Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…

Maltrail IOC for 2026-06-04

0
Medium
Published: Wed Jun 03 2026 (06/03/2026, 00:00:00 UTC)
Source: CIRCL OSINT Feed

Description

Maltrail IOC for 2026-06-04

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 06/04/2026, 09:33:34 UTC

Technical Analysis

The threat is a malware-related IOC identified by Maltrail on 2026-06-04, reported through CIRCL OSINT Feed. It involves network activity observations without detailed technical indicators or affected software versions. No exploits or patches are associated with this IOC. The data reflects external analysis and ongoing OSINT monitoring rather than a specific vulnerability or exploit.

Potential Impact

The impact is assessed as medium severity based on the source classification. Since no specific exploits or affected software versions are identified, the direct impact is limited to detection of suspicious or malicious network activity. There is no evidence of active exploitation or vulnerability in software products.

Mitigation Recommendations

No patch or official remediation is available or applicable for this IOC. Security teams should incorporate this IOC into their detection and monitoring tools as part of their threat intelligence feeds. No urgent action is required beyond standard network monitoring and response to detected malicious activity.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Uuid
503001ee-8340-416d-b1a7-a72e79b0ba8f
Original Timestamp
1780563615

Indicators of Compromise

Url

ValueDescriptionCopy
urlhttps://api.github.com/repos/stamparm/maltrail/commits/87775b95e07eb9fd48fc724b5322310eb67cd13f
pulsarrat
urlhttps://x.com/Jane_0sint/status/2000698036205359143
pulsarrat
urlhttps://app.any.run/tasks/dc04cd07-72da-449f-8aaa-e7364389fae3
pulsarrat
urlhttps://tria.ge/251212-x9wc5ahk4v/behavioral1
pulsarrat
urlhttps://api.github.com/repos/stamparm/maltrail/commits/f4eaaf3ea846f4ddc862fe5ad71016caeb1742cc
android_joker
urlhttps://api.github.com/repos/stamparm/maltrail/commits/77e68d0d428d6e59a3aa3db34d31315e0d128ea6
apt_donot
urlhttps://api.github.com/repos/stamparm/maltrail/commits/5bc08a500059cde822792f8c0b0e347abfcf7ebe
osx_nova
urlhttps://x.com/MarceloRivero/status/2062295320722055512
osx_nova
urlhttps://api.github.com/repos/stamparm/maltrail/commits/251c5a6e4ec65dc07ae88e4d3b9225742d93a28d
c2_panel
urlhttps://x.com/Fact_Finder03/status/2062409260991181104
c2_panel
urlhttps://api.github.com/repos/stamparm/maltrail/commits/660ba6d9bb811ee5b00454b8a8000105fe6e61b1
c2_panel
urlhttps://x.com/Fact_Finder03/status/2062406492699935023
c2_panel
urlhttps://api.github.com/repos/stamparm/maltrail/commits/4bfd2a5f1adcf89625cf32cefb75eb53a46ce8fd
osx_atomic
urlhttps://api.github.com/repos/stamparm/maltrail/commits/19ef9004df3290308e1f11ef5903250274770207
magentocore
urlhttps://api.github.com/repos/stamparm/maltrail/commits/348820bd7574bf2ce2f2bc617d9389c2d3c5976e
magentocore
urlhttps://api.github.com/repos/stamparm/maltrail/commits/68bd06f18e332bcc2cdb1b438da014b17b835bea
worst_asns
urlhttps://ipinfo.io/AS202226
worst_asns
urlhttps://api.github.com/repos/stamparm/maltrail/commits/c00bb6aa9259d5e0a7e659640640780d83beb5a0
magentocore
urlhttps://api.github.com/repos/stamparm/maltrail/commits/8859738f2c781a61f94a99d2441d339af57705a7
osx_nova
urlhttps://api.github.com/repos/stamparm/maltrail/commits/a6c434c7a3e53902f5162306774246f0d758a59d
android_fvncbot
urlhttps://api.github.com/repos/stamparm/maltrail/commits/72995a0da7899b024931521d973bbb67d4b45d72
offloader
urlhttps://api.github.com/repos/stamparm/maltrail/commits/3feebe5c6cd17f3ee1d14c580677c7777aa4e90f
lummac2
urlhttps://api.github.com/repos/stamparm/maltrail/commits/ec340c41eb192c70da0068222153ab6b3db672d8
apt_kimsuky
urlhttps://api.github.com/repos/stamparm/maltrail/commits/f593cb248eb194d85cafaa4fcb782885005ba6cc
apt_unc2465
urlhttps://api.github.com/repos/stamparm/maltrail/commits/cca5e11ac679a08cf364ba8431877b9fb5f0241f
sonicrat
urlhttps://api.github.com/repos/stamparm/maltrail/commits/1e641425a0c3c7f5a0665c6cf222a51ad7082cd3
hak5cloud_c2

Ip

ValueDescriptionCopy
ip194.9.6.97
pulsarrat
ip109.238.92.154
c2_panel
ip192.151.146.82
c2_panel
ip45.8.150.50
c2_panel
ip89.47.51.187
c2_panel
ip209.99.186.176
c2_panel
ip144.31.236.0
worst_asns
ip150.241.81.0
worst_asns
ip193.202.84.0
worst_asns
ip2.26.74.0
worst_asns
ip2.26.75.0
worst_asns
ip2.27.5.0
worst_asns
ip31.76.118.0
worst_asns
ip31.76.87.0
worst_asns
ip31.76.93.0
worst_asns
ip149.50.98.23
sonicrat
ip149.50.98.24
sonicrat
ip149.50.98.25
sonicrat
ip149.50.98.26
sonicrat
ip149.50.98.27
sonicrat
ip149.50.98.28
sonicrat
ip149.50.98.29
sonicrat
ip149.50.98.30
sonicrat
ip149.50.98.31
sonicrat
ip149.50.98.32
sonicrat
ip149.50.98.33
sonicrat
ip149.50.98.34
sonicrat
ip149.50.98.35
sonicrat
ip149.50.98.36
sonicrat

Domain

ValueDescriptionCopy
domainerpri.help
android_joker
domainmsticker.club
android_joker
domainsolutionlogz.info
apt_donot
domainlumanotch.com
osx_nova
domainspace.lumanotch.com
osx_nova
domaincc.forensic.cafe
c2_panel
domainrelay.mtrdrgzcid.com
c2_panel
domainst.cc.forensic.cafe
c2_panel
domainr734yn7cnm7h7xmxuhjfshesiuaow21.dad
c2_panel
domaindollscough.cfd
osx_atomic
domainfileaquamarinebridge.online
osx_atomic
domainfilebirchorbit.online
osx_atomic
domainfilecopperforest.online
osx_atomic
domainfilecoralbridge.cyou
osx_atomic
domainfilecrystalwave.com
osx_atomic
domainfileembercloud.online
osx_atomic
domainfilemoonlitengine.online
osx_atomic
domainfileonyxcanvas.online
osx_atomic
domainfileprairiestudio.online
osx_atomic
domainfilesilentfalcon.com
osx_atomic
domainfiletopazisland.online
osx_atomic
domainkickbyt.com
osx_atomic
domaintruesignal77.com
osx_atomic
domainwallspace4k.net
osx_atomic
domainfiscatium.info
magentocore
domainkehypu.club
magentocore
domainpanel-fsc.online
magentocore
domaincheckout.googlechtome.com
magentocore
domaincold-apple.com
magentocore
domaingooglechtome.com
magentocore
domainhot-mango.com
magentocore
domainapigodaddy.net
magentocore
domaincdn-request.com
magentocore
domainconnect-socket.com
magentocore
domainrequest-ws.com
magentocore
domainws-socket.net
magentocore
domainwsrequest.net
magentocore
domainlinkedrink.click
osx_nova
domainlinkidjan.com
osx_nova
domainljinkidin.com
osx_nova
domainpumps-streams.fun
osx_nova
domainpumpstreaminghub.fun
osx_nova
domainpunps.fun
osx_nova
domaintradeback-pumps.fun
osx_nova
domaincdn.ibanqq.icu
android_fvncbot
domainbatcemetery.space
offloader
domainrespectmountain.xyz
offloader
domainpitchgb.cyou
lummac2
domainedoc-mane.dns.navy
apt_kimsuky
domainedoc-mew.dynv6.net
apt_kimsuky
domainhometa16x.dns.army
apt_kimsuky
domaininfo.edoc-mane.dns.navy
apt_kimsuky
domaininfo.edoc-mew.dynv6.net
apt_kimsuky
domainn-cloud.ntr26edc.dynv6.net
apt_kimsuky
domainnaver.subsoniclabs.com
apt_kimsuky
domainncodbyverify.dynv6.net
apt_kimsuky
domainncodcgpass.dynv6.net
apt_kimsuky
domainndocbqcheck.dynv6.net
apt_kimsuky
domainnid-naverdvl.servequake.com
apt_kimsuky
domainnid-naverewj.serveftp.com
apt_kimsuky
domainnid-naverkuf.servehalflife.com
apt_kimsuky
domainnid-naversis.servepics.com
apt_kimsuky
domainnid.naver.subsoniclabs.com
apt_kimsuky
domainnids.ndocbqcheck.dynv6.net
apt_kimsuky
domainnidservers.tpox17er.dns.army
apt_kimsuky
domainns6docs.dynv6.net
apt_kimsuky
domainntr26edc.dynv6.net
apt_kimsuky
domaintpox17er.dns.army
apt_kimsuky
domainbreonros.it.com
apt_unc2465
domainbridgetontowing.com
apt_unc2465
domainlairatech.it.com
apt_unc2465
domainorlandoweddingfilms.com
apt_unc2465
domainreader-doc.digital
apt_unc2465
domainshoepay.io
apt_unc2465
domainsign-mess.digital
apt_unc2465
domainapi.fildeler.dk
hak5cloud_c2

Threat ID: 6a2142dde29bf47b50895a68

Added to database: 6/4/2026, 9:18:21 AM

Last enriched: 6/4/2026, 9:33:34 AM

Last updated: 6/4/2026, 11:09:23 AM

Views: 4

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

External Links

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses