WARNING: All domains on this website should be considered dangerous. If you do
not know what you are doing here, it is recommended you leave right away. This
website is a resource for security professionals and enthusiasts.
Date (UTC) | Domain | IP | Reverse Lookup | Description | ASN | |
⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | ⇑ ⇓ | |
2009/10/14_20:20 | homut1.cn/1/thereHas.pdf | 91.212.198.152 | - | pdf exploit | 49314 |  |
2009/10/14_20:20 | homut1.cn/1/haveHas.swf | 91.212.198.152 | - | flash exploit | 49314 |  |
2009/10/14_20:20 | homut1.cn/1/update.exe | 91.212.198.152 | - | trojan TDSS | 49314 |  |
2009/10/14_20:20 | homut1.cn/1/admin.php | 91.212.198.152 | - | control panel of Liberty Exploit System kit | 49314 |  |
2010/12/29_15:54 | splitserver.info/ohio/pornozzz/bin/capoe.exe | 91.212.198.15 | - | trojan SpyEye | 49314 |  |
2010/12/29_15:54 | splitserver.info/ohio/pornozzz/bin/config.bin | 91.212.198.15 | - | SpyEye config file | 49314 |  |
2010/12/29_15:54 | splitserver.info/ohio/gate.php | 91.212.198.15 | - | SpyEye C&C | 49314 |  |
2009/11/22_09:55 | scan-and-clear.com/s/w142949df89j75j7ay/setup.exe | 91.212.198.140 | - | fake av | 49314 |  |
2009/06/27_00:00 | woons.cn/pinch_no_cript.exe | 91.212.198.139 | - | trojan Pinch | 49314 |  |
2009/08/31_00:00 | groiut.cn/pinch.exe | 91.212.198.139 | - | trojan | 49314 |  |
2009/06/24_00:00 | clicks100.ru/top100/iframe.php | 91.212.198.137 | - | directs to exploits | 49314 |  |
2009/09/25_00:00 | bot77.biz/file/123.exe | 91.212.198.137 | - | trojan Emold | 49314 |  |
2009/10/25_19:21 | marshalteam.com/young_girl_getting_fucked_by_big_cock_wmv.exe | 91.212.198.137 | - | fake av | 49314 |  |
2009/12/13_01:27 | www.ytrewq.ru/stat/load.php | 91.212.198.137 | - | trojan | 49314 |  |
2009/12/13_01:27 | ytrewq.ru/cms/load.php?id=6 | 91.212.198.137 | - | trojan | 49314 |  |
2009/12/13_01:27 | ytrewq.ru/123/gate.php | 91.212.198.137 | - | malware calls home | 49314 |  |
2009/12/13_01:34 | google-analytics-top.ru/tmp/index.php | 91.212.198.137 | - | ftp sniffer | 49314 |  |
2009/12/13_16:03 | www.global-tickets.net/myldr/bb.php?id=528593412&v=200&tm=223&b=0688077080 | 91.212.198.137 | - | Oficla C&C | 49314 |  |
2009/12/13_16:03 | www.ytrewq.ru/stat/cache/readme.pdf | 91.212.198.137 | - | pdf exploit | 49314 |  |
2009/12/13_16:03 | www.ytrewq.ru/stat/admin.php | 91.212.198.137 | - | control panel of exploit kit | 49314 |  |
2009/12/14_09:16 | www.clicks100.ru/top100/iframe.php | 91.212.198.137 | - | iframe directs to exploits at ytrewq[dot]ru | 49314 |  |
2009/12/14_15:53 | www.autohomo.biz/fol/ | 91.212.198.137 | - | Nuclear exploit pack | 49314 |  |
2009/12/14_15:53 | www.autohomo.biz/fol/stat.php | 91.212.198.137 | - | control panel of Nuclear exploit pack | 49314 |  |
2009/12/14_15:53 | www.autohomo.biz/fol/spl/pdf.pdf | 91.212.198.137 | - | pdf exploit | 49314 |  |
2009/12/14_15:53 | autohomo.biz/fol/exe.php | 91.212.198.137 | - | trojan | 49314 |  |
2009/12/15_15:54 | www.topmusicstore.cn/tube/ | 91.212.198.137 | - | redirects to fake codec / trojan TDSS | 49314 |  |
2009/12/16_11:03 | www.ffret.ru/stat/cache/readme.pdf | 91.212.198.137 | - | pdf exploit | 49314 |  |
2009/12/16_11:03 | www.ffret.ru/stat/load.php | 91.212.198.137 | - | trojan | 49314 |  |
2009/12/16_11:03 | www.ffret.ru/stat/admin.php | 91.212.198.137 | - | control panel of exploit kit | 49314 |  |
2009/12/17_18:31 | www.pornvideotake.com/download/flash_player/flash_player_v11.exe | 91.212.198.137 | - | fake av | 49314 |  |
2009/12/25_04:11 | www.dexlife.com/free-porn/young_girl_getting_fucked_by_big_cock_wmv.exe | 91.212.198.137 | - | fake av | 49314 |  |
2009/12/30_16:23 | www.dexlife.com/install_flash_player.exe | 91.212.198.137 | - | trojan | 49314 |  |
2010/01/10_18:52 | www.braztest.com/ven/i.php?user=brazer | 91.212.198.137 | - | Siberia exploit kit | 49314 |  |
2010/01/10_18:52 | www.braztest.com/ven/stat.php | 91.212.198.137 | - | control panel of Siberia exploit kit | 49314 |  |
2010/01/10_18:52 | www.braztest.com/ven/exp/pdf.php?user=brazer | 91.212.198.137 | - | pdf exploit | 49314 |  |
2010/01/10_18:52 | www.braztest.com/ven/exe.php?spl=PDF%20(Media%20Player%20Plugin)&user=brazer | 91.212.198.137 | - | trojan | 49314 |  |
2010/01/16_07:02 | www.zevakaru1.com/dropper.exe | 91.212.198.137 | - | trojan dropper | 49314 |  |
2010/01/18_08:28 | braz-test2.com/h2/i.php?user=admin | 91.212.198.137 | - | Siberia exploit pack | 49314 |  |
2010/01/18_08:28 | braz-test2.com/h2/stat.php | 91.212.198.137 | - | control panel of Siberia exploit pack | 49314 |  |
2010/01/18_08:28 | braz-test2.com/h2/exp/pdf.php?user=admin | 91.212.198.137 | - | pdf exploit | 49314 |  |
2010/01/18_08:28 | braz-test2.com/h2/exe.php?spl=PDF%20(Media%20Player%20Plugin)&user=admin | 91.212.198.137 | - | trojan dropper | 49314 |  |
2010/01/18_08:28 | braz-test.com/ | 91.212.198.137 | - | obfuscated iframe directs to Siberia exploit pack | 49314 |  |
2010/01/18_22:22 | testbrazer.com/h2/i.php?user=admin | 91.212.198.137 | - | Siberia exploit pack | 49314 |  |
2010/01/18_22:22 | testbrazer.com/h2/stat.php | 91.212.198.137 | - | control panel of Siberia exploit pack | 49314 |  |
2010/01/18_22:22 | testbrazer.com/h2/exp/pdf.php?user=admin | 91.212.198.137 | - | pdf exploit | 49314 |  |
2010/01/18_22:22 | testbrazer.com/h2/exe.php?spl=PDF%20(Media%20Player%20Plugin)&user=admin | 91.212.198.137 | - | trojan | 49314 |  |
2010/01/23_09:12 | supersmsshpion.com/forum/i.php?user=braz | 91.212.198.137 | - | Siberia exploit pack | 49314 |  |
2010/01/23_09:12 | supersmsshpion.com/forum/exp/pdf.php?user=braz | 91.212.198.137 | - | pdf exploit | 49314 |  |
2010/01/23_09:12 | supersmsshpion.com/forum/stat.php | 91.212.198.137 | - | control panel of Siberia exploit pack | 49314 |  |
2010/01/23_09:12 | supersmsshpion.com:80/forum/exe.php?spl=PDF | 91.212.198.137 | - | (Media Player Plugin)&user=braz trojan | 49314 |  |