IOC Radar
espionageRURussiaThreat Actor
Active Threat

Turla

178
IOCs Tracked
30
Intel Reports
Associated IOCs50 total
Domain50
ftpget.sh
2026-06-05High
cryptex1.4.zip
2026-06-05High
gagol.py
2026-06-05High
64-7.67.5-signed.zip
2026-06-05High
jack5tr.sh
2026-06-05High
jbt.sh
2026-06-05High
all.sh
2026-06-05High
test.zip
2026-06-05High
tftp.sh
2026-06-05High
payload.zip
2026-06-05High
phi.sh
2026-06-05High
a-r.m-4.sakura
2026-06-05High
1.zip
2026-06-05High
majesticlubricants.com
2026-06-05High
x-3.2-.sakura
2026-06-05High
test.sh
2026-06-05High
av.sh
2026-06-05High
bins.sh
2026-06-05High
i-5.8-6.sakura
2026-06-05High
w.sh
2026-06-05High
z.zip
2026-06-04High
rs.sh
2026-06-05High
invoice.zip
2026-06-05High
unicore.zip
2026-06-05High
fsfss264_down2.5.6.zip
2026-06-05High
sogoupinyin_x64_v1.1_win.zip
2026-06-05High
newinit.sh
2026-06-05High
g.sh
2026-06-05High
adb.sh
2026-06-05High
rodriakd-8413d.appspot.com
2026-06-05High
dk2.zip
2026-06-05High
dk.zip
2026-06-05High
tax_notice.zip
2026-06-05High
payment_due_notice.zip
2026-06-05High
giga.sh
2026-06-05High
telnet.sh
2026-06-05High
build_macosx.py
2026-06-05High
agent.sh
2026-06-05High
feishu_v2.1_x64_win.zip
2026-06-05High
phantom.cs2.zip
2026-06-05High
xone.cs2.zip
2026-06-05High
launcher_src.py
2026-06-05High
rusttweaker.zip
2026-06-05High
goahead.sh
2026-06-05High
ficeo.zip
2026-06-05High
cat.sh
2026-06-05High
m-i.p-s.sakura
2026-06-05High
macosx.zip
2026-06-05High
kla.sh
2026-06-05High
pwko.zip
2026-06-05High
Related Reports30 total
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4938 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4936 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4936 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4936 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4934 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4935 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4935 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4934 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4935 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4935 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4935 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4899 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4898 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4900 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4899 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4900 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4900 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4901 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4900 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4900 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4900 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4901 IOC
Abuse.ch URLhaus (5000 entries)
Abuse.ch URLhaus
4893 IOC
Maltrail IOC for 2026-05-22
CIRCL OSINT FeedMay 22, 2026
1086 IOC
Kazuar: Anatomy of a nation-state botnet
Microsoft Threat IntelligenceMay 14, 2026
5 IOC
[Amadey] Targeted Analysis of its Campaign’s Kill Chain, String and Traffic Encryption Algorithm, and Download of Additional Modules
0x0d4y Malware ResearchJun 16, 2025
12 IOC
CVE-2017-0199 – Old Flaws New Techniques
Security InvestigationAug 22, 2022
3 IOC
RedLine Stealer returns with New TTPS – Detection & Response
Security InvestigationFeb 17, 2023
5 IOC
Vidar Infostealer Malware Returns with new TTPS – Detection & Response
Security InvestigationFeb 24, 2023
4 IOC
Cyber Conflict Briefing Q3 2025
DCSO CyTec BlogNov 18, 2025
Threat Profile
Motivationespionage
OriginRURussia
Last seenJun 2026
IOCs tracked178