WARNING: All domains on this website should be considered dangerous. If you do
not know what you are doing here, it is recommended you leave right away. This
website is a resource for security professionals and enthusiasts.
Date (UTC) | Domain | IP | Reverse Lookup | Description | ASN | |
⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | |
2013/09/06_04:59 | - | 207.188.69.171/colosseum/robed.js | 207.188.69.171.tor.pathcom.com. | Leads to exploit | 11342 |  |
2013/09/06_04:59 | - | 174.140.171.207/topic/able_disturb_planning.php | - | Exploit | 46816 |  |
2013/09/12_05:48 | - | 103.31.186.29/2013/girl-fucked-by-dog.avi.exe | lh22450.voxility.net. | Trojan.Ransom | 39743 |  |
2013/10/27_02:56 | - | 178.150.192.50/traff01.exe | - | Trojan | 13188 |  |
2013/10/27_02:56 | - | 178.150.192.50/upeksvr.exe | - | Trojan | 13188 |  |
2013/10/27_02:56 | - | 178.150.202.131/same7b1.exe | - | Trojan | 13188 |  |
2013/10/27_02:59 | - | 94.228.222.47/index.html?p=6175 | - | Trojan | 47869 |  |
2014/03/31_11:44 | - | 185.12.14.208/adm/documentos.zip | - | Trojan.Banker | 50673 |  |
2014/04/27_12:36 | - | 94.242.225.240/download/34/VUBSXlcUUk9ITQQQbyctMScgNWkuKDk/YSAnPX4jJ3wzMCIIMio1NWMuKj1dUEQHDQFbUF9bXVxZXVlXVhcbHxEqHxNFDR21Og/anzhelika_varum_-_lyalyafa_zaycev_net.exe?pack | ip-static-94-242-225-240.as5577.net. | Win32/Kryptik.BZSH.Gen | 5577 |  |
2014/04/27_12:36 | - | 94.242.225.240/download/05/ZHNjYWYnY3h5fjU/PnR8ZnZzZDZ/e2hoMHN2Ug9QVgtCQ1N3Q1lEQhJdW1IMAxVQXFIKDw4IDAUNCgl2ZyQqKCAZLix0DR3GIA/voskresenie_-_muzykant_zaycev_net.exe?pack | ip-static-94-242-225-240.as5577.net. | Win32/Kryptik.BZSH.Gen | 5577 |  |
2014/03/13_14:40 | - | 62.76.190.140/p2p/11.exe | 62-76-190-140.clodo.ru. | Trojan.ZeusP2P | 57010 |  |
2014/03/23_10:15 | - | 203.172.131.99/personal/?name=download&file=readdownload&id=10 | - | VBScript.Drive-by, Backdoor.IRCBot | 23974 |  |
2014/04/27_12:36 | - | 94.242.225.240/download/ab/ytnJx8Cd2cbHxIZmN7WyNjZzpDZobK27qmstOm6vOWsqbmRpaOvOynobTq6fsrjg6ejS1tPa0NLUwY6Aho6zhIrSDR12BA/serebro_-_skazhi_ne_molchi_zaycev_net.exe?pack | ip-static-94-242-225-240.as5577.net. | Win32/Kryptik.BZSH.Gen | 5577 |  |
2013/12/12_10:10 | - | 31.220.3.68/www/ | dedicated.koddos.com. | Java drive-by | 199636 |  |
2013/12/12_10:10 | - | 31.220.3.68/www/BotLoader.exe | dedicated.koddos.com. | Trojan.Atrax | 199636 |  |
2013/12/12_10:24 | - | 31.220.3.68/www/BotLoader.exe | dedicated.koddos.com. | Trojan.Atrax | 199636 |  |
2013/12/12_10:24 | - | 31.220.3.68/www/402022Rechnung.PDF.exe | dedicated.koddos.com. | Trojan | 199636 |  |
2013/12/12_10:24 | - | 31.220.3.68/www/StealerDllx86.dll_raw | dedicated.koddos.com. | Trojan.PWS | 199636 |  |
2013/12/20_15:23 | - | 211.101.12.49/dls/axuip.exe | - | Trojan.Downloader | 4808 |  |
2013/12/20_15:23 | - | 211.101.12.49/dls/axujp.exe | - | Trojan.Downloader | 4808 |  |
2013/12/20_15:23 | - | 211.101.12.49/dls/axujo.exe | - | Trojan.SelfDel | 4808 |  |
2014/01/09_23:39 | - | 119.245.150.94/fF3krry.exe Trojan.Backdoor.RV | suntoy.jp. | - | 2514 |  |
2014/01/22_14:39 | - | 221.132.37.26/sh | - | Linux malware | 7643 |  |
2014/02/07_11:30 | - | 91.99.102.154/1.html | 91.99.102.154.parsonline.net. | Leads to exploit at jolygoestobeinvester.ru | 16322 |  |
2014/02/07_13:47 | - | 42.96.151.54/1.html | - | Leads to exploit at jolygoestobeinvester.ru | 37963 |  |
2014/02/07_13:47 | - | 91.99.102.154/1.html | 91.99.102.154.parsonline.net. | Leads to exploit at jolygoestobeinvester.ru | 16322 |  |
2014/02/10_13:56 | - | 182.18.149.225/twaddling/cylinders.js | static-182-18-149-225.ctrls.in. | Leads to Angler EK | 18229 |  |
2014/02/10_13:56 | - | 184.107.89.70/clamp/index.html | - | Leads to Angler EK | 32613 |  |
2014/02/14_15:57 | - | 91.99.102.154/1.html | 91.99.102.154.parsonline.net. | Leads to Angler EK | 16322 |  |
2014/02/14_23:35 | - | 94.23.62.190/calc.exe | ns206681.ovh.net. | Trojan.Agent.FSA74 | 16276 |  |
2014/02/14_23:35 | - | 94.23.62.190/upeksvr.exe | ns206681.ovh.net. | Trojan.Kelihos | 16276 |  |
2014/02/19_13:15 | - | 50.57.149.196/pinch/index.html | 50-57-149-196.static.cloud-ips.com. | Leads to Angler EK | 19994 |  |
2014/02/19_14:01 | - | 50.57.149.196/pinch/index.html | 50-57-149-196.static.cloud-ips.com. | Leads to Angler EK | 19994 |  |
2014/02/19_14:01 | - | 80.109.240.73/~0398363201/spiting.php | members.chello.cz. | Leads to Angler EK | 6830 |  |
2014/02/21_08:54 | - | 74.115.50.110/uploads/2/1/8/2/21824940/ff.exe | www.weebly.com. | Trojan.Dropper | 27647 |  |
2014/02/25_12:51 | - | 142.0.79.184/agent/agent.php?cr=ila | - | leads to fake flashplayer | 54444 |  |
2014/02/27_14:43 | - | 97.74.66.163/holier/unsuccessful.js | ip-97-74-66-163.ip.secureserver.net. | Leads to Angler EK | 26496 |  |
2014/04/27_12:36 | - | 94.242.225.240/download/3a/W05YVFESKDU2M35qaSEnOykuP2MoLiMlfz49J3glLXY9PigCNCwPD10QEAdbVk4NAw9RWlldR0lCRUFHUBERFR8kFRlDDR27YA/voskresenie_-_kto_vinovat_zaycev_net.exe?pack | ip-static-94-242-225-240.as5577.net. | Win32/Kryptik.BZSH.Gen | 5577 |  |
2014/04/27_12:36 | - | 94.242.225.240/download/3a/W05YVFESKDU2M35qaSEnOykuP2MoLiMlfz49J3glLXY9PigCNCwPD10QEAdbVk4NAw9RWlldR0lCS0dFUBERFR8kFRlDDR27YA/voskresenie_-_kto_vinovat_zaycev_net.exe?pack | ip-static-94-242-225-240.as5577.net. | Win32/Kryptik.BZSH.Gen | 5577 |  |
2014/04/27_12:36 | - | 94.242.225.240/download/e5/hJODgYbHg5iZntXf3pSchpaThNafm4iI0JOWci9wditiY3NXY3lkYjJ9e3IsIzVwfHIqLy4oLCQpLCsUB0RKSEB5TkwUDR2/YA/voskresenie_-_po_doroge_razocharovaniy_zaycev_net.exe?pack | ip-static-94-242-225-240.as5577.net. | Win32/Kryptik.BZSH.Gen | 5577 |  |
2014/09/16_09:59 | - | 162.210.70.17/uemfjtpigt/dgnkhubxnc.html | 162.210.70-17.confluence-networks.com. | Compromised site (Natwest malspam campaign), leads to Upatre | 40034 |  |
2014/08/03_18:10 | - | 46.183.221.58/we/bot.exe | ip-221-58.dataclub.biz. | Trojan.Zbot | 52048 |  |
2014/08/03_18:10 | - | 46.183.221.58/snow/bot.exe | ip-221-58.dataclub.biz. | Trojan.Zbot | 52048 |  |
2014/07/28_09:24 | - | 94.249.192.105/index.html | - | leads to ransom trojan message page | 12586 |  |
2014/07/24_09:31 | - | 117.21.191.47/ng15.exe | - | Win32/Cryptor | 4134 |  |
2014/07/24_09:31 | - | 117.21.191.47/bet15.exe | - | Win32/Cryptor | 4134 |  |
2014/07/24_09:31 | - | 117.21.191.47/ng.exe | - | W32/Slenfbot.B.gen!Eldorado | 4134 |  |
2014/07/24_09:31 | - | 117.21.191.47/beta.exe | - | Trojan.Ageny.ED | 4134 |  |
2014/07/24_09:31 | - | 117.21.191.47/betr7.exe | - | Win32/Cryptor | 4134 |  |
2014/07/24_09:31 | - | 117.21.191.47/ng2.exe | - | Win32/Injector.BHYG trojan | 4134 |  |