WARNING: All domains on this website should be considered dangerous. If you do
not know what you are doing here, it is recommended you leave right away. This
website is a resource for security professionals and enthusiasts.
Date (UTC) | Domain | IP | Reverse Lookup | Description | ASN | |
⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | |
2010/10/11_14:54 | kdddfe.com/cfg/stopav.plug | 91.216.215.75 | - | trojan Carberp module | 51274 |  |
2010/10/11_14:54 | kdddfe.com/cfg/miniav.plug | 91.216.215.75 | - | trojan Carberp module | 51274 |  |
2010/10/13_15:37 | seismiceffects.in/forum.exe | 91.216.215.76 | - | trojan | 51274 |  |
2010/10/14_09:17 | samsungstart.ru/cfg/23ddssamsungstart.jpg | 91.216.215.195 | - | zeus v2 config file | 51274 |  |
2010/10/14_09:17 | samsungstart.ru/upload/update.exe | 91.216.215.195 | - | zeus v2 trojan | 51274 |  |
2010/10/14_09:17 | samsungstart.ru/more/contact.php | 91.216.215.195 | - | zeus v2 drop zone | 51274 |  |
2010/10/15_11:18 | ireapers.com/123123123/news.php | 91.216.215.197 | - | Seo Sploit pack | 51274 |  |
2010/10/15_11:18 | ireapers.com/123123123/mdcload.php?ids=MDAC | 91.216.215.197 | - | zeus v2 trojan | 51274 |  |
2010/10/15_11:18 | freesmartrend.com/upload/windows.exe | 91.216.215.195 | - | zeus v2 trojan | 51274 |  |
2010/10/15_11:18 | freesmartrend.com/cfg/3ddggfreesmartrend.jpg | 91.216.215.195 | - | zeus v2 config file | 51274 |  |
2010/10/15_11:18 | freesmartrend.com/more/contacts.php | 91.216.215.195 | - | zeus v2 drop zone | 51274 |  |
2010/10/18_07:37 | oollma.com/set/task.html | 91.216.215.205 | - | trojan Carberp calls home | 51274 |  |
2010/10/18_07:47 | saltwatermodels.in/call.exe | 91.216.215.76 | - | trojan | 51274 |  |
2010/10/18_20:37 | alternativerefrigerants.in/call.exe | 91.216.215.76 | - | trojan | 51274 |  |
2010/10/19_18:18 | smartrendfree.net/cfg/9ladsmartrendfree.jpg | 91.216.215.195 | - | zeus v2 config file | 51274 |  |
2010/10/19_18:18 | smartrendfree.net/upload/windows.exe | 91.216.215.195 | - | zeus v2 trojan | 51274 |  |
2010/10/19_18:18 | smartrendfree.net/more/contacts.php | 91.216.215.195 | - | zeus v2 drop zone | 51274 |  |
2010/10/19_19:22 | screensaverscience.in/call.exe | 91.216.215.76 | - | trojan | 51274 |  |
2010/10/20_14:03 | airvolumeboxfault.in/x.exe | 91.216.215.76 | - | trojan | 51274 |  |
2010/10/25_10:05 | neusarqa.com/aqaras/index.php?89f02c035ab4ef7ec80de8c65f62a9bb | 91.216.215.84 | - | exploit kit | 51274 |  |
2010/10/25_10:05 | neusarqa.com/aqaras/server_privileges.php?35a1663b413c332570e0fcec7c77e85d=5 | 91.216.215.84 | - | trojan SpyEye | 51274 |  |
2010/10/29_20:26 | airucawa.net/netrino/index.php?d899958d20c9324981f77ce9954f66de | 91.216.215.84 | - | exploit kit | 51274 |  |
2010/10/29_20:26 | airucawa.net/netrino/server_privileges.php?abd76364726c6ab6cb54a55f2def7d44=5 | 91.216.215.84 | - | trojan SpyEye | 51274 |  |
2010/09/20_08:12 | gfhhkjk.co.cc/show.php | 193.169.13.9 | - | exploit kit | 51249 |  |
2010/09/20_08:12 | gfhhkjk.co.cc/admin.php | 193.169.13.9 | - | control panel of exploit kit | 51249 |  |
2010/09/20_08:12 | gfhhkjk.co.cc/load.php?e=1 | 193.169.13.9 | - | trojan | 51249 |  |
2010/09/23_07:32 | dzre710.co.cc/6a4KpLSR8HxoZ6pL9IX9X2AcLsc9mbXi?s=ROX | 193.169.13.205 | - | trojan Oficla/Sasfis | 51249 |  |
2010/09/23_16:54 | blackace.in/23.exe | 193.169.13.203 | - | trojan | 51249 |  |
2010/09/28_18:07 | drezlrz.co.cc/ryhT4yJoTnKRv2A2Si32olV1rBxaMDa6 | 193.169.13.205 | - | exploit kit | 51249 |  |
2010/09/29_18:35 | - | 193.169.13.206/us2/usdase.db | - | zeus v2 config file | 51249 |  |
2010/09/29_18:35 | - | 193.169.13.206/us2/us.exe | - | zeus v2 trojan | 51249 |  |
2010/09/29_21:48 | reting.in/true.php | 193.169.13.203 | - | exploit kit | 51249 |  |
2010/09/29_21:48 | reting.in/loading.php?spl=mdac | 193.169.13.203 | - | trojan | 51249 |  |
2015/02/04_13:35 | egwkoa.xyz:9290/engine/popular.php?shopping=26 | 91.209.77.124 | - | exploit kit | 51248 |  |
2015/02/04_13:35 | qwmlad.xyz:9290/openvpnadmin/popular.php?shopping=26 | 91.209.77.124 | - | exploit kit | 51248 |  |
2016/04/04_10:20 | - | 91.209.77.86/submit.php | - | Locky ransomware c&c | 51248 |  |
2011/02/04_07:20 | - | 91.213.29.27/~maurt/sristoea/anus.so | - | zeus v2 config file | 51247 |  |
2011/02/04_07:20 | - | 91.213.29.27/~maurt/sristoea/panos.php | - | zeus v2 drop zone | 51247 |  |
2011/02/06_15:13 | up529105.org/yc1992/ed4de49c48e1dc6864454574d989c9b3/ab4aa427.exe | 91.213.29.38 | - | zeus v2 trojan | 51247 |  |
2011/02/06_15:13 | up529105.org/yc1992/38366ef1c0043f52df907b2fac74c64f.php | 91.213.29.38 | - | zeus v2 drop zone | 51247 |  |
2011/02/06_15:13 | up529105.org/yc1992/6b580c59464a041dc090dbf8136866e4/a041dc.bin | 91.213.29.38 | - | zeus v2 config file | 51247 |  |
2013/03/01_12:41 | 888casino-luckystar.net/discussing/sizes_agreed.php | 130.185.105.74 | - | Blackhole exploit kit 2.0 | 51191 |  |
2010/08/29_11:04 | www.fastfiledownload.info/install.exe | 79.143.184.8 | 08.184.143.79.static.openvservers.net. | trojan | 51167 |  |
2011/04/28_00:44 | - | 91.216.122.159/index.php?ta=UGBi8GCEx6RA&4muK=0E77UR07Q&85=UVL32&o5YeU=ZYXVZLKXxLaQ&j2=jBDQFgvLCgnHjhXRVQ0B1FURE&x8X=NECkl4OmRiAgIJcQ4AZ2dEUiIn&Y9o=FNLJjN&OQ=821037UM7X477S08&a5n=vXjUvQgwzM&d73fN=CRIXG88M&5v=S2SZTX830&C0f52=7KYKSAQ&L2Lks=395SX80&Oq7kv=0K828QGolIikwVFdvL&2jqfb=B25LFUQ21 | - | Redirects to fake AV | 51167 |  |
2011/05/01_04:15 | - | 91.205.174.172/index.php?9U7=SW3T4WB98AF9M1PEU6JGYlUk5AWh&u01=AKyMKD3QkW3pSYwN1bAoqUwIGBi0x&NMW=c8NExWVW0nUEpYUEglRy8lJkRPfW&i39b=gaawFpBAIGeXpnPmIrAig&9Q6X=46351Y3FHC83EZ4X8G505WOQB&w16=MwEAVwV9VQZSU1M9T3d7cwwBd2kGbwozUENB&0K=9U5FT9L6205HUP0722N | 172.174.205.91.static.giga-dns.com. | fake AV | 51167 |  |
2011/10/19_17:48 | thubn.com/mod32.txt | 79.143.188.72 | hserv22.homehost.com.br. | trojan Banker | 51167 |  |
2011/10/19_17:48 | thubn.com/Authot.txt | 79.143.188.72 | hserv22.homehost.com.br. | trojan Banker | 51167 |  |
2012/08/17_13:24 | deltaimports.com.br/cfsFYGCC/index.htm | 177.85.96.86 | hserv26.homehost.com.br. | Compromised site leads to Blackhole exploit | 51167 |  |
2013/04/07_09:31 | www.dannomedico.org/components/.junaqz.php?action=ss00_323 | 80.241.210.239 | vps.mediamobilespa.com. | Trojan.Krypt | 51167 |  |
2013/08/07_18:57 | www.hassuurunleri.net/wp-enter.php | 178.238.225.45 | ip-45-225-238-178.static.contabo.net. | Leads to exploit | 51167 |  |