SYNOTI / Threat Hunt
Threat Hunt
Proactive IOC scanning with AI correlation.
IOC Scan
Wildcard
Relationships
Time Range
Hunts / 24h
64
12 vs yesterday
IOC Matches
86
confirmed
MITRE Hits
38
techniques
Exports
24
CSV / JSON
Hunt Findings
IOC Scan
Results
| IOC | Type | Matches | First Seen | Notes |
|---|---|---|---|---|
| 203.0.113.45 | ip | 42 | 2026-08-20 | C2 — LockBit cluster |
| payroll-okta[.]com | domain | 17 | 2026-08-21 | Credential phishing |
| e3b0c442…a429 | hash | 9 | 2026-08-18 | Conti ransomware sample |
| update-svc[.]net | domain | 5 | 2026-08-22 | Malware distribution |
Recent Activity
View allRansomware behavior blocked on mail-01 CRITICAL
Playbook PB-041 auto-contained host · Ryuk TTPs matched
SSH brute force from 203.0.113.42 HIGH
42 failed logins in 60s · source IP blocked
Threat hunt matched T1059.001 on www-02
PowerShell obfuscation · confidence 0.91
SCA scan completed on 128 hosts
98.2% compliance · 11 benchmarks passed
Firewall rule 'BLK-3321' propagated to 14 nodes
0.4s propagation · geo-blocked 12 CIDRs
Sandbox verdict — 'invoice_9921.exe' malicious
Heuristic score 96 · family 'Emotet'
