952258687785181590 2025-08-04 06:41:57,ShadowChasing1,url,https://mail-modp-gov-pk-view.netlify.app/error.html,#APT,https://x.com/ShadowChasing1/status/1952258687785181590 2025-08-04 06:51:05,suyog41,md5,dc85c90e73911a57ff2e3862fb30e0b0,#stealer,https://x.com/suyog41/status/1952260988826456261 2025-08-04 06:51:05,suyog41,md5,75f51daff0696bb59f14a9b3f12d3578,#stealer,https://x.com/suyog41/status/1952260988826456261 2025-08-04 06:59:12,JAMESWT_WT,url,https://ww2-mi-connecto-app.somzenazazrakov.com,#phishing,https://x.com/JAMESWT_WT/status/1952263030152048824 2025-08-04 06:59:12,JAMESWT_WT,domain,ww2-mi-connecto-app.somzenazazrakov.com,#phishing,https://x.com/JAMESWT_WT/status/1952263030152048824 2025-08-04 07:11:19,suyog41,md5,eba2a543352ab5333a0aa369834278c8,#ransomware,https://x.com/suyog41/status/1952266082162778500 2025-08-04 08:00:08,urldna_bot,domain,turbo-mines.pro,#phishing #scam,https://x.com/urldna_bot/status/1952278363629932592 2025-08-04 08:00:08,urldna_bot,url,https://turbo-mines.pro/withdrawal,#phishing #scam,https://x.com/urldna_bot/status/1952278363629932592 2025-08-04 08:26:13,solidnames,url,http://thomasc0ncrete.com,#phishing,https://x.com/solidnames/status/1952284929875972190 2025-08-04 08:26:13,solidnames,domain,thomasc0ncrete.com,#phishing,https://x.com/solidnames/status/1952284929875972190 2025-08-04 08:33:48,Metemcyber,domain,pqrsxyz.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:33:48,Metemcyber,url,https://pqrsxyz.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:33:48,Metemcyber,domain,viwcr.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:33:48,Metemcyber,url,https://viwcr.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:33:48,Metemcyber,domain,liuzhikun.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:33:48,Metemcyber,url,https://liuzhikun.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:33:48,Metemcyber,domain,fananba.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:33:48,Metemcyber,url,https://fananba.cn,#phishing,https://x.com/Metemcyber/status/1952286839156707801 2025-08-04 08:34:24,Metemcyber,url,https://hmdpqhf.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:24,Metemcyber,domain,hmdpqhf.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:24,Metemcyber,url,https://klkpobh.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:24,Metemcyber,domain,klkpobh.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:24,Metemcyber,domain,erqhism.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:24,Metemcyber,url,https://knewlog.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:24,Metemcyber,domain,knewlog.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:24,Metemcyber,url,https://erqhism.cn,#phishing,https://x.com/Metemcyber/status/1952286989224690023 2025-08-04 08:34:55,Metemcyber,domain,dmnopq.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:34:55,Metemcyber,domain,geagent.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:34:55,Metemcyber,url,https://geagent.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:34:55,Metemcyber,domain,laiyeling.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:34:55,Metemcyber,url,https://laiyeling.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:34:55,Metemcyber,domain,vrblv.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:34:55,Metemcyber,url,https://vrblv.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:34:55,Metemcyber,url,https://dmnopq.cn,#phishing,https://x.com/Metemcyber/status/1952287117432013170 2025-08-04 08:35:18,Metemcyber,url,https://xvelc.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:18,Metemcyber,domain,xvelc.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:18,Metemcyber,url,https://zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:18,Metemcyber,domain,zangpiao.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:18,Metemcyber,url,https://lihuawang.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:18,Metemcyber,domain,fggbutf.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:18,Metemcyber,domain,lihuawang.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:18,Metemcyber,url,https://fggbutf.cn,#phishing,https://x.com/Metemcyber/status/1952287215804948586 2025-08-04 08:35:41,Metemcyber,domain,fppzj.cn,#phishing,https://x.com/Metemcyber/status/1952287311930302582 2025-08-04 08:35:41,Metemcyber,url,https://hbzhigu.cn,#phishing,https://x.com/Metemcyber/status/1952287311930302582 2025-08-04 08:35:41,Metemcyber,url,https://fppzj.cn,#phishing,https://x.com/Metemcyber/status/1952287311930302582 2025-08-04 08:35:41,Metemcyber,url,https://hackwps.cn,#phishing,https://x.com/Metemcyber/status/1952287311930302582 2025-08-04 08:35:41,Metemcyber,domain,hackwps.cn,#phishing,https://x.com/Metemcyber/status/1952287311930302582 2025-08-04 08:35:41,Metemcyber,domain,hbzhigu.cn,#phishing,https://x.com/Metemcyber/status/1952287311930302582 2025-08-04 08:36:05,Metemcyber,url,http://43.167.237.204,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 08:36:05,Metemcyber,url,https://nunshang.cn,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 08:36:05,Metemcyber,ip,43.167.237.204,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 08:36:05,Metemcyber,domain,nunshang.cn,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 08:36:05,Metemcyber,domain,fubolai.cn,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 08:36:05,Metemcyber,url,https://fubolai.cn,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 08:36:05,Metemcyber,url,https://duolalife.cn,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 08:36:05,Metemcyber,domain,duolalife.cn,#phishing,https://x.com/Metemcyber/status/1952287411217822155 2025-08-04 09:00:18,SarlackLab,url,http://147.185.221.30:51522,#C2 #Njrat,https://x.com/SarlackLab/status/1952293508099825901 2025-08-04 09:00:18,SarlackLab,domain,30.ip.gl.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1952293508099825901 2025-08-04 09:00:18,SarlackLab,url,http://30.ip.gl.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1952293508099825901 2025-08-04 09:00:18,SarlackLab,ip,147.185.221.30,#C2 #Njrat,https://x.com/SarlackLab/status/1952293508099825901 2025-08-04 09:07:22,Metemcyber,url,http://172.67.182.4,#phishing,https://x.com/Metemcyber/status/1952295285990015075 2025-08-04 09:07:22,Metemcyber,url,https://yodobashi-citizen.hqoxfc.cn/login_index/,#phishing,https://x.com/Metemcyber/status/1952295285990015075 2025-08-04 09:07:22,Metemcyber,domain,yodobashi-citizen.hqoxfc.cn,#phishing,https://x.com/Metemcyber/status/1952295285990015075 2025-08-04 09:07:22,Metemcyber,url,http://104.21.59.175,#phishing,https://x.com/Metemcyber/status/1952295285990015075 2025-08-04 09:08:09,c9lab_soc,domain,hsbc-uk.co,#scam #phishing,https://x.com/c9lab_soc/status/1952295480366649504 2025-08-04 09:08:09,c9lab_soc,url,http://hsbc-uk.co,#scam #phishing,https://x.com/c9lab_soc/status/1952295480366649504 2025-08-04 09:08:09,c9lab_soc,domain,jpmorgan.org.cn,#scam #phishing,https://x.com/c9lab_soc/status/1952295480366649504 2025-08-04 09:08:09,c9lab_soc,url,http://jpmorgan.org.cn,#scam #phishing,https://x.com/c9lab_soc/status/1952295480366649504 2025-08-04 09:08:48,Metemcyber,domain,yodobashi-oculato.xteotw.cn,#phishing,https://x.com/Metemcyber/status/1952295644447768999 2025-08-04 09:08:48,Metemcyber,url,https://yodobashi-oculato.xteotw.cn/login_index/,#phishing,https://x.com/Metemcyber/status/1952295644447768999 2025-08-04 09:08:48,Metemcyber,url,http://104.21.61.38,#phishing,https://x.com/Metemcyber/status/1952295644447768999 2025-08-04 09:08:48,Metemcyber,url,http://172.67.205.201,#phishing,https://x.com/Metemcyber/status/1952295644447768999 2025-08-04 09:09:28,Metemcyber,url,http://172.67.145.244,#phishing,https://x.com/Metemcyber/status/1952295814229012860 2025-08-04 09:09:28,Metemcyber,url,https://yodobashi-numer.tostog.cn/login_index/,#phishing,https://x.com/Metemcyber/status/1952295814229012860 2025-08-04 09:09:28,Metemcyber,url,http://104.21.87.205,#phishing,https://x.com/Metemcyber/status/1952295814229012860 2025-08-04 09:09:28,Metemcyber,domain,yodobashi-numer.tostog.cn,#phishing,https://x.com/Metemcyber/status/1952295814229012860 2025-08-04 10:00:12,urldna_bot,domain,ieeeeoreg.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952308580557762966 2025-08-04 10:00:12,urldna_bot,url,https://ieeeeoreg.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952308580557762966 2025-08-04 10:04:03,FalconFeedsio,domain,Veza.lt,,https://x.com/FalconFeedsio/status/1952309551082205278 2025-08-04 10:04:03,FalconFeedsio,url,http://Veza.lt,,https://x.com/FalconFeedsio/status/1952309551082205278 2025-08-04 12:00:11,urldna_bot,domain,univ-lorraine0.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952338775306031445 2025-08-04 12:00:11,urldna_bot,url,https://univ-lorraine0.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952338775306031445 2025-08-04 12:20:34,cyb3rops,sha256,6cd349eda0fa6c8b274a0920852c68f8b727afea1fdbc69ad183cef05d9cf141,,https://x.com/cyb3rops/status/1952343906345001106 2025-08-04 12:30:01,masaomi346,domain,mypage-ocn.3d3udjo.top,#phishing,https://x.com/masaomi346/status/1952346282254827868 2025-08-04 12:30:01,masaomi346,url,https://mypage-ocn.3d3udjo.top,#phishing,https://x.com/masaomi346/status/1952346282254827868 2025-08-04 12:30:01,masaomi346,domain,mypage-ocn.enyny5.top,#phishing,https://x.com/masaomi346/status/1952346282254827868 2025-08-04 12:30:01,masaomi346,url,https://mypage-ocn.enyny5.top,#phishing,https://x.com/masaomi346/status/1952346282254827868 2025-08-04 13:33:07,osint_barbie,sha256,8b3a13340d10f0370404eb5618a5ca2137a5bc9a0de7bd4a7fe45bf33f6b87ac,#malware,https://x.com/osint_barbie/status/1952362162200228069 2025-08-04 13:59:47,ShadowOpCode,domain,dropcheats.net,#Lumma,https://x.com/ShadowOpCode/status/1952368875800273363 2025-08-04 13:59:47,ShadowOpCode,url,https://dropcheats.net,#Lumma,https://x.com/ShadowOpCode/status/1952368875800273363 2025-08-04 13:59:47,ShadowOpCode,url,https://www.mediafire.com/file/p19s2bay3c2jzm3/DropCheats.zip/file,#Lumma,https://x.com/ShadowOpCode/status/1952368875800273363 2025-08-04 13:59:47,ShadowOpCode,domain,mocadia.com,#Lumma,https://x.com/ShadowOpCode/status/1952368875800273363 2025-08-04 13:59:47,ShadowOpCode,url,https://mocadia.com,#Lumma,https://x.com/ShadowOpCode/status/1952368875800273363 2025-08-04 14:00:11,urldna_bot,domain,netflix-rouge-pi.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1952368974873678295 2025-08-04 14:00:11,urldna_bot,url,https://www.netflix-rouge-pi.vercel.app,#scam #phishing,https://x.com/urldna_bot/status/1952368974873678295 2025-08-04 14:11:02,suyog41,md5,6ceb71f988e0a34ee85ed12d145d3582,,https://x.com/suyog41/status/1952371704124068164 2025-08-04 14:11:02,suyog41,md5,51c56775967d9811753cd3864d268e77,,https://x.com/suyog41/status/1952371704124068164 2025-08-04 14:11:02,suyog41,md5,aa183a51c8a3a0aa512aedae532bcb6e,,https://x.com/suyog41/status/1952371704124068164 2025-08-04 14:11:02,suyog41,md5,7667f74f2125d4d7164270f282c29a09,,https://x.com/suyog41/status/1952371704124068164 2025-08-04 14:11:02,suyog41,md5,2f87edf24f991ac02a414f2b5ee12d38,,https://x.com/suyog41/status/1952371704124068164 2025-08-04 15:00:18,SarlackLab,ip,124.198.131.144,#C2 #NanoCore,https://x.com/SarlackLab/status/1952384102771921222 2025-08-04 15:00:18,SarlackLab,url,http://uzamaki.duckdns.org,#C2 #NanoCore,https://x.com/SarlackLab/status/1952384102771921222 2025-08-04 15:00:18,SarlackLab,domain,uzamaki.duckdns.org,#C2 #NanoCore,https://x.com/SarlackLab/status/1952384102771921222 2025-08-04 15:00:18,SarlackLab,url,http://124.198.131.144:5353,#C2 #NanoCore,https://x.com/SarlackLab/status/1952384102771921222 2025-08-04 15:53:45,harugasumi,domain,mufg-eithera.maicoffee.cn,#phishing,https://x.com/harugasumi/status/1952397556438487309 2025-08-04 15:53:45,harugasumi,url,https://mufg-eithera.maicoffee.cn?token=RW03120mckiw00l,#phishing,https://x.com/harugasumi/status/1952397556438487309 2025-08-04 16:00:09,urldna_bot,domain,r-ckerstattung.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1952399166748889450 2025-08-04 16:00:09,urldna_bot,url,https://r-ckerstattung.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1952399166748889450 2025-08-04 16:02:31,harugasumi,domain,xpgjkkf03.com,#phishing,https://x.com/harugasumi/status/1952399761983861245 2025-08-04 16:02:31,harugasumi,url,https://xpgjkkf03.com,#phishing,https://x.com/harugasumi/status/1952399761983861245 2025-08-04 16:07:39,James_inthe_box,url,https://github.com/jaybobo1/Supplier,#malware,https://x.com/James_inthe_box/status/1952401051669381401 2025-08-04 16:07:39,James_inthe_box,domain,mail.dndmelectrical.co.za,#malware,https://x.com/James_inthe_box/status/1952401051669381401 2025-08-04 16:07:39,James_inthe_box,url,http://mail.dndmelectrical.co.za,#malware,https://x.com/James_inthe_box/status/1952401051669381401 2025-08-04 17:54:31,1ZRR4H,url,http://carabinero.cl,,https://x.com/1ZRR4H/status/1952427944741126494 2025-08-04 17:54:31,1ZRR4H,domain,carabinero.cl,,https://x.com/1ZRR4H/status/1952427944741126494 2025-08-04 17:54:31,1ZRR4H,url,http://soportetecnicobanconestado.cl,,https://x.com/1ZRR4H/status/1952427944741126494 2025-08-04 17:54:31,1ZRR4H,domain,soportetecnicobanconestado.cl,,https://x.com/1ZRR4H/status/1952427944741126494 2025-08-04 18:00:06,urldna_bot,domain,gytujfshmtyxkif.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952429352957739160 2025-08-04 18:00:06,urldna_bot,url,https://gytujfshmtyxkif.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952429352957739160 2025-08-04 20:00:06,urldna_bot,domain,blackhillscbnklogln.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952459552814690629 2025-08-04 20:00:06,urldna_bot,url,https://blackhillscbnklogln.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952459552814690629 2025-08-04 21:00:03,threatquery,url,http://85.98.101.193,#malware #C2 #Qakbot,https://x.com/threatquery/status/1952474639055171979 2025-08-04 21:00:03,threatquery,ip,85.98.101.193,#malware #C2 #Qakbot,https://x.com/threatquery/status/1952474639055171979 2025-08-04 21:00:04,threatquery,url,http://35.161.154.247,#malware #C2,https://x.com/threatquery/status/1952474641034829929 2025-08-04 21:00:04,threatquery,ip,35.161.154.247,#malware #C2,https://x.com/threatquery/status/1952474641034829929 2025-08-04 21:00:04,threatquery,url,http://3.33.183.94,#malware #C2,https://x.com/threatquery/status/1952474642783879324 2025-08-04 21:33:48,skocherhan,md5,be71ca996011e34fea985a0cf674657e,,https://x.com/skocherhan/status/1952483131732422726 2025-08-04 21:33:48,skocherhan,md5,755dd7144d75c8fc7447cf1343ed5258,,https://x.com/skocherhan/status/1952483131732422726 2025-08-04 21:33:48,skocherhan,sha256,292903ee4c41e1bec8299f2f8dfaa831aa94a5dc93aab2685f59f4f128950fc5,,https://x.com/skocherhan/status/1952483131732422726 2025-08-04 21:40:48,skocherhan,domain,hcmct.edu.vn,,https://x.com/skocherhan/status/1952484894044836054 2025-08-04 21:40:48,skocherhan,url,http://hcmct.edu.vn,,https://x.com/skocherhan/status/1952484894044836054 2025-08-04 21:44:41,skocherhan,md5,8d776e70955435e0d43b51c922adfeae,#Kimsuky,https://x.com/skocherhan/status/1952485871279853989 2025-08-04 21:45:14,skocherhan,domain,Trojan.Dropper.Agent.XYZ,,https://x.com/skocherhan/status/1952486006365757530 2025-08-04 21:45:14,skocherhan,url,http://Trojan.Dropper.Agent.XYZ,,https://x.com/skocherhan/status/1952486006365757530 2025-08-04 21:46:16,skocherhan,url,http://96.9.124.209:8080/getcmd,,https://x.com/skocherhan/status/1952486268518240349 2025-08-04 21:46:16,skocherhan,url,http://64.7.198.123/win.ps1,,https://x.com/skocherhan/status/1952486268518240349 2025-08-04 21:46:16,skocherhan,ip,64.7.198.123,,https://x.com/skocherhan/status/1952486268518240349 2025-08-04 21:46:16,skocherhan,ip,96.9.124.209,,https://x.com/skocherhan/status/1952486268518240349 2025-08-04 22:00:07,urldna_bot,domain,developwithjamal.github.io,#scam #phishing,https://x.com/urldna_bot/status/1952489752663355836 2025-08-04 22:00:07,urldna_bot,url,https://developwithjamal.github.io/Netflix-Clone/,#scam #phishing,https://x.com/urldna_bot/status/1952489752663355836 2025-08-04 22:23:17,1ZRR4H,ip,144.91.103.204,#opendir,https://x.com/1ZRR4H/status/1952495584730071482 2025-08-04 22:23:17,1ZRR4H,url,http://144.91.103.204/optimization/ExplOpt.exe,#opendir,https://x.com/1ZRR4H/status/1952495584730071482 2025-08-04 22:23:17,1ZRR4H,sha256,aa23f21bae3d3bbe722bcd03aaf8c440bede9a5ec01d3840f87567ea41925c98,#opendir,https://x.com/1ZRR4H/status/1952495584730071482 2025-08-04 22:53:23,masaomi346,domain,mypage-ocn.1x8zry.top,#phishing,https://x.com/masaomi346/status/1952503157931770254 2025-08-04 22:53:23,masaomi346,url,https://mypage-ocn.1x8zry.top,#phishing,https://x.com/masaomi346/status/1952503157931770254 2025-08-04 22:53:23,masaomi346,domain,mypage-ocn.jd8zkl.top,#phishing,https://x.com/masaomi346/status/1952503157931770254 2025-08-04 22:53:23,masaomi346,url,https://mypage-ocn.jd8zkl.top,#phishing,https://x.com/masaomi346/status/1952503157931770254 2025-08-05 00:00:19,SarlackLab,url,http://147.185.221.26:26089,#C2 #Njrat,https://x.com/SarlackLab/status/1952520002541637801 2025-08-05 00:00:19,SarlackLab,ip,147.185.221.26,#C2 #Njrat,https://x.com/SarlackLab/status/1952520002541637801 2025-08-05 02:00:06,urldna_bot,domain,updatedemployeemanual.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952550147373535398 2025-08-05 02:00:06,urldna_bot,url,https://updatedemployeemanual.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952550147373535398 2025-08-05 04:00:07,urldna_bot,domain,edgeecoder.github.io,#phishing #scam,https://x.com/urldna_bot/status/1952580350401564917 2025-08-05 04:00:07,urldna_bot,url,https://edgeecoder.github.io/Netflix-Clone/,#phishing #scam,https://x.com/urldna_bot/status/1952580350401564917 2025-08-05 05:31:42,TIntel2255,domain,indiandefenceforce.link,#phishing,https://x.com/TIntel2255/status/1952603397536010609 2025-08-05 05:31:42,TIntel2255,url,http://indiandefenceforce.link,#phishing,https://x.com/TIntel2255/status/1952603397536010609 2025-08-05 06:00:06,urldna_bot,url,https://mariner.okta-ssl.com,#phishing #scam,https://x.com/urldna_bot/status/1952610547322482776 2025-08-05 06:00:06,urldna_bot,domain,mariner.okta-ssl.com,#phishing #scam,https://x.com/urldna_bot/status/1952610547322482776 2025-08-05 06:38:56,onuroktay,url,http://85.98.101.193,#C2 #malware #Qakbot,https://x.com/onuroktay/status/1952620317152579946 2025-08-05 06:38:56,onuroktay,ip,85.98.101.193,#C2 #malware #Qakbot,https://x.com/onuroktay/status/1952620317152579946 2025-08-05 08:00:06,urldna_bot,domain,11sq1.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952640746432958956 2025-08-05 08:00:06,urldna_bot,url,https://11sq1.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952640746432958956 2025-08-05 08:27:02,c9lab_soc,domain,shodan.world,#phishing #scam,https://x.com/c9lab_soc/status/1952647524243882293 2025-08-05 08:27:02,c9lab_soc,url,http://google-business-profil.com,#phishing #scam,https://x.com/c9lab_soc/status/1952647524243882293 2025-08-05 08:27:02,c9lab_soc,domain,google-business-profil.com,#phishing #scam,https://x.com/c9lab_soc/status/1952647524243882293 2025-08-05 08:27:02,c9lab_soc,url,http://shodan.world,#phishing #scam,https://x.com/c9lab_soc/status/1952647524243882293 2025-08-05 09:06:37,skocherhan,url,https://www.sonicwall.com/blog/threat-actors-modify-and-re-create-commercial-software-to-steal-users-information,,https://x.com/skocherhan/status/1952657484134367518 2025-08-05 09:06:37,skocherhan,domain,sonicwall.com,,https://x.com/skocherhan/status/1952657484134367518 2025-08-05 09:11:07,ShadowChasing1,domain,rollededpack.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,url,http://chartsbezorgd.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,url,http://visionglobale.site,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,domain,visionglobale.site,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,url,http://playserzapp.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,domain,chartsbezorgd.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,url,http://appzserv.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,domain,appzserv.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,url,http://rollededpack.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:07,ShadowChasing1,domain,playserzapp.info,,https://x.com/ShadowChasing1/status/1952658618349920607 2025-08-05 09:11:17,ShadowChasing1,sha256,469939b626e8d9d383b8dd3bd98103ca36f5dae31be8e4e245da126731bf73aa,#APT,https://x.com/ShadowChasing1/status/1952658657801564225 2025-08-05 10:00:07,urldna_bot,domain,collinscu.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952670946906492957 2025-08-05 10:00:07,urldna_bot,url,https://collinscu.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952670946906492957 2025-08-05 10:01:26,skocherhan,domain,sds.jpbdselangor.gov.my,,https://x.com/skocherhan/status/1952671280349462802 2025-08-05 10:01:26,skocherhan,url,https://sds.jpbdselangor.gov.my/pwn.htm,,https://x.com/skocherhan/status/1952671280349462802 2025-08-05 10:04:06,skocherhan,url,http://carabinero.cl,,https://x.com/skocherhan/status/1952671951236833529 2025-08-05 10:04:06,skocherhan,domain,carabinero.cl,,https://x.com/skocherhan/status/1952671951236833529 2025-08-05 10:04:06,skocherhan,domain,soportetecnicobanconestado.cl,,https://x.com/skocherhan/status/1952671951236833529 2025-08-05 10:04:06,skocherhan,url,http://soportetecnicobanconestado.cl,,https://x.com/skocherhan/status/1952671951236833529 2025-08-05 10:27:19,skocherhan,url,http://cloud.coremailcloud.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,domain,cloud.coremailcloud.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,url,http://vistavue.shop,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,domain,vistavue.shop,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,domain,oilplus1td.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,url,http://oilplus1td.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,domain,mailcloucl.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,url,http://demsflygerxamy.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,domain,demsflygerxamy.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,url,http://coremailcloud.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,domain,coremailcloud.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:27:19,skocherhan,url,http://mailcloucl.com,,https://x.com/skocherhan/status/1952677794791506298 2025-08-05 10:47:03,PrakkiSathwik,md5,93875e6dcc6e306c6910c810dd3e9808,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1952682759555776979 2025-08-05 10:47:03,PrakkiSathwik,md5,7dd7a25a6ae7caeb4f7ad9a89d96f7ec,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1952682759555776979 2025-08-05 10:47:03,PrakkiSathwik,md5,51ac5f4bcffd208899ebe778c1725579,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1952682759555776979 2025-08-05 10:47:03,PrakkiSathwik,ip,84.247.176.126,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1952682759555776979 2025-08-05 10:47:03,PrakkiSathwik,ip,149.102.152.50,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1952682759555776979 2025-08-05 10:47:03,PrakkiSathwik,url,http://swachbharat.xyz,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1952682759555776979 2025-08-05 10:47:03,PrakkiSathwik,domain,swachbharat.xyz,#C2 #phishing #APT,https://x.com/PrakkiSathwik/status/1952682759555776979 2025-08-05 12:00:08,urldna_bot,domain,dhhhllll.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952701151427649952 2025-08-05 12:00:08,urldna_bot,url,https://dhhhllll.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952701151427649952 2025-08-05 12:33:44,suyog41,domain,ccltdcn.org,#APT,https://x.com/suyog41/status/1952709606297227414 2025-08-05 12:33:44,suyog41,url,http://ccltdcn.org,#APT,https://x.com/suyog41/status/1952709606297227414 2025-08-05 12:33:44,suyog41,md5,3f5bbba1d885e2a120dc93a4d8a7b59d,#APT,https://x.com/suyog41/status/1952709606297227414 2025-08-05 12:33:44,suyog41,md5,cf5d60617ad12c3e480c9d69326a53eb,#APT,https://x.com/suyog41/status/1952709606297227414 2025-08-05 12:38:36,skocherhan,md5,eba2a543352ab5333a0aa369834278c8,#ransomware,https://x.com/skocherhan/status/1952710832623624388 2025-08-05 13:18:03,abuse_ch,url,https://salat.cn/login/,,https://x.com/abuse_ch/status/1952720761472373029 2025-08-05 13:37:14,JAMESWT_WT,url,https://artpeace.gallery/riattivazione-del/contoInG/client/login.php,#phishing,https://x.com/JAMESWT_WT/status/1952725589074272698 2025-08-05 13:37:14,JAMESWT_WT,domain,artpeace.gallery,#phishing,https://x.com/JAMESWT_WT/status/1952725589074272698 2025-08-05 13:37:14,JAMESWT_WT,url,https://desoracks.com.mx/camel,#phishing,https://x.com/JAMESWT_WT/status/1952725589074272698 2025-08-05 13:37:14,JAMESWT_WT,domain,desoracks.com.mx,#phishing,https://x.com/JAMESWT_WT/status/1952725589074272698 2025-08-05 13:51:42,JAMESWT_WT,url,http://185.102.115.108:4000/photo/74cbea88/get-photo?f=1&token=511bcf75-fa0b-4b0c-a6ee-191616855b0f,,https://x.com/JAMESWT_WT/status/1952729228975153388 2025-08-05 13:51:42,JAMESWT_WT,ip,185.102.115.108,,https://x.com/JAMESWT_WT/status/1952729228975153388 2025-08-05 14:00:10,urldna_bot,domain,online-taxies.web.app,#scam #phishing,https://x.com/urldna_bot/status/1952731359979454700 2025-08-05 14:00:10,urldna_bot,url,https://online-taxies.web.app,#scam #phishing,https://x.com/urldna_bot/status/1952731359979454700 2025-08-05 15:26:20,1ZRR4H,ip,181.206.158.190,#Remcos #opendir #Dcrat,https://x.com/1ZRR4H/status/1952753043088252945 2025-08-05 15:26:20,1ZRR4H,sha256,dd36ccb034444d9c94afba45ff1f14b3852c12390820be810dc3bbe46abcf0be,#Remcos #opendir #Dcrat,https://x.com/1ZRR4H/status/1952753043088252945 2025-08-05 15:45:34,drb_ra,url,http://104.21.91.111:443,#C2,https://x.com/drb_ra/status/1952757881989652495 2025-08-05 15:46:08,drb_ra,domain,server-cd2.bipewi2747.workers.dev,#C2,https://x.com/drb_ra/status/1952758024172392480 2025-08-05 15:46:08,drb_ra,url,http://server-cd2.bipewi2747.workers.dev,#C2,https://x.com/drb_ra/status/1952758024172392480 2025-08-05 15:46:08,drb_ra,url,http://104.21.91.111:80,#C2,https://x.com/drb_ra/status/1952758024172392480 2025-08-05 15:46:41,drb_ra,url,http://101.133.229.117:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758165784658264 2025-08-05 15:46:41,drb_ra,ip,101.133.229.117,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758165784658264 2025-08-05 15:46:41,drb_ra,domain,chinagasholdings.space,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758165784658264 2025-08-05 15:46:41,drb_ra,url,https://www.chinagasholdings.space/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758165784658264 2025-08-05 15:47:15,drb_ra,domain,cdn-88.org,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758305652183401 2025-08-05 15:47:15,drb_ra,url,https://cdn-88.org/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758305652183401 2025-08-05 15:47:15,drb_ra,url,http://45.32.250.246:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758305652183401 2025-08-05 15:47:15,drb_ra,ip,45.32.250.246,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758305652183401 2025-08-05 15:47:48,drb_ra,url,http://43.230.163.146:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758446761160718 2025-08-05 15:47:48,drb_ra,ip,43.230.163.146,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758446761160718 2025-08-05 15:47:48,drb_ra,url,https://43.230.163.146/siie=utf-8&f=8&rsv_bp=1&rsv_idx=1&ch=&tn=baidu&bar=&wd=,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758446761160718 2025-08-05 15:48:21,drb_ra,url,https://45.156.87.173/push,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758585710022941 2025-08-05 15:48:21,drb_ra,url,http://45.156.87.173:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758585710022941 2025-08-05 15:48:21,drb_ra,ip,45.156.87.173,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758585710022941 2025-08-05 15:48:56,drb_ra,url,https://47.105.36.109/siie=utf-8&f=8&rsv_bp=1&rsv_idx=1&ch=&tn=baidu&bar=&wd=,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758729281020221 2025-08-05 15:48:56,drb_ra,url,http://47.105.36.109:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758729281020221 2025-08-05 15:48:56,drb_ra,ip,47.105.36.109,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758729281020221 2025-08-05 15:49:29,drb_ra,ip,178.128.152.46,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758869484077275 2025-08-05 15:49:29,drb_ra,url,http://178.128.152.46:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952758869484077275 2025-08-05 15:50:02,drb_ra,url,http://144.91.103.204:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952759008650985551 2025-08-05 15:50:02,drb_ra,ip,144.91.103.204,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952759008650985551 2025-08-05 15:50:02,drb_ra,url,https://144.91.103.204/load,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952759008650985551 2025-08-05 15:50:35,drb_ra,url,http://185.92.182.94:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952759147742531871 2025-08-05 15:50:35,drb_ra,ip,185.92.182.94,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952759147742531871 2025-08-05 15:51:08,drb_ra,url,http://47.83.8.68:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952759285902897303 2025-08-05 15:51:08,drb_ra,ip,47.83.8.68,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952759285902897303 2025-08-05 15:51:42,drb_ra,url,http://85.239.53.66:80,#C2,https://x.com/drb_ra/status/1952759425451557372 2025-08-05 15:51:42,drb_ra,ip,85.239.53.66,#C2,https://x.com/drb_ra/status/1952759425451557372 2025-08-05 15:52:15,drb_ra,ip,51.222.96.108,#C2,https://x.com/drb_ra/status/1952759563679158336 2025-08-05 15:52:15,drb_ra,url,http://51.222.96.108:80,#C2,https://x.com/drb_ra/status/1952759563679158336 2025-08-05 15:52:48,drb_ra,url,http://194.59.30.187:443,#C2,https://x.com/drb_ra/status/1952759702107963570 2025-08-05 15:52:48,drb_ra,ip,194.59.30.187,#C2,https://x.com/drb_ra/status/1952759702107963570 2025-08-05 15:53:21,drb_ra,url,http://194.59.30.11:443,#C2,https://x.com/drb_ra/status/1952759839899238744 2025-08-05 15:53:21,drb_ra,ip,194.59.30.11,#C2,https://x.com/drb_ra/status/1952759839899238744 2025-08-05 15:53:53,drb_ra,url,http://142.202.188.223:8888,#C2 #Remcos,https://x.com/drb_ra/status/1952759978185437238 2025-08-05 15:53:53,drb_ra,ip,142.202.188.223,#C2 #Remcos,https://x.com/drb_ra/status/1952759978185437238 2025-08-05 15:54:26,drb_ra,url,http://172.94.9.240:5671,#C2 #Remcos,https://x.com/drb_ra/status/1952760116131881268 2025-08-05 15:54:26,drb_ra,ip,172.94.9.240,#C2 #Remcos,https://x.com/drb_ra/status/1952760116131881268 2025-08-05 15:54:59,drb_ra,ip,196.251.114.54,#C2 #Remcos,https://x.com/drb_ra/status/1952760254044741923 2025-08-05 15:54:59,drb_ra,url,http://196.251.114.54:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952760254044741923 2025-08-05 15:55:33,drb_ra,url,http://118.107.44.162:2096,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952760393798959513 2025-08-05 15:55:33,drb_ra,ip,118.107.44.162,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952760393798959513 2025-08-05 15:56:06,drb_ra,url,http://3.25.136.196:44817,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952760532550746281 2025-08-05 15:56:39,drb_ra,url,http://3.34.252.229:59514,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952760671277343162 2025-08-05 15:57:12,drb_ra,url,http://13.211.80.141:49152,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952760812319240321 2025-08-05 15:57:12,drb_ra,ip,13.211.80.141,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952760812319240321 2025-08-05 15:57:46,drb_ra,url,http://43.200.254.110:9600,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952760951427510623 2025-08-05 15:57:46,drb_ra,ip,43.200.254.110,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952760951427510623 2025-08-05 15:58:19,drb_ra,url,http://3.148.197.135:9601,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952761089977913589 2025-08-05 15:58:52,drb_ra,url,http://16.26.92.78:40338,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952761228712870304 2025-08-05 15:58:52,drb_ra,ip,16.26.92.78,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952761228712870304 2025-08-05 15:59:24,drb_ra,url,http://54.171.107.169:443,#C2 #Interactsh,https://x.com/drb_ra/status/1952761366298661360 2025-08-05 15:59:57,drb_ra,url,http://54.171.107.169:80,#C2 #Interactsh,https://x.com/drb_ra/status/1952761504635179384 2025-08-05 15:59:57,drb_ra,ip,54.171.107.169,#C2 #Interactsh,https://x.com/drb_ra/status/1952761504635179384 2025-08-05 16:00:07,urldna_bot,url,https://material-badge.surge.sh,#phishing #scam,https://x.com/urldna_bot/status/1952761544388837866 2025-08-05 16:00:07,urldna_bot,domain,material-badge.surge.sh,#phishing #scam,https://x.com/urldna_bot/status/1952761544388837866 2025-08-05 16:00:31,drb_ra,url,http://23.239.13.64:587,#C2 #Interactsh,https://x.com/drb_ra/status/1952761644402032773 2025-08-05 16:01:04,drb_ra,ip,23.239.13.64,#C2 #Interactsh,https://x.com/drb_ra/status/1952761784412131734 2025-08-05 16:01:04,drb_ra,url,http://23.239.13.64:25,#C2 #Interactsh,https://x.com/drb_ra/status/1952761784412131734 2025-08-05 16:01:37,drb_ra,url,http://117.72.122.195:8888,#C2 #Supershell,https://x.com/drb_ra/status/1952761923570663781 2025-08-05 16:01:37,drb_ra,ip,117.72.122.195,#C2 #Supershell,https://x.com/drb_ra/status/1952761923570663781 2025-08-05 16:02:11,drb_ra,ip,86.98.219.36,#C2 #Qakbot,https://x.com/drb_ra/status/1952762063203295315 2025-08-05 16:02:11,drb_ra,url,http://86.98.219.36:443,#C2 #Qakbot,https://x.com/drb_ra/status/1952762063203295315 2025-08-05 16:02:44,drb_ra,url,http://206.190.236.171:443,#C2,https://x.com/drb_ra/status/1952762201812443300 2025-08-05 16:02:44,drb_ra,ip,206.190.236.171,#C2,https://x.com/drb_ra/status/1952762201812443300 2025-08-05 16:03:17,drb_ra,ip,216.128.136.39,#C2,https://x.com/drb_ra/status/1952762339788222968 2025-08-05 16:03:17,drb_ra,url,http://216.128.136.39:443,#C2,https://x.com/drb_ra/status/1952762339788222968 2025-08-05 16:03:49,drb_ra,url,http://86.106.85.191:443,#C2 #Havoc,https://x.com/drb_ra/status/1952762477176889514 2025-08-05 16:03:49,drb_ra,ip,86.106.85.191,#C2 #Havoc,https://x.com/drb_ra/status/1952762477176889514 2025-08-05 16:04:22,drb_ra,url,http://20.119.77.135:443,#C2 #Havoc,https://x.com/drb_ra/status/1952762615387558000 2025-08-05 16:04:22,drb_ra,ip,20.119.77.135,#C2 #Havoc,https://x.com/drb_ra/status/1952762615387558000 2025-08-05 16:04:55,drb_ra,url,http://178.189.213.251:443,#C2 #Deimos,https://x.com/drb_ra/status/1952762754244215115 2025-08-05 16:04:55,drb_ra,ip,178.189.213.251,#C2 #Deimos,https://x.com/drb_ra/status/1952762754244215115 2025-08-05 16:05:29,drb_ra,url,http://15.200.201.8:443,#C2 #Deimos,https://x.com/drb_ra/status/1952762893302182255 2025-08-05 16:05:29,drb_ra,ip,15.200.201.8,#C2 #Deimos,https://x.com/drb_ra/status/1952762893302182255 2025-08-05 16:06:02,drb_ra,url,http://75.2.77.241:443,#C2 #Deimos,https://x.com/drb_ra/status/1952763032016142630 2025-08-05 16:06:02,drb_ra,ip,75.2.77.241,#C2 #Deimos,https://x.com/drb_ra/status/1952763032016142630 2025-08-05 16:06:35,drb_ra,url,http://34.93.222.90:443,#C2 #Deimos,https://x.com/drb_ra/status/1952763170365321540 2025-08-05 16:07:08,drb_ra,url,http://112.19.5.20:4506,#C2 #Deimos,https://x.com/drb_ra/status/1952763311528845590 2025-08-05 16:07:08,drb_ra,ip,112.19.5.20,#C2 #Deimos,https://x.com/drb_ra/status/1952763311528845590 2025-08-05 16:07:41,drb_ra,url,http://34.59.29.91:7443,#C2 #Mythic,https://x.com/drb_ra/status/1952763449617830124 2025-08-05 16:08:14,drb_ra,url,http://51.75.38.2:7443,#C2 #Mythic,https://x.com/drb_ra/status/1952763587417522608 2025-08-05 16:08:14,drb_ra,ip,51.75.38.2,#C2 #Mythic,https://x.com/drb_ra/status/1952763587417522608 2025-08-05 16:08:47,drb_ra,url,http://86.106.85.173:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952763725233987791 2025-08-05 16:08:47,drb_ra,ip,86.106.85.173,#C2 #Sliver,https://x.com/drb_ra/status/1952763725233987791 2025-08-05 16:09:20,drb_ra,url,http://202.61.137.217:443,#C2 #Sliver,https://x.com/drb_ra/status/1952763863998271517 2025-08-05 16:09:20,drb_ra,ip,202.61.137.217,#C2 #Sliver,https://x.com/drb_ra/status/1952763863998271517 2025-08-05 16:09:53,drb_ra,url,http://165.232.124.182:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952764002980782244 2025-08-05 16:09:53,drb_ra,ip,165.232.124.182,#C2 #Sliver,https://x.com/drb_ra/status/1952764002980782244 2025-08-05 16:10:26,drb_ra,url,http://172.233.139.201:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952764142558818414 2025-08-05 16:10:26,drb_ra,ip,172.233.139.201,#C2 #Sliver,https://x.com/drb_ra/status/1952764142558818414 2025-08-05 16:10:59,drb_ra,url,http://116.202.108.76:443,#C2 #Sliver,https://x.com/drb_ra/status/1952764280916353356 2025-08-05 16:10:59,drb_ra,ip,116.202.108.76,#C2 #Sliver,https://x.com/drb_ra/status/1952764280916353356 2025-08-05 16:11:32,drb_ra,ip,212.193.57.188,#C2 #Sliver,https://x.com/drb_ra/status/1952764419429048826 2025-08-05 16:11:32,drb_ra,url,http://212.193.57.188:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952764419429048826 2025-08-05 16:12:06,drb_ra,ip,205.198.78.177,#C2 #Sliver,https://x.com/drb_ra/status/1952764559422333179 2025-08-05 16:12:06,drb_ra,url,http://205.198.78.177:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952764559422333179 2025-08-05 16:12:39,drb_ra,url,http://116.62.242.13:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952764698429919714 2025-08-05 16:12:39,drb_ra,ip,116.62.242.13,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952764698429919714 2025-08-05 16:13:12,drb_ra,url,https://45.86.153.106/owa/Q5gPb76xgLDlTkoqBUCBXJ1J6gf-sk5Veh5,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952764839207575737 2025-08-05 16:13:12,drb_ra,url,http://45.86.153.106:21451,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952764839207575737 2025-08-05 16:13:12,drb_ra,ip,45.86.153.106,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952764839207575737 2025-08-05 16:13:46,drb_ra,url,http://172.105.24.242:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952764978861121725 2025-08-05 16:13:46,drb_ra,ip,172.105.24.242,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952764978861121725 2025-08-05 16:14:19,drb_ra,url,http://113.250.188.15:8887,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952765118850212070 2025-08-05 16:14:19,drb_ra,ip,113.250.188.15,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952765118850212070 2025-08-05 16:14:52,drb_ra,url,http://39.102.209.244:8848,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952765257144758363 2025-08-05 16:14:52,drb_ra,ip,39.102.209.244,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952765257144758363 2025-08-05 16:14:52,drb_ra,url,https://39.102.209.244/match,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952765257144758363 2025-08-05 16:15:25,drb_ra,url,http://101.43.94.35:9180,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952765396018204829 2025-08-05 16:15:25,drb_ra,ip,101.43.94.35,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952765396018204829 2025-08-05 16:15:59,drb_ra,url,http://185.233.166.124:443,#C2,https://x.com/drb_ra/status/1952765536170823733 2025-08-05 16:16:32,drb_ra,ip,185.233.166.124,#C2,https://x.com/drb_ra/status/1952765675874795543 2025-08-05 16:16:32,drb_ra,url,http://185.233.166.124:9702,#C2,https://x.com/drb_ra/status/1952765675874795543 2025-08-05 16:17:05,drb_ra,ip,198.244.224.69,#C2,https://x.com/drb_ra/status/1952765815259812291 2025-08-05 16:17:05,drb_ra,url,http://198.244.224.69:80,#C2,https://x.com/drb_ra/status/1952765815259812291 2025-08-05 16:17:38,drb_ra,url,http://77.238.241.9:80,#C2,https://x.com/drb_ra/status/1952765953994793118 2025-08-05 16:17:38,drb_ra,ip,77.238.241.9,#C2,https://x.com/drb_ra/status/1952765953994793118 2025-08-05 16:18:11,drb_ra,url,http://196.251.85.144:5000,#C2 #Remcos,https://x.com/drb_ra/status/1952766091958047141 2025-08-05 16:18:11,drb_ra,ip,196.251.85.144,#C2 #Remcos,https://x.com/drb_ra/status/1952766091958047141 2025-08-05 16:18:44,drb_ra,url,http://196.251.117.188:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952766230663733558 2025-08-05 16:18:44,drb_ra,ip,196.251.117.188,#C2 #Remcos,https://x.com/drb_ra/status/1952766230663733558 2025-08-05 16:19:17,drb_ra,ip,45.132.238.147,#C2 #Remcos,https://x.com/drb_ra/status/1952766369482559563 2025-08-05 16:19:17,drb_ra,url,http://45.132.238.147:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952766369482559563 2025-08-05 16:19:51,drb_ra,url,http://54.219.39.97:10001,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952766508960022840 2025-08-05 16:20:24,drb_ra,url,http://54.219.39.97:3001,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952766648290627672 2025-08-05 16:20:24,drb_ra,ip,54.219.39.97,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952766648290627672 2025-08-05 16:20:57,drb_ra,url,http://13.201.10.7:2795,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952766786757128287 2025-08-05 16:20:57,drb_ra,ip,13.201.10.7,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952766786757128287 2025-08-05 16:21:30,drb_ra,ip,18.163.196.135,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952766925609611676 2025-08-05 16:21:30,drb_ra,url,http://18.163.196.135:3086,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952766925609611676 2025-08-05 16:22:03,drb_ra,ip,13.244.64.198,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952767064575258725 2025-08-05 16:22:03,drb_ra,url,http://13.244.64.198:2454,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952767064575258725 2025-08-05 16:22:36,drb_ra,url,http://34.250.69.149:443,#C2 #Interactsh,https://x.com/drb_ra/status/1952767202953740585 2025-08-05 16:22:36,drb_ra,ip,34.250.69.149,#C2 #Interactsh,https://x.com/drb_ra/status/1952767202953740585 2025-08-05 16:23:09,drb_ra,url,http://111.90.151.72:2850,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1952767342691168541 2025-08-05 16:23:09,drb_ra,ip,111.90.151.72,#Evilginx #EvilGoPhish #C2,https://x.com/drb_ra/status/1952767342691168541 2025-08-05 16:23:42,drb_ra,url,http://85.98.101.193:443,#C2 #Qakbot,https://x.com/drb_ra/status/1952767480079737174 2025-08-05 16:24:15,drb_ra,ip,35.75.228.75,#C2 #Havoc,https://x.com/drb_ra/status/1952767617346728083 2025-08-05 16:24:15,drb_ra,url,http://35.75.228.75:443,#C2 #Havoc,https://x.com/drb_ra/status/1952767617346728083 2025-08-05 16:24:48,drb_ra,url,http://35.161.154.247:443,#C2 #Deimos,https://x.com/drb_ra/status/1952767755565847013 2025-08-05 16:24:48,drb_ra,ip,35.161.154.247,#C2 #Deimos,https://x.com/drb_ra/status/1952767755565847013 2025-08-05 16:25:21,drb_ra,url,http://3.33.183.94:443,#C2 #Deimos,https://x.com/drb_ra/status/1952767893000622540 2025-08-05 16:25:54,drb_ra,url,http://107.23.227.249:443,#C2 #Deimos,https://x.com/drb_ra/status/1952768031433576531 2025-08-05 16:25:54,drb_ra,ip,107.23.227.249,#C2 #Deimos,https://x.com/drb_ra/status/1952768031433576531 2025-08-05 16:26:27,drb_ra,url,http://144.91.103.204:8080,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1952768170688675858 2025-08-05 16:27:34,drb_ra,ip,49.0.254.101,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768452143308928 2025-08-05 16:27:34,drb_ra,url,http://49.0.254.101:10000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768452143308928 2025-08-05 16:27:34,drb_ra,domain,qlchacha.top,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768452143308928 2025-08-05 16:27:34,drb_ra,url,https://www.qlchacha.top/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768452143308928 2025-08-05 16:28:07,drb_ra,url,http://101.43.139.175:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768591855599634 2025-08-05 16:28:07,drb_ra,ip,101.43.139.175,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768591855599634 2025-08-05 16:28:40,drb_ra,url,http://139.224.54.133:8333,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768731559440548 2025-08-05 16:28:40,drb_ra,ip,139.224.54.133,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768731559440548 2025-08-05 16:29:14,drb_ra,url,https://93.152.230.6/pixel.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768870269219284 2025-08-05 16:29:14,drb_ra,url,http://93.152.230.6:9443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768870269219284 2025-08-05 16:29:14,drb_ra,ip,93.152.230.6,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952768870269219284 2025-08-05 16:29:47,drb_ra,url,http://43.134.9.57:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769009192964445 2025-08-05 16:29:47,drb_ra,ip,43.134.9.57,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769009192964445 2025-08-05 16:29:47,drb_ra,url,https://43.134.9.57/j.ad,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769009192964445 2025-08-05 16:30:20,drb_ra,url,https://39.106.144.162/load,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769148628480166 2025-08-05 16:30:20,drb_ra,url,http://39.106.144.162:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769148628480166 2025-08-05 16:30:20,drb_ra,ip,39.106.144.162,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769148628480166 2025-08-05 16:30:53,drb_ra,ip,154.201.76.184,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769287476629627 2025-08-05 16:30:53,drb_ra,url,http://154.201.76.184:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769287476629627 2025-08-05 16:31:26,drb_ra,url,http://47.97.118.238:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769426631147540 2025-08-05 16:31:26,drb_ra,ip,47.97.118.238,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769426631147540 2025-08-05 16:32:00,drb_ra,url,http://38.47.120.26:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769567203172365 2025-08-05 16:32:33,drb_ra,url,http://206.119.172.150:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769707288715555 2025-08-05 16:32:33,drb_ra,ip,206.119.172.150,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769707288715555 2025-08-05 16:33:06,drb_ra,domain,api.teemaaby.dpdns.org,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769847244312828 2025-08-05 16:33:06,drb_ra,url,https://api.teemaaby.dpdns.org/cryptapi/v2/status,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769847244312828 2025-08-05 16:33:06,drb_ra,url,http://38.47.120.26:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769847244312828 2025-08-05 16:33:06,drb_ra,ip,38.47.120.26,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952769847244312828 2025-08-05 16:33:39,drb_ra,url,http://45.221.64.72:21,#C2,https://x.com/drb_ra/status/1952769985580777851 2025-08-05 16:33:39,drb_ra,ip,45.221.64.72,#C2,https://x.com/drb_ra/status/1952769985580777851 2025-08-05 16:34:12,drb_ra,url,http://107.175.148.101:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952770123753755008 2025-08-05 16:34:12,drb_ra,ip,107.175.148.101,#C2 #Remcos,https://x.com/drb_ra/status/1952770123753755008 2025-08-05 16:34:45,drb_ra,url,http://206.123.152.49:33862,#C2 #Remcos,https://x.com/drb_ra/status/1952770261813547483 2025-08-05 16:34:45,drb_ra,ip,206.123.152.49,#C2 #Remcos,https://x.com/drb_ra/status/1952770261813547483 2025-08-05 16:35:18,drb_ra,ip,45.80.158.63,#C2 #Remcos,https://x.com/drb_ra/status/1952770400263303402 2025-08-05 16:35:18,drb_ra,url,http://45.80.158.63:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952770400263303402 2025-08-05 16:35:51,drb_ra,url,http://172.94.96.90:5999,#C2 #Remcos,https://x.com/drb_ra/status/1952770538104934608 2025-08-05 16:35:51,drb_ra,ip,172.94.96.90,#C2 #Remcos,https://x.com/drb_ra/status/1952770538104934608 2025-08-05 16:36:24,drb_ra,url,http://206.123.152.45:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952770677443895412 2025-08-05 16:36:24,drb_ra,ip,206.123.152.45,#C2 #Remcos,https://x.com/drb_ra/status/1952770677443895412 2025-08-05 16:37:00,drb_ra,url,http://99.30.61.197:2427,#C2 #Remcos,https://x.com/drb_ra/status/1952770828589768994 2025-08-05 16:37:00,drb_ra,ip,99.30.61.197,#C2 #Remcos,https://x.com/drb_ra/status/1952770828589768994 2025-08-05 16:37:34,drb_ra,url,http://143.92.49.232:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952770967693840690 2025-08-05 16:37:34,drb_ra,ip,143.92.49.232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952770967693840690 2025-08-05 16:38:07,drb_ra,url,http://181.235.10.10:8020,#AsyncRAT #C2,https://x.com/drb_ra/status/1952771106999300205 2025-08-05 16:38:07,drb_ra,ip,181.235.10.10,#AsyncRAT #C2,https://x.com/drb_ra/status/1952771106999300205 2025-08-05 16:38:40,drb_ra,url,http://173.249.194.227:80,#C2 #Interactsh,https://x.com/drb_ra/status/1952771246069801374 2025-08-05 16:38:40,drb_ra,ip,173.249.194.227,#C2 #Interactsh,https://x.com/drb_ra/status/1952771246069801374 2025-08-05 16:39:46,drb_ra,url,http://5.101.84.173:443,#Havoc #C2,https://x.com/drb_ra/status/1952771524852674991 2025-08-05 16:40:19,drb_ra,url,http://45.59.125.26:443,#Havoc #C2,https://x.com/drb_ra/status/1952771663147237714 2025-08-05 16:40:19,drb_ra,ip,45.59.125.26,#Havoc #C2,https://x.com/drb_ra/status/1952771663147237714 2025-08-05 16:46:24,drb_ra,url,http://101.43.139.175:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1952773192038207606 2025-08-05 16:46:57,drb_ra,url,http://47.107.249.31:50000,#CobaltStrike #C2,https://x.com/drb_ra/status/1952773331549130855 2025-08-05 16:46:57,drb_ra,ip,47.107.249.31,#CobaltStrike #C2,https://x.com/drb_ra/status/1952773331549130855 2025-08-05 16:47:31,drb_ra,url,https://81.71.249.93/omp/api/micro_app/get_org_app,#CobaltStrike #C2,https://x.com/drb_ra/status/1952773471852781961 2025-08-05 16:47:31,drb_ra,url,http://81.71.249.93:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1952773471852781961 2025-08-05 16:47:31,drb_ra,ip,81.71.249.93,#CobaltStrike #C2,https://x.com/drb_ra/status/1952773471852781961 2025-08-05 16:50:16,drb_ra,url,http://84.154.183.163:81,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774163493540088 2025-08-05 16:50:16,drb_ra,ip,84.154.183.163,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774163493540088 2025-08-05 16:50:49,drb_ra,url,http://18.228.192.59:2096,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774301918110186 2025-08-05 16:50:49,drb_ra,ip,18.228.192.59,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774301918110186 2025-08-05 16:51:21,drb_ra,url,http://18.230.11.233:636,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774439818477838 2025-08-05 16:51:21,drb_ra,ip,18.230.11.233,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774439818477838 2025-08-05 16:51:54,drb_ra,url,http://35.152.141.253:8636,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774578524098846 2025-08-05 16:51:54,drb_ra,ip,35.152.141.253,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952774578524098846 2025-08-05 16:53:34,drb_ra,url,http://88.80.17.177:80,#Interactsh #C2,https://x.com/drb_ra/status/1952774994552881562 2025-08-05 16:53:34,drb_ra,ip,88.80.17.177,#Interactsh #C2,https://x.com/drb_ra/status/1952774994552881562 2025-08-05 16:54:07,drb_ra,url,http://34.244.254.153:80,#Interactsh #C2,https://x.com/drb_ra/status/1952775133124252090 2025-08-05 16:54:07,drb_ra,ip,34.244.254.153,#Interactsh #C2,https://x.com/drb_ra/status/1952775133124252090 2025-08-05 16:54:40,drb_ra,url,http://34.96.165.237:8888,#Supershell #C2,https://x.com/drb_ra/status/1952775272010317827 2025-08-05 16:55:13,drb_ra,url,http://44.237.77.82:443,#C2 #Deimos,https://x.com/drb_ra/status/1952775410170638660 2025-08-05 16:55:13,drb_ra,ip,44.237.77.82,#C2 #Deimos,https://x.com/drb_ra/status/1952775410170638660 2025-08-05 16:55:46,drb_ra,url,http://34.82.165.200:443,#C2 #Deimos,https://x.com/drb_ra/status/1952775548737933330 2025-08-05 16:56:19,drb_ra,url,http://23.23.249.235:443,#C2 #Deimos,https://x.com/drb_ra/status/1952775686554275861 2025-08-05 16:56:19,drb_ra,ip,23.23.249.235,#C2 #Deimos,https://x.com/drb_ra/status/1952775686554275861 2025-08-05 16:56:52,drb_ra,url,http://23.95.75.252:3566,#C2 #Deimos,https://x.com/drb_ra/status/1952775825507381675 2025-08-05 16:56:52,drb_ra,ip,23.95.75.252,#C2 #Deimos,https://x.com/drb_ra/status/1952775825507381675 2025-08-05 16:57:25,drb_ra,url,http://52.27.181.0:443,#C2 #Deimos,https://x.com/drb_ra/status/1952775962979877216 2025-08-05 16:57:57,drb_ra,url,http://102.117.173.73:7443,#C2 #Mythic,https://x.com/drb_ra/status/1952776100808970509 2025-08-05 16:57:57,drb_ra,ip,102.117.173.73,#C2 #Mythic,https://x.com/drb_ra/status/1952776100808970509 2025-08-05 16:58:30,drb_ra,url,http://139.177.201.16:7443,#C2 #Mythic,https://x.com/drb_ra/status/1952776239464267960 2025-08-05 16:58:30,drb_ra,ip,139.177.201.16,#C2 #Mythic,https://x.com/drb_ra/status/1952776239464267960 2025-08-05 16:59:03,drb_ra,url,http://65.20.99.39:7443,#C2 #Mythic,https://x.com/drb_ra/status/1952776376928321796 2025-08-05 16:59:03,drb_ra,ip,65.20.99.39,#C2 #Mythic,https://x.com/drb_ra/status/1952776376928321796 2025-08-05 16:59:36,drb_ra,url,http://194.116.214.53:7443,#C2 #Covenant,https://x.com/drb_ra/status/1952776515604582780 2025-08-05 16:59:36,drb_ra,ip,194.116.214.53,#C2 #Covenant,https://x.com/drb_ra/status/1952776515604582780 2025-08-05 17:00:09,drb_ra,url,http://47.236.228.89:8443,#Sliver #C2,https://x.com/drb_ra/status/1952776654188638684 2025-08-05 17:00:09,drb_ra,ip,47.236.228.89,#Sliver #C2,https://x.com/drb_ra/status/1952776654188638684 2025-08-05 17:00:42,drb_ra,url,http://209.38.112.227:31337,#Sliver #C2,https://x.com/drb_ra/status/1952776793070379133 2025-08-05 17:00:42,drb_ra,ip,209.38.112.227,#Sliver #C2,https://x.com/drb_ra/status/1952776793070379133 2025-08-05 17:01:16,drb_ra,url,http://47.95.209.123:9999,#CobaltStrike #C2,https://x.com/drb_ra/status/1952776932648460425 2025-08-05 17:01:16,drb_ra,ip,47.95.209.123,#CobaltStrike #C2,https://x.com/drb_ra/status/1952776932648460425 2025-08-05 17:01:49,drb_ra,url,https://43.248.78.104/fwlink,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777071068909680 2025-08-05 17:01:49,drb_ra,url,http://43.248.78.104:4444,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777071068909680 2025-08-05 17:01:49,drb_ra,ip,43.248.78.104,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777071068909680 2025-08-05 17:02:22,drb_ra,url,http://47.237.120.206:8443,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777210185523442 2025-08-05 17:02:22,drb_ra,ip,47.237.120.206,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777210185523442 2025-08-05 17:02:55,drb_ra,url,http://45.59.125.43:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777350191411675 2025-08-05 17:02:55,drb_ra,ip,45.59.125.43,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777350191411675 2025-08-05 17:03:28,drb_ra,url,http://1.15.246.91:4848,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777488456699912 2025-08-05 17:04:02,drb_ra,url,http://113.45.177.81:8899,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777627996951009 2025-08-05 17:04:02,drb_ra,ip,113.45.177.81,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777627996951009 2025-08-05 17:05:08,drb_ra,url,http://111.231.23.22:55321,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777907115339923 2025-08-05 17:05:08,drb_ra,ip,111.231.23.22,#CobaltStrike #C2,https://x.com/drb_ra/status/1952777907115339923 2025-08-05 17:05:41,drb_ra,url,http://47.105.65.102:4567,#CobaltStrike #C2,https://x.com/drb_ra/status/1952778046152270132 2025-08-05 17:05:41,drb_ra,ip,47.105.65.102,#CobaltStrike #C2,https://x.com/drb_ra/status/1952778046152270132 2025-08-05 17:06:14,drb_ra,url,http://135.125.241.45:80,#C2,https://x.com/drb_ra/status/1952778183968714940 2025-08-05 17:06:14,drb_ra,ip,135.125.241.45,#C2,https://x.com/drb_ra/status/1952778183968714940 2025-08-05 17:06:47,drb_ra,url,http://83.136.250.251:443,#C2,https://x.com/drb_ra/status/1952778322422751455 2025-08-05 17:06:47,drb_ra,ip,83.136.250.251,#C2,https://x.com/drb_ra/status/1952778322422751455 2025-08-05 17:07:20,drb_ra,url,http://38.60.217.107:1521,#Remcos #C2,https://x.com/drb_ra/status/1952778460297830533 2025-08-05 17:07:20,drb_ra,ip,38.60.217.107,#Remcos #C2,https://x.com/drb_ra/status/1952778460297830533 2025-08-05 17:07:53,drb_ra,url,http://194.26.192.176:2404,#Remcos #C2,https://x.com/drb_ra/status/1952778599221604740 2025-08-05 17:07:53,drb_ra,ip,194.26.192.176,#Remcos #C2,https://x.com/drb_ra/status/1952778599221604740 2025-08-05 17:08:26,drb_ra,url,http://45.88.91.136:2404,#Remcos #C2,https://x.com/drb_ra/status/1952778737402962416 2025-08-05 17:08:26,drb_ra,ip,45.88.91.136,#Remcos #C2,https://x.com/drb_ra/status/1952778737402962416 2025-08-05 17:08:59,drb_ra,url,http://216.70.72.152:2404,#Remcos #C2,https://x.com/drb_ra/status/1952778876016316505 2025-08-05 17:08:59,drb_ra,ip,216.70.72.152,#Remcos #C2,https://x.com/drb_ra/status/1952778876016316505 2025-08-05 17:09:32,drb_ra,url,http://45.83.31.159:9322,#Remcos #C2,https://x.com/drb_ra/status/1952779014558318794 2025-08-05 17:09:32,drb_ra,ip,45.83.31.159,#Remcos #C2,https://x.com/drb_ra/status/1952779014558318794 2025-08-05 17:10:05,drb_ra,url,http://16.162.4.4:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952779152605532219 2025-08-05 17:10:05,drb_ra,ip,16.162.4.4,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952779152605532219 2025-08-05 17:10:38,drb_ra,url,http://43.134.9.57:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952779291327889878 2025-08-05 17:11:11,drb_ra,url,http://124.221.221.58:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952779430415200761 2025-08-05 17:11:11,drb_ra,ip,124.221.221.58,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952779430415200761 2025-08-05 17:11:44,drb_ra,url,http://93.140.235.5:8080,#C2,https://x.com/drb_ra/status/1952779569468932448 2025-08-05 17:11:44,drb_ra,ip,93.140.235.5,#C2,https://x.com/drb_ra/status/1952779569468932448 2025-08-05 17:12:17,drb_ra,url,http://8.139.4.122:47486,#C2,https://x.com/drb_ra/status/1952779707058893117 2025-08-05 17:12:50,drb_ra,url,http://54.207.216.190:2080,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952779845634535806 2025-08-05 17:13:24,drb_ra,url,http://54.207.216.190:830,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952779985216766024 2025-08-05 17:13:24,drb_ra,ip,54.207.216.190,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952779985216766024 2025-08-05 17:13:57,drb_ra,url,http://40.192.99.189:102,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780124190822558 2025-08-05 17:13:57,drb_ra,ip,40.192.99.189,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780124190822558 2025-08-05 17:14:30,drb_ra,url,http://16.52.85.16:9999,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780263458537524 2025-08-05 17:14:30,drb_ra,ip,16.52.85.16,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780263458537524 2025-08-05 17:15:03,drb_ra,url,http://51.94.31.130:8883,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780403661574475 2025-08-05 17:15:36,drb_ra,url,http://51.94.31.130:1433,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780541910004099 2025-08-05 17:15:36,drb_ra,ip,51.94.31.130,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780541910004099 2025-08-05 17:16:09,drb_ra,url,http://54.78.64.124:2181,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780680221384714 2025-08-05 17:16:09,drb_ra,ip,54.78.64.124,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952780680221384714 2025-08-05 17:16:42,drb_ra,url,http://147.182.229.8:587,#Interactsh #C2,https://x.com/drb_ra/status/1952780818398531872 2025-08-05 17:17:15,drb_ra,url,http://147.182.229.8:465,#Interactsh #C2,https://x.com/drb_ra/status/1952780957284438209 2025-08-05 17:17:48,drb_ra,url,http://147.182.229.8:443,#Interactsh #C2,https://x.com/drb_ra/status/1952781095730115047 2025-08-05 17:18:21,drb_ra,url,http://147.182.229.8:80,#Interactsh #C2,https://x.com/drb_ra/status/1952781234800615772 2025-08-05 17:18:56,drb_ra,url,http://147.182.229.8:25,#Interactsh #C2,https://x.com/drb_ra/status/1952781380225527874 2025-08-05 17:18:56,drb_ra,ip,147.182.229.8,#Interactsh #C2,https://x.com/drb_ra/status/1952781380225527874 2025-08-05 17:19:29,drb_ra,url,http://46.62.163.19:25,#Interactsh #C2,https://x.com/drb_ra/status/1952781518713024860 2025-08-05 17:19:29,drb_ra,ip,46.62.163.19,#Interactsh #C2,https://x.com/drb_ra/status/1952781518713024860 2025-08-05 17:20:03,drb_ra,url,http://168.231.116.87:25,#C2 #Interactsh,https://x.com/drb_ra/status/1952781658647650330 2025-08-05 17:20:03,drb_ra,ip,168.231.116.87,#C2 #Interactsh,https://x.com/drb_ra/status/1952781658647650330 2025-08-05 17:20:36,drb_ra,url,http://47.110.51.222:18088,#C2 #Supershell,https://x.com/drb_ra/status/1952781797772644793 2025-08-05 17:20:36,drb_ra,ip,47.110.51.222,#C2 #Supershell,https://x.com/drb_ra/status/1952781797772644793 2025-08-05 17:21:09,drb_ra,url,http://54.163.75.207:443,#C2 #Havoc,https://x.com/drb_ra/status/1952781936377700364 2025-08-05 17:21:09,drb_ra,ip,54.163.75.207,#C2 #Havoc,https://x.com/drb_ra/status/1952781936377700364 2025-08-05 17:21:42,drb_ra,url,http://52.204.245.211:443,#C2 #Deimos,https://x.com/drb_ra/status/1952782076580659494 2025-08-05 17:21:42,drb_ra,ip,52.204.245.211,#C2 #Deimos,https://x.com/drb_ra/status/1952782076580659494 2025-08-05 17:22:15,drb_ra,url,http://104.224.153.87:55560,#C2 #Deimos,https://x.com/drb_ra/status/1952782215428837561 2025-08-05 17:22:15,drb_ra,ip,104.224.153.87,#C2 #Deimos,https://x.com/drb_ra/status/1952782215428837561 2025-08-05 17:22:48,drb_ra,url,http://173.184.240.29:631,#C2 #Deimos,https://x.com/drb_ra/status/1952782353731862883 2025-08-05 17:22:48,drb_ra,ip,173.184.240.29,#C2 #Deimos,https://x.com/drb_ra/status/1952782353731862883 2025-08-05 17:23:21,drb_ra,url,http://45.156.27.209:7443,#C2 #Mythic,https://x.com/drb_ra/status/1952782492336820646 2025-08-05 17:23:21,drb_ra,ip,45.156.27.209,#C2 #Mythic,https://x.com/drb_ra/status/1952782492336820646 2025-08-05 17:23:54,drb_ra,url,http://52.194.178.241:80,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1952782630937665541 2025-08-05 17:23:54,drb_ra,ip,52.194.178.241,#Brute_Ratel_C4 #C2,https://x.com/drb_ra/status/1952782630937665541 2025-08-05 17:24:28,drb_ra,url,http://106.12.174.164:31337,#Sliver #C2,https://x.com/drb_ra/status/1952782770591142375 2025-08-05 17:24:28,drb_ra,ip,106.12.174.164,#Sliver #C2,https://x.com/drb_ra/status/1952782770591142375 2025-08-05 17:25:01,drb_ra,domain,cnm.mom,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952782910790009170 2025-08-05 17:25:01,drb_ra,url,https://cnm.mom/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952782910790009170 2025-08-05 17:25:01,drb_ra,url,http://137.131.24.201:8081,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952782910790009170 2025-08-05 17:25:34,drb_ra,url,http://120.46.72.74:666,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783050011537761 2025-08-05 17:25:34,drb_ra,url,https://120.46.72.74/dot.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783050011537761 2025-08-05 17:26:07,drb_ra,url,http://146.56.225.103:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783188629004465 2025-08-05 17:26:07,drb_ra,ip,146.56.225.103,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783188629004465 2025-08-05 17:26:40,drb_ra,url,http://118.178.187.223:8088,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783327422738488 2025-08-05 17:26:40,drb_ra,ip,118.178.187.223,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783327422738488 2025-08-05 17:27:14,drb_ra,url,http://47.242.129.79:2083,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783469320307018 2025-08-05 17:27:14,drb_ra,ip,47.242.129.79,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783469320307018 2025-08-05 17:27:48,drb_ra,url,http://120.46.72.74:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952783610555023455 2025-08-05 17:28:21,drb_ra,url,http://89.187.25.171:30233,#C2 #Remcos,https://x.com/drb_ra/status/1952783750099501155 2025-08-05 17:28:21,drb_ra,ip,89.187.25.171,#C2 #Remcos,https://x.com/drb_ra/status/1952783750099501155 2025-08-05 17:28:54,drb_ra,url,http://69.5.189.18:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952783889337844174 2025-08-05 17:28:54,drb_ra,ip,69.5.189.18,#C2 #Remcos,https://x.com/drb_ra/status/1952783889337844174 2025-08-05 17:29:28,drb_ra,url,http://177.255.89.53:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952784028525871527 2025-08-05 17:29:28,drb_ra,ip,177.255.89.53,#C2 #Remcos,https://x.com/drb_ra/status/1952784028525871527 2025-08-05 17:30:01,drb_ra,url,http://144.172.101.98:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952784168653361305 2025-08-05 17:30:01,drb_ra,ip,144.172.101.98,#C2 #Remcos,https://x.com/drb_ra/status/1952784168653361305 2025-08-05 17:30:34,drb_ra,url,http://43.230.163.205:2096,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952784308785021109 2025-08-05 17:30:34,drb_ra,ip,43.230.163.205,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952784308785021109 2025-08-05 17:31:07,drb_ra,url,http://196.251.115.244:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1952784447553642731 2025-08-05 17:31:41,drb_ra,url,http://196.251.115.244:80,#AsyncRAT #C2,https://x.com/drb_ra/status/1952784586573754589 2025-08-05 17:31:41,drb_ra,ip,196.251.115.244,#AsyncRAT #C2,https://x.com/drb_ra/status/1952784586573754589 2025-08-05 17:32:14,drb_ra,url,http://171.250.25.56:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1952784725321437583 2025-08-05 17:32:14,drb_ra,ip,171.250.25.56,#AsyncRAT #C2,https://x.com/drb_ra/status/1952784725321437583 2025-08-05 17:32:47,drb_ra,url,http://185.167.61.249:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1952784863204925742 2025-08-05 17:32:47,drb_ra,ip,185.167.61.249,#AsyncRAT #C2,https://x.com/drb_ra/status/1952784863204925742 2025-08-05 17:33:20,drb_ra,url,http://196.251.72.103:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1952785002661281906 2025-08-05 17:33:20,drb_ra,ip,196.251.72.103,#AsyncRAT #C2,https://x.com/drb_ra/status/1952785002661281906 2025-08-05 17:33:53,drb_ra,url,http://2.50.53.88:443,#C2 #Qakbot,https://x.com/drb_ra/status/1952785141849379137 2025-08-05 17:34:26,drb_ra,url,http://13.248.198.19:443,#C2 #Deimos,https://x.com/drb_ra/status/1952785280437518614 2025-08-05 17:34:26,drb_ra,ip,13.248.198.19,#C2 #Deimos,https://x.com/drb_ra/status/1952785280437518614 2025-08-05 17:34:59,drb_ra,url,http://63.40.48.152:50040,#C2 #Deimos,https://x.com/drb_ra/status/1952785418543395070 2025-08-05 17:34:59,drb_ra,ip,63.40.48.152,#C2 #Deimos,https://x.com/drb_ra/status/1952785418543395070 2025-08-05 17:35:32,drb_ra,url,http://194.34.97.38:8443,#C2 #Deimos,https://x.com/drb_ra/status/1952785557110612313 2025-08-05 17:35:32,drb_ra,ip,194.34.97.38,#C2 #Deimos,https://x.com/drb_ra/status/1952785557110612313 2025-08-05 17:36:06,drb_ra,url,http://34.249.83.124:443,#C2 #Deimos,https://x.com/drb_ra/status/1952785700580933840 2025-08-05 17:36:06,drb_ra,ip,34.249.83.124,#C2 #Deimos,https://x.com/drb_ra/status/1952785700580933840 2025-08-05 17:36:40,drb_ra,url,http://47.122.30.177:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952785842247815620 2025-08-05 17:36:40,drb_ra,ip,47.122.30.177,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952785842247815620 2025-08-05 17:37:14,drb_ra,url,http://159.89.97.81:53,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952785983314760171 2025-08-05 17:37:14,drb_ra,ip,159.89.97.81,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952785983314760171 2025-08-05 17:37:47,drb_ra,url,http://120.46.72.74:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786122754478576 2025-08-05 17:37:47,drb_ra,ip,120.46.72.74,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786122754478576 2025-08-05 17:38:20,drb_ra,url,http://121.43.131.115:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786263494283703 2025-08-05 17:38:20,drb_ra,ip,121.43.131.115,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786263494283703 2025-08-05 17:38:20,drb_ra,ip,39.103.62.252,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786263494283703 2025-08-05 17:38:20,drb_ra,url,https://39.103.62.252/admin/sub/Server/shell/API/0TK1L8I7WECP58B,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786263494283703 2025-08-05 17:38:54,drb_ra,url,https://137.131.24.201/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786403672162571 2025-08-05 17:38:54,drb_ra,url,http://137.131.24.201:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786403672162571 2025-08-05 17:38:54,drb_ra,ip,137.131.24.201,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786403672162571 2025-08-05 17:38:54,drb_ra,url,https://cnm.mom/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786403672162571 2025-08-05 17:39:27,drb_ra,url,http://47.99.94.41:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786542700757289 2025-08-05 17:39:27,drb_ra,url,https://47.99.94.41/pixel,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786542700757289 2025-08-05 17:40:01,drb_ra,url,https://156.238.233.49/pixel.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786685827109192 2025-08-05 17:40:01,drb_ra,url,http://156.238.233.49:8000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786685827109192 2025-08-05 17:40:01,drb_ra,ip,156.238.233.49,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786685827109192 2025-08-05 17:40:35,drb_ra,url,http://47.99.94.41:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786826109874300 2025-08-05 17:40:35,drb_ra,ip,47.99.94.41,#C2 #CobaltStrike,https://x.com/drb_ra/status/1952786826109874300 2025-08-05 17:41:08,drb_ra,url,http://174.138.33.113:8080,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1952786966040170569 2025-08-05 17:41:08,drb_ra,ip,174.138.33.113,#C2 #Hak5_Cloud_C2,https://x.com/drb_ra/status/1952786966040170569 2025-08-05 17:41:42,drb_ra,url,http://209.151.154.121:443,#C2,https://x.com/drb_ra/status/1952787107417624801 2025-08-05 17:41:42,drb_ra,ip,209.151.154.121,#C2,https://x.com/drb_ra/status/1952787107417624801 2025-08-05 17:42:15,drb_ra,url,http://155.2.192.215:2404,#Remcos #C2,https://x.com/drb_ra/status/1952787247364784246 2025-08-05 17:42:15,drb_ra,ip,155.2.192.215,#Remcos #C2,https://x.com/drb_ra/status/1952787247364784246 2025-08-05 17:42:48,drb_ra,url,http://196.251.81.31:2404,#Remcos #C2,https://x.com/drb_ra/status/1952787386410156055 2025-08-05 17:42:48,drb_ra,ip,196.251.81.31,#Remcos #C2,https://x.com/drb_ra/status/1952787386410156055 2025-08-05 17:43:21,drb_ra,url,http://109.248.144.169:8088,#Remcos #C2,https://x.com/drb_ra/status/1952787524109115453 2025-08-05 17:43:21,drb_ra,ip,109.248.144.169,#Remcos #C2,https://x.com/drb_ra/status/1952787524109115453 2025-08-05 17:43:54,drb_ra,url,http://85.208.84.36:5000,#Remcos #C2,https://x.com/drb_ra/status/1952787662324040015 2025-08-05 17:43:54,drb_ra,ip,85.208.84.36,#Remcos #C2,https://x.com/drb_ra/status/1952787662324040015 2025-08-05 17:44:27,drb_ra,url,http://172.245.208.14:2404,#Remcos #C2,https://x.com/drb_ra/status/1952787801369387336 2025-08-05 17:44:27,drb_ra,ip,172.245.208.14,#Remcos #C2,https://x.com/drb_ra/status/1952787801369387336 2025-08-05 17:45:00,drb_ra,url,http://166.88.132.69:2404,#Remcos #C2,https://x.com/drb_ra/status/1952787940691603908 2025-08-05 17:45:00,drb_ra,ip,166.88.132.69,#Remcos #C2,https://x.com/drb_ra/status/1952787940691603908 2025-08-05 17:45:33,drb_ra,url,http://38.55.190.11:16547,#Remcos #C2,https://x.com/drb_ra/status/1952788078965240243 2025-08-05 17:45:33,drb_ra,ip,38.55.190.11,#Remcos #C2,https://x.com/drb_ra/status/1952788078965240243 2025-08-05 17:46:06,drb_ra,url,http://46.183.222.118:4477,#Remcos #C2,https://x.com/drb_ra/status/1952788218237141417 2025-08-05 17:46:06,drb_ra,ip,46.183.222.118,#Remcos #C2,https://x.com/drb_ra/status/1952788218237141417 2025-08-05 17:46:40,drb_ra,url,http://101.126.151.38:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952788357349528047 2025-08-05 17:46:40,drb_ra,ip,101.126.151.38,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1952788357349528047 2025-08-05 17:47:13,drb_ra,url,http://45.63.20.155:8080,#C2,https://x.com/drb_ra/status/1952788495858110844 2025-08-05 17:47:13,drb_ra,ip,45.63.20.155,#C2,https://x.com/drb_ra/status/1952788495858110844 2025-08-05 17:47:46,drb_ra,url,http://13.208.190.18:5061,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952788634311995635 2025-08-05 17:47:46,drb_ra,ip,13.208.190.18,#NetSupportRAT #C2,https://x.com/drb_ra/status/1952788634311995635 2025-08-05 17:48:19,drb_ra,url,http://196.251.71.245:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1952788772241715295 2025-08-05 17:48:19,drb_ra,ip,196.251.71.245,#AsyncRAT #C2,https://x.com/drb_ra/status/1952788772241715295 2025-08-05 17:48:52,drb_ra,url,http://186.169.48.221:7645,#AsyncRAT #C2,https://x.com/drb_ra/status/1952788911077441806 2025-08-05 17:48:52,drb_ra,ip,186.169.48.221,#AsyncRAT #C2,https://x.com/drb_ra/status/1952788911077441806 2025-08-05 17:49:25,drb_ra,url,http://77.233.222.37:443,#C2 #Interactsh,https://x.com/drb_ra/status/1952789049032220821 2025-08-05 17:49:57,drb_ra,url,http://77.233.222.37:80,#C2 #Interactsh,https://x.com/drb_ra/status/1952789187083595903 2025-08-05 17:49:57,drb_ra,ip,77.233.222.37,#C2 #Interactsh,https://x.com/drb_ra/status/1952789187083595903 2025-08-05 17:50:30,drb_ra,url,http://3.73.36.139:443,#C2 #Interactsh,https://x.com/drb_ra/status/1952789324543504833 2025-08-05 17:51:03,drb_ra,url,http://206.123.128.81:80,#Hookbot #Pegasus #C2,https://x.com/drb_ra/status/1952789464142504285 2025-08-05 17:51:03,drb_ra,ip,206.123.128.81,#Hookbot #Pegasus #C2,https://x.com/drb_ra/status/1952789464142504285 2025-08-05 17:51:37,drb_ra,url,http://35.171.186.126:80,#EvilGoPhish #C2 #Evilginx,https://x.com/drb_ra/status/1952789604362576326 2025-08-05 17:51:37,drb_ra,ip,35.171.186.126,#EvilGoPhish #C2 #Evilginx,https://x.com/drb_ra/status/1952789604362576326 2025-08-05 17:52:10,drb_ra,url,http://49.113.77.155:8888,#C2 #Supershell,https://x.com/drb_ra/status/1952789742023520641 2025-08-05 17:52:10,drb_ra,ip,49.113.77.155,#C2 #Supershell,https://x.com/drb_ra/status/1952789742023520641 2025-08-05 17:52:43,drb_ra,url,http://186.105.118.38:443,#C2 #Qakbot,https://x.com/drb_ra/status/1952789881111064863 2025-08-05 17:52:43,drb_ra,ip,186.105.118.38,#C2 #Qakbot,https://x.com/drb_ra/status/1952789881111064863 2025-08-05 17:53:16,drb_ra,url,http://13.39.23.222:443,#C2 #Havoc,https://x.com/drb_ra/status/1952790019443442116 2025-08-05 17:53:16,drb_ra,ip,13.39.23.222,#C2 #Havoc,https://x.com/drb_ra/status/1952790019443442116 2025-08-05 17:53:49,drb_ra,url,http://15.207.240.147:443,#Deimos #C2,https://x.com/drb_ra/status/1952790157415072101 2025-08-05 17:53:49,drb_ra,ip,15.207.240.147,#Deimos #C2,https://x.com/drb_ra/status/1952790157415072101 2025-08-05 17:54:22,drb_ra,url,http://43.141.131.169:10250,#Deimos #C2,https://x.com/drb_ra/status/1952790295487115453 2025-08-05 17:54:22,drb_ra,ip,43.141.131.169,#Deimos #C2,https://x.com/drb_ra/status/1952790295487115453 2025-08-05 17:54:55,drb_ra,url,http://194.87.82.8:7443,#C2 #Mythic,https://x.com/drb_ra/status/1952790434524348722 2025-08-05 17:54:55,drb_ra,ip,194.87.82.8,#C2 #Mythic,https://x.com/drb_ra/status/1952790434524348722 2025-08-05 17:55:28,drb_ra,url,http://167.172.185.9:8443,#C2 #Covenant,https://x.com/drb_ra/status/1952790574563819923 2025-08-05 17:55:28,drb_ra,ip,167.172.185.9,#C2 #Covenant,https://x.com/drb_ra/status/1952790574563819923 2025-08-05 17:56:01,drb_ra,url,http://109.172.91.231:443,#C2 #Sliver,https://x.com/drb_ra/status/1952790712807993503 2025-08-05 17:56:01,drb_ra,ip,109.172.91.231,#C2 #Sliver,https://x.com/drb_ra/status/1952790712807993503 2025-08-05 17:56:35,drb_ra,url,http://192.241.138.75:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952790853434654755 2025-08-05 17:56:35,drb_ra,ip,192.241.138.75,#C2 #Sliver,https://x.com/drb_ra/status/1952790853434654755 2025-08-05 17:57:08,drb_ra,url,http://64.227.26.223:443,#C2 #Sliver,https://x.com/drb_ra/status/1952790992320679995 2025-08-05 17:57:08,drb_ra,ip,64.227.26.223,#C2 #Sliver,https://x.com/drb_ra/status/1952790992320679995 2025-08-05 17:57:41,drb_ra,url,http://185.177.239.56:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952791130179027164 2025-08-05 17:57:41,drb_ra,ip,185.177.239.56,#C2 #Sliver,https://x.com/drb_ra/status/1952791130179027164 2025-08-05 17:58:14,drb_ra,url,http://192.159.99.71:8888,#C2 #Sliver,https://x.com/drb_ra/status/1952791269660586491 2025-08-05 17:58:47,drb_ra,url,http://192.159.99.71:31337,#C2 #Sliver,https://x.com/drb_ra/status/1952791407925838019 2025-08-05 17:58:47,drb_ra,ip,192.159.99.71,#C2 #Sliver,https://x.com/drb_ra/status/1952791407925838019 2025-08-05 18:00:08,urldna_bot,domain,trth13r.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952791746821206376 2025-08-05 18:00:08,urldna_bot,url,https://trth13r.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952791746821206376 2025-08-05 18:47:41,drb_ra,url,http://47.121.219.193:80,#C2 #Interactsh,https://x.com/drb_ra/status/1952803712692289814 2025-08-05 18:47:41,drb_ra,ip,47.121.219.193,#C2 #Interactsh,https://x.com/drb_ra/status/1952803712692289814 2025-08-05 18:48:14,drb_ra,url,http://134.199.189.198:587,#C2 #Interactsh,https://x.com/drb_ra/status/1952803851448311851 2025-08-05 18:48:14,drb_ra,ip,134.199.189.198,#C2 #Interactsh,https://x.com/drb_ra/status/1952803851448311851 2025-08-05 18:48:47,drb_ra,url,http://54.250.245.179:80,#C2 #Interactsh,https://x.com/drb_ra/status/1952803989294055705 2025-08-05 18:48:47,drb_ra,ip,54.250.245.179,#C2 #Interactsh,https://x.com/drb_ra/status/1952803989294055705 2025-08-05 18:49:20,drb_ra,url,http://45.221.64.110:80,#C2 #Hookbot #Pegasus,https://x.com/drb_ra/status/1952804127848779906 2025-08-05 18:49:20,drb_ra,ip,45.221.64.110,#C2 #Hookbot #Pegasus,https://x.com/drb_ra/status/1952804127848779906 2025-08-05 18:49:52,drb_ra,url,http://191.91.178.101:8081,#C2 #Dcrat,https://x.com/drb_ra/status/1952804265338012035 2025-08-05 18:49:52,drb_ra,ip,191.91.178.101,#C2 #Dcrat,https://x.com/drb_ra/status/1952804265338012035 2025-08-05 18:50:26,drb_ra,url,http://1.161.72.203:443,#Qakbot #C2,https://x.com/drb_ra/status/1952804404496638045 2025-08-05 18:50:59,drb_ra,url,http://31.57.118.27:443,#C2 #Havoc,https://x.com/drb_ra/status/1952804542870892716 2025-08-05 18:50:59,drb_ra,ip,31.57.118.27,#C2 #Havoc,https://x.com/drb_ra/status/1952804542870892716 2025-08-05 18:51:32,drb_ra,url,http://98.86.138.98:443,#C2 #Havoc,https://x.com/drb_ra/status/1952804681832644957 2025-08-05 18:51:32,drb_ra,ip,98.86.138.98,#C2 #Havoc,https://x.com/drb_ra/status/1952804681832644957 2025-08-05 18:52:04,drb_ra,url,http://51.20.53.225:443,#C2 #Havoc,https://x.com/drb_ra/status/1952804819032318053 2025-08-05 18:52:04,drb_ra,ip,51.20.53.225,#C2 #Havoc,https://x.com/drb_ra/status/1952804819032318053 2025-08-05 18:52:37,drb_ra,url,http://107.23.225.159:443,#C2 #Deimos,https://x.com/drb_ra/status/1952804957507248241 2025-08-05 18:52:37,drb_ra,ip,107.23.225.159,#C2 #Deimos,https://x.com/drb_ra/status/1952804957507248241 2025-08-05 18:53:10,drb_ra,url,http://3.229.59.84:443,#C2 #Deimos,https://x.com/drb_ra/status/1952805095864774871 2025-08-05 18:53:44,drb_ra,url,http://213.163.201.241:7443,#Mythic #C2,https://x.com/drb_ra/status/1952805237808636219 2025-08-05 18:53:44,drb_ra,ip,213.163.201.241,#Mythic #C2,https://x.com/drb_ra/status/1952805237808636219 2025-08-05 18:54:18,drb_ra,url,http://129.212.184.123:7443,#Mythic #C2,https://x.com/drb_ra/status/1952805377482850738 2025-08-05 18:54:18,drb_ra,ip,129.212.184.123,#Mythic #C2,https://x.com/drb_ra/status/1952805377482850738 2025-08-05 18:54:50,drb_ra,url,http://65.38.121.223:7443,#Mythic #C2,https://x.com/drb_ra/status/1952805515630653942 2025-08-05 18:54:50,drb_ra,ip,65.38.121.223,#Mythic #C2,https://x.com/drb_ra/status/1952805515630653942 2025-08-05 18:57:24,drb_ra,url,http://176.9.181.194:4443,#C2,https://x.com/drb_ra/status/1952806161692148132 2025-08-05 18:57:24,drb_ra,ip,176.9.181.194,#C2,https://x.com/drb_ra/status/1952806161692148132 2025-08-05 18:57:57,drb_ra,url,http://15.204.9.214:11601,#C2,https://x.com/drb_ra/status/1952806299286024645 2025-08-05 18:57:57,drb_ra,ip,15.204.9.214,#C2,https://x.com/drb_ra/status/1952806299286024645 2025-08-05 18:58:30,drb_ra,url,http://15.236.226.221:443,#C2,https://x.com/drb_ra/status/1952806438390383041 2025-08-05 18:58:30,drb_ra,ip,15.236.226.221,#C2,https://x.com/drb_ra/status/1952806438390383041 2025-08-05 18:59:03,drb_ra,url,http://92.118.56.54:7799,#C2 #Remcos,https://x.com/drb_ra/status/1952806576479453333 2025-08-05 18:59:03,drb_ra,ip,92.118.56.54,#C2 #Remcos,https://x.com/drb_ra/status/1952806576479453333 2025-08-05 18:59:37,drb_ra,url,http://45.221.64.12:443,#C2 #Remcos,https://x.com/drb_ra/status/1952806715704959196 2025-08-05 18:59:37,drb_ra,ip,45.221.64.12,#C2 #Remcos,https://x.com/drb_ra/status/1952806715704959196 2025-08-05 19:00:09,drb_ra,url,http://45.132.238.150:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952806853450014792 2025-08-05 19:00:09,drb_ra,ip,45.132.238.150,#C2 #Remcos,https://x.com/drb_ra/status/1952806853450014792 2025-08-05 19:00:43,drb_ra,url,http://107.174.33.3:2404,#C2 #Remcos,https://x.com/drb_ra/status/1952806992868708740 2025-08-05 19:00:43,drb_ra,ip,107.174.33.3,#C2 #Remcos,https://x.com/drb_ra/status/1952806992868708740 2025-08-05 19:01:16,drb_ra,url,http://185.40.86.43:99,#C2 #Remcos,https://x.com/drb_ra/status/1952807132790673848 2025-08-05 19:01:16,drb_ra,ip,185.40.86.43,#C2 #Remcos,https://x.com/drb_ra/status/1952807132790673848 2025-08-05 19:01:49,drb_ra,url,http://15.160.195.251:11300,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952807270930170132 2025-08-05 19:02:22,drb_ra,url,http://15.160.195.251:2000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952807408826253425 2025-08-05 19:02:22,drb_ra,ip,15.160.195.251,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952807408826253425 2025-08-05 19:02:55,drb_ra,url,http://18.191.235.136:54505,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952807547104063828 2025-08-05 19:02:55,drb_ra,ip,18.191.235.136,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952807547104063828 2025-08-05 19:03:28,drb_ra,url,http://18.222.117.10:4841,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952807685478387864 2025-08-05 19:03:28,drb_ra,ip,18.222.117.10,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1952807685478387864 2025-08-05 19:04:01,drb_ra,url,http://185.208.159.208:3000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1952807824473637025 2025-08-05 19:04:01,drb_ra,ip,185.208.159.208,#C2 #AsyncRAT,https://x.com/drb_ra/status/1952807824473637025 2025-08-05 19:04:34,drb_ra,url,http://54.38.79.160:443,#Interactsh #C2,https://x.com/drb_ra/status/1952807963795595337 2025-08-05 19:04:34,drb_ra,ip,54.38.79.160,#Interactsh #C2,https://x.com/drb_ra/status/1952807963795595337 2025-08-05 21:00:03,threatquery,url,http://104.36.229.147,#C2 #malware,https://x.com/threatquery/status/1952837027583381988 2025-08-05 21:00:03,threatquery,ip,104.36.229.147,#C2 #malware,https://x.com/threatquery/status/1952837027583381988 2025-08-05 21:00:04,threatquery,url,http://15.160.195.251,#C2 #NetSupportRAT #malware,https://x.com/threatquery/status/1952837031018590567 2025-08-05 21:00:04,threatquery,url,http://91.237.249.86,#C2 #malware,https://x.com/threatquery/status/1952837029353439702 2025-08-05 21:00:04,threatquery,ip,91.237.249.86,#C2 #malware,https://x.com/threatquery/status/1952837029353439702 2025-08-05 21:55:45,skocherhan,domain,ayintappalet.com,,https://x.com/skocherhan/status/1952851041558446422 2025-08-05 21:55:45,skocherhan,url,https://ayintappalet.com/panel/api.php,,https://x.com/skocherhan/status/1952851041558446422 2025-08-05 21:55:45,skocherhan,url,https://t.me/snakecrypterr,,https://x.com/skocherhan/status/1952851041558446422 2025-08-05 21:56:29,skocherhan,sha256,84bc9007228073f4d73f4e6f7a05f920cd9317033d67d4c0cd375bbb95f13c70,,https://x.com/skocherhan/status/1952851229446730125 2025-08-05 22:00:07,urldna_bot,domain,coinbase-chrome-exxtension.typedream.app,#phishing #scam,https://x.com/urldna_bot/status/1952852143582466372 2025-08-05 22:00:07,urldna_bot,url,http://coinbase-chrome-exxtension.typedream.app,#phishing #scam,https://x.com/urldna_bot/status/1952852143582466372 2025-08-05 22:01:00,skocherhan,url,http://47.83.171.202:9650,,https://x.com/skocherhan/status/1952852362256892276 2025-08-05 22:01:00,skocherhan,url,http://47.83.171.202:9750,,https://x.com/skocherhan/status/1952852362256892276 2025-08-05 22:01:00,skocherhan,url,http://47.83.171.202:9850,,https://x.com/skocherhan/status/1952852362256892276 2025-08-05 22:01:00,skocherhan,ip,47.83.171.202,,https://x.com/skocherhan/status/1952852362256892276 2025-08-05 23:04:25,fbgwls245,domain,peargxn3oki34c4savcbcfqofjjwjnnyrlrbszfv6ujlx36mhrh57did.onion,,https://x.com/fbgwls245/status/1952868323840147538 2025-08-05 23:04:25,fbgwls245,url,http://peargxn3oki34c4savcbcfqofjjwjnnyrlrbszfv6ujlx36mhrh57did.onion,,https://x.com/fbgwls245/status/1952868323840147538 2025-08-05 23:20:06,masaomi346,domain,8v4fkx.top,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,url,https://8v4fkx.top/KSDvDjZYR/,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,domain,960ybz.top,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,url,https://960ybz.top/KSDvDjZYR/,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,domain,c2lmo3.top,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,url,https://c2lmo3.top/KSDvDjZYR/,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,domain,l6ngod.top,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,url,https://l6ngod.top/KSDvDjZYR/,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,domain,lfwnb4.top,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,url,https://lfwnb4.top/KSDvDjZYR/,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,domain,qr7mpl.top,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-05 23:20:06,masaomi346,url,https://qr7mpl.top/KSDvDjZYR/,#phishing,https://x.com/masaomi346/status/1952872271657550092 2025-08-06 00:00:14,urldna_bot,domain,pikay13.github.io,#scam #phishing,https://x.com/urldna_bot/status/1952882370907902094 2025-08-06 00:00:14,urldna_bot,url,http://pikay13.github.io/Netflix-Clone,#scam #phishing,https://x.com/urldna_bot/status/1952882370907902094 2025-08-06 00:54:53,ShadowChasing1,domain,ccltdcn.org,#APT,https://x.com/ShadowChasing1/status/1952896123871666364 2025-08-06 00:54:53,ShadowChasing1,url,http://ccltdcn.org,#APT,https://x.com/ShadowChasing1/status/1952896123871666364 2025-08-06 00:54:53,ShadowChasing1,md5,3f5bbba1d885e2a120dc93a4d8a7b59d,#APT,https://x.com/ShadowChasing1/status/1952896123871666364 2025-08-06 00:54:53,ShadowChasing1,md5,cf5d60617ad12c3e480c9d69326a53eb,#APT,https://x.com/ShadowChasing1/status/1952896123871666364 2025-08-06 01:43:52,harugasumi,domain,jp-driectjebnkos01-04.com,#phishing,https://x.com/harugasumi/status/1952908449354047807 2025-08-06 01:43:52,harugasumi,url,https://jp-driectjebnkos01-04.com,#phishing,https://x.com/harugasumi/status/1952908449354047807 2025-08-06 01:43:52,harugasumi,domain,jp-driectjebnkos00.com,#phishing,https://x.com/harugasumi/status/1952908449354047807 2025-08-06 01:43:52,harugasumi,ip,38.182.168.20,#phishing,https://x.com/harugasumi/status/1952908449354047807 2025-08-06 01:43:52,harugasumi,url,https://jp-driectjebnkos00.com/cash/driect/client/anti/3210000/,#phishing,https://x.com/harugasumi/status/1952908449354047807 2025-08-06 02:00:09,urldna_bot,domain,dfgjhklhlfghjnk.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952912549994741818 2025-08-06 02:00:09,urldna_bot,url,https://dfgjhklhlfghjnk.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1952912549994741818 2025-08-06 02:12:02,harugasumi,url,https://pocketcard-liedom.dtceji.cn/netservice/login/,#phishing,https://x.com/harugasumi/status/1952915539002834983 2025-08-06 02:12:02,harugasumi,domain,pocketcard-liedom.dtceji.cn,#phishing,https://x.com/harugasumi/status/1952915539002834983 2025-08-06 04:00:07,urldna_bot,url,https://hwbgtnqegfp.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1952942739789631550 2025-08-06 04:00:07,urldna_bot,domain,hwbgtnqegfp.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1952942739789631550 2025-08-06 05:40:32,ShadowChasing1,md5,f0246943f8fd24a7e5df9aa1776849d0,#APT,https://x.com/ShadowChasing1/status/1952968010580500607 2025-08-06 05:40:32,ShadowChasing1,md5,4e87283dcc6b2e22edba7bc8aab290cf,#APT,https://x.com/ShadowChasing1/status/1952968010580500607 2025-08-06 05:40:32,ShadowChasing1,domain,glamormusicwave.com,#APT,https://x.com/ShadowChasing1/status/1952968010580500607 2025-08-06 05:40:32,ShadowChasing1,url,https://glamormusicwave.com,#APT,https://x.com/ShadowChasing1/status/1952968010580500607 2025-08-06 05:53:00,ReBensk,md5,040934d7822be17e74725a6166d074ed,#malware #Trojan #Android,https://x.com/ReBensk/status/1952971148054151342 2025-08-06 06:00:06,urldna_bot,url,https://bltdl.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952972935544610927 2025-08-06 06:00:06,urldna_bot,domain,bltdl.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1952972935544610927 2025-08-06 07:11:35,suyog41,domain,koliwooclients.com,#APT,https://x.com/suyog41/status/1952990924210094369 2025-08-06 07:11:35,suyog41,url,http://koliwooclients.com,#APT,https://x.com/suyog41/status/1952990924210094369 2025-08-06 07:11:35,suyog41,md5,ccc92e27b9b01e6623b25c3bfd0bf59e,#APT,https://x.com/suyog41/status/1952990924210094369 2025-08-06 08:00:07,urldna_bot,url,https://uctacza.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953003137993703643 2025-08-06 08:00:07,urldna_bot,domain,uctacza.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953003137993703643 2025-08-06 08:38:31,skocherhan,url,http://EnerHomeConsulting.ca,,https://x.com/skocherhan/status/1953012800273494045 2025-08-06 08:38:31,skocherhan,domain,EnerHomeConsulting.ca,,https://x.com/skocherhan/status/1953012800273494045 2025-08-06 08:38:31,skocherhan,domain,enerhomeconsulting.ca,,https://x.com/skocherhan/status/1953012800273494045 2025-08-06 08:38:31,skocherhan,url,http://enerhomeconsulting.ca,,https://x.com/skocherhan/status/1953012800273494045 2025-08-06 08:45:10,JAMESWT_WT,url,https://sso-ingaccount-sistema.mixcatering.nl/it/client/login.php,#phishing,https://x.com/JAMESWT_WT/status/1953014474551570888 2025-08-06 08:45:10,JAMESWT_WT,domain,sso-ingaccount-sistema.mixcatering.nl,#phishing,https://x.com/JAMESWT_WT/status/1953014474551570888 2025-08-06 08:45:10,JAMESWT_WT,domain,sestima-ingsing.s3.eu-north-1.amazonaws.com,#phishing,https://x.com/JAMESWT_WT/status/1953014474551570888 2025-08-06 08:45:10,JAMESWT_WT,url,https://sestima-ingsing.s3.eu-north-1.amazonaws.com/index.html,#phishing,https://x.com/JAMESWT_WT/status/1953014474551570888 2025-08-06 09:12:17,skocherhan,url,http://45.221.64.72:21,#C2,https://x.com/skocherhan/status/1953021298113753579 2025-08-06 09:12:17,skocherhan,ip,45.221.64.72,#C2,https://x.com/skocherhan/status/1953021298113753579 2025-08-06 09:23:29,JAMESWT_WT,sha256,dd36ccb034444d9c94afba45ff1f14b3852c12390820be810dc3bbe46abcf0be,#Remcos #opendir #Dcrat,https://x.com/JAMESWT_WT/status/1953024117227086294 2025-08-06 09:23:29,JAMESWT_WT,ip,181.206.158.190,#Remcos #opendir #Dcrat,https://x.com/JAMESWT_WT/status/1953024117227086294 2025-08-06 10:00:07,urldna_bot,url,https://b45020.com/promo,#scam #phishing,https://x.com/urldna_bot/status/1953033337695563954 2025-08-06 10:00:07,urldna_bot,domain,b45020.com,#scam #phishing,https://x.com/urldna_bot/status/1953033337695563954 2025-08-06 10:35:00,Coolcarlos17,url,https://contratosdetaxasdaconta.com,#phishing #scam,https://x.com/Coolcarlos17/status/1953042113941078266 2025-08-06 10:35:00,Coolcarlos17,domain,contratosdetaxasdaconta.com,#phishing #scam,https://x.com/Coolcarlos17/status/1953042113941078266 2025-08-06 10:35:42,Coolcarlos17,domain,growthsuplementosecommerce.myshopify.com,#phishing #scam,https://x.com/Coolcarlos17/status/1953042291586678998 2025-08-06 10:35:42,Coolcarlos17,url,https://growthsuplementosecommerce.myshopify.com/collections/frontpage/,#phishing #scam,https://x.com/Coolcarlos17/status/1953042291586678998 2025-08-06 10:36:25,Coolcarlos17,url,https://seguroclientehavan.myshopify.com,#phishing #scam,https://x.com/Coolcarlos17/status/1953042470117294163 2025-08-06 10:36:25,Coolcarlos17,domain,seguroclientehavan.myshopify.com,#phishing #scam,https://x.com/Coolcarlos17/status/1953042470117294163 2025-08-06 10:37:15,Coolcarlos17,domain,havanbrasil-oficial.com,#scam #phishing,https://x.com/Coolcarlos17/status/1953042679907885377 2025-08-06 10:37:15,Coolcarlos17,url,https://havanbrasil-oficial.com,#scam #phishing,https://x.com/Coolcarlos17/status/1953042679907885377 2025-08-06 10:37:52,skocherhan,domain,peargxn3oki34c4savcbcfqofjjwjnnyrlrbszfv6ujlx36mhrh57did.onion,,https://x.com/skocherhan/status/1953042837576020353 2025-08-06 10:37:52,skocherhan,url,http://peargxn3oki34c4savcbcfqofjjwjnnyrlrbszfv6ujlx36mhrh57did.onion,,https://x.com/skocherhan/status/1953042837576020353 2025-08-06 10:38:10,Coolcarlos17,url,https://pay.pague-processamento.click,#phishing #scam,https://x.com/Coolcarlos17/status/1953042913224433901 2025-08-06 10:38:10,Coolcarlos17,domain,pay.pague-processamento.click,#phishing #scam,https://x.com/Coolcarlos17/status/1953042913224433901 2025-08-06 10:51:00,ShadowChasing1,md5,93875e6dcc6e306c6910c810dd3e9808,#phishing #APT #C2,https://x.com/ShadowChasing1/status/1953046142272586046 2025-08-06 10:51:00,ShadowChasing1,ip,84.247.176.126,#phishing #APT #C2,https://x.com/ShadowChasing1/status/1953046142272586046 2025-08-06 10:51:00,ShadowChasing1,md5,51ac5f4bcffd208899ebe778c1725579,#phishing #APT #C2,https://x.com/ShadowChasing1/status/1953046142272586046 2025-08-06 10:51:00,ShadowChasing1,url,http://swachbharat.xyz,#phishing #APT #C2,https://x.com/ShadowChasing1/status/1953046142272586046 2025-08-06 10:51:00,ShadowChasing1,domain,swachbharat.xyz,#phishing #APT #C2,https://x.com/ShadowChasing1/status/1953046142272586046 2025-08-06 10:51:00,ShadowChasing1,ip,149.102.152.50,#phishing #APT #C2,https://x.com/ShadowChasing1/status/1953046142272586046 2025-08-06 10:51:00,ShadowChasing1,md5,7dd7a25a6ae7caeb4f7ad9a89d96f7ec,#phishing #APT #C2,https://x.com/ShadowChasing1/status/1953046142272586046 2025-08-06 11:29:49,skocherhan,md5,2c7e224c4c1b341f18904e2f0faacc19,#Kimsuky,https://x.com/skocherhan/status/1953055908117782979 2025-08-06 11:29:49,skocherhan,domain,octet-stream.zip,#Kimsuky,https://x.com/skocherhan/status/1953055908117782979 2025-08-06 11:29:49,skocherhan,md5,ae80b28988df45de5a94305d3aa6e9a3,#Kimsuky,https://x.com/skocherhan/status/1953055908117782979 2025-08-06 11:29:49,skocherhan,md5,44e1edd99474520df9e5bfa04094d949,#Kimsuky,https://x.com/skocherhan/status/1953055908117782979 2025-08-06 11:29:49,skocherhan,url,http://octet-stream.zip,#Kimsuky,https://x.com/skocherhan/status/1953055908117782979 2025-08-06 12:00:07,urldna_bot,domain,bet73027.com,#scam #phishing,https://x.com/urldna_bot/status/1953063533689593992 2025-08-06 12:00:07,urldna_bot,url,https://bet73027.com/fish/172,#scam #phishing,https://x.com/urldna_bot/status/1953063533689593992 2025-08-06 13:14:24,1ZRR4H,domain,capacitacionseguro.cl,,https://x.com/1ZRR4H/status/1953082229304771016 2025-08-06 13:14:24,1ZRR4H,url,http://capacitacionseguro.cl,,https://x.com/1ZRR4H/status/1953082229304771016 2025-08-06 13:16:41,ViriBack,url,http://176.46.152.46/zyxic/login.php,#malware,https://x.com/ViriBack/status/1953082805136605440 2025-08-06 13:16:41,ViriBack,ip,176.46.152.46,#malware,https://x.com/ViriBack/status/1953082805136605440 2025-08-06 13:22:51,JAMESWT_WT,url,http://arfzs.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,url,http://brossdeli.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,url,http://aspotan.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,domain,ajoyfulbear.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,domain,arfzs.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,domain,aspotan.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,domain,brossdeli.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,domain,avamkwilson.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,url,http://avamkwilson.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,domain,bomdog.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,url,http://bomdog.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 13:22:51,JAMESWT_WT,url,http://ajoyfulbear.com,,https://x.com/JAMESWT_WT/status/1953084353518403606 2025-08-06 14:00:06,urldna_bot,domain,docsreveiwingmain.z19.web.core.windows.net,#phishing #scam,https://x.com/urldna_bot/status/1953093730749001765 2025-08-06 14:00:06,urldna_bot,url,https://docsreveiwingmain.z19.web.core.windows.net,#phishing #scam,https://x.com/urldna_bot/status/1953093730749001765 2025-08-06 14:01:14,SarlackLab,ip,147.185.221.29,#NanoCore #C2,https://x.com/SarlackLab/status/1953094016293081582 2025-08-06 14:01:14,SarlackLab,url,http://getting-formed.gl.at.ply.gg,#NanoCore #C2,https://x.com/SarlackLab/status/1953094016293081582 2025-08-06 14:01:14,SarlackLab,domain,getting-formed.gl.at.ply.gg,#NanoCore #C2,https://x.com/SarlackLab/status/1953094016293081582 2025-08-06 14:01:14,SarlackLab,url,http://147.185.221.29:22135,#NanoCore #C2,https://x.com/SarlackLab/status/1953094016293081582 2025-08-06 14:18:31,PrakkiSathwik,domain,Offrs.zip,#APT #phishing,https://x.com/PrakkiSathwik/status/1953098366025408911 2025-08-06 14:18:31,PrakkiSathwik,url,http://Offrs.zip,#APT #phishing,https://x.com/PrakkiSathwik/status/1953098366025408911 2025-08-06 14:18:31,PrakkiSathwik,md5,b12b503ba0519bfcd8824ceeffa8e6df,#APT #phishing,https://x.com/PrakkiSathwik/status/1953098366025408911 2025-08-06 14:18:31,PrakkiSathwik,md5,6c75152fc5f3a919f9f62929557b76bc,#APT #phishing,https://x.com/PrakkiSathwik/status/1953098366025408911 2025-08-06 14:41:03,ViriBack,url,https://salat.cn/login/,,https://x.com/ViriBack/status/1953104036795752654 2025-08-06 14:41:03,ViriBack,domain,salat.cn,,https://x.com/ViriBack/status/1953104036795752654 2025-08-06 14:59:44,fbgwls245,url,http://ctyfftrjgtwdjzlgqh4avbd35sqrs6tde4oyam2ufbjch6oqpqtkdtid.onion,#ransomware,https://x.com/fbgwls245/status/1953108738266808478 2025-08-06 14:59:44,fbgwls245,domain,ctyfftrjgtwdjzlgqh4avbd35sqrs6tde4oyam2ufbjch6oqpqtkdtid.onion,#ransomware,https://x.com/fbgwls245/status/1953108738266808478 2025-08-06 14:59:44,fbgwls245,url,http://t.me/BlackNevas,#ransomware,https://x.com/fbgwls245/status/1953108738266808478 2025-08-06 15:04:55,s3curetheweb,domain,comcastxxxxxxxlogin124.weebly.com,#phishing,https://x.com/s3curetheweb/status/1953110039620657485 2025-08-06 15:04:55,s3curetheweb,url,https://comcastxxxxxxxlogin124.weebly.com,#phishing,https://x.com/s3curetheweb/status/1953110039620657485 2025-08-06 15:04:55,s3curetheweb,sha256,03c398435549f8a49bbff977ebee805abae6ac607fed890184f205146047e458,#phishing,https://x.com/s3curetheweb/status/1953110039620657485 2025-08-06 15:27:52,drb_ra,url,https://132.226.105.28/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953115817723253099 2025-08-06 15:27:52,drb_ra,url,http://132.226.105.28:28080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953115817723253099 2025-08-06 15:27:52,drb_ra,ip,132.226.105.28,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953115817723253099 2025-08-06 15:28:26,drb_ra,url,http://101.133.229.117:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953115958156947624 2025-08-06 15:28:59,drb_ra,url,http://101.133.229.117:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116097927954546 2025-08-06 15:28:59,drb_ra,ip,101.133.229.117,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116097927954546 2025-08-06 15:29:32,drb_ra,url,http://124.70.100.149:7979,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116237094953431 2025-08-06 15:29:32,drb_ra,ip,124.70.100.149,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116237094953431 2025-08-06 15:30:06,drb_ra,ip,47.83.8.68,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116376677167340 2025-08-06 15:30:06,drb_ra,url,https://47.83.8.68/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116376677167340 2025-08-06 15:30:06,drb_ra,url,http://47.83.8.68:8008,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116376677167340 2025-08-06 15:30:39,drb_ra,url,http://47.107.44.136:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116515705741616 2025-08-06 15:30:39,drb_ra,ip,47.107.44.136,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116515705741616 2025-08-06 15:31:12,drb_ra,url,http://47.122.78.242:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116656122642921 2025-08-06 15:31:12,drb_ra,ip,47.122.78.242,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116656122642921 2025-08-06 15:31:46,drb_ra,url,http://194.165.16.29:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116797864915107 2025-08-06 15:31:46,drb_ra,ip,194.165.16.29,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116797864915107 2025-08-06 15:32:19,drb_ra,url,https://dsswew.website/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116937845617131 2025-08-06 15:32:19,drb_ra,url,http://206.119.172.150:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116937845617131 2025-08-06 15:32:19,drb_ra,ip,206.119.172.150,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116937845617131 2025-08-06 15:32:19,drb_ra,domain,dsswew.website,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953116937845617131 2025-08-06 15:32:53,drb_ra,url,https://192.168.112.85/pixel,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117079143391465 2025-08-06 15:32:53,drb_ra,url,http://172.87.28.47:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117079143391465 2025-08-06 15:32:53,drb_ra,ip,172.87.28.47,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117079143391465 2025-08-06 15:33:27,drb_ra,url,https://120.26.39.204/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117219736474044 2025-08-06 15:33:27,drb_ra,url,http://120.26.39.103:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117219736474044 2025-08-06 15:33:27,drb_ra,ip,120.26.39.103,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117219736474044 2025-08-06 15:33:27,drb_ra,ip,120.26.39.204,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117219736474044 2025-08-06 15:34:00,drb_ra,url,http://8.136.3.219:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117360514126314 2025-08-06 15:34:33,drb_ra,url,http://117.72.209.44:81,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117500498940178 2025-08-06 15:34:33,drb_ra,ip,117.72.209.44,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117500498940178 2025-08-06 15:35:07,drb_ra,url,http://120.24.64.74:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117639477166131 2025-08-06 15:35:07,drb_ra,ip,120.24.64.74,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117639477166131 2025-08-06 15:35:40,drb_ra,ip,45.156.87.173,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117778661048618 2025-08-06 15:35:40,drb_ra,url,http://45.156.87.173:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117778661048618 2025-08-06 15:36:13,drb_ra,domain,img.sboxm.top,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117918209650840 2025-08-06 15:36:13,drb_ra,url,https://img.sboxm.top/updates,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117918209650840 2025-08-06 15:36:13,drb_ra,url,http://8.219.76.168:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953117918209650840 2025-08-06 15:36:47,drb_ra,url,https://14.103.138.13/admin/Remove/Server/sc/API/5LQ7AIA5SQWO9VB,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953118059457118541 2025-08-06 15:36:47,drb_ra,url,http://103.199.106.126:3389,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953118059457118541 2025-08-06 15:36:47,drb_ra,ip,103.199.106.126,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953118059457118541 2025-08-06 15:36:47,drb_ra,ip,14.103.138.13,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953118059457118541 2025-08-06 15:41:17,1ZRR4H,url,http://191.93.118.254,#opendir,https://x.com/1ZRR4H/status/1953119193185812508 2025-08-06 15:41:17,1ZRR4H,ip,191.93.118.254,#opendir,https://x.com/1ZRR4H/status/1953119193185812508 2025-08-06 15:43:22,drb_ra,ip,13.57.231.137,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953119716819575037 2025-08-06 15:43:22,drb_ra,url,http://13.57.231.137:58467,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953119716819575037 2025-08-06 15:43:55,drb_ra,ip,56.155.28.140,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953119854162030709 2025-08-06 15:43:55,drb_ra,url,http://56.155.28.140:2004,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953119854162030709 2025-08-06 15:44:28,drb_ra,url,http://43.203.193.29:2281,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953119992808960055 2025-08-06 15:44:28,drb_ra,ip,43.203.193.29,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953119992808960055 2025-08-06 15:50:30,drb_ra,url,http://201.14.19.106:8088,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953121514456285537 2025-08-06 15:51:03,drb_ra,url,http://201.14.19.106:1963,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953121652247605629 2025-08-06 15:51:36,drb_ra,url,http://201.14.19.106:636,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953121790730858810 2025-08-06 15:52:09,drb_ra,url,http://201.14.19.106:427,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953121928396280150 2025-08-06 15:52:42,drb_ra,url,http://201.14.19.106:32296,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953122066124652866 2025-08-06 15:53:15,drb_ra,url,http://201.14.19.106:12851,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953122204134117718 2025-08-06 15:53:48,drb_ra,url,http://201.14.19.106:10274,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953122341413671000 2025-08-06 15:54:21,drb_ra,url,http://201.14.19.106:59709,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953122480765223366 2025-08-06 15:54:53,drb_ra,url,http://201.14.19.106:52736,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953122617734427081 2025-08-06 15:55:26,drb_ra,url,http://201.14.19.106:9300,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953122755508887610 2025-08-06 15:55:59,drb_ra,url,http://201.14.19.106:3389,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953122892700381591 2025-08-06 15:56:32,drb_ra,url,http://201.14.19.106:1961,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123031074652548 2025-08-06 15:57:05,drb_ra,url,http://201.14.19.106:53335,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123169578934369 2025-08-06 15:57:38,drb_ra,url,http://201.14.19.106:39397,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123307437371786 2025-08-06 15:58:11,drb_ra,url,http://201.14.19.106:12412,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123445249565119 2025-08-06 15:58:44,drb_ra,url,http://201.14.19.106:5901,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123582948647257 2025-08-06 15:59:16,drb_ra,url,http://201.14.19.106:6007,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123720425349358 2025-08-06 15:59:49,drb_ra,url,http://201.14.19.106:5986,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123858619232731 2025-08-06 16:00:07,urldna_bot,domain,repermaiec.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953123931201716241 2025-08-06 16:00:07,urldna_bot,url,https://repermaiec.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953123931201716241 2025-08-06 16:00:22,drb_ra,url,http://201.14.19.106:27017,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953123996242755807 2025-08-06 16:00:55,drb_ra,url,http://201.14.19.106:16992,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953124134575112577 2025-08-06 16:01:28,drb_ra,url,http://201.14.19.106:9305,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953124272211108034 2025-08-06 16:02:01,drb_ra,url,http://201.14.19.106:28003,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953124410983919980 2025-08-06 16:02:34,drb_ra,url,http://201.14.19.106:23046,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953124548523520506 2025-08-06 16:03:07,drb_ra,url,http://201.14.19.106:20528,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953124686683922484 2025-08-06 16:03:40,drb_ra,url,http://201.14.19.106:1311,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953124824303194454 2025-08-06 16:04:13,drb_ra,url,http://201.14.19.106:1194,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953124962945892501 2025-08-06 16:04:45,drb_ra,url,http://201.14.19.106:51767,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953125100540117086 2025-08-06 16:05:18,drb_ra,url,http://201.14.19.106:37979,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953125238411001946 2025-08-06 16:05:51,drb_ra,url,http://201.14.19.106:18246,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953125375791268032 2025-08-06 16:06:24,drb_ra,url,http://201.14.19.106:12979,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953125513897103460 2025-08-06 16:06:57,drb_ra,url,http://201.14.19.106:10259,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953125651008954662 2025-08-06 16:07:30,drb_ra,url,http://201.14.19.106:33931,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953125788913377609 2025-08-06 16:08:02,drb_ra,url,http://201.14.19.106:18012,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953125926520098855 2025-08-06 16:08:35,drb_ra,url,http://201.14.19.106:6836,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953126064340849137 2025-08-06 16:09:08,drb_ra,url,http://201.14.19.106:4445,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953126202396287051 2025-08-06 16:09:41,drb_ra,url,http://201.14.19.106:995,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953126340607062023 2025-08-06 16:10:14,drb_ra,url,http://201.14.19.106:51050,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953126479031595264 2025-08-06 16:10:47,drb_ra,url,http://201.14.19.106:32446,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953126616839733685 2025-08-06 16:11:20,drb_ra,url,http://201.14.19.106:28555,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953126754345714032 2025-08-06 16:11:53,drb_ra,url,http://201.14.19.106:9201,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953126894326391029 2025-08-06 16:12:26,drb_ra,url,http://201.14.19.106:1962,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127032138739925 2025-08-06 16:12:59,drb_ra,url,http://201.14.19.106:1200,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127170584268892 2025-08-06 16:13:32,drb_ra,url,http://201.14.19.106:60190,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127308744683564 2025-08-06 16:13:32,drb_ra,ip,201.14.19.106,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127308744683564 2025-08-06 16:14:05,drb_ra,url,http://201.14.19.106:46093,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127447005720692 2025-08-06 16:14:38,drb_ra,url,http://201.14.19.106:50791,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127587787493601 2025-08-06 16:15:12,drb_ra,url,http://201.14.19.106:2628,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127726505750725 2025-08-06 16:15:44,drb_ra,url,http://201.14.19.106:1224,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953127863999250820 2025-08-06 16:16:17,drb_ra,url,http://201.14.19.106:6854,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128002948153764 2025-08-06 16:16:50,drb_ra,url,http://201.14.19.106:3299,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128140366078058 2025-08-06 16:17:23,drb_ra,url,http://201.14.19.106:2762,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128278266454274 2025-08-06 16:17:56,drb_ra,url,http://201.14.19.106:1801,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128415449563293 2025-08-06 16:18:29,drb_ra,url,http://201.14.19.106:102,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128553135882595 2025-08-06 16:19:02,drb_ra,url,http://201.14.19.106:13197,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128691178914256 2025-08-06 16:19:34,drb_ra,url,http://201.14.19.106:8888,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128829272137979 2025-08-06 16:20:07,drb_ra,url,http://201.14.19.106:38608,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953128966660731247 2025-08-06 16:20:40,drb_ra,url,http://201.14.19.106:31659,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953129105211211852 2025-08-06 16:21:13,drb_ra,url,http://201.14.19.106:10803,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953129242734043612 2025-08-06 16:21:46,drb_ra,url,http://201.14.19.106:5938,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953129381259252148 2025-08-06 16:22:19,drb_ra,url,http://201.14.19.106:789,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953129518400512019 2025-08-06 16:22:52,drb_ra,url,http://201.14.19.106:65135,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953129656284057731 2025-08-06 16:23:24,drb_ra,url,http://201.14.19.106:57416,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953129793622352172 2025-08-06 16:23:57,drb_ra,url,http://201.14.19.106:62857,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953129931048636517 2025-08-06 16:24:30,drb_ra,url,http://201.14.19.106:631,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130069028667590 2025-08-06 16:25:03,drb_ra,url,http://201.14.19.106:10001,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130206740324468 2025-08-06 16:25:36,drb_ra,url,http://201.14.19.106:9000,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130344963592658 2025-08-06 16:26:09,drb_ra,url,http://201.14.19.106:5222,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130482985476590 2025-08-06 16:26:42,drb_ra,url,http://201.14.19.106:2403,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130621397549323 2025-08-06 16:27:15,drb_ra,url,http://201.14.19.106:587,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130759637606546 2025-08-06 16:27:47,drb_ra,ip,45.153.34.148,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130897101750347 2025-08-06 16:27:47,drb_ra,url,http://45.153.34.148:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953130897101750347 2025-08-06 16:28:20,drb_ra,url,http://209.38.84.133:8808,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953131035417301389 2025-08-06 16:28:20,drb_ra,ip,209.38.84.133,#C2 #AsyncRAT,https://x.com/drb_ra/status/1953131035417301389 2025-08-06 16:28:53,drb_ra,url,http://64.62.195.154:587,#Interactsh #C2,https://x.com/drb_ra/status/1953131172935971207 2025-08-06 16:28:53,drb_ra,ip,64.62.195.154,#Interactsh #C2,https://x.com/drb_ra/status/1953131172935971207 2025-08-06 16:29:26,drb_ra,url,http://128.199.11.74:80,#Interactsh #C2,https://x.com/drb_ra/status/1953131311893250145 2025-08-06 16:29:26,drb_ra,ip,128.199.11.74,#Interactsh #C2,https://x.com/drb_ra/status/1953131311893250145 2025-08-06 16:29:59,drb_ra,url,http://116.62.42.4:7000,#C2 #Supershell,https://x.com/drb_ra/status/1953131450363957534 2025-08-06 16:29:59,drb_ra,ip,116.62.42.4,#C2 #Supershell,https://x.com/drb_ra/status/1953131450363957534 2025-08-06 16:30:33,drb_ra,url,http://176.46.158.54:8848,#C2 #Dcrat,https://x.com/drb_ra/status/1953131590357241952 2025-08-06 16:30:33,drb_ra,ip,176.46.158.54,#C2 #Dcrat,https://x.com/drb_ra/status/1953131590357241952 2025-08-06 16:31:06,drb_ra,ip,20.199.80.166,#C2 #Dcrat,https://x.com/drb_ra/status/1953131728794419234 2025-08-06 16:31:06,drb_ra,url,http://20.199.80.166:1024,#C2 #Dcrat,https://x.com/drb_ra/status/1953131728794419234 2025-08-06 16:31:39,drb_ra,url,http://108.130.92.85:445,#C2,https://x.com/drb_ra/status/1953131867063844986 2025-08-06 16:31:39,drb_ra,ip,108.130.92.85,#C2,https://x.com/drb_ra/status/1953131867063844986 2025-08-06 16:32:12,drb_ra,url,http://103.199.155.2:80,#C2 #Bianlian,https://x.com/drb_ra/status/1953132005597581776 2025-08-06 16:32:12,drb_ra,ip,103.199.155.2,#C2 #Bianlian,https://x.com/drb_ra/status/1953132005597581776 2025-08-06 16:32:45,drb_ra,url,http://172.190.147.123:8443,#C2 #Bianlian,https://x.com/drb_ra/status/1953132144559091764 2025-08-06 16:32:45,drb_ra,ip,172.190.147.123,#C2 #Bianlian,https://x.com/drb_ra/status/1953132144559091764 2025-08-06 16:33:18,drb_ra,url,http://166.1.22.248:443,#Mythic #C2,https://x.com/drb_ra/status/1953132283839344864 2025-08-06 16:33:18,drb_ra,ip,166.1.22.248,#Mythic #C2,https://x.com/drb_ra/status/1953132283839344864 2025-08-06 16:33:51,drb_ra,url,http://170.64.206.129:7443,#Mythic #C2,https://x.com/drb_ra/status/1953132423786496309 2025-08-06 16:33:51,drb_ra,ip,170.64.206.129,#Mythic #C2,https://x.com/drb_ra/status/1953132423786496309 2025-08-06 16:34:24,drb_ra,url,http://213.165.60.13:7443,#C2 #Mythic,https://x.com/drb_ra/status/1953132562043273642 2025-08-06 16:34:24,drb_ra,ip,213.165.60.13,#C2 #Mythic,https://x.com/drb_ra/status/1953132562043273642 2025-08-06 16:34:57,drb_ra,ip,18.219.16.8,#C2 #Mythic,https://x.com/drb_ra/status/1953132700849582193 2025-08-06 16:34:57,drb_ra,url,http://18.219.16.8:7443,#C2 #Mythic,https://x.com/drb_ra/status/1953132700849582193 2025-08-06 16:35:30,drb_ra,url,http://83.229.83.138:7443,#C2 #Covenant,https://x.com/drb_ra/status/1953132838477263178 2025-08-06 16:35:30,drb_ra,ip,83.229.83.138,#C2 #Covenant,https://x.com/drb_ra/status/1953132838477263178 2025-08-06 16:36:03,drb_ra,url,http://77.105.161.230:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953132977354879129 2025-08-06 16:36:03,drb_ra,ip,77.105.161.230,#C2 #Sliver,https://x.com/drb_ra/status/1953132977354879129 2025-08-06 16:36:36,drb_ra,url,http://94.237.56.23:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953133115032863194 2025-08-06 16:36:36,drb_ra,ip,94.237.56.23,#C2 #Sliver,https://x.com/drb_ra/status/1953133115032863194 2025-08-06 16:37:09,drb_ra,url,http://196.251.88.45:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953133253348540642 2025-08-06 16:37:09,drb_ra,ip,196.251.88.45,#C2 #Sliver,https://x.com/drb_ra/status/1953133253348540642 2025-08-06 16:37:43,drb_ra,url,http://49.0.254.101:10000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133392985198856 2025-08-06 16:38:16,drb_ra,ip,49.0.254.101,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133533473517622 2025-08-06 16:38:16,drb_ra,url,http://49.0.254.101:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133533473517622 2025-08-06 16:38:16,drb_ra,domain,qlchacha.top,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133533473517622 2025-08-06 16:38:16,drb_ra,url,https://www.qlchacha.top/s/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133533473517622 2025-08-06 16:38:49,drb_ra,url,http://206.119.172.150:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133672351080943 2025-08-06 16:39:22,drb_ra,url,http://154.201.74.112:8843,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133811429966307 2025-08-06 16:39:22,drb_ra,ip,154.201.74.112,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133811429966307 2025-08-06 16:39:55,drb_ra,url,http://47.102.87.217:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133949779136756 2025-08-06 16:39:55,drb_ra,ip,47.102.87.217,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953133949779136756 2025-08-06 16:40:29,drb_ra,domain,cnm.mom,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134090179235948 2025-08-06 16:40:29,drb_ra,url,https://cnm.mom/wc/58462514417,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134090179235948 2025-08-06 16:41:02,drb_ra,url,http://61.184.13.207:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134231112044605 2025-08-06 16:41:02,drb_ra,ip,61.184.13.207,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134231112044605 2025-08-06 16:41:36,drb_ra,ip,117.72.218.179,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134370925023398 2025-08-06 16:41:36,drb_ra,url,http://117.72.218.179:803,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134370925023398 2025-08-06 16:42:09,drb_ra,url,https://42.192.40.142/activity,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134509106286686 2025-08-06 16:42:09,drb_ra,url,http://42.192.40.142:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134509106286686 2025-08-06 16:42:09,drb_ra,ip,42.192.40.142,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134509106286686 2025-08-06 16:42:42,drb_ra,url,http://42.51.34.56:8010,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134647946191221 2025-08-06 16:42:42,drb_ra,ip,42.51.34.56,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134647946191221 2025-08-06 16:43:15,drb_ra,url,http://172.105.24.242:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134786668646692 2025-08-06 16:43:15,drb_ra,ip,172.105.24.242,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134786668646692 2025-08-06 16:43:48,drb_ra,url,http://121.43.28.208:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134927358087575 2025-08-06 16:43:48,drb_ra,ip,121.43.28.208,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134927358087575 2025-08-06 16:43:48,drb_ra,url,https://121.43.28.208/ga.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953134927358087575 2025-08-06 16:44:21,drb_ra,url,http://118.31.173.19:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135065950490799 2025-08-06 16:44:21,drb_ra,ip,118.31.173.19,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135065950490799 2025-08-06 16:44:54,drb_ra,ip,43.134.222.84,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135204702318913 2025-08-06 16:44:54,drb_ra,url,http://43.134.222.84:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135204702318913 2025-08-06 16:45:28,drb_ra,domain,c95f137f-7f36-4b18-964c-56d0d113b143-00-dc5usg4e8pkl.kirk.replit.dev,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135345022689429 2025-08-06 16:45:28,drb_ra,url,https://c95f137f-7f36-4b18-964c-56d0d113b143-00-dc5usg4e8pkl.kirk.replit.dev/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135345022689429 2025-08-06 16:45:28,drb_ra,url,http://185.208.158.87:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135345022689429 2025-08-06 16:45:28,drb_ra,ip,185.208.158.87,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135345022689429 2025-08-06 16:46:01,drb_ra,url,http://47.102.21.22:9999,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135484835713432 2025-08-06 16:46:01,drb_ra,ip,47.102.21.22,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135484835713432 2025-08-06 16:46:34,drb_ra,ip,107.172.143.14,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135623105073176 2025-08-06 16:46:34,drb_ra,url,http://107.172.143.14:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135623105073176 2025-08-06 16:47:08,drb_ra,ip,47.98.136.161,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135764683833563 2025-08-06 16:47:08,drb_ra,url,https://47.98.136.161/activity,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135764683833563 2025-08-06 16:47:08,drb_ra,url,http://47.98.136.161:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135764683833563 2025-08-06 16:47:41,drb_ra,url,https://43.134.9.57/updates.rss,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135903448203489 2025-08-06 16:47:41,drb_ra,url,http://43.134.9.57:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135903448203489 2025-08-06 16:47:41,drb_ra,ip,43.134.9.57,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953135903448203489 2025-08-06 16:48:14,drb_ra,url,http://154.44.25.248:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953136042854285694 2025-08-06 16:48:14,drb_ra,ip,154.44.25.248,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953136042854285694 2025-08-06 16:48:47,drb_ra,url,http://47.97.118.238:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953136181698302398 2025-08-06 16:48:47,drb_ra,ip,47.97.118.238,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953136181698302398 2025-08-06 16:49:20,drb_ra,url,http://151.80.25.10:88,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953136320391307671 2025-08-06 16:49:20,drb_ra,ip,151.80.25.10,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953136320391307671 2025-08-06 17:23:52,smica83,ip,193.143.1.216,#NetSupport,https://x.com/smica83/status/1953145010351640685 2025-08-06 17:23:52,smica83,url,http://193.143.1.216:443,#NetSupport,https://x.com/smica83/status/1953145010351640685 2025-08-06 18:00:07,urldna_bot,domain,ffrtunv.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953154130379252209 2025-08-06 18:00:07,urldna_bot,url,https://ffrtunv.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953154130379252209 2025-08-06 18:46:46,drb_ra,url,http://159.223.171.199:8443,#Havoc #C2,https://x.com/drb_ra/status/1953165871112753379 2025-08-06 18:46:46,drb_ra,ip,159.223.171.199,#Havoc #C2,https://x.com/drb_ra/status/1953165871112753379 2025-08-06 18:47:19,drb_ra,url,http://51.83.137.148:7443,#Mythic #C2,https://x.com/drb_ra/status/1953166008551710855 2025-08-06 18:47:19,drb_ra,ip,51.83.137.148,#Mythic #C2,https://x.com/drb_ra/status/1953166008551710855 2025-08-06 18:47:52,drb_ra,url,http://167.172.44.149:7443,#Mythic #C2,https://x.com/drb_ra/status/1953166146607145360 2025-08-06 18:47:52,drb_ra,ip,167.172.44.149,#Mythic #C2,https://x.com/drb_ra/status/1953166146607145360 2025-08-06 18:48:24,drb_ra,ip,167.71.38.123,#Sliver #C2,https://x.com/drb_ra/status/1953166284280971563 2025-08-06 18:48:24,drb_ra,url,http://167.71.38.123:443,#Sliver #C2,https://x.com/drb_ra/status/1953166284280971563 2025-08-06 18:48:57,drb_ra,url,http://212.132.117.5:443,#Sliver #C2,https://x.com/drb_ra/status/1953166422026149925 2025-08-06 18:48:57,drb_ra,ip,212.132.117.5,#Sliver #C2,https://x.com/drb_ra/status/1953166422026149925 2025-08-06 18:49:30,drb_ra,url,http://146.103.118.40:443,#Sliver #C2,https://x.com/drb_ra/status/1953166559620345885 2025-08-06 18:49:30,drb_ra,ip,146.103.118.40,#Sliver #C2,https://x.com/drb_ra/status/1953166559620345885 2025-08-06 18:52:04,drb_ra,url,http://104.131.190.132:443,#C2,https://x.com/drb_ra/status/1953167205220098276 2025-08-06 18:52:04,drb_ra,ip,104.131.190.132,#C2,https://x.com/drb_ra/status/1953167205220098276 2025-08-06 18:52:37,drb_ra,url,http://18.176.93.76:80,#C2,https://x.com/drb_ra/status/1953167343397339212 2025-08-06 18:52:37,drb_ra,ip,18.176.93.76,#C2,https://x.com/drb_ra/status/1953167343397339212 2025-08-06 18:53:10,drb_ra,url,http://194.26.192.66:2404,#C2 #Remcos,https://x.com/drb_ra/status/1953167482555961689 2025-08-06 18:53:10,drb_ra,ip,194.26.192.66,#C2 #Remcos,https://x.com/drb_ra/status/1953167482555961689 2025-08-06 18:53:43,drb_ra,url,http://166.1.209.157:2404,#C2 #Remcos,https://x.com/drb_ra/status/1953167620653433130 2025-08-06 18:53:43,drb_ra,ip,166.1.209.157,#C2 #Remcos,https://x.com/drb_ra/status/1953167620653433130 2025-08-06 18:54:17,drb_ra,url,http://2.57.241.6:3232,#Reverse_SSH #C2,https://x.com/drb_ra/status/1953167762035265880 2025-08-06 18:54:50,drb_ra,ip,13.201.25.169,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953167900413456516 2025-08-06 18:54:50,drb_ra,url,http://13.201.25.169:28951,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953167900413456516 2025-08-06 18:55:23,drb_ra,url,http://15.160.167.247:60000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953168038183719129 2025-08-06 18:55:23,drb_ra,ip,15.160.167.247,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953168038183719129 2025-08-06 18:55:55,drb_ra,url,http://15.160.167.247:4400,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953168176189202771 2025-08-06 18:56:28,drb_ra,url,http://15.160.167.247:1200,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953168314458394707 2025-08-06 18:57:01,drb_ra,url,http://51.16.46.172:15616,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953168452551643183 2025-08-06 18:57:01,drb_ra,ip,51.16.46.172,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953168452551643183 2025-08-06 18:57:34,drb_ra,url,http://51.112.51.159:47080,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953168591152443783 2025-08-06 18:57:34,drb_ra,ip,51.112.51.159,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953168591152443783 2025-08-06 18:58:08,drb_ra,url,http://186.169.49.224:8020,#AsyncRAT #C2,https://x.com/drb_ra/status/1953168730537771139 2025-08-06 18:58:08,drb_ra,ip,186.169.49.224,#AsyncRAT #C2,https://x.com/drb_ra/status/1953168730537771139 2025-08-06 18:59:13,drb_ra,url,http://52.54.184.177:80,#Interactsh #C2,https://x.com/drb_ra/status/1953169006589817222 2025-08-06 18:59:13,drb_ra,ip,52.54.184.177,#Interactsh #C2,https://x.com/drb_ra/status/1953169006589817222 2025-08-06 18:59:47,drb_ra,ip,43.208.158.155,#Interactsh #C2,https://x.com/drb_ra/status/1953169145312493868 2025-08-06 18:59:47,drb_ra,url,http://43.208.158.155:80,#Interactsh #C2,https://x.com/drb_ra/status/1953169145312493868 2025-08-06 20:00:10,urldna_bot,domain,l1z4sn.webwave.dev,#phishing #scam,https://x.com/urldna_bot/status/1953184344094200018 2025-08-06 20:00:10,urldna_bot,url,https://l1z4sn.webwave.dev,#phishing #scam,https://x.com/urldna_bot/status/1953184344094200018 2025-08-06 20:14:08,s3curetheweb,domain,myaccountsgoggle.netlify.app,#phishing,https://x.com/s3curetheweb/status/1953187856526037159 2025-08-06 20:14:08,s3curetheweb,url,https://myaccountsgoggle.netlify.app,#phishing,https://x.com/s3curetheweb/status/1953187856526037159 2025-08-06 20:21:52,petikvx,md5,0c86dbee026608e560f542dae150aaf1,#ransomware,https://x.com/petikvx/status/1953189805388386509 2025-08-06 20:32:21,askardyuss,url,http://sti-kg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,url,http://ravinads.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,ravinads.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,url,http://hgame33.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,hgame33.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,url,http://audit-kg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,audit-kg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,sti-kg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,kg.sti-salyk.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,kgauditcheck.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,url,http://kg.sti-salyk.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,url,http://proauditkg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,proauditkg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,url,http://minjust-kg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,domain,minjust-kg.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 20:32:21,askardyuss,url,http://kgauditcheck.com,#malware,https://x.com/askardyuss/status/1953192440980189423 2025-08-06 21:00:04,threatquery,ip,155.94.155.132,#C2 #malware,https://x.com/threatquery/status/1953199415943991656 2025-08-06 21:00:04,threatquery,url,http://155.94.155.132,#C2 #malware,https://x.com/threatquery/status/1953199415943991656 2025-08-06 21:00:04,threatquery,url,http://193.143.1.216,#C2 #NetSupportRAT #malware,https://x.com/threatquery/status/1953199417726550335 2025-08-06 21:00:04,threatquery,url,http://198.55.98.56,#C2 #malware,https://x.com/threatquery/status/1953199419483947245 2025-08-06 21:00:04,threatquery,ip,198.55.98.56,#C2 #malware,https://x.com/threatquery/status/1953199419483947245 2025-08-06 21:01:20,drb_ra,ip,117.72.107.255,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953199736007344474 2025-08-06 21:01:20,drb_ra,url,http://117.72.107.255:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953199736007344474 2025-08-06 21:12:57,WifiRumHam,domain,go.georgiansurgeries.com,#phishing,https://x.com/WifiRumHam/status/1953202660078961013 2025-08-06 21:12:57,WifiRumHam,domain,challenge.upnetdns.com,#phishing,https://x.com/WifiRumHam/status/1953202660078961013 2025-08-06 21:12:57,WifiRumHam,url,https://challenge.upnetdns.com/success/success/,#phishing,https://x.com/WifiRumHam/status/1953202660078961013 2025-08-06 21:12:57,WifiRumHam,domain,georgiansurgeries.com,#phishing,https://x.com/WifiRumHam/status/1953202660078961013 2025-08-06 21:12:57,WifiRumHam,url,http://georgiansurgeries.com,#phishing,https://x.com/WifiRumHam/status/1953202660078961013 2025-08-06 21:12:57,WifiRumHam,url,http://go.georgiansurgeries.com,#phishing,https://x.com/WifiRumHam/status/1953202660078961013 2025-08-06 21:32:08,skocherhan,md5,e1b4572ea0780c963043819016f4c7a8,,https://x.com/skocherhan/status/1953207486518890574 2025-08-06 21:32:08,skocherhan,sha256,499f16ed2def90b3d4c0de5ca22d8c8080c26a1a405b4078e262a0a34bcb1e31,,https://x.com/skocherhan/status/1953207486518890574 2025-08-06 21:39:47,skocherhan,sha256,8ca1ffbd3cd22b9bead766ebd2a0f7b2d195b03d533bacf0cb8e1b1887af5636,,https://x.com/skocherhan/status/1953209413478633957 2025-08-06 21:56:59,skocherhan,domain,andrefelipedonascime1753562407700.0461178.meusitehostgator.com.br,,https://x.com/skocherhan/status/1953213741081792627 2025-08-06 21:56:59,skocherhan,url,https://andrefelipedonascime1753562407700.0461178.meusitehostgator.com.br/vTHqZccREw_04/03.txt,,https://x.com/skocherhan/status/1953213741081792627 2025-08-06 22:00:07,urldna_bot,domain,garazeuhriste.webzdarma.cz,#phishing #scam,https://x.com/urldna_bot/status/1953214530382594075 2025-08-06 22:00:07,urldna_bot,url,https://garazeuhriste.webzdarma.cz/am/infospage.php,#phishing #scam,https://x.com/urldna_bot/status/1953214530382594075 2025-08-06 23:00:48,drb_ra,domain,297d4064-b529-4934-af6f-b3f266e64f8a-00-316tm8g12nc9a.riker.replit.dev,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953229799993770427 2025-08-06 23:00:48,drb_ra,url,https://297d4064-b529-4934-af6f-b3f266e64f8a-00-316tm8g12nc9a.riker.replit.dev/jquery-3.3.1.min.js,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953229799993770427 2025-08-06 23:00:48,drb_ra,url,http://154.219.109.205:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953229799993770427 2025-08-06 23:00:48,drb_ra,ip,154.219.109.205,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953229799993770427 2025-08-06 23:01:21,drb_ra,url,http://54.89.193.82:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953229939215613978 2025-08-06 23:01:21,drb_ra,ip,54.89.193.82,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953229939215613978 2025-08-06 23:01:21,drb_ra,url,https://54.89.193.82/pixel.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953229939215613978 2025-08-06 23:03:56,drb_ra,url,http://156.239.238.94:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953230587856027846 2025-08-06 23:03:56,drb_ra,ip,156.239.238.94,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953230587856027846 2025-08-06 23:03:56,drb_ra,ip,122.51.235.217,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953230587856027846 2025-08-06 23:04:29,drb_ra,url,http://120.26.39.204:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953230726599692732 2025-08-06 23:05:02,drb_ra,url,https://1.94.134.161/dpixel,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953230866286821674 2025-08-06 23:05:02,drb_ra,url,http://1.94.134.161:8099,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953230866286821674 2025-08-06 23:05:35,drb_ra,url,http://121.43.179.233:8000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231005516517656 2025-08-06 23:05:35,drb_ra,ip,121.43.179.233,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231005516517656 2025-08-06 23:06:09,drb_ra,url,https://134.175.236.240/load,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231146621251662 2025-08-06 23:06:09,drb_ra,url,http://134.175.236.240:8011,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231146621251662 2025-08-06 23:06:09,drb_ra,ip,134.175.236.240,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231146621251662 2025-08-06 23:06:42,drb_ra,url,http://118.68.64.227:4444,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231285394010203 2025-08-06 23:06:42,drb_ra,ip,118.68.64.227,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231285394010203 2025-08-06 23:07:09,masaomi346,domain,shinkansen2-atmost.qimaibao.cn,#phishing,https://x.com/masaomi346/status/1953231399345111335 2025-08-06 23:07:09,masaomi346,url,https://shinkansen2-atmost.qimaibao.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1953231399345111335 2025-08-06 23:07:09,masaomi346,domain,shinkansen2-osficat.peopledao.cn,#phishing,https://x.com/masaomi346/status/1953231399345111335 2025-08-06 23:07:09,masaomi346,url,https://shinkansen2-osficat.peopledao.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1953231399345111335 2025-08-06 23:07:09,masaomi346,domain,shinkansen2-zation.qipenyou.cn,#phishing,https://x.com/masaomi346/status/1953231399345111335 2025-08-06 23:07:09,masaomi346,url,https://shinkansen2-zation.qipenyou.cn/RSV_P/smart_index.htm/,#phishing,https://x.com/masaomi346/status/1953231399345111335 2025-08-06 23:07:15,drb_ra,url,http://43.229.153.123:2004,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231424200266099 2025-08-06 23:07:15,drb_ra,ip,43.229.153.123,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231424200266099 2025-08-06 23:07:48,drb_ra,url,http://43.229.153.122:2004,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231563212419259 2025-08-06 23:07:48,drb_ra,ip,43.229.153.122,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231563212419259 2025-08-06 23:07:48,drb_ra,ip,43.229.153.124,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231563212419259 2025-08-06 23:08:21,drb_ra,url,https://43.230.163.146/siie=utf-8&f=8&rsv_bp=1&rsv_idx=1&ch=&tn=baidu&bar=&wd=,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231702823678337 2025-08-06 23:08:21,drb_ra,url,http://43.230.163.146:1433,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231702823678337 2025-08-06 23:08:21,drb_ra,ip,43.230.163.146,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953231702823678337 2025-08-06 23:10:55,drb_ra,url,https://43.160.252.15:443,#C2,https://x.com/drb_ra/status/1953232348885205497 2025-08-06 23:10:55,drb_ra,url,http://43.160.252.15:443,#C2,https://x.com/drb_ra/status/1953232348885205497 2025-08-06 23:10:55,drb_ra,ip,43.160.252.15,#C2,https://x.com/drb_ra/status/1953232348885205497 2025-08-07 00:00:07,urldna_bot,domain,785949794.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953244730571022563 2025-08-07 00:00:07,urldna_bot,url,https://785949794.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953244730571022563 2025-08-07 00:04:57,ShadowChasing1,domain,lizventure.com,#APT,https://x.com/ShadowChasing1/status/1953245945459818795 2025-08-07 00:04:57,ShadowChasing1,url,https://lizventure.com/wp-includes/js/common/src/list.php,#APT,https://x.com/ShadowChasing1/status/1953245945459818795 2025-08-07 00:04:57,ShadowChasing1,sha256,0375a1e1f558d436de7e93570aa15f9554210d52f724d1189d65c809d31c04cf,#APT,https://x.com/ShadowChasing1/status/1953245945459818795 2025-08-07 00:05:01,ShadowChasing1,domain,Offrs.zip,#phishing #APT,https://x.com/ShadowChasing1/status/1953245961373007973 2025-08-07 00:05:01,ShadowChasing1,url,http://Offrs.zip,#phishing #APT,https://x.com/ShadowChasing1/status/1953245961373007973 2025-08-07 00:05:01,ShadowChasing1,md5,b12b503ba0519bfcd8824ceeffa8e6df,#phishing #APT,https://x.com/ShadowChasing1/status/1953245961373007973 2025-08-07 00:05:01,ShadowChasing1,md5,6c75152fc5f3a919f9f62929557b76bc,#phishing #APT,https://x.com/ShadowChasing1/status/1953245961373007973 2025-08-07 01:44:36,drb_ra,ip,81.71.249.93,#CobaltStrike #C2,https://x.com/drb_ra/status/1953271022389707053 2025-08-07 01:44:36,drb_ra,url,http://159.75.177.25:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1953271022389707053 2025-08-07 01:44:36,drb_ra,ip,159.75.177.25,#CobaltStrike #C2,https://x.com/drb_ra/status/1953271022389707053 2025-08-07 02:00:06,urldna_bot,domain,rondd4.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953274924098809973 2025-08-07 02:00:06,urldna_bot,url,https://rondd4.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953274924098809973 2025-08-07 03:17:46,fbgwls245,url,http://t.me/BlackNevas,#ransomware,https://x.com/fbgwls245/status/1953294468041376203 2025-08-07 03:17:46,fbgwls245,domain,ctyfftrjgtwdjzlgqh4avbd35sqrs6tde4oyam2ufbjch6oqpqtkdtid.onion,#ransomware,https://x.com/fbgwls245/status/1953294468041376203 2025-08-07 03:17:46,fbgwls245,url,http://ctyfftrjgtwdjzlgqh4avbd35sqrs6tde4oyam2ufbjch6oqpqtkdtid.onion,#ransomware,https://x.com/fbgwls245/status/1953294468041376203 2025-08-07 03:44:00,SaptangLabs,url,http://dimerco.com,#ransomware,https://x.com/SaptangLabs/status/1953301071700373835 2025-08-07 03:44:00,SaptangLabs,domain,dimerco.com,#ransomware,https://x.com/SaptangLabs/status/1953301071700373835 2025-08-07 04:00:09,urldna_bot,url,https://qbtwaltesue.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953305136035447290 2025-08-07 04:00:09,urldna_bot,domain,qbtwaltesue.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953305136035447290 2025-08-07 06:00:09,urldna_bot,domain,spersonas-apps-bancolombia.com,#scam #phishing,https://x.com/urldna_bot/status/1953335335816962063 2025-08-07 06:00:09,urldna_bot,url,https://spersonas-apps-bancolombia.com,#scam #phishing,https://x.com/urldna_bot/status/1953335335816962063 2025-08-07 06:20:57,suyog41,md5,a574edc7072b5ac0c16cb5b10cffa6e2,,https://x.com/suyog41/status/1953340569163579584 2025-08-07 06:20:57,suyog41,md5,63a82c70d13a37befe4525a3c3d1b464,,https://x.com/suyog41/status/1953340569163579584 2025-08-07 06:20:57,suyog41,md5,89b417b8c5d1999336d569f4fe2b74ed,,https://x.com/suyog41/status/1953340569163579584 2025-08-07 06:20:57,suyog41,md5,613616a130c278f9644fe76952469c88,,https://x.com/suyog41/status/1953340569163579584 2025-08-07 06:20:57,suyog41,md5,1ae31a9f8a8840acf4c7e14941c6b229,,https://x.com/suyog41/status/1953340569163579584 2025-08-07 06:45:22,drb_ra,url,http://31.44.5.30:443,#C2 #Sliver,https://x.com/drb_ra/status/1953346714691084407 2025-08-07 06:45:22,drb_ra,ip,31.44.5.30,#C2 #Sliver,https://x.com/drb_ra/status/1953346714691084407 2025-08-07 06:47:56,drb_ra,ip,79.241.108.34,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953347359934489007 2025-08-07 06:47:56,drb_ra,url,http://79.241.108.34:81,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953347359934489007 2025-08-07 06:48:29,drb_ra,url,http://15.161.246.69:36177,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953347497629298896 2025-08-07 06:48:29,drb_ra,ip,15.161.246.69,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953347497629298896 2025-08-07 06:49:02,drb_ra,url,http://44.243.107.60:20201,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953347636188102873 2025-08-07 06:49:02,drb_ra,ip,44.243.107.60,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953347636188102873 2025-08-07 06:49:35,drb_ra,url,http://155.94.155.194:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1953347774704988359 2025-08-07 06:49:35,drb_ra,ip,155.94.155.194,#AsyncRAT #C2,https://x.com/drb_ra/status/1953347774704988359 2025-08-07 06:50:08,drb_ra,url,http://185.193.127.77:25,#Interactsh #C2,https://x.com/drb_ra/status/1953347912513044731 2025-08-07 06:50:08,drb_ra,ip,185.193.127.77,#Interactsh #C2,https://x.com/drb_ra/status/1953347912513044731 2025-08-07 06:50:41,drb_ra,url,http://95.237.69.58:587,#Interactsh #C2,https://x.com/drb_ra/status/1953348050140774474 2025-08-07 06:51:14,drb_ra,url,http://95.237.69.58:25,#Interactsh #C2,https://x.com/drb_ra/status/1953348187650916556 2025-08-07 06:51:14,drb_ra,ip,95.237.69.58,#Interactsh #C2,https://x.com/drb_ra/status/1953348187650916556 2025-08-07 06:51:46,drb_ra,url,http://67.205.132.154:25,#Interactsh #C2,https://x.com/drb_ra/status/1953348325672898640 2025-08-07 06:51:46,drb_ra,ip,67.205.132.154,#Interactsh #C2,https://x.com/drb_ra/status/1953348325672898640 2025-08-07 06:52:20,drb_ra,url,http://124.221.125.254:8888,#C2 #Supershell,https://x.com/drb_ra/status/1953348464458215908 2025-08-07 06:52:20,drb_ra,ip,124.221.125.254,#C2 #Supershell,https://x.com/drb_ra/status/1953348464458215908 2025-08-07 06:52:52,drb_ra,url,http://31.57.147.29:7000,#C2 #Dcrat,https://x.com/drb_ra/status/1953348602354389037 2025-08-07 06:52:52,drb_ra,ip,31.57.147.29,#C2 #Dcrat,https://x.com/drb_ra/status/1953348602354389037 2025-08-07 06:53:25,drb_ra,ip,44.211.240.61,#C2,https://x.com/drb_ra/status/1953348740036559032 2025-08-07 06:53:25,drb_ra,url,http://44.211.240.61:445,#C2,https://x.com/drb_ra/status/1953348740036559032 2025-08-07 06:53:58,drb_ra,url,http://109.248.161.146:8080,#Deimos #C2,https://x.com/drb_ra/status/1953348877907587111 2025-08-07 06:53:58,drb_ra,ip,109.248.161.146,#Deimos #C2,https://x.com/drb_ra/status/1953348877907587111 2025-08-07 06:54:31,drb_ra,url,http://54.210.244.114:443,#Deimos #C2,https://x.com/drb_ra/status/1953349016114114762 2025-08-07 06:54:31,drb_ra,ip,54.210.244.114,#Deimos #C2,https://x.com/drb_ra/status/1953349016114114762 2025-08-07 06:55:04,drb_ra,url,http://216.221.95.47:631,#Deimos #C2,https://x.com/drb_ra/status/1953349153993421107 2025-08-07 06:55:04,drb_ra,ip,216.221.95.47,#Deimos #C2,https://x.com/drb_ra/status/1953349153993421107 2025-08-07 06:55:37,drb_ra,url,http://185.100.168.112:7443,#Mythic #C2,https://x.com/drb_ra/status/1953349292556538066 2025-08-07 06:55:37,drb_ra,ip,185.100.168.112,#Mythic #C2,https://x.com/drb_ra/status/1953349292556538066 2025-08-07 06:56:10,drb_ra,ip,185.112.146.100,#Sliver #C2,https://x.com/drb_ra/status/1953349430477803752 2025-08-07 06:56:10,drb_ra,url,http://185.112.146.100:31337,#Sliver #C2,https://x.com/drb_ra/status/1953349430477803752 2025-08-07 06:58:44,drb_ra,url,http://212.34.145.146:4321,#C2,https://x.com/drb_ra/status/1953350076115321282 2025-08-07 06:58:44,drb_ra,ip,212.34.145.146,#C2,https://x.com/drb_ra/status/1953350076115321282 2025-08-07 06:59:17,drb_ra,url,http://209.151.146.193:443,#C2,https://x.com/drb_ra/status/1953350214816813238 2025-08-07 06:59:17,drb_ra,ip,209.151.146.193,#C2,https://x.com/drb_ra/status/1953350214816813238 2025-08-07 06:59:50,drb_ra,url,http://104.224.31.144:2404,#C2 #Remcos,https://x.com/drb_ra/status/1953350352838766716 2025-08-07 06:59:50,drb_ra,ip,104.224.31.144,#C2 #Remcos,https://x.com/drb_ra/status/1953350352838766716 2025-08-07 07:00:23,drb_ra,url,http://172.94.9.228:5671,#C2 #Remcos,https://x.com/drb_ra/status/1953350491150196874 2025-08-07 07:00:23,drb_ra,ip,172.94.9.228,#C2 #Remcos,https://x.com/drb_ra/status/1953350491150196874 2025-08-07 07:00:56,drb_ra,ip,107.172.232.82,#C2 #Remcos,https://x.com/drb_ra/status/1953350629063041358 2025-08-07 07:00:56,drb_ra,url,http://107.172.232.82:2404,#C2 #Remcos,https://x.com/drb_ra/status/1953350629063041358 2025-08-07 07:01:30,drb_ra,url,http://196.251.83.113:2404,#C2 #Remcos,https://x.com/drb_ra/status/1953350772206252455 2025-08-07 07:01:30,drb_ra,ip,196.251.83.113,#C2 #Remcos,https://x.com/drb_ra/status/1953350772206252455 2025-08-07 07:02:03,drb_ra,url,http://198.244.148.183:8085,#C2,https://x.com/drb_ra/status/1953350910958080003 2025-08-07 07:02:03,drb_ra,ip,198.244.148.183,#C2,https://x.com/drb_ra/status/1953350910958080003 2025-08-07 08:00:07,urldna_bot,domain,webmailsupporthelpdesk.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953365523376312404 2025-08-07 08:00:07,urldna_bot,url,https://webmailsupporthelpdesk.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953365523376312404 2025-08-07 08:05:37,romonlyht,url,https://talibu.com.br/tambor/byp/artic/?zonealldom=aaaa@example.jp,#phishing,https://x.com/romonlyht/status/1953366908331311146 2025-08-07 08:05:37,romonlyht,ip,108.167.168.57,#phishing,https://x.com/romonlyht/status/1953366908331311146 2025-08-07 08:05:38,romonlyht,url,https://talibu.com.br/tambor/byp/artic/system.php?praga=9c5d9ef67a82dcab89b597194222bc35&pid=9c5d9ef67a82dcab89b597194222bc35&framework9c5d9ef67a82dcab89b597194222bc35=9c5d9ef67a82dcab89b597194222bc35&zonealldom=aaaa@example.jp&,#phishing,https://x.com/romonlyht/status/1953366910982295610 2025-08-07 08:05:38,romonlyht,md5,9c5d9ef67a82dcab89b597194222bc35,#phishing,https://x.com/romonlyht/status/1953366913037254787 2025-08-07 08:05:38,romonlyht,url,https://talibu.com.br/tambor/byp/artic/auth.php,#phishing,https://x.com/romonlyht/status/1953366913037254787 2025-08-07 08:05:38,romonlyht,domain,talibu.com.br,#phishing,https://x.com/romonlyht/status/1953366913037254787 2025-08-07 08:07:21,abuse_ch,ip,15.204.119.129,,https://x.com/abuse_ch/status/1953367346854129697 2025-08-07 09:10:17,hkayaeu,ip,107.173.101.138,#phishing #malware,https://x.com/hkayaeu/status/1953383182725795931 2025-08-07 10:00:08,urldna_bot,domain,mwebcozawebmail-sigin.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953395726202941545 2025-08-07 10:00:08,urldna_bot,url,https://mwebcozawebmail-sigin.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953395726202941545 2025-08-07 10:13:23,skocherhan,url,http://67yao4.oss-cn-qingdao.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,url,http://2ao2my.oss-cn-beijing.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,domain,2ao2my.oss-cn-beijing.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,url,http://25nm.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,domain,25nm.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,domain,67yao4.oss-cn-qingdao.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,domain,2025so.oss-cn-beijing.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,url,http://8ae6tt.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,domain,8ae6tt.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,url,http://nm25.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,domain,nm25.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:13:23,skocherhan,url,http://2025so.oss-cn-beijing.aliyuncs.com,,https://x.com/skocherhan/status/1953399063354728558 2025-08-07 10:33:38,skocherhan,url,http://8.210.41.205:7036,,https://x.com/skocherhan/status/1953404159157264701 2025-08-07 10:33:38,skocherhan,url,http://47.239.99.114:8379,,https://x.com/skocherhan/status/1953404159157264701 2025-08-07 10:33:38,skocherhan,ip,47.239.99.114,,https://x.com/skocherhan/status/1953404159157264701 2025-08-07 10:34:15,drb_ra,ip,91.206.178.219,#C2,https://x.com/drb_ra/status/1953404312027115870 2025-08-07 10:34:15,drb_ra,url,http://91.206.178.219:4444,#C2,https://x.com/drb_ra/status/1953404312027115870 2025-08-07 10:53:44,skocherhan,url,http://upitem.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,upitem.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,oss3333.oss-cn-shanghai.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://lldwt-oss.oss-cn-beijing.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,lldwt-oss.oss-cn-beijing.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://5oss.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,5oss.oss-cn-hangzhou.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://iualef.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,iualef.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://oss3333.oss-cn-shanghai.aliyuncs.com,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,feetifu.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,uyahcn.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://uyahcn.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,osuyet.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://osuyet.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://feetifu.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://poaeur.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,poaeur.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,domain,yuwesq.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 10:53:44,skocherhan,url,http://yuwesq.net,,https://x.com/skocherhan/status/1953409215537598851 2025-08-07 11:03:00,drb_ra,ip,47.102.87.217,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411548040270098 2025-08-07 11:03:00,drb_ra,url,http://47.102.87.217:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411548040270098 2025-08-07 11:03:33,drb_ra,url,http://54.89.193.82:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411686360125803 2025-08-07 11:03:33,drb_ra,ip,54.89.193.82,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411686360125803 2025-08-07 11:04:06,drb_ra,ip,129.226.90.183,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411825439006752 2025-08-07 11:04:06,drb_ra,url,http://129.226.90.183:10001,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411825439006752 2025-08-07 11:04:39,drb_ra,url,https://31.57.63.237/dpixel,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411964727624063 2025-08-07 11:04:39,drb_ra,url,http://31.57.63.237:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411964727624063 2025-08-07 11:04:39,drb_ra,ip,31.57.63.237,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953411964727624063 2025-08-07 11:05:12,drb_ra,url,http://39.108.114.127:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412103051575591 2025-08-07 11:05:12,drb_ra,ip,39.108.114.127,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412103051575591 2025-08-07 11:05:12,drb_ra,ip,121.41.101.90,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412103051575591 2025-08-07 11:05:45,drb_ra,url,http://8.130.134.66:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412241044177123 2025-08-07 11:06:19,drb_ra,ip,84.32.44.199,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412381490434559 2025-08-07 11:06:19,drb_ra,url,http://84.32.44.199:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412381490434559 2025-08-07 11:06:51,drb_ra,url,http://45.156.87.173:4443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412519269195826 2025-08-07 11:06:51,drb_ra,ip,45.156.87.173,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412519269195826 2025-08-07 11:07:25,drb_ra,url,https://nginx.myneath.top/__utm.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412658897596652 2025-08-07 11:07:25,drb_ra,url,http://117.72.51.114:8443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412658897596652 2025-08-07 11:07:58,drb_ra,domain,nginx.myneath.top,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412798106472881 2025-08-07 11:07:58,drb_ra,url,https://nginx.myneath.top/dot.gif,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412798106472881 2025-08-07 11:07:58,drb_ra,url,http://117.72.51.114:2052,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412798106472881 2025-08-07 11:08:28,skocherhan,ip,181.206.158.190,#opendir #Remcos #Dcrat,https://x.com/skocherhan/status/1953412922689937677 2025-08-07 11:08:28,skocherhan,sha256,dd36ccb034444d9c94afba45ff1f14b3852c12390820be810dc3bbe46abcf0be,#Remcos #Dcrat #opendir,https://x.com/skocherhan/status/1953412922689937677 2025-08-07 11:08:31,drb_ra,url,http://117.72.51.114:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412936950534148 2025-08-07 11:08:31,drb_ra,ip,117.72.51.114,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953412936950534148 2025-08-07 11:09:04,drb_ra,ip,47.94.40.139,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953413075115106698 2025-08-07 11:09:04,drb_ra,url,http://47.94.40.139:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953413075115106698 2025-08-07 11:11:38,drb_ra,url,http://111.229.151.200:8888,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953413720744366449 2025-08-07 11:11:38,drb_ra,ip,111.229.151.200,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953413720744366449 2025-08-07 11:12:11,drb_ra,url,http://47.122.78.242:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953413861031190669 2025-08-07 11:12:11,drb_ra,ip,47.122.78.242,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953413861031190669 2025-08-07 11:12:44,drb_ra,url,http://1.94.225.146:8000,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953413999137079366 2025-08-07 11:36:43,masaomi346,domain,mypage-ocn.6gepij.top,#phishing,https://x.com/masaomi346/status/1953420033184731397 2025-08-07 11:36:43,masaomi346,url,https://mypage-ocn.6gepij.top,#phishing,https://x.com/masaomi346/status/1953420033184731397 2025-08-07 11:45:37,JAMESWT_WT,ip,172.96.172.173,,https://x.com/JAMESWT_WT/status/1953422275220283774 2025-08-07 12:00:07,urldna_bot,domain,hdfcbank.speedynet.in,#scam #phishing,https://x.com/urldna_bot/status/1953425921756553537 2025-08-07 12:00:07,urldna_bot,url,http://www.hdfcbank.speedynet.in/index.php,#scam #phishing,https://x.com/urldna_bot/status/1953425921756553537 2025-08-07 13:47:32,mbec03,domain,pagos-misfacturasenergia.com,#phishing,https://x.com/mbec03/status/1953452954872144128 2025-08-07 13:47:32,mbec03,url,https://pagos-misfacturasenergia.com,#phishing,https://x.com/mbec03/status/1953452954872144128 2025-08-07 13:47:32,mbec03,ip,103.133.1.1,#phishing,https://x.com/mbec03/status/1953452954872144128 2025-08-07 13:52:27,drb_ra,url,http://172.67.215.249:443,#C2,https://x.com/drb_ra/status/1953454194272149582 2025-08-07 13:53:01,drb_ra,domain,server-cd2.bipewi2747.workers.dev,#C2,https://x.com/drb_ra/status/1953454334378713563 2025-08-07 13:53:01,drb_ra,url,http://server-cd2.bipewi2747.workers.dev,#C2,https://x.com/drb_ra/status/1953454334378713563 2025-08-07 13:53:01,drb_ra,url,http://172.67.215.249:80,#C2,https://x.com/drb_ra/status/1953454334378713563 2025-08-07 14:00:11,urldna_bot,domain,1111365wz.cc,#phishing #scam,https://x.com/urldna_bot/status/1953456137619005730 2025-08-07 14:00:11,urldna_bot,url,https://1111365wz.cc,#phishing #scam,https://x.com/urldna_bot/status/1953456137619005730 2025-08-07 14:49:09,banthisguy9349,ip,176.46.152.47,,https://x.com/banthisguy9349/status/1953468461566324767 2025-08-07 16:00:07,urldna_bot,domain,asmails.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953486319247577412 2025-08-07 16:00:07,urldna_bot,url,https://asmails.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953486319247577412 2025-08-07 16:00:27,SarlackLab,url,http://196.119.0.113:10000,#C2 #Njrat,https://x.com/SarlackLab/status/1953486405859959203 2025-08-07 16:00:27,SarlackLab,ip,196.119.0.113,#C2 #Njrat,https://x.com/SarlackLab/status/1953486405859959203 2025-08-07 16:00:52,SarlackLab,url,http://147.185.221.30:56013,#C2 #Njrat,https://x.com/SarlackLab/status/1953486510205911324 2025-08-07 16:00:52,SarlackLab,domain,send-deferred.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1953486510205911324 2025-08-07 16:00:52,SarlackLab,url,http://send-deferred.gl.at.ply.gg,#C2 #Njrat,https://x.com/SarlackLab/status/1953486510205911324 2025-08-07 16:00:52,SarlackLab,ip,147.185.221.30,#C2 #Njrat,https://x.com/SarlackLab/status/1953486510205911324 2025-08-07 18:00:07,urldna_bot,domain,metamask.tasheeltheqa.com,#phishing #scam,https://x.com/urldna_bot/status/1953516519482114524 2025-08-07 18:00:07,urldna_bot,url,http://metamask.tasheeltheqa.com,#phishing #scam,https://x.com/urldna_bot/status/1953516519482114524 2025-08-07 18:45:43,drb_ra,url,http://140.238.30.216:8443,#Sliver #C2,https://x.com/drb_ra/status/1953527993327890767 2025-08-07 18:46:16,drb_ra,url,http://140.238.30.216:8080,#Sliver #C2,https://x.com/drb_ra/status/1953528131765064025 2025-08-07 18:46:16,drb_ra,ip,140.238.30.216,#Sliver #C2,https://x.com/drb_ra/status/1953528131765064025 2025-08-07 18:46:48,drb_ra,url,http://13.201.239.120:443,#Sliver #C2,https://x.com/drb_ra/status/1953528269183012977 2025-08-07 18:46:48,drb_ra,ip,13.201.239.120,#Sliver #C2,https://x.com/drb_ra/status/1953528269183012977 2025-08-07 18:47:21,drb_ra,url,http://188.166.220.207:443,#Sliver #C2,https://x.com/drb_ra/status/1953528407876157730 2025-08-07 18:47:21,drb_ra,ip,188.166.220.207,#Sliver #C2,https://x.com/drb_ra/status/1953528407876157730 2025-08-07 18:49:56,drb_ra,url,http://196.251.70.160:2404,#Remcos #C2,https://x.com/drb_ra/status/1953529054239301877 2025-08-07 18:49:56,drb_ra,ip,196.251.70.160,#Remcos #C2,https://x.com/drb_ra/status/1953529054239301877 2025-08-07 18:50:28,drb_ra,url,http://109.248.151.75:5888,#Remcos #C2,https://x.com/drb_ra/status/1953529191976026509 2025-08-07 18:50:28,drb_ra,ip,109.248.151.75,#Remcos #C2,https://x.com/drb_ra/status/1953529191976026509 2025-08-07 18:51:02,drb_ra,url,http://91.219.239.222:2404,#Remcos #C2,https://x.com/drb_ra/status/1953529331268915293 2025-08-07 18:51:02,drb_ra,ip,91.219.239.222,#Remcos #C2,https://x.com/drb_ra/status/1953529331268915293 2025-08-07 18:51:35,drb_ra,url,http://146.185.239.28:2404,#Remcos #C2,https://x.com/drb_ra/status/1953529470045839726 2025-08-07 18:51:35,drb_ra,ip,146.185.239.28,#Remcos #C2,https://x.com/drb_ra/status/1953529470045839726 2025-08-07 18:52:07,drb_ra,url,http://196.251.83.191:2404,#Remcos #C2,https://x.com/drb_ra/status/1953529607547666806 2025-08-07 18:52:07,drb_ra,ip,196.251.83.191,#Remcos #C2,https://x.com/drb_ra/status/1953529607547666806 2025-08-07 18:52:41,drb_ra,url,http://13.124.82.166:10261,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953529746739925152 2025-08-07 18:52:41,drb_ra,ip,13.124.82.166,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953529746739925152 2025-08-07 18:53:14,drb_ra,url,http://203.159.90.52:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1953529884988322231 2025-08-07 18:53:14,drb_ra,ip,203.159.90.52,#AsyncRAT #C2,https://x.com/drb_ra/status/1953529884988322231 2025-08-07 18:53:47,drb_ra,url,http://196.251.69.90:8808,#AsyncRAT #C2,https://x.com/drb_ra/status/1953530023270301998 2025-08-07 18:53:47,drb_ra,ip,196.251.69.90,#AsyncRAT #C2,https://x.com/drb_ra/status/1953530023270301998 2025-08-07 18:54:19,drb_ra,url,http://120.55.48.248:443,#Interactsh #C2,https://x.com/drb_ra/status/1953530161279676745 2025-08-07 18:54:19,drb_ra,ip,120.55.48.248,#Interactsh #C2,https://x.com/drb_ra/status/1953530161279676745 2025-08-07 18:54:52,drb_ra,url,http://144.126.211.233:587,#Interactsh #C2,https://x.com/drb_ra/status/1953530299498782772 2025-08-07 18:54:52,drb_ra,ip,144.126.211.233,#Interactsh #C2,https://x.com/drb_ra/status/1953530299498782772 2025-08-07 18:55:26,drb_ra,url,http://23.95.72.53:80,#Interactsh #C2,https://x.com/drb_ra/status/1953530440817545506 2025-08-07 18:55:26,drb_ra,ip,23.95.72.53,#Interactsh #C2,https://x.com/drb_ra/status/1953530440817545506 2025-08-07 18:55:59,drb_ra,url,http://46.101.93.233:3333,#EvilGoPhish #Evilginx #C2,https://x.com/drb_ra/status/1953530580043198910 2025-08-07 18:55:59,drb_ra,ip,46.101.93.233,#EvilGoPhish #Evilginx #C2,https://x.com/drb_ra/status/1953530580043198910 2025-08-07 18:56:32,drb_ra,url,http://39.40.133.150:995,#Qakbot #C2,https://x.com/drb_ra/status/1953530718551695456 2025-08-07 18:56:32,drb_ra,ip,39.40.133.150,#Qakbot #C2,https://x.com/drb_ra/status/1953530718551695456 2025-08-07 18:57:05,drb_ra,url,http://172.104.142.143:443,#Havoc #C2,https://x.com/drb_ra/status/1953530857190195234 2025-08-07 18:57:05,drb_ra,ip,172.104.142.143,#Havoc #C2,https://x.com/drb_ra/status/1953530857190195234 2025-08-07 18:57:38,drb_ra,url,http://178.128.25.174:443,#Bianlian #C2,https://x.com/drb_ra/status/1953530995602334085 2025-08-07 18:57:38,drb_ra,ip,178.128.25.174,#Bianlian #C2,https://x.com/drb_ra/status/1953530995602334085 2025-08-07 18:58:12,drb_ra,url,http://89.35.131.62:443,#Bianlian #C2,https://x.com/drb_ra/status/1953531136283455987 2025-08-07 18:58:12,drb_ra,ip,89.35.131.62,#Bianlian #C2,https://x.com/drb_ra/status/1953531136283455987 2025-08-07 18:58:45,drb_ra,url,http://162.33.179.148:443,#Bianlian #C2,https://x.com/drb_ra/status/1953531275177857273 2025-08-07 18:58:45,drb_ra,ip,162.33.179.148,#Bianlian #C2,https://x.com/drb_ra/status/1953531275177857273 2025-08-07 18:59:18,drb_ra,url,http://76.223.116.57:443,#Deimos #C2,https://x.com/drb_ra/status/1953531413422072254 2025-08-07 18:59:18,drb_ra,ip,76.223.116.57,#Deimos #C2,https://x.com/drb_ra/status/1953531413422072254 2025-08-07 18:59:51,drb_ra,url,http://99.83.202.242:443,#Deimos #C2,https://x.com/drb_ra/status/1953531552668819501 2025-08-07 18:59:51,drb_ra,ip,99.83.202.242,#Deimos #C2,https://x.com/drb_ra/status/1953531552668819501 2025-08-07 19:00:24,drb_ra,url,http://3.93.203.100:443,#Deimos #C2,https://x.com/drb_ra/status/1953531690753638574 2025-08-07 19:00:57,drb_ra,url,http://34.99.199.235:443,#Deimos #C2,https://x.com/drb_ra/status/1953531828997955700 2025-08-07 19:01:30,drb_ra,url,http://66.42.48.169:7443,#Mythic #C2,https://x.com/drb_ra/status/1953531967196029401 2025-08-07 19:01:30,drb_ra,ip,66.42.48.169,#Mythic #C2,https://x.com/drb_ra/status/1953531967196029401 2025-08-07 19:04:05,drb_ra,url,http://185.253.117.61:4443,#C2,https://x.com/drb_ra/status/1953532615211798786 2025-08-07 19:04:05,drb_ra,ip,185.253.117.61,#C2,https://x.com/drb_ra/status/1953532615211798786 2025-08-07 19:04:37,drb_ra,url,http://213.109.162.38:443,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1953532753569288297 2025-08-07 19:05:11,drb_ra,url,http://213.109.162.38:80,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1953532894128804151 2025-08-07 19:05:11,drb_ra,ip,213.109.162.38,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1953532894128804151 2025-08-07 19:06:17,drb_ra,url,http://5.188.118.251:11601,#C2,https://x.com/drb_ra/status/1953533172911612415 2025-08-07 19:06:50,drb_ra,url,http://93.51.52.232:80,#C2,https://x.com/drb_ra/status/1953533311092936832 2025-08-07 19:06:50,drb_ra,ip,93.51.52.232,#C2,https://x.com/drb_ra/status/1953533311092936832 2025-08-07 19:07:24,drb_ra,url,http://85.9.192.132:443,#C2,https://x.com/drb_ra/status/1953533450721370266 2025-08-07 19:07:24,drb_ra,ip,85.9.192.132,#C2,https://x.com/drb_ra/status/1953533450721370266 2025-08-07 19:07:57,drb_ra,url,http://216.250.249.221:8443,#Remcos #C2,https://x.com/drb_ra/status/1953533589095592296 2025-08-07 19:07:57,drb_ra,ip,216.250.249.221,#Remcos #C2,https://x.com/drb_ra/status/1953533589095592296 2025-08-07 19:30:34,UK_Daniel_Card,ip,111.229.0.18,#CobaltStrike,https://x.com/UK_Daniel_Card/status/1953539281089126720 2025-08-07 19:30:34,UK_Daniel_Card,ip,175.27.168.31,#CobaltStrike,https://x.com/UK_Daniel_Card/status/1953539281089126720 2025-08-07 19:35:35,jcarndt,url,http://191.233.1.72/352/,#opendir,https://x.com/jcarndt/status/1953540544887439514 2025-08-07 19:35:35,jcarndt,ip,191.233.1.72,#opendir,https://x.com/jcarndt/status/1953540544887439514 2025-08-07 20:45:14,drb_ra,url,https://113.44.45.197:443,#C2,https://x.com/drb_ra/status/1953558073098088599 2025-08-07 20:45:14,drb_ra,url,http://113.44.45.197:443,#C2,https://x.com/drb_ra/status/1953558073098088599 2025-08-07 20:45:14,drb_ra,ip,113.44.45.197,#C2,https://x.com/drb_ra/status/1953558073098088599 2025-08-07 21:00:03,threatquery,url,http://99.83.202.242,#C2 #malware,https://x.com/threatquery/status/1953561802668753142 2025-08-07 21:00:04,threatquery,url,http://39.40.133.150,#Qakbot #C2 #malware,https://x.com/threatquery/status/1953561806049329580 2025-08-07 21:00:04,threatquery,url,http://76.223.116.57,#C2 #malware,https://x.com/threatquery/status/1953561804325470356 2025-08-07 21:24:07,drb_ra,url,http://121.43.131.115:8080,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953567859910881340 2025-08-07 21:24:07,drb_ra,ip,121.43.131.115,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953567859910881340 2025-08-07 22:00:08,urldna_bot,domain,shifilkb.github.io,#scam #phishing,https://x.com/urldna_bot/status/1953576919657545743 2025-08-07 22:00:08,urldna_bot,url,https://shifilkb.github.io/nerflix.in/,#scam #phishing,https://x.com/urldna_bot/status/1953576919657545743 2025-08-07 23:00:20,SarlackLab,url,http://172.111.216.194:5552,#Njrat #C2,https://x.com/SarlackLab/status/1953592071488479294 2025-08-07 23:00:20,SarlackLab,domain,1453.mywire.org,#Njrat #C2,https://x.com/SarlackLab/status/1953592071488479294 2025-08-07 23:00:20,SarlackLab,url,http://1453.mywire.org,#Njrat #C2,https://x.com/SarlackLab/status/1953592071488479294 2025-08-07 23:00:20,SarlackLab,ip,172.111.216.194,#Njrat #C2,https://x.com/SarlackLab/status/1953592071488479294 2025-08-07 23:01:00,skocherhan,url,http://192.119.110.162,#BlueNoroff,https://x.com/skocherhan/status/1953592239260840152 2025-08-07 23:01:00,skocherhan,url,http://192.119.111.21,#BlueNoroff,https://x.com/skocherhan/status/1953592239260840152 2025-08-07 23:01:00,skocherhan,ip,192.119.110.162,#BlueNoroff,https://x.com/skocherhan/status/1953592239260840152 2025-08-07 23:01:00,skocherhan,ip,192.119.111.21,#BlueNoroff,https://x.com/skocherhan/status/1953592239260840152 2025-08-07 23:09:31,drb_ra,url,http://98.142.241.234:60020,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594381757485399 2025-08-07 23:09:31,drb_ra,ip,98.142.241.234,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594381757485399 2025-08-07 23:09:31,drb_ra,url,https://127.0.0.1/IE9CompatViewList.xml,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594381757485399 2025-08-07 23:10:37,drb_ra,url,http://103.43.18.10:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594660326453560 2025-08-07 23:10:37,drb_ra,ip,103.43.18.10,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594660326453560 2025-08-07 23:11:11,drb_ra,url,http://103.199.106.106:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594800076468644 2025-08-07 23:11:11,drb_ra,ip,103.199.106.106,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594800076468644 2025-08-07 23:11:44,drb_ra,url,http://103.214.172.184:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594939788697880 2025-08-07 23:11:44,drb_ra,ip,103.214.172.184,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594939788697880 2025-08-07 23:11:44,drb_ra,domain,abcdef.886802.xyz,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594939788697880 2025-08-07 23:11:44,drb_ra,url,https://abcdef.886802.xyz/ga.js,#CobaltStrike #C2,https://x.com/drb_ra/status/1953594939788697880 2025-08-07 23:12:17,drb_ra,url,http://222.186.41.86:11443,#CobaltStrike #C2,https://x.com/drb_ra/status/1953595078624391279 2025-08-07 23:12:17,drb_ra,ip,222.186.41.86,#CobaltStrike #C2,https://x.com/drb_ra/status/1953595078624391279 2025-08-08 00:00:12,urldna_bot,domain,allegrolokalnie.pis-8257375.top,#scam #phishing,https://x.com/urldna_bot/status/1953607138195931647 2025-08-08 00:00:12,urldna_bot,url,https://allegrolokalnie.pis-8257375.top,#scam #phishing,https://x.com/urldna_bot/status/1953607138195931647 2025-08-08 00:42:08,skocherhan,domain,saleo-gomel.by,#AgentTesla,https://x.com/skocherhan/status/1953617689445810415 2025-08-08 00:42:08,skocherhan,url,http://saleo-gomel.by,#AgentTesla,https://x.com/skocherhan/status/1953617689445810415 2025-08-08 00:42:08,skocherhan,md5,f3660df9dcb44a390ddb514b76069bc4,#AgentTesla,https://x.com/skocherhan/status/1953617689445810415 2025-08-08 00:57:58,skocherhan,domain,senkar.com.tr,,https://x.com/skocherhan/status/1953621673573261550 2025-08-08 00:57:58,skocherhan,url,http://senkar.com.tr,,https://x.com/skocherhan/status/1953621673573261550 2025-08-08 00:57:58,skocherhan,md5,e9ec4a29ee8e1e68cf0bd3ff77e74dfd,,https://x.com/skocherhan/status/1953621673573261550 2025-08-08 01:01:53,skocherhan,md5,05d0ddfc999a185a974cf5c3a3dbd0c2,,https://x.com/skocherhan/status/1953622662107836561 2025-08-08 01:01:53,skocherhan,url,http://deltainox.com.br,,https://x.com/skocherhan/status/1953622662107836561 2025-08-08 01:01:53,skocherhan,domain,deltainox.com.br,,https://x.com/skocherhan/status/1953622662107836561 2025-08-08 01:17:55,masaomi346,url,https://www2hotmail-japanhoax.mhajg.shop,#phishing,https://x.com/masaomi346/status/1953626693580861925 2025-08-08 01:17:55,masaomi346,domain,www2hotmail-japanhoax.mhajg.shop,#phishing,https://x.com/masaomi346/status/1953626693580861925 2025-08-08 01:17:55,masaomi346,domain,www2hotmail-japanhoax.gu4dj.shop,#phishing,https://x.com/masaomi346/status/1953626693580861925 2025-08-08 01:17:55,masaomi346,url,https://www2hotmail-japanhoax.gu4dj.shop,#phishing,https://x.com/masaomi346/status/1953626693580861925 2025-08-08 01:18:19,masaomi346,domain,www2hotmail-japanhoax.nn7c9.shop,#phishing,https://x.com/masaomi346/status/1953626795389157550 2025-08-08 01:18:19,masaomi346,url,https://www2hotmail-japanhoax.nn7c9.shop,#phishing,https://x.com/masaomi346/status/1953626795389157550 2025-08-08 01:18:19,masaomi346,domain,www2hotmail-japanhoax.t4j0z.shop,#phishing,https://x.com/masaomi346/status/1953626795389157550 2025-08-08 01:18:19,masaomi346,url,https://www2hotmail-japanhoax.t4j0z.shop,#phishing,https://x.com/masaomi346/status/1953626795389157550 2025-08-08 02:00:10,urldna_bot,url,https://larstore11.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1953637328901038468 2025-08-08 02:00:10,urldna_bot,domain,larstore11.firebaseapp.com,#phishing #scam,https://x.com/urldna_bot/status/1953637328901038468 2025-08-08 02:28:12,skocherhan,ip,172.96.172.173,,https://x.com/skocherhan/status/1953644381614780520 2025-08-08 02:42:32,harugasumi,domain,resoacard-since.cvdojx.cn,#phishing,https://x.com/harugasumi/status/1953647990964699496 2025-08-08 02:42:32,harugasumi,url,https://resoacard-since.cvdojx.cn/welcomeSCR.do/,#phishing,https://x.com/harugasumi/status/1953647990964699496 2025-08-08 02:59:55,harugasumi,url,https://open-monex.baitingwang.com/support/,#phishing,https://x.com/harugasumi/status/1953652364566835443 2025-08-08 02:59:55,harugasumi,domain,open-monex.baitingwang.com,#phishing,https://x.com/harugasumi/status/1953652364566835443 2025-08-08 04:00:10,urldna_bot,url,http://pub-0ed5a1f263894eab8341e034994e9627.r2.dev/park.html,#phishing #scam,https://x.com/urldna_bot/status/1953667529143906391 2025-08-08 04:00:10,urldna_bot,md5,0ed5a1f263894eab8341e034994e9627,#phishing #scam,https://x.com/urldna_bot/status/1953667529143906391 2025-08-08 04:00:10,urldna_bot,domain,pub-0ed5a1f263894eab8341e034994e9627.r2.dev,#phishing #scam,https://x.com/urldna_bot/status/1953667529143906391 2025-08-08 04:00:27,SarlackLab,ip,212.67.17.91,#RedLine #C2,https://x.com/SarlackLab/status/1953667599138476398 2025-08-08 04:00:27,SarlackLab,url,http://212.67.17.91:1912,#RedLine #C2,https://x.com/SarlackLab/status/1953667599138476398 2025-08-08 04:01:03,askardyuss,url,http://34.99.199.235,#C2 #malware,https://x.com/askardyuss/status/1953667751006154756 2025-08-08 04:41:01,c9lab_soc,domain,m-google-play.info,#scam #phishing,https://x.com/c9lab_soc/status/1953677808816853276 2025-08-08 04:41:01,c9lab_soc,url,http://m-google-play.info,#scam #phishing,https://x.com/c9lab_soc/status/1953677808816853276 2025-08-08 04:41:01,c9lab_soc,domain,union-live.com,#scam #phishing,https://x.com/c9lab_soc/status/1953677808816853276 2025-08-08 04:41:01,c9lab_soc,url,http://union-live.com,#scam #phishing,https://x.com/c9lab_soc/status/1953677808816853276 2025-08-08 05:38:23,K_N1kolenko,domain,stephmf.top,#LummaStealer,https://x.com/K_N1kolenko/status/1953692245904838774 2025-08-08 05:38:23,K_N1kolenko,url,http://stephmf.top/kiit,#LummaStealer,https://x.com/K_N1kolenko/status/1953692245904838774 2025-08-08 06:00:07,urldna_bot,url,https://cbrightonuk.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953697711510720653 2025-08-08 06:00:07,urldna_bot,domain,cbrightonuk.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953697711510720653 2025-08-08 06:20:23,suyog41,md5,cc9ac6e1293f390e0bdce1f55ea36df7,,https://x.com/suyog41/status/1953702813562966291 2025-08-08 06:24:00,drb_ra,url,https://39.103.62.252/admin/Quit/Server/v10.23/API/IV9OWQWXGT9,#CobaltStrike #C2,https://x.com/drb_ra/status/1953703725983293675 2025-08-08 06:24:00,drb_ra,url,http://103.199.106.106:3389,#CobaltStrike #C2,https://x.com/drb_ra/status/1953703725983293675 2025-08-08 06:24:00,drb_ra,ip,103.199.106.106,#CobaltStrike #C2,https://x.com/drb_ra/status/1953703725983293675 2025-08-08 06:24:00,drb_ra,ip,39.103.62.252,#CobaltStrike #C2,https://x.com/drb_ra/status/1953703725983293675 2025-08-08 06:26:35,drb_ra,url,http://47.83.8.68:80,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953704375550980112 2025-08-08 06:26:35,drb_ra,ip,47.83.8.68,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953704375550980112 2025-08-08 06:45:16,drb_ra,url,http://20.3.128.36:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953709076703003047 2025-08-08 06:45:50,drb_ra,url,http://20.3.128.36:8888,#C2 #Sliver,https://x.com/drb_ra/status/1953709217300590704 2025-08-08 06:45:50,drb_ra,ip,20.3.128.36,#C2 #Sliver,https://x.com/drb_ra/status/1953709217300590704 2025-08-08 06:48:24,drb_ra,ip,45.133.251.1,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1953709863588048935 2025-08-08 06:48:24,drb_ra,url,http://45.133.251.1:80,#Hookbot #C2 #Pegasus,https://x.com/drb_ra/status/1953709863588048935 2025-08-08 06:48:57,drb_ra,ip,74.121.150.114,#C2 #Supershell,https://x.com/drb_ra/status/1953710001723171011 2025-08-08 06:48:57,drb_ra,url,http://74.121.150.114:8888,#C2 #Supershell,https://x.com/drb_ra/status/1953710001723171011 2025-08-08 06:49:30,drb_ra,ip,217.165.61.154,#Qakbot #C2,https://x.com/drb_ra/status/1953710141238358022 2025-08-08 06:49:30,drb_ra,url,http://217.165.61.154:443,#Qakbot #C2,https://x.com/drb_ra/status/1953710141238358022 2025-08-08 06:50:03,drb_ra,url,http://187.170.136.171:995,#Qakbot #C2,https://x.com/drb_ra/status/1953710281294524438 2025-08-08 06:50:03,drb_ra,ip,187.170.136.171,#Qakbot #C2,https://x.com/drb_ra/status/1953710281294524438 2025-08-08 06:50:36,drb_ra,url,http://70.31.125.7:2222,#Qakbot #C2,https://x.com/drb_ra/status/1953710419714953603 2025-08-08 06:50:36,drb_ra,ip,70.31.125.7,#Qakbot #C2,https://x.com/drb_ra/status/1953710419714953603 2025-08-08 06:51:10,drb_ra,ip,83.110.197.208,#Qakbot #C2,https://x.com/drb_ra/status/1953710559326544210 2025-08-08 06:51:10,drb_ra,url,http://83.110.197.208:443,#Qakbot #C2,https://x.com/drb_ra/status/1953710559326544210 2025-08-08 06:51:43,drb_ra,url,http://38.60.253.163:443,#C2 #Havoc,https://x.com/drb_ra/status/1953710697570787478 2025-08-08 06:51:43,drb_ra,ip,38.60.253.163,#C2 #Havoc,https://x.com/drb_ra/status/1953710697570787478 2025-08-08 06:52:16,drb_ra,url,http://154.9.232.178:40056,#C2 #Havoc,https://x.com/drb_ra/status/1953710836771352704 2025-08-08 06:52:16,drb_ra,ip,154.9.232.178,#C2 #Havoc,https://x.com/drb_ra/status/1953710836771352704 2025-08-08 06:52:49,drb_ra,url,http://213.109.147.181:443,#C2 #Havoc,https://x.com/drb_ra/status/1953710974956876089 2025-08-08 06:52:49,drb_ra,ip,213.109.147.181,#C2 #Havoc,https://x.com/drb_ra/status/1953710974956876089 2025-08-08 06:53:22,drb_ra,ip,185.126.237.188,#C2 #Havoc,https://x.com/drb_ra/status/1953711114182697327 2025-08-08 06:53:22,drb_ra,url,http://185.126.237.188:443,#C2 #Havoc,https://x.com/drb_ra/status/1953711114182697327 2025-08-08 06:53:55,drb_ra,ip,143.198.50.31,#C2 #Havoc,https://x.com/drb_ra/status/1953711252485652508 2025-08-08 06:53:55,drb_ra,url,http://143.198.50.31:443,#C2 #Havoc,https://x.com/drb_ra/status/1953711252485652508 2025-08-08 06:54:28,drb_ra,url,http://107.158.128.36:80,#C2 #Havoc,https://x.com/drb_ra/status/1953711390599897110 2025-08-08 06:54:28,drb_ra,ip,107.158.128.36,#C2 #Havoc,https://x.com/drb_ra/status/1953711390599897110 2025-08-08 06:55:01,drb_ra,url,http://54.243.109.14:443,#Deimos #C2,https://x.com/drb_ra/status/1953711529032905045 2025-08-08 06:55:01,drb_ra,ip,54.243.109.14,#Deimos #C2,https://x.com/drb_ra/status/1953711529032905045 2025-08-08 06:55:34,drb_ra,url,http://84.200.205.101:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953711667784651080 2025-08-08 06:55:34,drb_ra,ip,84.200.205.101,#C2 #Sliver,https://x.com/drb_ra/status/1953711667784651080 2025-08-08 06:56:07,drb_ra,ip,128.199.165.22,#C2 #Sliver,https://x.com/drb_ra/status/1953711805680755178 2025-08-08 06:56:07,drb_ra,url,http://128.199.165.22:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953711805680755178 2025-08-08 06:56:40,drb_ra,ip,106.15.192.7,#C2 #Sliver,https://x.com/drb_ra/status/1953711943950209253 2025-08-08 06:56:40,drb_ra,url,http://106.15.192.7:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953711943950209253 2025-08-08 06:57:13,drb_ra,ip,165.22.109.63,#C2 #Sliver,https://x.com/drb_ra/status/1953712082349617256 2025-08-08 06:57:13,drb_ra,url,http://165.22.109.63:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953712082349617256 2025-08-08 06:57:46,drb_ra,url,http://206.237.127.70:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953712220308640157 2025-08-08 06:57:46,drb_ra,ip,206.237.127.70,#C2 #Sliver,https://x.com/drb_ra/status/1953712220308640157 2025-08-08 06:58:19,drb_ra,url,http://93.127.132.182:31337,#C2 #Sliver,https://x.com/drb_ra/status/1953712358792032468 2025-08-08 06:58:52,drb_ra,url,http://93.127.132.182:443,#C2 #Sliver,https://x.com/drb_ra/status/1953712496977584512 2025-08-08 06:58:52,drb_ra,ip,93.127.132.182,#C2 #Sliver,https://x.com/drb_ra/status/1953712496977584512 2025-08-08 07:01:26,drb_ra,url,http://47.97.125.50:2404,#Remcos #C2,https://x.com/drb_ra/status/1953713142451544399 2025-08-08 07:01:26,drb_ra,ip,47.97.125.50,#Remcos #C2,https://x.com/drb_ra/status/1953713142451544399 2025-08-08 07:02:32,drb_ra,ip,147.124.219.132,#Remcos #C2,https://x.com/drb_ra/status/1953713419305029931 2025-08-08 07:02:32,drb_ra,url,http://147.124.219.132:2828,#Remcos #C2,https://x.com/drb_ra/status/1953713419305029931 2025-08-08 07:03:05,drb_ra,url,http://154.44.29.210:443,#Remcos #C2,https://x.com/drb_ra/status/1953713557972893890 2025-08-08 07:03:05,drb_ra,ip,154.44.29.210,#Remcos #C2,https://x.com/drb_ra/status/1953713557972893890 2025-08-08 07:03:37,drb_ra,url,http://109.134.250.129:2404,#Remcos #C2,https://x.com/drb_ra/status/1953713695827100051 2025-08-08 07:03:37,drb_ra,ip,109.134.250.129,#Remcos #C2,https://x.com/drb_ra/status/1953713695827100051 2025-08-08 07:04:11,drb_ra,ip,107.175.88.72,#Remcos #C2,https://x.com/drb_ra/status/1953713834457542717 2025-08-08 07:04:11,drb_ra,url,http://107.175.88.72:5000,#Remcos #C2,https://x.com/drb_ra/status/1953713834457542717 2025-08-08 07:04:44,drb_ra,url,http://124.221.125.254:3232,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1953713973079024126 2025-08-08 07:04:44,drb_ra,ip,124.221.125.254,#C2 #Reverse_SSH,https://x.com/drb_ra/status/1953713973079024126 2025-08-08 07:05:17,drb_ra,ip,93.143.120.85,#C2,https://x.com/drb_ra/status/1953714113504284825 2025-08-08 07:05:17,drb_ra,url,http://93.143.120.85:8080,#C2,https://x.com/drb_ra/status/1953714113504284825 2025-08-08 07:05:50,drb_ra,url,http://3.26.78.124:6362,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953714252008611960 2025-08-08 07:06:23,drb_ra,url,http://13.231.207.37:40000,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953714390248657093 2025-08-08 07:06:23,drb_ra,ip,13.231.207.37,#C2 #NetSupportRAT,https://x.com/drb_ra/status/1953714390248657093 2025-08-08 07:06:56,drb_ra,url,http://18.231.123.165:16992,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953714528555798680 2025-08-08 07:06:56,drb_ra,ip,18.231.123.165,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953714528555798680 2025-08-08 07:07:29,drb_ra,url,http://157.245.216.214:465,#C2 #Interactsh,https://x.com/drb_ra/status/1953714667169120259 2025-08-08 07:08:02,drb_ra,ip,157.245.216.214,#C2 #Interactsh,https://x.com/drb_ra/status/1953714806168728003 2025-08-08 07:08:02,drb_ra,url,http://157.245.216.214:25,#C2 #Interactsh,https://x.com/drb_ra/status/1953714806168728003 2025-08-08 07:08:35,drb_ra,url,http://3.0.251.172:25,#C2 #Interactsh,https://x.com/drb_ra/status/1953714944014258379 2025-08-08 08:00:10,urldna_bot,url,https://janusods1.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953727923648623090 2025-08-08 08:00:10,urldna_bot,domain,janusods1.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953727923648623090 2025-08-08 10:00:08,urldna_bot,domain,ionoss-sand.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1953758113707782372 2025-08-08 10:00:08,urldna_bot,url,https://ionoss-sand.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1953758113707782372 2025-08-08 10:17:10,suyog41,domain,kingyouneverloss.com,,https://x.com/suyog41/status/1953762402127991174 2025-08-08 10:17:10,suyog41,url,http://kingyouneverloss.com,,https://x.com/suyog41/status/1953762402127991174 2025-08-08 10:17:10,suyog41,md5,b3e1e55fafa2b7d8e91510d0833c973c,,https://x.com/suyog41/status/1953762402127991174 2025-08-08 11:00:57,drb_ra,url,http://47.106.229.212:8031,#CobaltStrike #C2,https://x.com/drb_ra/status/1953773422711881941 2025-08-08 11:00:57,drb_ra,ip,47.106.229.212,#CobaltStrike #C2,https://x.com/drb_ra/status/1953773422711881941 2025-08-08 11:03:32,drb_ra,ip,43.162.118.119,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774069448335736 2025-08-08 11:03:32,drb_ra,url,http://8.153.97.202:1433,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774069448335736 2025-08-08 11:04:05,drb_ra,ip,116.62.114.202,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774208099439072 2025-08-08 11:04:05,drb_ra,url,http://116.62.114.202:8888,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774208099439072 2025-08-08 11:04:38,drb_ra,url,http://86.106.85.185:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774348008919072 2025-08-08 11:04:38,drb_ra,ip,86.106.85.185,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774348008919072 2025-08-08 11:05:12,drb_ra,url,http://103.214.172.80:8080,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774489969340761 2025-08-08 11:05:12,drb_ra,ip,103.214.172.80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953774489969340761 2025-08-08 11:10:06,FalconFeedsio,domain,Maps.lt,,https://x.com/FalconFeedsio/status/1953775721517900178 2025-08-08 11:10:06,FalconFeedsio,url,http://Maps.lt,,https://x.com/FalconFeedsio/status/1953775721517900178 2025-08-08 11:10:06,FalconFeedsio,domain,Sveikatosnaujienos.lt,,https://x.com/FalconFeedsio/status/1953775721517900178 2025-08-08 11:10:06,FalconFeedsio,url,http://Sveikatosnaujienos.lt,,https://x.com/FalconFeedsio/status/1953775721517900178 2025-08-08 11:19:52,drb_ra,url,http://8.148.105.246:8888,#CobaltStrike #C2,https://x.com/drb_ra/status/1953778180159873528 2025-08-08 11:20:25,drb_ra,ip,129.226.90.183,#CobaltStrike #C2,https://x.com/drb_ra/status/1953778319414976585 2025-08-08 11:20:25,drb_ra,url,http://129.226.90.183:10002,#CobaltStrike #C2,https://x.com/drb_ra/status/1953778319414976585 2025-08-08 11:20:59,drb_ra,url,https://193.36.117.67/msdownload/update/2022/04/windows6.1-kb98218-v3-x86_0c754.psf,#CobaltStrike #C2,https://x.com/drb_ra/status/1953778461215989886 2025-08-08 11:20:59,drb_ra,url,http://193.36.117.67:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953778461215989886 2025-08-08 11:20:59,drb_ra,ip,193.36.117.67,#CobaltStrike #C2,https://x.com/drb_ra/status/1953778461215989886 2025-08-08 11:23:33,drb_ra,url,http://106.54.239.134:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953779109210812786 2025-08-08 11:23:33,drb_ra,ip,106.54.239.134,#CobaltStrike #C2,https://x.com/drb_ra/status/1953779109210812786 2025-08-08 11:24:06,drb_ra,url,https://192.168.3.217/__utm.gif,#CobaltStrike #C2,https://x.com/drb_ra/status/1953779247912222909 2025-08-08 11:24:06,drb_ra,url,http://47.122.121.212:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953779247912222909 2025-08-08 11:24:06,drb_ra,ip,47.122.121.212,#CobaltStrike #C2,https://x.com/drb_ra/status/1953779247912222909 2025-08-08 11:48:50,drb_ra,ip,31.170.22.213,#C2,https://x.com/drb_ra/status/1953785470996959370 2025-08-08 11:48:50,drb_ra,url,https://31.170.22.213:443,#C2,https://x.com/drb_ra/status/1953785470996959370 2025-08-08 11:48:50,drb_ra,url,http://31.170.22.213:443,#C2,https://x.com/drb_ra/status/1953785470996959370 2025-08-08 11:49:23,drb_ra,url,https://54.161.92.58:4444,#C2,https://x.com/drb_ra/status/1953785609127915520 2025-08-08 11:49:23,drb_ra,url,http://54.161.92.58:4444,#C2,https://x.com/drb_ra/status/1953785609127915520 2025-08-08 11:49:23,drb_ra,ip,54.161.92.58,#C2,https://x.com/drb_ra/status/1953785609127915520 2025-08-08 12:00:07,urldna_bot,url,https://sites.google.com/walletconnect-web3.com/walletconnect/home,#scam #phishing,https://x.com/urldna_bot/status/1953788309370495253 2025-08-08 12:58:30,suyog41,md5,6d11cf9af14295e8ceec2bb16b4b172a,,https://x.com/suyog41/status/1953803002621702618 2025-08-08 12:58:30,suyog41,md5,2fca428ddd6cfc3af1d8f4ae80a9a206,,https://x.com/suyog41/status/1953803002621702618 2025-08-08 12:58:30,suyog41,md5,729e57fb0feda99240ee13d348530f65,,https://x.com/suyog41/status/1953803002621702618 2025-08-08 12:58:30,suyog41,md5,75b7b69d7ad8353a1d13d59b29896e34,,https://x.com/suyog41/status/1953803002621702618 2025-08-08 12:58:30,suyog41,md5,6696a14077ac3def16f137748749f9fa,,https://x.com/suyog41/status/1953803002621702618 2025-08-08 13:05:15,skocherhan,domain,wmieventlogonlinehelp.ydns.eu,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://wmieventlogonlinehelp.ydns.eu,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,domain,updatedrvier.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://systemcopilotdriver.ydns.eu,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,domain,actwindowdsdriver.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://actwindowdsdriver.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://updatedrvier.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,domain,systemcopilotdriver.ydns.eu,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,domain,cooempresassss.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://cooempresassss.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://random.tbtt.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,domain,random.tbtt.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://securityhealthmonitorgiize.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,domain,securityhealthmonitorgiize.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,url,http://pasar09enero.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:05:15,skocherhan,domain,pasar09enero.duckdns.org,,https://x.com/skocherhan/status/1953804700433760569 2025-08-08 13:10:37,skocherhan,url,http://91.98.25.254:4449,#AsyncRAT,https://x.com/skocherhan/status/1953806051431662007 2025-08-08 13:10:37,skocherhan,ip,91.98.25.254,#AsyncRAT,https://x.com/skocherhan/status/1953806051431662007 2025-08-08 13:43:56,skocherhan,md5,e981cad34b79104cead6bf56d9e314bc,,https://x.com/skocherhan/status/1953814437262958750 2025-08-08 13:43:56,skocherhan,url,http://sdghwsfehjtrr-1368385699.cos.accelerate.myqcloud.com/ca.bin,,https://x.com/skocherhan/status/1953814437262958750 2025-08-08 13:43:56,skocherhan,domain,sdghwsfehjtrr-1368385699.cos.accelerate.myqcloud.com,,https://x.com/skocherhan/status/1953814437262958750 2025-08-08 14:00:07,urldna_bot,domain,uprankk.in,#phishing #scam,https://x.com/urldna_bot/status/1953818508782871020 2025-08-08 14:00:07,urldna_bot,url,http://www.uprankk.in/thoo/chinaMail%20Fud2023_done/china/,#phishing #scam,https://x.com/urldna_bot/status/1953818508782871020 2025-08-08 14:31:56,skocherhan,ip,207.38.87.154,,https://x.com/skocherhan/status/1953826517139489250 2025-08-08 15:13:27,1ZRR4H,domain,cuotasfabalelle.icu,#phishing,https://x.com/1ZRR4H/status/1953836962294411438 2025-08-08 15:13:27,1ZRR4H,url,https://cuotasfabalelle.icu,#phishing,https://x.com/1ZRR4H/status/1953836962294411438 2025-08-08 16:00:24,SarlackLab,url,http://198.55.98.194:1912,#RedLine #C2,https://x.com/SarlackLab/status/1953848778319908981 2025-08-08 16:00:24,SarlackLab,ip,198.55.98.194,#RedLine #C2,https://x.com/SarlackLab/status/1953848778319908981 2025-08-08 16:21:57,drb_ra,url,http://129.226.90.183:443,#C2 #CobaltStrike,https://x.com/drb_ra/status/1953854203027214636 2025-08-08 16:28:16,fbgwls245,domain,ctyfftrjgtwdjzlgqh4avbd35sqrs6tde4oyam2ufbjch6oqpqtkdtid.onion,#ransomware,https://x.com/fbgwls245/status/1953855793721196838 2025-08-08 16:28:16,fbgwls245,url,http://ctyfftrjgtwdjzlgqh4avbd35sqrs6tde4oyam2ufbjch6oqpqtkdtid.onion,#ransomware,https://x.com/fbgwls245/status/1953855793721196838 2025-08-08 16:28:16,fbgwls245,url,http://t.me/BlackNevas,#ransomware,https://x.com/fbgwls245/status/1953855793721196838 2025-08-08 16:29:45,skocherhan,url,http://191.233.1.72/352/,#opendir,https://x.com/skocherhan/status/1953856164581577121 2025-08-08 16:29:45,skocherhan,ip,191.233.1.72,#opendir,https://x.com/skocherhan/status/1953856164581577121 2025-08-08 17:11:10,fbgwls245,md5,851C6B405E024BFA765E48C8FA24C30B,#ransomware,https://x.com/fbgwls245/status/1953866587888562669 2025-08-08 17:15:21,midnight_comms,url,http://14.103.234.180,,https://x.com/midnight_comms/status/1953867642315436130 2025-08-08 17:15:21,midnight_comms,ip,14.103.234.180,,https://x.com/midnight_comms/status/1953867642315436130 2025-08-08 18:00:10,urldna_bot,domain,database-manage-local-git8412579601.vercel.app,#phishing #scam,https://x.com/urldna_bot/status/1953878921180528912 2025-08-08 18:00:10,urldna_bot,url,https://database-manage-local-git8412579601.vercel.app/hhkruu.html,#phishing #scam,https://x.com/urldna_bot/status/1953878921180528912 2025-08-08 18:10:10,skocherhan,url,http://colascore.com,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,ip,15.197.148.33,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,url,http://15.197.148.33,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,url,http://3.33.130.190,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,url,http://vsbet170.com,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,url,http://VSBET.COM,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,domain,colascore.com,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,domain,VSBET.COM,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:10:10,skocherhan,domain,vsbet170.com,,https://x.com/skocherhan/status/1953881437653877245 2025-08-08 18:45:32,drb_ra,url,http://51.91.56.54:31337,#Sliver #C2,https://x.com/drb_ra/status/1953890337786933694 2025-08-08 18:45:32,drb_ra,ip,51.91.56.54,#Sliver #C2,https://x.com/drb_ra/status/1953890337786933694 2025-08-08 18:48:06,drb_ra,url,http://77.90.16.122:443,#AsyncRAT #C2,https://x.com/drb_ra/status/1953890984896708620 2025-08-08 18:48:06,drb_ra,ip,77.90.16.122,#AsyncRAT #C2,https://x.com/drb_ra/status/1953890984896708620 2025-08-08 18:48:39,drb_ra,url,http://165.22.238.206:465,#Interactsh #C2,https://x.com/drb_ra/status/1953891121664602287 2025-08-08 18:49:12,drb_ra,url,http://165.22.238.206:443,#Interactsh #C2,https://x.com/drb_ra/status/1953891261431394619 2025-08-08 18:49:45,drb_ra,url,http://165.22.238.206:80,#Interactsh #C2,https://x.com/drb_ra/status/1953891397972705773 2025-08-08 18:50:18,drb_ra,url,http://165.22.238.206:25,#Interactsh #C2,https://x.com/drb_ra/status/1953891536569249907 2025-08-08 18:50:18,drb_ra,ip,165.22.238.206,#Interactsh #C2,https://x.com/drb_ra/status/1953891536569249907 2025-08-08 18:50:52,drb_ra,ip,62.1.22.212,#Qakbot #C2,https://x.com/drb_ra/status/1953891677757739174 2025-08-08 18:50:52,drb_ra,url,http://62.1.22.212:995,#Qakbot #C2,https://x.com/drb_ra/status/1953891677757739174 2025-08-08 18:51:24,drb_ra,url,http://51.211.212.16:995,#Qakbot #C2,https://x.com/drb_ra/status/1953891812982300980 2025-08-08 18:51:24,drb_ra,ip,51.211.212.16,#Qakbot #C2,https://x.com/drb_ra/status/1953891812982300980 2025-08-08 18:51:57,drb_ra,url,http://78.141.230.133:443,#Havoc #C2,https://x.com/drb_ra/status/1953891950329029008 2025-08-08 18:51:57,drb_ra,ip,78.141.230.133,#Havoc #C2,https://x.com/drb_ra/status/1953891950329029008 2025-08-08 18:52:29,drb_ra,url,http://18.231.126.146:443,#Havoc #C2,https://x.com/drb_ra/status/1953892087356608578 2025-08-08 18:52:29,drb_ra,ip,18.231.126.146,#Havoc #C2,https://x.com/drb_ra/status/1953892087356608578 2025-08-08 18:53:02,drb_ra,ip,104.164.55.75,#Havoc #C2,https://x.com/drb_ra/status/1953892226209079321 2025-08-08 18:53:02,drb_ra,url,http://104.164.55.75:443,#Havoc #C2,https://x.com/drb_ra/status/1953892226209079321 2025-08-08 18:54:08,drb_ra,url,http://207.254.22.248:7443,#Mythic #C2,https://x.com/drb_ra/status/1953892502559174996 2025-08-08 18:54:08,drb_ra,ip,207.254.22.248,#Mythic #C2,https://x.com/drb_ra/status/1953892502559174996 2025-08-08 18:56:42,drb_ra,url,http://51.178.207.65:443,#C2,https://x.com/drb_ra/status/1953893147701924201 2025-08-08 18:56:42,drb_ra,ip,51.178.207.65,#C2,https://x.com/drb_ra/status/1953893147701924201 2025-08-08 18:57:15,drb_ra,url,http://52.204.152.121:8080,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1953893285748986045 2025-08-08 18:57:15,drb_ra,ip,52.204.152.121,#Hak5_Cloud_C2 #C2,https://x.com/drb_ra/status/1953893285748986045 2025-08-08 18:57:48,drb_ra,ip,94.237.59.16,#C2,https://x.com/drb_ra/status/1953893424370966610 2025-08-08 18:57:48,drb_ra,url,http://94.237.59.16:443,#C2,https://x.com/drb_ra/status/1953893424370966610 2025-08-08 18:58:21,drb_ra,ip,23.95.103.199,#Remcos #C2,https://x.com/drb_ra/status/1953893563017695676 2025-08-08 18:58:21,drb_ra,url,http://23.95.103.199:5000,#Remcos #C2,https://x.com/drb_ra/status/1953893563017695676 2025-08-08 18:58:54,drb_ra,url,http://185.243.5.79:4405,#Remcos #C2,https://x.com/drb_ra/status/1953893701341589962 2025-08-08 18:58:54,drb_ra,ip,185.243.5.79,#Remcos #C2,https://x.com/drb_ra/status/1953893701341589962 2025-08-08 18:59:27,drb_ra,url,http://196.251.70.227:2404,#Remcos #C2,https://x.com/drb_ra/status/1953893840328302862 2025-08-08 18:59:27,drb_ra,ip,196.251.70.227,#Remcos #C2,https://x.com/drb_ra/status/1953893840328302862 2025-08-08 19:00:00,drb_ra,url,http://18.167.134.167:8082,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953893979403301197 2025-08-08 19:00:00,drb_ra,ip,18.167.134.167,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953893979403301197 2025-08-08 19:00:33,drb_ra,url,http://13.124.101.174:20201,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953894118020534669 2025-08-08 19:00:33,drb_ra,ip,13.124.101.174,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953894118020534669 2025-08-08 19:01:07,drb_ra,url,http://13.112.193.216:43469,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953894256629702773 2025-08-08 19:01:07,drb_ra,ip,13.112.193.216,#NetSupportRAT #C2,https://x.com/drb_ra/status/1953894256629702773 2025-08-08 19:01:40,drb_ra,url,http://2.58.56.233:2005,#AsyncRAT #C2,https://x.com/drb_ra/status/1953894395495035060 2025-08-08 19:16:32,skocherhan,ip,112.74.1.163,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,ip,112.74.1.40,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,url,http://dsxgjjpg.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,domain,dsxgjjpg.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,url,http://ae86dr.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,ip,112.74.1.150,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,url,http://shop2025-oss.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,domain,shop2025-oss.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,url,http://112.74.1.150,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,url,http://112.74.1.163,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,url,http://112.74.1.40,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:16:32,skocherhan,domain,ae86dr.oss-cn-shenzhen.aliyuncs.com,,https://x.com/skocherhan/status/1953898136759394310 2025-08-08 19:28:20,skocherhan,url,http://47.243.94.194:7000,#C2,https://x.com/skocherhan/status/1953901108986097944 2025-08-08 19:28:20,skocherhan,url,http://47.76.176.211:7000,#C2,https://x.com/skocherhan/status/1953901108986097944 2025-08-08 19:28:20,skocherhan,url,http://47.76.192.251:7000,#C2,https://x.com/skocherhan/status/1953901108986097944 2025-08-08 19:28:20,skocherhan,url,http://8.217.146.60:7000,#C2,https://x.com/skocherhan/status/1953901108986097944 2025-08-08 19:28:20,skocherhan,ip,47.243.94.194,#C2,https://x.com/skocherhan/status/1953901108986097944 2025-08-08 19:28:20,skocherhan,ip,47.76.176.211,#C2,https://x.com/skocherhan/status/1953901108986097944 2025-08-08 19:28:20,skocherhan,ip,47.76.192.251,#C2,https://x.com/skocherhan/status/1953901108986097944 2025-08-08 19:47:24,skocherhan,url,http://shadow.steelpanman.com,,https://x.com/skocherhan/status/1953905907219259767 2025-08-08 19:47:24,skocherhan,domain,shadow.steelpanman.com,,https://x.com/skocherhan/status/1953905907219259767 2025-08-08 19:47:24,skocherhan,url,http://5.101.81.65,,https://x.com/skocherhan/status/1953905907219259767 2025-08-08 19:47:24,skocherhan,domain,arch.wfc-steel.com,,https://x.com/skocherhan/status/1953905907219259767 2025-08-08 19:47:24,skocherhan,url,http://arch.wfc-steel.com,,https://x.com/skocherhan/status/1953905907219259767 2025-08-08 20:00:09,urldna_bot,domain,mail-mfagov.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953909115693957184 2025-08-08 20:00:09,urldna_bot,url,https://mail-mfagov.weebly.com,#phishing #scam,https://x.com/urldna_bot/status/1953909115693957184 2025-08-08 20:02:29,skocherhan,url,http://wealthybillionaireman007.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,url,http://dart23.ddns.net,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,dart23.ddns.net,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,url,http://sphayer66jugaru2.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,sphayer66jugaru2.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,url,http://sphayer66jugaru1.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,sphayer66jugaru1.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,wealthybillionaireman007.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,janbours92harbubreakthroughs.loseyourip.com,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,wealthismine.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,url,http://starefer8jabour3.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,starefer8jabour3.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,url,http://janbours92harbubreakthroughs.loseyourip.com,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,url,http://gftrefer8jabour1.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,domain,gftrefer8jabour1.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:02:29,skocherhan,url,http://wealthismine.duckdns.org,,https://x.com/skocherhan/status/1953909703752208873 2025-08-08 20:12:09,skocherhan,md5,2aea0f20f5160383e276380a3eaa7ab7,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://ns1.docs-efile-eprotectd.top,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,ns1.docs-efile-eprotectd.top,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://newdayplss.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,newdayplss.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://wedemkioa.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,wedemkioa.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,osetigolumdede.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://osetigolumdede.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,uwammunachimso.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://bediokoloaa.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,bediokoloaa.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://vietololm.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,vietololm.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://windeckoloko.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,domain,windeckoloko.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 20:12:09,skocherhan,url,http://uwammunachimso.duckdns.org,,https://x.com/skocherhan/status/1953912132673974680 2025-08-08 21:00:04,threatquery,ip,70.31.125.73,#Qakbot #C2 #malware,https://x.com/threatquery/status/1953924193688428795 2025-08-08 21:00:04,threatquery,url,http://78.141.230.133,#C2 #Havoc #malware,https://x.com/threatquery/status/1953924191977095227 2025-08-08 21:00:04,threatquery,url,http://70.31.125.73,#Qakbot #C2 #malware,https://x.com/threatquery/status/1953924193688428795 2025-08-08 21:00:05,threatquery,url,http://62.1.22.212,#Qakbot #C2 #malware,https://x.com/threatquery/status/1953924196037214328 2025-08-08 21:02:25,petikvx,sha256,03c730d400e9726040987c19acbb7b91aeacf4924332dbadd3b6534558709d62,#ransomware,https://x.com/petikvx/status/1953924784930058387 2025-08-08 21:27:18,drb_ra,url,http://156.245.198.160:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953931047915397220 2025-08-08 21:27:18,drb_ra,ip,156.245.198.160,#CobaltStrike #C2,https://x.com/drb_ra/status/1953931047915397220 2025-08-08 21:29:52,drb_ra,ip,194.165.16.89,#CobaltStrike #C2,https://x.com/drb_ra/status/1953931694458667410 2025-08-08 21:29:52,drb_ra,url,https://194.165.16.89/v1/heartbeat,#CobaltStrike #C2,https://x.com/drb_ra/status/1953931694458667410 2025-08-08 21:29:52,drb_ra,url,http://194.165.16.89:80,#CobaltStrike #C2,https://x.com/drb_ra/status/1953931694458667410 2025-08-08 22:00:09,urldna_bot,domain,lq.bybitglob.com,#phishing #scam,https://x.com/urldna_bot/status/1953939315450425503 2025-08-08 22:00:09,urldna_bot,url,https://lq.bybitglob.com,#phishing #scam,https://x.com/urldna_bot/status/1953939315450425503 2025-08-08 22:17:23,skocherhan,domain,nsfcoatings.vip,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://nsfcoatings.vip,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,domain,hyteras.org,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://hyteras.org,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,domain,webdevs.vip,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://webdevs.vip,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,domain,mdnsserver.com,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://mdnsserver.com,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,domain,cestfinidns.vip,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://cestfinidns.vip,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,domain,consways.com,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://consways.com,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://66.63.187.166,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,url,http://167.160.161.80,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,ip,66.63.187.166,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 22:17:23,skocherhan,ip,167.160.161.80,#Remcos,https://x.com/skocherhan/status/1953943651966738648 2025-08-08 23:01:13,masaomi346,domain,smkcaroaatrhajp.pics,#phishing,https://x.com/masaomi346/status/1953954681337917905 2025-08-08 23:01:13,masaomi346,url,https://smkcaroaatrhajp.pics/KRVhOa/,#phishing,https://x.com/masaomi346/status/1953954681337917905 2025-08-08 23:03:07,drb_ra,url,http://198.46.159.243:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1953955159601819862 2025-08-08 23:03:07,drb_ra,ip,198.46.159.243,#CobaltStrike #C2,https://x.com/drb_ra/status/1953955159601819862 2025-08-08 23:03:40,drb_ra,url,http://156.244.56.89:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1953955299087593557 2025-08-08 23:03:40,drb_ra,ip,156.244.56.89,#CobaltStrike #C2,https://x.com/drb_ra/status/1953955299087593557 2025-08-08 23:04:13,drb_ra,url,http://172.245.22.53:443,#CobaltStrike #C2,https://x.com/drb_ra/status/1953955437998436407 2025-08-08 23:04:13,drb_ra,ip,172.245.22.53,#CobaltStrike #C2,https://x.com/drb_ra/status/1953955437998436407 2025-08-08 23:04:13,drb_ra,ip,107.150.25.150,#CobaltStrike #C2,https://x.com/drb_ra/status/1953955437998436407 2025-08-09 00:00:08,urldna_bot,domain,4535.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953969508445483287 2025-08-09 00:00:08,urldna_bot,url,https://4535.weebly.com,#scam #phishing,https://x.com/urldna_bot/status/1953969508445483287 2025-08-09 00:24:24,romonlyht,domain,liansdj9.shop,#phishing,https://x.com/romonlyht/status/1953975616136773691 2025-08-09 00:24:24,romonlyht,url,https://liansdj9.shop/pany,#phishing,https://x.com/romonlyht/status/1953975616136773691 2025-08-09 00:24:24,romonlyht,url,https://liansdj9.shop/pany/,#phishing,https://x.com/romonlyht/status/1953975616136773691 2025-08-09 00:24:24,romonlyht,ip,221.128.129.74,#phishing,https://x.com/romonlyht/status/1953975616136773691 2025-08-09 00:25:47,romonlyht,domain,orico.index.co.jp.poakjma7.shop,#phishing,https://x.com/romonlyht/status/1953975965451006119 2025-08-09 00:25:47,romonlyht,url,https://orico.index.co.jp.poakjma7.shop/pany/,#phishing,https://x.com/romonlyht/status/1953975965451006119 2025-08-09 00:25:47,romonlyht,url,https://orico.index.co.jp.poakjma7.shop/pany,#phishing,https://x.com/romonlyht/status/1953975961931923888 2025-08-09 00:25:47,romonlyht,ip,221.128.129.243,#phishing,https://x.com/romonlyht/status/1953975961931923888 2025-08-09 00:25:47,romonlyht,ip,152.32.146.52,#phishing,https://x.com/romonlyht/status/1953975961931923888 2025-08-09 00:36:53,romonlyht,url,https://smlcbrocctrhcjp.pics/57g0UK,#phishing,https://x.com/romonlyht/status/1953978757020295322 2025-08-09 00:36:53,romonlyht,ip,123.189.114.130,#phishing,https://x.com/romonlyht/status/1953978757020295322 2025-08-09 00:36:54,romonlyht,url,https://smkcaroaatrhajp.pics/KRVhOa/,#phishing,https://x.com/romonlyht/status/1953978761411801297 2025-08-09 00:36:54,romonlyht,url,https://smkcaroaatrhajp.pics/KRVhOa,#phishing,https://x.com/romonlyht/status/1953978761411801297 2025-08-09 00:36:54,romonlyht,url,https://smlcbrocctrhcjp.pics/57g0UK/,#phishing,https://x.com/romonlyht/status/1953978761411801297 2025-08-09 00:36:54,romonlyht,domain,smlcbrocctrhcjp.pics,#phishing,https://x.com/romonlyht/status/1953978761411801297 2025-08-09 00:36:54,romonlyht,domain,smkcaroaatrhajp.pics,#phishing,https://x.com/romonlyht/status/1953978761411801297 2025-08-09 00:53:05,romonlyht,domain,www3hotmail-japanhoax.xcwwg.shop,#phishing,https://x.com/romonlyht/status/1953982835083423805 2025-08-09 00:53:05,romonlyht,url,https://www3hotmail-japanhoax.xcwwg.shop/%F0%9D%99%B0%F0%9D%9A,#phishing,https://x.com/romonlyht/status/1953982835083423805 2025-08-09 00:53:05,romonlyht,url,https://www3hotmail-japanhoax.xcwwg.shop/%F0%9D%99%B0%F0%9D%9A%9E%F0%9D%99%BF%F0%9D%9A%98%F0%9D%9A%92%F0,#phishing,https://x.com/romonlyht/status/1953982832373817389 2025-08-09 00:53:05,romonlyht,ip,42.0.129.43,#phishing,https://x.com/romonlyht/status/1953982832373817389 2025-08-09 00:55:28,romonlyht,ip,42.0.129.178,#phishing,https://x.com/romonlyht/status/1953983433283449330 2025-08-09 00:55:28,romonlyht,url,https://www3hotmail-japanhoax.mm9vn.shop/%F0%9D%99%B0%F0%9D%9A%9E%F0%9D%99%BF%F0%9D%9A%98,#phishing,https://x.com/romonlyht/status/1953983433283449330 2025-08-09 00:55:29,romonlyht,url,https://www3hotmail-japanhoax.mm9vn.shop/%F0%9D,#phishing,https://x.com/romonlyht/status/1953983435888111685 2025-08-09 00:55:29,romonlyht,domain,www3hotmail-japanhoax.mm9vn.shop,#phishing,https://x.com/romonlyht/status/1953983435888111685 2025-08-09 00:59:50,skocherhan,domain,nillsantos.com.br,#phishing,https://x.com/skocherhan/status/1953984534543818857 2025-08-09 00:59:50,skocherhan,url,http://nillsantos.com.br/ffff/wrfytr/qewttddsd/web/authen.php,#phishing,https://x.com/skocherhan/status/1953984534543818857 2025-08-09 01:12:55,romonlyht,ip,49.74.244.178,#phishing,https://x.com/romonlyht/status/1953987825118167195 2025-08-09 01:12:56,romonlyht,domain,tianjiyun.net,#phishing,https://x.com/romonlyht/status/1953987827408285844 2025-08-09 01:12:56,romonlyht,url,https://tianjiyun.net/joiqwaz,#phishing,https://x.com/romonlyht/status/1953987827408285844 2025-08-09 01:12:56,romonlyht,domain,youxingjia.com,#phishing,https://x.com/romonlyht/status/1953987827408285844 2025-08-09 01:12:56,romonlyht,url,http://youxingjia.com,#phishing,https://x.com/romonlyht/status/1953987827408285844 2025-08-09 01:30:55,romonlyht,ip,45.165.103.218,#phishing,https://x.com/romonlyht/status/1953992355469832230 2025-08-09 01:30:55,romonlyht,url,https://s1hy79.top/login=taOdOW4eyM/aipf/tra/flolw/aputh,#phishing,https://x.com/romonlyht/status/1953992355469832230 2025-08-09 01:30:55,romonlyht,domain,s1hy79.top,#phishing,https://x.com/romonlyht/status/1953992355469832230 2025-08-09 01:31:36,romonlyht,ip,186.57.60.218,#phishing,https://x.com/romonlyht/status/1953992524957458792 2025-08-09 01:31:36,romonlyht,domain,qxk2ut.top,#phishing,https://x.com/romonlyht/status/1953992524957458792 2025-08-09 01:31:36,romonlyht,url,https://qxk2ut.top/login=taOdOW4eyM/aipf/tra/flolw/aputh,#phishing,https://x.com/romonlyht/status/1953992524957458792 2025-08-09 01:32:10,romonlyht,domain,8kkz4dx9.top,#phishing,https://x.com/romonlyht/status/1953992668339744996 2025-08-09 01:32:10,romonlyht,url,https://8kkz4dx9.top/login=taOdOW4eyM/aipf/tra/flolw/aputh,#phishing,https://x.com/romonlyht/status/1953992668339744996 2025-08-09 01:32:10,romonlyht,ip,177.74.73.80,#phishing,https://x.com/romonlyht/status/1953992668339744996 2025-08-09 01:32:45,romonlyht,ip,187.85.95.18,#phishing,https://x.com/romonlyht/status/1953992814624485707 2025-08-09 01:32:45,romonlyht,url,https://nk6ol1.top/login=taOdOW4eyM/aipf/tra/flolw/aputh,#phishing,https://x.com/romonlyht/status/1953992814624485707 2025-08-09 01:32:45,romonlyht,domain,nk6ol1.top,#phishing,https://x.com/romonlyht/status/1953992814624485707 2025-08-09 01:43:57,skocherhan,domain,guardadvancedsafeshield.autos,,https://x.com/skocherhan/status/1953995633796558923 2025-08-09 01:43:57,skocherhan,url,http://www.guardadvancedsafeshield.autos/1j267ogpe/l?btd=dHJrLmluZm9ybWF0aW9uLWRpc2NvdmVyLXRob3VnaC1maW5kLnJ1bg&exptoken=MTc1NDcwMzY3MDA0MA%3D%3D&lang=en&lid=de4fefff-f0da-48e6-8da7-860ede31b596