Malware Tracker — 2nd Edn June 21
G’day Cyber Warrior,
Here are the latest IOC lists.
Please note:
You can use this information to create block-lists.
All C2i published here is active at the time of publishing but some of these C2s can go offline at any time after that.
All information provided here is free to use.
C2i published on this site or shared via email could cause some FPs as these IPs/URIs get recycled frequently, you agree to that before using any C2i from this site.
Lists are NOT de-duped.
You agree that any false positives or outages caused by use of this list will be your responsibility. To get this list emailed to you (free service), please subscribe here:
https://www.malienist.com/p/subscribe-to-free-ioc-list.htmlThanks,
_malienist_
Emotet
hxxp://184.6.79.105:8443
hxxp://75.161.71.124:990
hxxp://23.254.203.51:8080
hxxp://144.76.117.247:8080
hxxp://187.218.236.242
hxxp://219.94.254.93:8080
hxxp://181.60.228.203:8080
hxxp://50.74.56.147:8080
hxxp://209.182.216.177:443
hxxp://190.191.88.126
hxxp://200.58.78.77
hxxp://5.9.128.163:8080
hxxp://202.53.94.4
hxxp://210.2.86.94:8080
hxxp://177.224.87.110:443
hxxp://159.65.76.245:443
hxxp://190.2.43.237:443
hxxp://79.129.42.122:990
hxxp://133.242.208.183:8080
hxxp://181.193.115.50
hxxp://186.20.225.65:8080
hxxp://192.155.90.90:7080
hxxp://201.145.151.91:8080
hxxp://49.212.135.76:443
hxxp://128.92.54.20
hxxp://187.163.127.20
hxxp://198.199.185.25:443
hxxp://210.2.86.72:8080
hxxp://69.198.17.20:8080
hxxp://181.129.130.82:8080
hxxp://81.18.134.18:8080
hxxp://165.227.213.173:8080
hxxp://23.94.123.231:443
hxxp://107.11.23.236
hxxp://189.244.86.184:990
hxxp://71.163.171.106
hxxp://24.201.79.34:8080
hxxp://5.9.128.163:8080
hxxp://210.2.86.94:8080
hxxp://76.65.158.121:50000
hxxp://133.242.208.183:8080
hxxp://205.185.187.190
hxxp://159.65.76.245:443
hxxp://12.222.134.10:7080
hxxp://173.160.205.161:990
hxxp://139.59.242.76:8080
hxxp://173.160.205.162:443
hxxp://200.127.55.5
hxxp://173.11.47.169:8080
hxxp://192.155.90.90:7080
hxxp://37.120.175.15
hxxp://160.36.66.221:990
hxxp://189.134.18.141:443
hxxp://23.254.203.51:8080
hxxp://177.242.156.119
hxxp://138.207.150.46:443
hxxp://198.199.185.25:443
hxxp://86.12.247.149
hxxp://210.2.86.72:8080
hxxp://186.18.236.83:8080
hxxp://50.78.167.65:7080
hxxp://109.170.209.165:8080
hxxp://69.198.17.20:8080
hxxp://165.227.213.173:8080
hxxp://81.86.197.52:8443
hxxp://173.19.73.104:443
hxxp://49.212.135.76:443
hxxp://189.244.86.184:990
hxxp://71.163.171.106
hxxp://24.201.79.34:8080
hxxp://5.9.128.163:8080
hxxp://210.2.86.94:8080
hxxp://76.65.158.121:50000
hxxp://133.242.208.183:8080
hxxp://205.185.187.190
hxxp://159.65.76.245:443
hxxp://12.222.134.10:7080
hxxp://173.160.205.161:990
hxxp://139.59.242.76:8080
hxxp://173.160.205.162:443
hxxp://200.127.55.5
hxxp://173.11.47.169:8080
hxxp://192.155.90.90:7080
hxxp://37.120.175.15
hxxp://160.36.66.221:990
hxxp://189.134.18.141:443
hxxp://23.254.203.51:8080
hxxp://177.242.156.119
hxxp://138.207.150.46:443
hxxp://198.199.185.25:443
hxxp://86.12.247.149
hxxp://210.2.86.72:8080
hxxp://186.18.236.83:8080
hxxp://50.78.167.65:7080
hxxp://109.170.209.165:8080
hxxp://69.198.17.20:8080
hxxp://165.227.213.173:8080
hxxp://81.86.197.52:8443
hxxp://173.19.73.104:443
hxxp://49.212.135.76:443
hxxp://208.180.246.147
hxxp://165.227.213.173:8080
hxxp://70.167.72.96:143
hxxp://189.173.176.115:443
hxxp://179.62.48.123:143
hxxp://201.217.133.34
hxxp://74.45.170.110
hxxp://51.255.50.164:8080
hxxp://5.9.128.163:8080
hxxp://219.94.254.93:8080
hxxp://66.209.69.165:443
hxxp://72.47.248.48:8080
hxxp://98.121.75.14
hxxp://90.63.245.70:8080
hxxp://12.6.183.21:8080
hxxp://71.40.213.82:8080
hxxp://186.15.180.71:443
hxxp://186.72.205.234:22
hxxp://80.15.172.81:50000
hxxp://201.183.238.18:443
hxxp://186.4.127.72:995
hxxp://144.76.117.247:8080
hxxp://159.65.76.245:443
hxxp://201.212.113.14:50000
hxxp://98.238.127.216:21
hxxp://109.104.79.48:8080
hxxp://162.247.42.61
hxxp://88.225.226.91:443
hxxp://69.163.33.82:8080
hxxp://192.155.90.90:7080
hxxp://181.56.165.97:53
hxxp://92.48.118.27:8080
hxxp://190.117.226.104:8080
hxxp://181.15.224.57
hxxp://189.251.40.71:8080
hxxp://23.254.203.51:8080
hxxp://200.114.142.15
hxxp://76.94.36.57
hxxp://168.226.35.218
hxxp://210.2.86.72:8080
hxxp://201.124.46.8:8080
hxxp://70.24.147.245:443
hxxp://24.194.252.25
hxxp://192.163.199.254:8080
hxxp://51.77.109.100
hxxp://185.86.148.222:8080
hxxp://209.159.244.240:443
hxxp://138.68.139.199:443
Azorult
hxxp://alphastand.top/alien/fre.php
hxxp://alphastand.trade/alien/fre.php
hxxp://alphastand.win/alien/fre.php
hxxp://kbfvzoboss.bid/alien/fre.php
hxxp://v1258.dh.net.ua/saguy/fre.php
hxxp://www.szccf360.com/sa1/
hxxp://195.245.112.115/index.php
hxxp://lcjvkdfas.ug
hxxp://zaragoza.co.ug/zxcv.EXE
hxxp://www.hacdop.com/jo/
hxxp://www.regular123.com/em02/
tcp://hikari.sakananoko.io:8888
tcp://pl-warsaw.ra4wvpn.com:8888
tcp://nozomi.sakananoko.io:8888
hxxp://samnapkach.com/wine/gate.php
hxxp://alphastand.top/alien/fre.php
hxxp://alphastand.trade/alien/fre.php
hxxp://www.szccf360.com/sa1/
hxxp://alphastand.win/alien/fre.php
hxxp://v1258.dh.net.ua/saguy/fre.php
hxxp://kbfvzoboss.bid/alien/fre.php
hxxp://alphastand.top/alien/fre.php
hxxp://alphastand.trade/alien/fre.php
hxxp://alphastand.win/alien/fre.php
hxxp://www.szccf360.com/sa1/
hxxp://kbfvzoboss.bid/alien/fre.php
hxxp://v1258.dh.net.ua/saguy/fre.php