Top 10 Malware of Q2 2025: A Deep Dive into the IoCs

The Center for Internet Security (CIS) Cyber Threat Intelligence (CTI) Team recently published “Top 10 Malware Q2 2025”1 that not only listed the malware families that took centerstage during the quarter but also their corresponding indicators of compromise (IoCs).

The report identified 62 IoCs for nine of the malware comprising 53 domains and nine IP addresses.

Our in-depth analysis of the current IoCs led to these discoveries:

  • 72,921 unique client IPs that communicated with some domain IoCs
  • Seven domain IoCs deemed likely to turn malicious upon registration
  • 34 alleged victim IP records that communicated with some IP IoCs
  • 23,996 email-connected domains, 43 were malicious
  • 53 additional IP addresses, 33 were malicious
  • 431 IP-connected domains, one was malicious
  • 1,153 string-connected domains, three were malicious

Download a sample of the threat research materials now or contact sales to discuss your intelligence needs for threat detection and response or other cybersecurity use cases.

  • [1] https://www.cisecurity.org/insights/blog/top-10-malware-q2-2025
Try our WhoisXML API for free
Get started