WARNING: All domains on this website should be considered dangerous. If you do
not know what you are doing here, it is recommended you leave right away. This
website is a resource for security professionals and enthusiasts.
Search: Results to return: Include inactive sites

Page 0 ... 21 22 ... 22

Date (UTC)DomainIPReverse LookupDescriptionASN
2014/09/16_09:59www.advancesrl.eu/ryubfrytqb/dkdorvskxe.html62.149.142.94webx328.aruba.it.Compromised site (DHL malspam campaign), leads to Upatre31034IT
2014/09/16_09:59www.advancesrl.eu/tjjyeqyfjz/gmiuxfhgsb.html62.149.142.94webx328.aruba.it.Compromised site (DHL malspam campaign), leads to Upatre31034IT
2014/09/16_09:59www.advancesrl.eu/ukhclcatkr/brcybmsute.html62.149.142.94webx328.aruba.it.Compromised site (DHL malspam campaign), leads to Upatre31034IT
2017/01/19_13:05www.studiolegaleabbruzzese.com/wp-content/plugins/urxwhbnw3ez/flight_4832.pdf62.149.142.206webx440.aruba.it.ransomware31034IT
2015/07/20_18:46www.mondoperaio.net/wp-content/plugins/cached_data/k1.exe62.149.144.66webx544.aruba.it.Trojan.P0ny31034IT
2010/04/16_20:16www.sonnoli.com/?page_id=562.149.140.107webx97.aruba.it.compromised site directs to exploits31034IT
2011/01/25_18:09www.downloaddirect.com/software/vlc-player/256767.55.67.250welcome23.webcamclub.com.trojan27257US
2010/02/02_08:40www.rempko.sk/kontakt.htm213.81.152.60wep.t-com.sk.compromised site directs to exploits6855SK
2010/12/16_17:28-98.158.178.231/pics.scrwhm.profissionalizando.org.backdoor32780US
2014/05/27_04:02centralwestwater.com.au/Estratto/Dati.zip103.4.16.91whs.clientdns.com.Trojan.Extension.Exploit58940AU
2014/05/27_04:02centralwestwater.com.au/Dettagli_Fatture.zip103.4.16.91whs.clientdns.com.Trojan.Extension.Exploit58940AU
2014/05/27_04:02centralwestwater.com.au/Conto.zip103.4.16.91whs.clientdns.com.Trojan.Extension.Exploit58940AU
2014/05/27_04:02centralwestwater.com.au/Estratto/Dati.zip103.4.16.91whs.clientdns.com.Trojan.Zbot58940AU
2014/05/27_04:02centralwestwater.com.au/Dettagli_Fatture.zip?aladinodepaulis@uniadriatica.it103.4.16.91whs.clientdns.com.Trojan.Zbot58940AU
2014/05/27_04:02centralwestwater.com.au/Conto.zip?gZ5lXOdeRY7y103.4.16.91whs.clientdns.com.Trojan.Zbot58940AU
2014/02/07_15:13tamilcm.com/1.html67.227.152.196windows2.india-to.net.Leads to exploit at jolygoestobeinvester.ru32244US
2014/02/07_14:31finnhair.co.uk/1.html208.123.212.48wp03.yeg.alentus.net.Leads to exploit at jolygoestobeinvester.ru25745US
2010/04/16_20:16www.sanseracingteam.com/wordpress/85.10.140.251wpc4811.host7x24.com.compromised site directs to exploits48185FR
2010/04/16_20:16www.sanseracingteam.com/wordpress/?p=12885.10.140.251wpc4811.host7x24.com.compromised site directs to exploits48185FR
2011/11/16_18:14nobodyspeakstruth.narod.ru/upload/main.exe87.250.250.83wrz.yandex.ru.trojan13238RU
2011/01/12_19:15-209.216.193.107/registrydoktor-newde.phpwww.antivirus-reports.org.fake av21607US
2016/06/23_15:01www.enchantier.com/176.31.73.196www.enchantier.com.iframe on compromised site leads to EK16276FR
2009/07/21_00:00www.freewebtown.com/atakus/Nokia/BotNetNew.txt208.75.230.43www.freewebtown.com.RFI36820US
2009/06/30_00:00womenslabour.org83.142.47.61www.linux.webserwer.pl.directs to exploits39168PL
2009/06/30_00:00wroclawski.com.pl83.142.47.61www.linux.webserwer.pl.directs to exploits39168PL
2013/09/06_04:59-202.212.131.8/ruses/nonsmokers.jswww.melodian.co.jp.Leads to exploit2514JP
2013/04/16_00:32freefblikes.phpnet.us209.190.85.252www.quark.byethost4.com.VBScript.Trojan.IRC10297US
2014/05/27_04:02www.sankyo.gr.jp/Pagamento.zip?mscfopoysckwdh202.224.60.77www.sankyo.gr.jp.Trojan.Zbot4685JP
2014/05/27_04:02www.sankyo.gr.jp/Pagamento.zip202.224.60.77www.sankyo.gr.jp.Trojan.Extension.Exploit4685JP
2014/05/27_04:02www.sankyo.gr.jp/Pagamento.zip?IIFEhTaalZlzYipWok202.224.60.77www.sankyo.gr.jp.Trojan.Zbot4685JP
2009/05/28_00:00zkic.com174.37.172.162www.se.parahost.com.directs to exploits36351US
2009/09/13_00:00-84.242.167.49:8080www.sopharma.bgcompromised server with nginx at port 80808672BG
2009/09/13_00:00tabex.sopharma.bg:808084.242.167.49www.sopharma.bg.compromised server with nginx at port 80808672BG
2009/05/26_00:00orbowlada.strefa.pl/text396.htm217.74.66.183www.strefa.pl.Directs to rogue16138PL
2012/05/02_13:48-194.183.224.73/out/out.htmwww.van-helden.net.Java exploits serves Poison Ivy5463BE
2014/05/27_04:02villalecchi.com/images/min/b41.exe209.51.141.123www.villalecchi.com.Trojan.Inject3595US
2009/07/21_00:00plengeh.wen.ru/id.txt91.189.80.71www.wen.ru.RFI8342RU
2009/06/07_00:00ceskarepublika.net93.185.104.27www17.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00nordiccountry.cz93.185.104.28www18.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00nerez-schodiste-zabradli.com93.185.104.29www19.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00pb-webdesign.net93.185.104.29www19.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00podzemi.myotis.info93.185.104.29www19.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00smrcek.com93.185.104.29www19.pipni.cz.directs to exploits43541CZ
2014/02/18_15:40www.notaverde.com/Invoice.zip205.236.147.30www2.securenet.net.Trojan.Zbot14112CA
2009/06/28_00:00sbnc.hak.su/spread.txt91.189.81.71www2.wen.ru.RFI8342RU
2009/06/07_00:00bezproudoff.cz93.185.104.30www20.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00hotspot.cz93.185.104.30www20.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00nowina.info93.185.104.30www20.pipni.cz.directs to exploits43541CZ
2009/06/07_00:00spekband.com93.185.104.30www20.pipni.cz.directs to exploits43541CZ
2014/05/12_00:24allforlove.de/11217.13.199.48www28.prosite.de.Spyware.Zbot.ED15657DE
2009/06/29_00:00romsigmed.ro86.35.15.214www4.linux.romtelecom.net.directs to exploits9050RO
2016/04/28_07:49www.dezuiderwaard.nl/195.238.74.87www53.totaalholding.nl.iframe on compromised site leads to EK50673NL
2016/02/01_13:14www.pieiron.co.uk/146.185.29.100www6.grakka.net.iframe on compromised site leads to EK29302GB
2014/09/16_09:59isonomia.com.ar/mkyejphtxc/nsjkdqsmto.html200.58.123.153x094vm14.isonomia.com.ar.Compromised site (DHL malspam campaign), leads to Upatre27823AR
2014/09/16_09:59isonomia.com.ar/vwyryztlkn/nsxiquronl.html200.58.123.153x094vm14.isonomia.com.ar.Compromised site (DHL malspam campaign), leads to Upatre27823AR
2013/07/25_06:31server1.extra-web.cz/dbm.exe212.80.69.55xhosting.cz.trojan29208CZ
2016/10/13_14:03www.family-partners.fr/data.dpg95.142.169.132xvm-169-132.ghst.net.ransomware29169FR
2009/05/08_00:00slightlyoffcenter.net208.76.80.19yavin.tchmachines.com.directs to exploits25767US
2016/08/12_07:01euro-vertrieb.com/hosteurope/KIS-Login.htm217.31.81.101zaphod3-1.hostweb.de.Hosteurope phishing29140DE
2014/05/12_00:24akirkpatrick.com/1181.27.85.16zeus7.easy-internet.co.uk.Spyware.Zbot.ED25577GB

Page 0 ... 21 22 ... 22


You can find an overview of downloadable lists here