IOC Radar

Indicators are what attackers leave behind. Stolen credentials are what they arrive with.

Check Your Exposure
TLP:WHITE13 IOCs

The Odyssey and trojans again: MovieReaper attacks users in multiple countries via compromised torrents

SE
Securelist
Published September 17, 2026Original Report

Malware Families

Diamond Model

SOCIAL AXISTECHNOLOGY AXISADVERSARYunknownINFRASTRUCTUREhttp://193.23.118.155itorrents.org208.64.33.90CAPABILITYCobalt StrikeVICTIMunknown
Adversary
Infrastructure(5)
Capability(1)
Victim

Indicators of Compromise

Indicators of Compromise13

TypeIndicatorConfidenceScoreFirst Seen
MD54843f9fafcae492f11e2d4d33dbb4cdd
exploitfile-hashintel-blog
Medium
53
Sep 17, 26
URLhttp://193.23.118.155
intel-blogloadermalware
High
58
Sep 17, 26
MD54334bbaea8de33bf9d845e9b4e4e3bc2
exploitfile-hashintel-blog
Medium
53
Sep 17, 26
Domainitorrents.org
intel-blogmalwarenetwork
High
58
Sep 17, 26
MD5a0b13781edd7cfdab13d79afff3c83c1
exploitfile-hashintel-blog
Medium
53
Sep 17, 26
MD5d0b967571ac8a3863c7f324bf5bde99c
exploitfile-hashintel-blog
Medium
53
Sep 17, 26
IP208.64.33.90
exploitintel-blogmalware
High
58
Sep 17, 26
URLhttps://deadhub.org
intel-blogloadermalware
High
58
Sep 17, 26
MD5d88d550d0fb8e60cffff3ea61ff7a067
exploitfile-hashintel-blog
Medium
53
Sep 17, 26
IP208.94.246.53
exploitintel-blogmalware
High
58
Sep 17, 26
MD55310cabae3fbe6db8742849b588093f9
exploitfile-hashintel-blog
Medium
53
Sep 17, 26
MD570060341caf3338697a7ddfe0fb62875
exploitfile-hashintel-blog
Medium
53
Sep 17, 26
MD5ad4643eea15ac286fa47d1131f9ef756
exploitfile-hashintel-blog
Medium
53
Sep 17, 26

IOC Relationship Graph

IOC Relationship Graph13 total IOCs
MD5URLDomainIP
MD58URL2IP2Domain1Malware1REPORTThe Odyssey and trojans agCobalt Strike
scroll to zoom · drag to pan · click IOC to open