peoplepartnersassociates.co.uk
|
ns3.bdm.microsoftonline.com => 204.14.183.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 |
(AS47583) HOSTING-MEDIA |
Phishing |
2024-03-03
|
chatgpt.chuyangguang.cn
|
ns2.bdm.microsoftonline.com => 150.171.21.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS16509) AMAZON-02 |
Malicious domain |
2024-03-02
|
suivi-post.canadapostescanada.com
|
ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 |
(AS8075) MICROSOFT-CORP---MSN-AS-BLOCK |
Malicious domain |
2024-03-02
|
westernsecurfrontierins.com
|
ns1.bdm.microsoftonline.com => 13.107.236.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 |
(AS133398) TELE-AS |
Malicious domain |
2024-03-02
|
vansecurelawyers.com
|
ns3.bdm.microsoftonline.com => 204.14.183.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS133398) TELE-AS |
Malicious domain |
2024-03-02
|
border-fd.smartertechnologies.com
|
ns1.bdm.microsoftonline.com => 13.107.236.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 |
(AS8075) MICROSOFT-CORP---MSN-AS-BLOCK |
Malicious domain |
2024-02-29
|
landsale.live
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS47583) HOSTING-MEDIA |
Malicious domain |
2024-02-29
|
haynes.pietrzyk.net.pl
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS13335) CLOUDFLARENET |
Malicious domain |
2024-02-29
|
premiumstaff.co.uk
|
ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns3.bdm.microsoftonline.com => 204.14.183.208 |
(AS47583) HOSTING-MEDIA |
Google poisoning campaign (need google referer) |
2024-02-02
|
elite-security.uk
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 |
(AS21501) MAINLAB-AS |
Trojan Pikabot |
2023-12-18
|
grupocisbra.com.br
|
ns2.bdm.microsoftonline.com => 150.171.21.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns3.bdm.microsoftonline.com => 204.14.183.208 |
(AS19871) MONST-1 |
TA577 IcedID malware |
2023-10-21
|
artinicrash.com.au
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns3.bdm.microsoftonline.com => 204.14.183.208 |
(AS45638) EVERY-LAST-SECOND |
TA577 DarkGate |
2023-10-21
|
wtcomms.co.uk
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 |
(AS8560) SCHLUND |
Trojan GootLoader |
2023-09-12
|
resourceedge.org
|
ns2.bdm.microsoftonline.com => 150.171.21.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS37061) ONE |
Trojan |
2023-07-17
|
rolopom.com
|
ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns4.bdm.microsoftonline.com => 208.84.5.208 |
(AS13768) PEER1 |
Trojan Qakbot |
2023-07-01
|
biodina.com.br
|
ns1.bdm.microsoftonline.com => 13.107.236.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 |
(AS19871) MONST-1 |
Trojan Qakbot |
2023-07-01
|
siis.in
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 |
(AS26496) PAH-INC |
Trojan Qakbot |
2023-07-01
|
pceaero.com
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 |
(AS26496) PAH-INC |
Trojan Qakbot |
2023-05-24
|
financiallegossolutions.com
|
ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS26496) PAH-INC |
Trojan Qakbot |
2023-05-24
|
mymsa-eg.com
|
ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns4.bdm.microsoftonline.com => 208.84.5.208 |
(AS19551) INCAPSULA |
Trojan Qakbot |
2023-05-24
|
rmcengineering.com
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS22611) IMH-WEST |
Trojan Qakbot |
2023-05-10
|
imperialbox.net
|
ns1.bdm.microsoftonline.com => 13.107.236.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns4.bdm.microsoftonline.com => 208.84.5.208 |
(AS398101) GO-DADDY-COM-LLC, US |
Trojan Qakbot |
2023-05-02
|
triocean.com.tw
|
ns1.bdm.microsoftonline.com => 13.107.236.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 150.171.21.208 |
(AS3462) HINET |
Trojan Qakbot |
2023-04-26
|
chughafamily.com
|
ns2.bdm.microsoftonline.com => 150.171.21.208 ns3.bdm.microsoftonline.com => 204.14.183.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns1.bdm.microsoftonline.com => 13.107.236.208 |
(AS45638) EVERY-LAST-SECOND |
Trojan Qakbot |
2023-04-26
|
hansgross.com.pe
|
ns3.bdm.microsoftonline.com => 204.14.183.208 ns1.bdm.microsoftonline.com => 13.107.236.208 ns2.bdm.microsoftonline.com => 150.171.21.208 ns4.bdm.microsoftonline.com => 208.84.5.208 |
(AS46606) BLUEHOST |
Trojan Qakbot |
2023-04-26
|
fairweatherdavies.com.au
|
ns4.bdm.microsoftonline.com => 208.84.5.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns1.bdm.microsoftonline.com => 40.90.4.208 |
(AS45638) EVERY-LAST-SECOND |
Trojan Qakbot |
2023-04-12
|
topnotchlegal.com.au
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns4.bdm.microsoftonline.com => 208.84.5.208 |
(AS45638) EVERY-LAST-SECOND |
Trojan Qakbot |
2023-04-12
|
agaseem.sa
|
ns3.bdm.microsoftonline.com => 13.107.24.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns2.bdm.microsoftonline.com => 64.4.48.208 |
(AS24940) HETZNER |
Trojan |
2023-04-12
|
ust.md
|
ns3.bdm.microsoftonline.com => 13.107.24.208 ns4.bdm.microsoftonline.com => 208.84.5.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns1.bdm.microsoftonline.com => 40.90.4.208 |
(AS31252) STARNET |
Trojan Qakbot |
2023-04-12
|
confederationciq.fr
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 |
(AS16276) OVH |
Trojan Emotet |
2023-03-22
|
proconsumidor.gob.do
|
ns3.bdm.microsoftonline.com => 13.107.24.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns1.bdm.microsoftonline.com => 40.90.4.208 |
(AS398101) GO-DADDY-COM-LLC, US |
Trojan Qakbot |
2023-02-06
|
aramgroup.ae
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 |
(AS19318) NJIIX |
Trojan Qakbot |
2022-12-26
|
gplexports.com
|
ns2.bdm.microsoftonline.com => 64.4.48.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns3.bdm.microsoftonline.com => 13.107.24.208 |
(AS394695) PUBLIC-DOMAIN-REGISTRY |
Trojan Qakbot |
2022-12-20
|
cloudnest.com.au
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 |
(AS38719) AUSTDOM-AS-AP |
Trojan Qakbot |
2022-12-20
|
zoomphones.com.au
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns2.bdm.microsoftonline.com => 64.4.48.208 |
(AS38719) AUSTDOM-AS-AP |
Trojan Qakbot |
2022-12-20
|
desysa.net
|
ns1.desysa.net => 169.62.176.238 ns3.bdm.microsoftonline.com => 13.107.24.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns2.desysa.net => 169.62.176.238 |
(AS36351) SOFTLAYER |
Trojan Qakbot |
2022-12-20
|
resodinfo.com
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns4.bdm.microsoftonline.com => 13.107.160.208 |
(AS50474) O2SWITCH |
Trojan Qakbot |
2022-12-14
|
latinbrands.pe
|
ns2.bdm.microsoftonline.com => 64.4.48.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns3.bdm.microsoftonline.com => 13.107.24.208 |
(AS46606) BLUEHOST |
Trojan Qakbot |
2022-12-14
|
primedho.com.br
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 |
(AS19871) MONST-1 |
Trojan Qakbot |
2022-12-01
|
experienza.co
|
ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 |
(AS22612) NAMECHEAP-NET |
Trojan Qakbot |
2022-12-01
|
sexshopmayorista.cl
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns2.bdm.microsoftonline.com => 64.4.48.208 |
(AS46606) BLUEHOST |
Trojan Qakbot |
2022-12-01
|
dovegreenschool.com
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns2.bdm.microsoftonline.com => 64.4.48.208 |
(AS19871) MONST-1 |
Trojan Qakbot |
2022-12-01
|
palmhousedairies.com
|
ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 |
(AS24940) HETZNER |
Trojan Qakbot |
2022-11-18
|
247roadservices.com.au
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 |
(AS38719) AUSTDOM-AS-AP |
Trojan Qakbot |
2022-11-18
|
onaybasvurudunyasi2022.com
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns4.bdm.microsoftonline.com => 13.107.160.208 |
(AS8075) MICROSOFT-CORP---MSN-AS-BLOCK |
Malicious host |
2022-11-13
|
mobildenizfirsat-gunu.com
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns1.bdm.microsoftonline.com => 40.90.4.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns2.bdm.microsoftonline.com => 64.4.48.208 |
(AS8075) MICROSOFT-CORP---MSN-AS-BLOCK |
Malicious host |
2022-11-13
|
mobilbasvuru-hediyeonay.com
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 |
(AS8075) MICROSOFT-CORP---MSN-AS-BLOCK |
Malicious host |
2022-11-13
|
mobil-basvuruacikdeniz-cekilis.com
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns3.bdm.microsoftonline.com => 13.107.24.208 |
(AS8075) MICROSOFT-CORP---MSN-AS-BLOCK |
Malicious host |
2022-11-13
|
mobilacikdenizkredibank.com
|
ns4.bdm.microsoftonline.com => 13.107.160.208 ns2.bdm.microsoftonline.com => 64.4.48.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns1.bdm.microsoftonline.com => 40.90.4.208 |
(AS21499) IMS |
Malicious host |
2022-11-13
|
krediacikdenizmobilbank.com
|
ns1.bdm.microsoftonline.com => 40.90.4.208 ns4.bdm.microsoftonline.com => 13.107.160.208 ns3.bdm.microsoftonline.com => 13.107.24.208 ns2.bdm.microsoftonline.com => 64.4.48.208 |
(AS21499) IMS |
Malicious host |
2022-11-13
|