PULSE NAME
ThreatFox Hunt: Unknown malware IOCs - 2026-02-16
WHITE pduggusa 2026-02-16 Modified: 2026-03-18
120
IOCs
HIGH VOLUME
Automated ThreatFox hunt for Unknown malware indicators. 143 IOCs collected via Pattern 49 intelligence streaming. MITRE ATT&CK: T1071.001, T1105. Reference: https://analytics.dugganusa.com
MITRE ATT&CK & Malware Families
ATT&CK TECHNIQUES
MALWARE FAMILIES
Unknown malware
Indicators of Compromise (120)
All domain URL hostname
TYPEINDICATORDESCRIPTIONCREATED
domain cptoptious.com Unknown malware payload_delivery - ThreatFox ID: 1748354 2026-02-16
URL http://goyslopjewbag.icu/admin.php Unknown malware botnet_cc - ThreatFox ID: 1748661 2026-02-16
URL http://94.154.35.115/user_profiles_photo/cptchbuild.bin Unknown malware payload_delivery - ThreatFox ID: 1748896 2026-02-16
URL http://94.154.35.115/user_profiles_photo/chromelevator.bin Unknown malware payload_delivery - ThreatFox ID: 1748897 2026-02-16
URL http://158.94.209.33 Unknown malware payload_delivery - ThreatFox ID: 1748900 2026-02-16
URL https://poygon-notifications.cfd Unknown malware payload_delivery - ThreatFox ID: 1748905 2026-02-16
domain poygon-notifications.cfd Unknown malware payload_delivery - ThreatFox ID: 1748906 2026-02-16
URL https://poygon-notifications.click Unknown malware payload_delivery - ThreatFox ID: 1748907 2026-02-16
domain poygon-notifications.click Unknown malware payload_delivery - ThreatFox ID: 1748908 2026-02-16
URL https://2fa-cp.click Unknown malware payload_delivery - ThreatFox ID: 1748909 2026-02-16
domain 2fa-cp.click Unknown malware payload_delivery - ThreatFox ID: 1748910 2026-02-16
URL https://sdn-cloudflare-js-css.click Unknown malware payload_delivery - ThreatFox ID: 1748911 2026-02-16
domain sdn-cloudflare-js-css.click Unknown malware payload_delivery - ThreatFox ID: 1748912 2026-02-16
URL https://img-cdn-cloud.click Unknown malware payload_delivery - ThreatFox ID: 1748913 2026-02-16
domain img-cdn-cloud.click Unknown malware payload_delivery - ThreatFox ID: 1748914 2026-02-16
URL https://cdn-js-conhost.click Unknown malware payload_delivery - ThreatFox ID: 1748915 2026-02-16
domain cdn-js-conhost.click Unknown malware payload_delivery - ThreatFox ID: 1748916 2026-02-16
URL https://nascdn-js.click Unknown malware payload_delivery - ThreatFox ID: 1748917 2026-02-16
domain nascdn-js.click Unknown malware payload_delivery - ThreatFox ID: 1748918 2026-02-16
URL https://cdn-server-styles.click Unknown malware payload_delivery - ThreatFox ID: 1748919 2026-02-16
domain cdn-server-styles.click Unknown malware payload_delivery - ThreatFox ID: 1748920 2026-02-16
URL https://cdn-server.click Unknown malware payload_delivery - ThreatFox ID: 1748921 2026-02-16
domain cdn-server.click Unknown malware payload_delivery - ThreatFox ID: 1748922 2026-02-16
URL https://rpc-framework-check.click Unknown malware payload_delivery - ThreatFox ID: 1748923 2026-02-16
domain rpc-framework-check.click Unknown malware payload_delivery - ThreatFox ID: 1748924 2026-02-16
URL https://cloud-safe.click Unknown malware payload_delivery - ThreatFox ID: 1748925 2026-02-16
domain cloud-safe.click Unknown malware payload_delivery - ThreatFox ID: 1748926 2026-02-16
URL https://rpc-framework-check.cfd Unknown malware payload_delivery - ThreatFox ID: 1748927 2026-02-16
domain rpc-framework-check.cfd Unknown malware payload_delivery - ThreatFox ID: 1748928 2026-02-16
URL https://sdn-cloudflare-js.click Unknown malware payload_delivery - ThreatFox ID: 1748936 2026-02-16
domain sdn-cloudflare-js.click Unknown malware payload_delivery - ThreatFox ID: 1748937 2026-02-16
URL https://cdn-sss.click Unknown malware payload_delivery - ThreatFox ID: 1748939 2026-02-16
domain cdn-sss.click Unknown malware payload_delivery - ThreatFox ID: 1748940 2026-02-16
URL https://dev-js-cdn.cfd Unknown malware payload_delivery - ThreatFox ID: 1748941 2026-02-16
domain dev-js-cdn.cfd Unknown malware payload_delivery - ThreatFox ID: 1748942 2026-02-16
URL https://cloud-safe.cfd Unknown malware payload_delivery - ThreatFox ID: 1748944 2026-02-16
domain cloud-safe.cfd Unknown malware payload_delivery - ThreatFox ID: 1748945 2026-02-16
URL https://styles-get-img.cfd Unknown malware payload_delivery - ThreatFox ID: 1748947 2026-02-16
domain styles-get-img.cfd Unknown malware payload_delivery - ThreatFox ID: 1748948 2026-02-16
URL https://2fa-cp.cfd Unknown malware payload_delivery - ThreatFox ID: 1748949 2026-02-16
domain 2fa-cp.cfd Unknown malware payload_delivery - ThreatFox ID: 1748951 2026-02-16
URL https://cdn-server-styles.cfd Unknown malware payload_delivery - ThreatFox ID: 1748956 2026-02-16
domain cdn-server-styles.cfd Unknown malware payload_delivery - ThreatFox ID: 1748957 2026-02-16
URL https://nascdn-js.life Unknown malware payload_delivery - ThreatFox ID: 1748959 2026-02-16
domain nascdn-js.life Unknown malware payload_delivery - ThreatFox ID: 1748960 2026-02-16
URL https://captcha-cds.cfd Unknown malware payload_delivery - ThreatFox ID: 1748963 2026-02-16
domain captcha-cds.cfd Unknown malware payload_delivery - ThreatFox ID: 1748964 2026-02-16
domain captcha-cds.click Unknown malware payload_delivery - ThreatFox ID: 1748965 2026-02-16
URL https://captcha-cds.click Unknown malware payload_delivery - ThreatFox ID: 1748966 2026-02-16
URL https://img-cdn-cloud.cfd Unknown malware payload_delivery - ThreatFox ID: 1748969 2026-02-16
domain img-cdn-cloud.cfd Unknown malware payload_delivery - ThreatFox ID: 1748970 2026-02-16
URL https://puump.live Unknown malware payload_delivery - ThreatFox ID: 1748971 2026-02-16
domain puump.live Unknown malware payload_delivery - ThreatFox ID: 1748973 2026-02-16
URL https://wptest.click Unknown malware payload_delivery - ThreatFox ID: 1748978 2026-02-16
domain wptest.click Unknown malware payload_delivery - ThreatFox ID: 1748979 2026-02-16
URL https://1.cloud-safe.cfd Unknown malware payload_delivery - ThreatFox ID: 1748980 2026-02-16
hostname 1.cloud-safe.cfd Unknown malware payload_delivery - ThreatFox ID: 1748981 2026-02-16
URL https://2.cloud-safe.cfd Unknown malware payload_delivery - ThreatFox ID: 1748982 2026-02-16
hostname 2.cloud-safe.cfd Unknown malware payload_delivery - ThreatFox ID: 1748983 2026-02-16
URL https://antivirusscan.net Unknown malware payload_delivery - ThreatFox ID: 1748990 2026-02-16
domain antivirusscan.net Unknown malware payload_delivery - ThreatFox ID: 1748991 2026-02-16
URL https://bootstrap-css-framework.cfd Unknown malware payload_delivery - ThreatFox ID: 1748995 2026-02-16
domain bootstrap-css-framework.cfd Unknown malware payload_delivery - ThreatFox ID: 1748996 2026-02-16
URL https://sdn-cloudflare-js-botstrup.cfd Unknown malware payload_delivery - ThreatFox ID: 1748997 2026-02-16
domain sdn-cloudflare-js-botstrup.cfd Unknown malware payload_delivery - ThreatFox ID: 1748998 2026-02-16
URL http://sdn-cloudflare-js-botstrup.cfd/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1748999 2026-02-16
URL https://antivirusscan.net/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749000 2026-02-16
URL https://cdn-server.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749001 2026-02-16
URL https://fonts-fontawesome.cfd Unknown malware payload_delivery - ThreatFox ID: 1749002 2026-02-16
domain fonts-fontawesome.cfd Unknown malware payload_delivery - ThreatFox ID: 1749003 2026-02-16
URL https://winupdateconf.cfd Unknown malware payload_delivery - ThreatFox ID: 1749004 2026-02-16
domain winupdateconf.cfd Unknown malware payload_delivery - ThreatFox ID: 1749005 2026-02-16
URL https://winupdate.cfd Unknown malware payload_delivery - ThreatFox ID: 1749006 2026-02-16
domain winupdate.cfd Unknown malware payload_delivery - ThreatFox ID: 1749007 2026-02-16
URL https://sdn-cloudflare-js.cfd/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749008 2026-02-16
URL https://cdn-clodflare-fotns.cfd/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749009 2026-02-16
domain cdn-clodflare-fotns.cfd Unknown malware payload_delivery - ThreatFox ID: 1749010 2026-02-16
URL https://alffsave.click Unknown malware payload_delivery - ThreatFox ID: 1749011 2026-02-16
domain alffsave.click Unknown malware payload_delivery - ThreatFox ID: 1749012 2026-02-16
URL https://cdn-clodflare-fotns.click Unknown malware payload_delivery - ThreatFox ID: 1749013 2026-02-16
domain cdn-clodflare-fotns.click Unknown malware payload_delivery - ThreatFox ID: 1749014 2026-02-16
URL https://sccdnd-ltyles.click Unknown malware payload_delivery - ThreatFox ID: 1749015 2026-02-16
domain sccdnd-ltyles.click Unknown malware payload_delivery - ThreatFox ID: 1749016 2026-02-16
domain bssapi.click Unknown malware payload_delivery - ThreatFox ID: 1749017 2026-02-16
URL https://bssapi.click Unknown malware payload_delivery - ThreatFox ID: 1749018 2026-02-16
URL https://sdn-cloudflare-js-botstrup.click Unknown malware payload_delivery - ThreatFox ID: 1749021 2026-02-16
domain sdn-cloudflare-js-botstrup.click Unknown malware payload_delivery - ThreatFox ID: 1749022 2026-02-16
URL https://cdn2-server.click Unknown malware payload_delivery - ThreatFox ID: 1749023 2026-02-16
domain cdn2-server.click Unknown malware payload_delivery - ThreatFox ID: 1749024 2026-02-16
URL https://str-smcontrcats.cfd Unknown malware payload_delivery - ThreatFox ID: 1749025 2026-02-16
domain str-smcontrcats.cfd Unknown malware payload_delivery - ThreatFox ID: 1749026 2026-02-16
domain restapiserv.click Unknown malware payload_delivery - ThreatFox ID: 1749028 2026-02-16
URL https://restapiserv.click Unknown malware payload_delivery - ThreatFox ID: 1749029 2026-02-16
URL https://vrfimgjs.click Unknown malware payload_delivery - ThreatFox ID: 1749030 2026-02-16
domain vrfimgjs.click Unknown malware payload_delivery - ThreatFox ID: 1749031 2026-02-16
URL https://vrfimgjs.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749179 2026-02-16
URL https://bssapi.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749181 2026-02-16
URL https://alffsave.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749182 2026-02-16
URL https://cdn-clodflare-fotns.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749184 2026-02-16
URL https://captcha-cds.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749185 2026-02-16
URL https://sccdnd-ltyles.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749187 2026-02-16
URL https://sdn-cloudflare-js-botstrup.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749189 2026-02-16
URL https://2fa-cp.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749191 2026-02-16
URL https://restapiserv.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749192 2026-02-16
URL https://str-smcontrcats.cfd/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749193 2026-02-16
URL https://poygon-notifications.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749194 2026-02-16
URL https://img-cdn-cloud.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749195 2026-02-16
URL https://cdn-js-conhost.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749198 2026-02-16
URL https://nascdn-js.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749199 2026-02-16
URL https://cdn-server-styles.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749201 2026-02-16
URL https://rpc-framework-check.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749204 2026-02-16
URL https://cdn2-server.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749206 2026-02-16
URL https://styles-get-img.cfd/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749207 2026-02-16
URL https://dev-js-cdn.cfd/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749209 2026-02-16
URL https://sdn-cloudflare-js.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749210 2026-02-16
URL https://cloud-safe.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749211 2026-02-16
URL https://sdn-cloudflare-js-css.click/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749212 2026-02-16
domain firazit.com Unknown malware payload_delivery - ThreatFox ID: 1749271 2026-02-16
URL https://firazit.com/api/css.js Unknown malware payload_delivery - ThreatFox ID: 1749272 2026-02-16
URL http://222.255.100.119/pages/login.php Unknown malware botnet_cc - ThreatFox ID: 1749337 2026-02-16