omcalumni.org
|
d3.hamarashehar.com => 67.15.253.220 d4.hamarashehar.com => 74.54.56.236 d5.hamarashehar.com => 67.15.253.219 d6.hamarashehar.com => 74.52.140.84 |
(AS394695) PUBLIC-DOMAIN-REGISTRY |
Trojan |
2016-11-17
|
www.oakleysunglassesonlineus.com
|
ns1.yydns.net => 67.15.253.251 ns2.yydns.net => 74.54.56.231 ns3.yydns.net => 67.15.253.252 ns4.yydns.net => 74.52.140.84 |
(AS16125) CHERRYSERVERS1 |
Fraud / Scam |
2013-02-11
|
gamedl.2it.in
|
mercury.ht-dns.com => 67.15.47.189 venus.ht-dns.com => 50.23.75.97 earth.ht-dns.com => 67.15.47.188 mars.ht-dns.com => 74.52.140.84 |
(AS45538) MATBAO-AS-VN |
Backdoor Trenk!rts |
2012-01-04
|
australia-verse.com
|
dns1.spiritdomains.com => 50.23.136.174 dns2.spiritdomains.com => 50.23.75.97 dns3.spiritdomains.com => 67.15.47.188 dns4.spiritdomains.com => 74.52.140.84 |
(AS8001) NET |
Trojan Zbot drop zone |
2011-10-24
|
www3.strongdefenseiz.in
|
rdns.mercury.orderbox-dns.com => 50.23.136.229 rdns.venus.orderbox-dns.com => 50.23.75.97 rdns.earth.orderbox-dns.com => 67.15.47.188 rdns.mars.orderbox-dns.com => 74.52.140.84 |
(AS23352) SERVERCENTRAL |
Malicious site |
2011-10-12
|
medipharmexpo.com
|
ns1.global-itd.com => 67.15.253.251 ns2.global-itd.com => 74.54.56.227 ns3.global-itd.com => 67.15.253.219 ns4.global-itd.com => 74.52.140.84 |
(AS11388) MAXIM |
Compromised website |
2011-10-09
|
safetywaitasecond.in
|
webpoint.mercury.orderbox-dns.com => 67.15.47.189 webpoint.venus.orderbox-dns.com => 74.54.56.236 webpoint.earth.orderbox-dns.com => 67.15.47.188 webpoint.mars.orderbox-dns.com => 74.52.140.84 |
(AS1241) FORTHNET-GR |
Trojan |
2011-10-03
|
ebay-payments-service.com
|
ns1.gossimer.com => 67.15.253.251 ns2.gossimer.com => 74.54.56.227 ns3.gossimer.com => 67.15.47.188 ns4.gossimer.com => 74.52.140.84 |
(AS40034) CONFLUENCE-NETWORK-INC |
Fake site / scam |
2011-10-02
|
sexofilliya.in
|
66217.mercury.orderbox-dns.com => 67.15.253.220 66217.venus.orderbox-dns.com => 74.54.56.231 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Trojan |
2011-09-27
|
popupligatry.in
|
66217.mercury.orderbox-dns.com => 67.15.253.220 66217.venus.orderbox-dns.com => 74.54.56.231 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Trojan |
2011-09-27
|
nogganodomain.in
|
66217.mercury.orderbox-dns.com => 67.15.253.220 66217.venus.orderbox-dns.com => 74.54.56.231 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Trojan |
2011-09-27
|
justpornboost.in
|
66217.mercury.orderbox-dns.com => 67.15.253.220 66217.venus.orderbox-dns.com => 74.54.56.231 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Trojan |
2011-09-27
|
gopoporn.in
|
66217.mercury.orderbox-dns.com => 67.15.253.220 66217.venus.orderbox-dns.com => 74.54.56.231 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Trojan |
2011-09-27
|
speditioncenterfright.com
|
ns1.gossimer.com => 67.15.253.251 ns2.gossimer.com => 74.54.56.236 ns3.gossimer.com => 67.15.47.188 ns4.gossimer.com => 74.52.140.84 |
(AS36351) SOFTLAYER |
Fake site / scam |
2011-09-25
|
pacman.net.in
|
1st.registerdomain.name => 67.15.47.189 2nd.registerdomain.name => 74.54.56.236 3rd.registerdomain.name => 67.15.253.252 4th.registerdomain.name => 74.52.140.84 |
(AS15626) ITLAS |
Trojan SpyEye drop zone |
2011-09-14
|
djduduyyy999.com
|
66217.earth.orderbox-dns.com => 67.15.253.252 66217.mars.orderbox-dns.com => 74.52.140.84 66217.mercury.orderbox-dns.com => 67.15.253.251 66217.venus.orderbox-dns.com => 74.54.56.227 |
(AS197019) WEDOS |
Blackhole Exploit kit |
2011-09-13
|
qualitylifeinvest.com
|
ns1.oworested.com => 67.15.253.251 ns2.oworested.com => 74.54.56.227 ns3.oworested.com => 67.15.253.252 ns4.oworested.com => 74.52.140.84 |
(AS21844) THEPLANET |
Fake site / scam |
2011-09-11
|
mariko7.in
|
webst.mercury.orderbox-dns.com => 67.15.47.189 webst.venus.orderbox-dns.com => 50.23.75.97 webst.earth.orderbox-dns.com => 67.15.253.219 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS57018) INLINETEL |
Directs to Exploits |
2011-09-09
|
njxnerslmmvpyto.biz
|
dns1.spiritdomains.com => 67.15.253.220 dns2.spiritdomains.com => 74.54.56.231 dns3.spiritdomains.com => 67.15.253.252 dns4.spiritdomains.com => 74.52.140.84 |
(AS29873) BIZLAND |
Trojan Zbot |
2011-09-08
|
hoycktsjwqsmklnv.biz
|
dns1.spiritdomains.com => 67.15.253.220 dns2.spiritdomains.com => 74.54.56.231 dns3.spiritdomains.com => 67.15.253.252 dns4.spiritdomains.com => 74.52.140.84 |
(AS30693) EONIX-CORPORATION-AS-PHX01-WWW-INFINITIE-NET |
Trojan Zbot |
2011-09-08
|
lwbbtfrtjjsyksl.biz
|
dns1.spiritdomains.com => 67.15.253.220 dns2.spiritdomains.com => 74.54.56.231 dns3.spiritdomains.com => 67.15.253.252 dns4.spiritdomains.com => 74.52.140.84 |
(AS30693) EONIX-CORPORATION-AS-PHX01-WWW-INFINITIE-NET |
Trojan Zbot |
2011-09-08
|
kwitriclub.in
|
rutld.mercury.orderbox-dns.com => 67.15.253.251 rutld.venus.orderbox-dns.com => 74.54.56.236 rutld.earth.orderbox-dns.com => 67.15.47.188 rutld.mars.orderbox-dns.com => 74.52.140.84 |
(AS19318) NJIIX |
Trojan |
2011-09-03
|
httyemn.in
|
66217.mercury.orderbox-dns.com => 67.15.253.251 66217.venus.orderbox-dns.com => 74.54.56.236 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Blackhole Exploit kit |
2011-08-15
|
goooos.in
|
66217.mercury.orderbox-dns.com => 67.15.253.251 66217.venus.orderbox-dns.com => 74.54.56.236 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Blackhole Exploit kit |
2011-08-15
|
generation-m.in
|
66217.mercury.orderbox-dns.com => 67.15.253.251 66217.venus.orderbox-dns.com => 74.54.56.236 66217.earth.orderbox-dns.com => 67.15.47.188 66217.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Blackhole Exploit kit |
2011-08-15
|
justwaitforsecurity.in
|
webpoint.mercury.orderbox-dns.com => 67.15.253.251 webpoint.venus.orderbox-dns.com => 74.54.56.227 webpoint.earth.orderbox-dns.com => 67.15.253.219 webpoint.mars.orderbox-dns.com => 74.52.140.84 |
(AS12695) DINET |
Blackhole Exploit kit |
2011-08-15
|
myovu.in
|
webst.mercury.orderbox-dns.com => 67.15.253.220 webst.venus.orderbox-dns.com => 74.54.56.236 webst.earth.orderbox-dns.com => 67.15.253.252 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS19318) NJIIX |
Trojan Renos calls home |
2011-08-15
|
marko10.in
|
webst.mercury.orderbox-dns.com => 67.15.253.220 webst.venus.orderbox-dns.com => 74.54.56.236 webst.earth.orderbox-dns.com => 67.15.253.252 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS42692) KCCE |
Blackhole Exploit kit / Trojan SpyEye / Rogue Antivirus |
2011-08-15
|
marko9.in
|
webst.mercury.orderbox-dns.com => 67.15.253.220 webst.venus.orderbox-dns.com => 74.54.56.236 webst.earth.orderbox-dns.com => 67.15.253.252 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS42692) KCCE |
Blackhole Exploit kit / Trojan SpyEye / Rogue Antivirus |
2011-08-15
|
marko8.in
|
webst.mercury.orderbox-dns.com => 67.15.253.220 webst.venus.orderbox-dns.com => 74.54.56.236 webst.earth.orderbox-dns.com => 67.15.253.252 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS42692) KCCE |
Blackhole Exploit kit / Trojan SpyEye / Rogue Antivirus |
2011-08-15
|
marko7.in
|
webst.mercury.orderbox-dns.com => 67.15.253.220 webst.venus.orderbox-dns.com => 74.54.56.236 webst.earth.orderbox-dns.com => 67.15.253.252 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS42692) KCCE |
Blackhole Exploit kit / Trojan SpyEye / Rogue Antivirus |
2011-08-15
|
ukpdcourserv.com
|
ns1.gossimer.com => 67.15.47.189 ns2.gossimer.com => 74.54.56.236 ns3.gossimer.com => 67.15.253.219 ns4.gossimer.com => 74.52.140.84 |
(AS) |
Fraud / Scam (mail server still online) |
2011-08-14
|
usmilitarynet.com
|
ns1.gossimer.com => 67.15.47.189 ns2.gossimer.com => 74.54.56.236 ns3.gossimer.com => 67.15.253.219 ns4.gossimer.com => 74.52.140.84 |
(AS) |
Fraud / Scam (mail server still online) |
2011-08-14
|
downloadmediafinal.net
|
rutld.earth.orderbox-dns.com => 67.15.47.188 rutld.mars.orderbox-dns.com => 74.52.140.84 rutld.mercury.orderbox-dns.com => 67.15.253.251 rutld.venus.orderbox-dns.com => 74.54.56.227 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-14
|
seefilmfeature.com
|
1st.registerdomain.name => 67.15.253.251 2nd.registerdomain.name => 74.54.56.231 3rd.registerdomain.name => 67.15.47.188 4th.registerdomain.name => 74.52.140.84 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-13
|
siriusproj.net.in
|
1st.registerdomain.name => 67.15.253.251 2nd.registerdomain.name => 74.54.56.236 3rd.registerdomain.name => 67.15.253.219 4th.registerdomain.name => 74.52.140.84 |
(AS48587) NET-0X2A |
Malware calls home |
2011-08-12
|
astaloscojones.net.in
|
1st.registerdomain.name => 67.15.253.251 2nd.registerdomain.name => 74.54.56.236 3rd.registerdomain.name => 67.15.253.219 4th.registerdomain.name => 74.52.140.84 |
(AS48587) NET-0X2A |
VirTool VBInject |
2011-08-12
|
netsecureinput.net
|
domr201105.earth.orderbox-dns.com => 67.15.253.252 domr201105.mars.orderbox-dns.com => 74.52.140.84 domr201105.mercury.orderbox-dns.com => 67.15.253.251 domr201105.venus.orderbox-dns.com => 74.54.56.227 |
(AS42267) SHIRYO |
Fraud / Scam |
2011-08-11
|
admoon.net
|
36063.earth.orderbox-dns.com => 67.15.253.252 36063.mars.orderbox-dns.com => 74.52.140.84 36063.mercury.orderbox-dns.com => 67.15.253.220 36063.venus.orderbox-dns.com => 74.54.56.227 |
(AS24940) HETZNER |
Malware calls home |
2011-08-09
|
videodataproduction.com
|
1st.registerdomain.name => 67.15.253.251 2nd.registerdomain.name => 74.54.56.227 3rd.registerdomain.name => 67.15.253.219 4th.registerdomain.name => 74.52.140.84 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-07
|
clubsvideoprograms.com
|
rutld.earth.orderbox-dns.com => 67.15.253.219 rutld.mars.orderbox-dns.com => 74.52.140.84 rutld.mercury.orderbox-dns.com => 67.15.253.251 rutld.venus.orderbox-dns.com => 74.54.56.236 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-07
|
trimmedialife.net
|
jdomen.earth.orderbox-dns.com => 67.15.253.252 jdomen.mars.orderbox-dns.com => 74.52.140.84 jdomen.mercury.orderbox-dns.com => 67.15.253.251 jdomen.venus.orderbox-dns.com => 74.54.56.236 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-06
|
duemitar.in
|
rutld.mercury.orderbox-dns.com => 67.15.253.251 rutld.venus.orderbox-dns.com => 74.54.56.227 rutld.earth.orderbox-dns.com => 67.15.47.188 rutld.mars.orderbox-dns.com => 74.52.140.84 |
(AS24940) HETZNER |
Trojan Renos calls home |
2011-08-03
|
freedataspace.net
|
rutld.earth.orderbox-dns.com => 67.15.47.188 rutld.mars.orderbox-dns.com => 74.52.140.84 rutld.mercury.orderbox-dns.com => 67.15.253.251 rutld.venus.orderbox-dns.com => 74.54.56.227 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-02
|
dataonlineload.com
|
1st.registerdomain.name => 67.15.253.220 2nd.registerdomain.name => 74.54.56.227 3rd.registerdomain.name => 67.15.47.188 4th.registerdomain.name => 74.52.140.84 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-02
|
itsjustok.in
|
webpoint.mercury.orderbox-dns.com => 67.15.253.220 webpoint.venus.orderbox-dns.com => 74.54.56.227 webpoint.earth.orderbox-dns.com => 67.15.253.252 webpoint.mars.orderbox-dns.com => 74.52.140.84 |
(AS42692) KCCE |
Blackhole Exploit kit / Trojan Agent |
2011-08-02
|
newdynayo.in
|
webst.mercury.orderbox-dns.com => 67.15.253.251 webst.venus.orderbox-dns.com => 74.54.56.227 webst.earth.orderbox-dns.com => 67.15.253.219 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS24940) HETZNER |
Trojan Renos calls home |
2011-08-02
|
finalthoughtlisten.in
|
webst.mercury.orderbox-dns.com => 67.15.253.251 webst.venus.orderbox-dns.com => 74.54.56.227 webst.earth.orderbox-dns.com => 67.15.47.188 webst.mars.orderbox-dns.com => 74.52.140.84 |
(AS24940) HETZNER |
Trojan Renos calls home |
2011-08-01
|
electronicprocessdata.com
|
1st.registerdomain.name => 67.15.253.251 2nd.registerdomain.name => 74.54.56.231 3rd.registerdomain.name => 67.15.47.188 4th.registerdomain.name => 74.52.140.84 |
(AS35415) WEBAZILLA |
Fast Flux Trojan Renos |
2011-08-01
|
unionplatinumfinance-inc.com
|
talk276532.earth.orderbox-dns.com => 67.15.253.252 talk276532.mars.orderbox-dns.com => 74.52.140.84 talk276532.mercury.orderbox-dns.com => 67.15.253.220 talk276532.venus.orderbox-dns.com => 74.54.56.231 |
(AS40034) CONFLUENCE-NETWORK-INC |
Fake Bank |
2011-07-30
|