| domain | metrix-getrix.buzzThreatFox payload_delivery (unknown) | | ThreatFox | threatfoxpayload_delivery | 05/08/2026 |
| domain | spareing.comThreatFox payload_delivery (js.clearfake) | | ThreatFox | threatfoxpayload_delivery | 05/08/2026 |
| domain | vwpkjni.spareing.comThreatFox payload_delivery (js.clearfake) | | ThreatFox | threatfoxpayload_delivery | 05/08/2026 |
| domain | 2r7klyjg.overtheitgirl.comThreatFox payload_delivery (js.clearfake) | | ThreatFox | threatfoxpayload_delivery | 05/08/2026 |
| domain | sim-trucking.comThreatFox payload_delivery (js.clearfake) | | ThreatFox | threatfoxpayload_delivery | 05/08/2026 |
| domain | pjzmil.sim-trucking.comThreatFox payload_delivery (js.clearfake) | | ThreatFox | threatfoxpayload_delivery | 05/08/2026 |
| domain | bnxrnoc.revivebyviv.comThreatFox payload_delivery (js.clearfake) | | ThreatFox | threatfoxpayload_delivery | 05/08/2026 |
| ip | 42.193.228.200ThreatFox botnet_cc (win.vshell) | | ThreatFox | threatfoxbotnet_cc | 05/08/2026 |
| ip | 8.145.52.37ThreatFox botnet_cc (win.vshell) | | ThreatFox | threatfoxbotnet_cc | 05/08/2026 |
| url | http://125.44.60.121:45542/iURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://115.49.131.148:60155/bin.shURLhaus — threat: malware_download — tags: 32-bit, arm, elf, mirai, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://123.5.126.137:60939/bin.shURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://105.186.85.41:52445/bin.shURLhaus — threat: malware_download — tags: mirai | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://115.63.54.54:51962/iURLhaus — threat: malware_download — tags: Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://91.92.242.236/files-129312398/files/file_5ba49755e4182c02.exeURLhaus — threat: malware_download — tags: 54e64e, dropped-by-amadey | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://125.44.60.121:45542/bin.shURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://101.109.170.235:45360/iURLhaus — threat: malware_download — tags: 32-bit, arm, elf, mirai, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://175.9.132.112:50484/iURLhaus — threat: malware_download — tags: 32-bit, arm, elf, mirai, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://182.119.57.28:48123/iURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://182.119.34.47:58607/iURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://110.37.56.122:48415/iURLhaus — threat: malware_download — tags: mirai | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://27.202.25.231:36878/bin.shURLhaus — threat: malware_download — tags: Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://42.85.239.3:46645/iURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://175.9.132.112:50484/bin.shURLhaus — threat: malware_download — tags: 32-bit, arm, elf, mirai, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://101.109.170.235:45360/bin.shURLhaus — threat: malware_download — tags: 32-bit, arm, elf, mirai, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://182.119.34.47:58607/bin.shURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://182.119.57.28:48123/bin.shURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://210.208.110.147:50936/iURLhaus — threat: malware_download — tags: mirai | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://110.37.56.122:48415/bin.shURLhaus — threat: malware_download — tags: mirai | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://222.219.74.184:52755/bin.shURLhaus — threat: malware_download — tags: mirai | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| url | http://119.179.214.25:35406/iURLhaus — threat: malware_download — tags: 32-bit, elf, mips, Mozi | | Abuse.ch URLhaus | malwaremalware_download | 05/08/2026 |
| ip | 101.32.243.200 | | Cowrie Honeypot | honeypotssh-attack | 05/08/2026 |
| ip | 121.4.28.241 | | Cowrie Honeypot | honeypotssh-attack | 05/08/2026 |
| ip | 81.68.224.58 | | Cowrie Honeypot | ssh-attackhoneypot | 05/08/2026 |
| ip | 117.72.45.195 | | Cowrie Honeypot | honeypotssh-attack | 05/08/2026 |
| ip | 91.203.233.58T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 46.36.123.61T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 194.58.240.35T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 190.60.46.206T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 189.126.238.192T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 187.17.230.138T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 186.28.164.145T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 181.139.159.170T-Pot honeypot: 5 hits; types=[P0f,Suricata]; ports=[23] | | T-Pot Honeypot | p0fhoneypot | 05/08/2026 |
| ip | 177.107.39.136T-Pot honeypot: 7 hits; types=[P0f,Cowrie,Suricata]; ports=[23] | | T-Pot Honeypot | p0fcowrie | 05/08/2026 |
| ip | 51.250.116.157T-Pot honeypot: 8 hits; types=[Suricata]; ports=[5621,12019,13888,34485,42990,47484,58414,62699] | | T-Pot Honeypot | honeypottpot | 05/08/2026 |
| ip | 45.70.21.202T-Pot honeypot: 8 hits; types=[P0f,Cowrie,Suricata]; ports=[23] | | T-Pot Honeypot | p0fcowrie | 05/08/2026 |
| ip | 200.149.61.167T-Pot honeypot: 8 hits; types=[P0f,Cowrie,Suricata]; ports=[23] | | T-Pot Honeypot | p0fcowrie | 05/08/2026 |
| ip | 190.113.232.133T-Pot honeypot: 8 hits; types=[P0f,Cowrie,Suricata]; ports=[23] | | T-Pot Honeypot | p0fcowrie | 05/08/2026 |
| ip | 186.22.71.155T-Pot honeypot: 8 hits; types=[P0f,Cowrie,Suricata]; ports=[23] | | T-Pot Honeypot | p0fcowrie | 05/08/2026 |
| ip | 45.234.34.251T-Pot honeypot: 9 hits; types=[P0f,Cowrie,Suricata]; ports=[23] | | T-Pot Honeypot | p0fcowrie | 05/08/2026 |