Indicator
Type url · source intel_report_ingest
Verdict
KNOWN MALWARE — Adaptixc2
What this is
URL indicator: https://1a820b09-95ba-44eb-b350-417e8241b725-00-1lgwuuen9b77p.worf.replit.dev/download
Ongoing exploitation of Cisco Catalyst SD-WAN vulnerabilities
Live page
Screenshot of the actual page, via urlscan.io — hover to view full.

via urlscan.io· scanned 2026-07-17
Threat detail
Exploitation status and malware-family attribution from stored fields.
Graph preview
Neighborhood topology — open the graph for interactive pivots.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
See edges, pivots, and corroboration at a glance.
Full inspector with neighbor expansion.