IOCs

Indicators for MuddyWater

830 indicators · scoped to malware families · back to MuddyWater
Live IOCs from URLhaus, ThreatFox, MalwareBazaar, and abuse.ch SSLBL for malware families this actor uses. All indicators are defanged for safe handling.

Indicators

100 of 830
sslbl_sha1
595f11e07384d96666df1631e7a2e14feda596ae
family ConnectWise source sslbl first seen 2026-02-23 08:35:07
sslbl_sha1
76123f9c1493f66492d64a4e1cf2e468e47f3445
family ConnectWise source sslbl first seen 2026-02-23 08:34:06
sslbl_sha1
30ee878e93803ddb7969dff8a6da947b52d35a85
family ConnectWise source sslbl first seen 2026-02-23 08:33:05
sslbl_sha1
96edc7b5466e67373a12de21bf617fbd87ae7e02
family ConnectWise source sslbl first seen 2026-02-23 08:28:57
sslbl_sha1
cad2547d8cc9f822941c71b0f817c12911054041
family ConnectWise source sslbl first seen 2026-02-23 08:27:33
sslbl_sha1
90049149e25471bdecc27cf9d6558497ef571af0
family ConnectWise source sslbl first seen 2026-02-23 08:24:53
sslbl_sha1
2ffc8e18c81de63fac78b365c0964e4be354398e
family ConnectWise source sslbl first seen 2026-02-23 08:23:29
sslbl_sha1
56fcaa9fad8c9b2dc849afc5b70c2b6161ae18a7
family ConnectWise source sslbl first seen 2026-02-23 08:22:27
sslbl_sha1
ca41570b230ab2df553fc3cff45560293f99b957
family ConnectWise source sslbl first seen 2026-02-23 08:21:29
sslbl_sha1
532246085a561579201b069ddceb41dd590f0be8
family ConnectWise source sslbl first seen 2026-02-23 08:09:52
url
hxxp://195.16.44.75:8080/LaZagne.exe
family Lazagne source urlhaus first seen 2026-02-23 07:12:20 UTC
url
hxxp://195.16.44.75:8080/DavRelayUp.exe
family mimikatz source urlhaus first seen 2026-02-23 07:12:17 UTC
url
hxxp://192.227.211.41:8040/Bin/ScreenConnect.ClientSetup.msi
family connectwise source urlhaus first seen 2026-02-22 15:49:23 UTC
url
hxxps://admin.sevfrtdxs.com/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest&t=RADO-X-IN
family connectwise source urlhaus first seen 2026-02-22 15:49:14 UTC
url
hxxps://descamisad.sbs/auth/567/Windows/download.php
family connectwise source urlhaus first seen 2026-02-22 15:49:11 UTC
url
hxxps://45.94.31.192/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:05:09 UTC
url
hxxps://45.88.186.52/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:41 UTC
url
hxxps://203.159.90.56/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:41 UTC
url
hxxps://45.83.31.150/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:41 UTC
url
hxxp://45.83.31.142:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:40 UTC
url
hxxps://124.198.131.31/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:37 UTC
url
hxxps://124.198.132.251/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:35 UTC
url
hxxp://45.88.186.149:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:33 UTC
url
hxxps://2.58.56.134/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:33 UTC
url
hxxps://45.94.31.59/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:33 UTC
url
hxxp://45.94.31.164:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:33 UTC
url
hxxps://45.94.31.109/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:27 UTC
url
hxxp://124.198.131.40:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:27 UTC
url
hxxps://192.159.99.119/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:26 UTC
url
hxxp://185.241.208.151:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:26 UTC
url
hxxps://124.198.131.149/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:26 UTC
url
hxxps://45.94.31.23/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:26 UTC
url
hxxps://2.58.56.228/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:18 UTC
url
hxxps://192.159.99.98/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:18 UTC
url
hxxps://45.83.31.132/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:18 UTC
url
hxxps://45.88.186.216/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:17 UTC
url
hxxps://45.88.186.195/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:15 UTC
url
hxxps://124.198.132.211/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:15 UTC
url
hxxps://193.26.115.200/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:15 UTC
url
hxxps://45.94.31.102/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:04:14 UTC
url
hxxp://2.58.56.235:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:56 UTC
url
hxxps://193.26.115.35/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:55 UTC
url
hxxps://45.80.158.96/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:55 UTC
url
hxxp://124.198.131.144/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:55 UTC
url
hxxps://45.88.186.42/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:53 UTC
url
hxxp://192.159.99.34/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:53 UTC
url
hxxps://45.154.98.212/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:53 UTC
url
hxxps://193.26.115.135/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:49 UTC
url
hxxps://45.141.215.124/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:49 UTC
url
hxxp://45.88.186.69/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:48 UTC
url
hxxps://45.83.31.116/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:46 UTC
url
hxxp://84.54.33.188:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:45 UTC
url
hxxps://193.26.115.225/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:44 UTC
url
hxxp://193.26.115.65:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:43 UTC
url
hxxps://45.94.31.176/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:38 UTC
url
hxxps://45.83.31.128/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:31 UTC
url
hxxp://45.88.186.26:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:30 UTC
url
hxxps://45.88.186.34/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:30 UTC
url
hxxps://194.26.192.109/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:30 UTC
url
hxxps://124.198.132.197/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:26 UTC
url
hxxps://45.83.31.110/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:26 UTC
url
hxxps://45.88.186.47/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:25 UTC
url
hxxps://45.83.31.248/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:21 UTC
url
hxxp://192.159.99.131:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:15 UTC
url
hxxps://84.54.33.133/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:10 UTC
url
hxxps://185.241.208.173/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:10 UTC
url
hxxps://124.198.131.140/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:10 UTC
url
hxxps://124.198.131.52/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:09 UTC
url
hxxps://124.198.131.82/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:09 UTC
url
hxxp://45.94.31.57:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:08 UTC
url
hxxps://192.159.99.123/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:05 UTC
url
hxxp://193.26.115.192:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:05 UTC
url
hxxps://124.198.132.186/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:04 UTC
url
hxxps://45.83.31.82/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:04 UTC
url
hxxp://45.94.31.116:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:04 UTC
url
hxxps://45.83.31.198/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:04 UTC
url
hxxps://45.88.186.115/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:03:04 UTC
url
hxxps://124.198.132.54/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:58 UTC
url
hxxps://45.83.31.230/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:55 UTC
url
hxxps://185.241.211.6/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:41 UTC
url
hxxps://45.154.98.229/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:40 UTC
url
hxxps://124.198.131.188/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:39 UTC
url
hxxps://192.159.99.55/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:34 UTC
url
hxxps://45.88.186.124/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:30 UTC
url
hxxps://124.198.131.88/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:24 UTC
url
hxxp://84.54.33.34:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:24 UTC
url
hxxps://124.198.131.242/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:23 UTC
url
hxxps://45.138.16.201/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:22 UTC
url
hxxp://124.198.132.185:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:22 UTC
url
hxxp://124.198.131.103:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:21 UTC
url
hxxp://45.94.31.90:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:14 UTC
url
hxxp://84.54.33.122:8040/Bin/ScreenConnect.ClientSetup.msi?e=Access&y=Guest
family connectwise source urlhaus first seen 2026-02-22 13:02:14 UTC
url
hxxps://45.154.98.229/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 13:00:09 UTC
url
hxxp://193.26.115.147:8040/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 12:59:26 UTC
url
hxxps://124.198.132.186/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 12:59:26 UTC
url
hxxps://45.138.16.201/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 12:59:25 UTC
url
hxxp://124.198.131.144/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 12:59:25 UTC
url
hxxps://124.198.131.188/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 12:59:25 UTC
url
hxxps://192.159.99.67/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 12:59:25 UTC
url
hxxp://45.88.186.69/bin/support.client.exe?i=&e=Support&y=Guest&r=
family connectwise source urlhaus first seen 2026-02-22 12:59:25 UTC
Showing 201-300 of 830
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin