canadianpharmacy.ltd
|
ns1.ndns.cn => 154.85.42.184 ns2.ndns.cn => 129.28.156.57 |
(AS17216) DC74-AS |
Malicious domain |
2024-03-02
|
genny-official.cn
|
ns1.ndns.cn => 119.8.33.239 ns2.ndns.cn => 49.0.244.26 |
(AS133398) TELE-AS |
Trojan Qakbot |
2022-12-14
|
search-hoj.com
|
ns2.ndns.cn => 49.0.244.26 ns1.ndns.cn => 119.8.33.239 |
(AS44592) SKYLINK, |
Browser hijacker |
2022-08-06
|
search-dur.com
|
ns1.ndns.cn => 119.8.33.239 ns2.ndns.cn => 49.0.244.26 |
(AS44592) SKYLINK, |
Browser hijacker |
2022-08-06
|
bringmeredline.com
|
ns1.ndns.cn => 119.8.33.239 ns2.ndns.cn => 49.0.244.26 |
(AS14061) DIGITALOCEAN-ASN |
Browser hijacker |
2022-08-06
|
sparkasse-id.de
|
ns2.ndns.cn => 49.0.244.26 ns1.ndns.cn => 119.8.33.239 |
(AS210352) SERVER4 |
Phishing |
2022-07-01
|
pancakeswa-p.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS58349) INNETRA |
Phishing |
2022-06-14
|
hadouken.top
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS399471) AS-SERVER |
Trojan Linux |
2022-05-26
|
uspsecure.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS14061) DIGITALOCEAN-ASN |
Phishing |
2022-05-24
|
prozakx.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-05-23
|
terroklo.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-05-23
|
criobob.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-05-19
|
msxsecure.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS24940) HETZNER |
Phishing |
2022-05-13
|
myverify-online.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS51447)
ROOTLAYER |
Phishing |
2022-05-11
|
dehikz.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-05-05
|
fenimoz.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-05-05
|
scanixu.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-05-05
|
donormix.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS59642) BALTICSERVERS2-AS |
Cobalt Strike botnet controller |
2022-05-02
|
autenticacion.org
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS399471) AS-SERVER |
Phishing |
2022-04-29
|
autenticazionesicura.org
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS399471) AS-SERVER |
Phishing |
2022-04-29
|
amsteo.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-04-27
|
4pdaxer.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS399471) AS-SERVER |
Cobalt Strike botnet controller |
2022-04-27
|
agsdef.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS59642) BALTICSERVERS2-AS |
Cobalt Strike botnet controller |
2022-04-27
|
acitopram.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-04-23
|
flaoxetin.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-04-21
|
dexatyn.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-04-19
|
axikok.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-04-17
|
arentuk.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS395839) HOSTKEY-USA |
Cobalt Strike botnet controller |
2022-04-14
|
my-canadian-pharmacy.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS17216) DC74-AS |
Phishing |
2022-04-05
|
santander-card-cancel.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS43317) FISHNET-AS |
Phishing |
2022-04-05
|
santander-secure-login.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS43317) FISHNET-AS |
Phishing |
2022-04-03
|
costqtr.ru
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS34665) PINDC-AS, RU |
Phishing |
2022-04-02
|
teahgiaj3ig.cn
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
() |
|
|
santander.mobile-olb.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS43317) FISHNET-AS |
Phishing |
2022-02-03
|
detacher.xyz
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS21100) ITLDC-NL |
Malicious domain |
2022-02-01
|
discrodappp.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS21100) ITLDC-NL |
Trojan |
2021-12-06
|
e-lanpengeonline.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-11-30
|
vjcmvz.cn
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-11-30
|
www-metamaskio.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS46844) SHARKTECH |
Phishing |
2021-11-22
|
standard-online-login-za.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS43350) NFORCE |
Phishing |
2021-11-22
|
jeevanpunetha.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-11-13
|
misipu.cn
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-11-13
|
0axqpcc.cn
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-11-03
|
roohaniinfra.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-11-03
|
payments24online.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS58061) SCALAXY-AS, NL |
Phishing |
2021-10-31
|
support-canadianmedicinenow.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS15626) ITLAS |
Phishing |
2021-10-31
|
support-customer-support-system.com
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS17216) DC74-AS |
Phishing |
2021-10-31
|
support--rx-drugs-support.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS20860) IOMART-AS |
Phishing |
2021-10-31
|
szpnc.cn
|
ns1.ndns.cn => 140.143.149.223 ns2.ndns.cn => 61.240.129.112 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-10-25
|
andbal.com
|
ns2.ndns.cn => 61.240.129.112 ns1.ndns.cn => 140.143.149.223 |
(AS46844) SHARKTECH |
Smoke Loader botnet controller |
2021-10-25
|