Indicators are what attackers leave behind. Stolen credentials are what they arrive with.
critical threatRansomwareMalware Family
Historical
Ryuk
Critical severity
107
IOCs Tracked
—
First Seen
—
Last Seen
0
YARA Rules
Associated IOCs107 total · showing 50
IP49
192.159.99.212026-07-04High
83.229.85.742026-07-17High
172.81.61.1082026-07-09High
103.241.64.922026-07-18High
64.176.189.402026-06-20High
138.124.61.652026-06-30High
91.92.243.632026-06-27High
198.23.185.1362026-07-25High
102.220.160.2172026-09-09High
94.154.35.732026-06-20High
34.106.231.1992026-07-11High
198.23.185.822026-07-27High
172.111.162.2522026-08-31High
95.216.5.322026-06-20High
161.97.118.2072026-06-20High
194.11.246.1912026-07-11High
124.198.132.982026-06-28High
89.42.134.2202026-09-24High
137.220.137.672026-06-20High
91.232.103.1632026-06-29High
MD51
0108656a3e1ade6ca4f21b084f5e12082026-09-24High
Related Reports6 shown
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
SecurelistSep 21, 2026
The Brothers Grim
Group-IB
US Threat Landscape Alert: 30 Active Malware Families Ranked by Real Sandbox Data
ANY.RUN Cybersecurity BlogJul 9, 2026
Maltrail IOC for 2026-06-19
CIRCL OSINT FeedJun 19, 2026
Maltrail IOC for 2026-06-19
CIRCL OSINT FeedJun 19, 2026
How to Recover from a Ransomware Attack Without Paying the Ransom
SeqriteMay 25, 2026
Threat Profile
TypeRansomware
StatusHistorical
IOCs tracked107