PULSE NAME
ThreatFox Hunt: AsyncRAT IOCs - 2026-01-18
WHITE pduggusa 2026-01-18 Modified: 2026-02-17
42
IOCs
MEDIUM VOLUME
Automated ThreatFox hunt for AsyncRAT indicators. 50 IOCs collected via Pattern 49 intelligence streaming. MITRE ATT&CK: T1071.001, T1059.001, T1219, T1056.001. Reference: https://analytics.dugganusa.com
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
AsyncRAT
Indicators of Compromise (42)
All hostname domain
TYPEINDICATORDESCRIPTIONCREATED
hostname ukg.uk.com AsyncRAT botnet_cc - ThreatFox ID: 1733618 2026-01-18
hostname aassecc.ydns.eu AsyncRAT botnet_cc - ThreatFox ID: 1733641 2026-01-18
hostname goto.psp.jpn.com AsyncRAT botnet_cc - ThreatFox ID: 1733649 2026-01-18
hostname goto.166bet.com.br AsyncRAT botnet_cc - ThreatFox ID: 1733650 2026-01-18
hostname leshanapas-64300.portmap.host AsyncRAT botnet_cc - ThreatFox ID: 1733724 2026-01-18
hostname hulk88-35315.portmap.host AsyncRAT botnet_cc - ThreatFox ID: 1733779 2026-01-18
hostname chirtyfivev.crabdance.com AsyncRAT botnet_cc - ThreatFox ID: 1733789 2026-01-18
domain 1ott.in.net AsyncRAT botnet_cc - ThreatFox ID: 1733956 2026-01-18
hostname jdzvdi.sa.com AsyncRAT botnet_cc - ThreatFox ID: 1733957 2026-01-18
domain sc88game.com AsyncRAT botnet_cc - ThreatFox ID: 1733958 2026-01-18
domain sc88nv.com AsyncRAT botnet_cc - ThreatFox ID: 1733959 2026-01-18
domain sc88top1.com AsyncRAT botnet_cc - ThreatFox ID: 1733960 2026-01-18
domain cloudfeebacks.in.net AsyncRAT botnet_cc - ThreatFox ID: 1733961 2026-01-18
domain cm88-game.site AsyncRAT botnet_cc - ThreatFox ID: 1733962 2026-01-18
domain cm88.casino AsyncRAT botnet_cc - ThreatFox ID: 1733963 2026-01-18
domain cm88casino.com AsyncRAT botnet_cc - ThreatFox ID: 1733964 2026-01-18
hostname ecatcu.za.com AsyncRAT botnet_cc - ThreatFox ID: 1733965 2026-01-18
hostname fly88bi.jp.net AsyncRAT botnet_cc - ThreatFox ID: 1733966 2026-01-18
hostname m.cm88.casino AsyncRAT botnet_cc - ThreatFox ID: 1733967 2026-01-18
domain open88-1.com AsyncRAT botnet_cc - ThreatFox ID: 1733968 2026-01-18
domain open88-2.site AsyncRAT botnet_cc - ThreatFox ID: 1733969 2026-01-18
hostname voeazul.br.com AsyncRAT botnet_cc - ThreatFox ID: 1733970 2026-01-18
hostname 58winn.uk.com AsyncRAT botnet_cc - ThreatFox ID: 1733971 2026-01-18
domain bitconnect.in.net AsyncRAT botnet_cc - ThreatFox ID: 1733972 2026-01-18
hostname family.hk.com AsyncRAT botnet_cc - ThreatFox ID: 1733973 2026-01-18
domain vmax-link.com AsyncRAT botnet_cc - ThreatFox ID: 1733979 2026-01-18
domain vmax.so AsyncRAT botnet_cc - ThreatFox ID: 1733980 2026-01-18
domain vmaxso.uk AsyncRAT botnet_cc - ThreatFox ID: 1733981 2026-01-18
domain ou6161.com AsyncRAT botnet_cc - ThreatFox ID: 1734110 2026-01-18
domain ou6262.com AsyncRAT botnet_cc - ThreatFox ID: 1734111 2026-01-18
domain ou6363.com AsyncRAT botnet_cc - ThreatFox ID: 1734112 2026-01-18
hostname ba.za.com AsyncRAT botnet_cc - ThreatFox ID: 1734154 2026-01-18
hostname bfcg5.ru.com AsyncRAT botnet_cc - ThreatFox ID: 1734155 2026-01-18
hostname forums.uk.net AsyncRAT botnet_cc - ThreatFox ID: 1734156 2026-01-18
hostname haf.uk.com AsyncRAT botnet_cc - ThreatFox ID: 1734157 2026-01-18
domain hz88-bet.vip AsyncRAT botnet_cc - ThreatFox ID: 1734158 2026-01-18
hostname keramogranit.ru.com AsyncRAT botnet_cc - ThreatFox ID: 1734159 2026-01-18
hostname nqxuvd.za.com AsyncRAT botnet_cc - ThreatFox ID: 1734160 2026-01-18
hostname stileunico.it.com AsyncRAT botnet_cc - ThreatFox ID: 1734161 2026-01-18
hostname wwc.uk.com AsyncRAT botnet_cc - ThreatFox ID: 1734162 2026-01-18
hostname xszcuj.sa.com AsyncRAT botnet_cc - ThreatFox ID: 1734163 2026-01-18
hostname yrbaidu.za.com AsyncRAT botnet_cc - ThreatFox ID: 1734164 2026-01-18