216.73.216.6

A Practical Guide to Uncovering Malicious Infrastructure With Hunt.io

· Published 25/03/2025 23:57 · Modified 26/03/2025 13:20

Export JSON

Essential information

Published
25/03/2025 23:57
Modified
26/03/2025 13:20
Tags
2025-03-25 cryptocurrency fraud hunt.io latrodectus latrodectus malware malicious infrastructure network scanning osint sql queries threat hunting tls certificates
Related entities
5 techniques (mitre), 1 malware

Description

This guide demonstrates how to use to investigate and track . Starting with a single suspicious IP address, the process involves analyzing hosting providers, domain information, open ports, HTTP responses, and . The investigation reveals connections to potential and malware operations. By leveraging Hunt's scan data and , a small cluster of related servers is identified, possibly linked to . The guide emphasizes the importance of persistence, pattern recognition, and correlating data from multiple intelligence sources to effectively track threat actor operations.

External references