Date |
Domain |
IP |
Reverse Lookup |
Malware Description |
Registrant |
Page 0 1 ... 171| N/A | - | 194.126.193.152/stats.php?id=5012 | hosted-by.adulteuhost.com | VBscript Downloader | N/A |
| N/A | - | 194.126.193.152/web/1217104462/51c80fbdea578d3a941d325e0b30b105.exe?affid=5012 | hosted-by.adulteuhost.com | Trojan-Downloader.Firu.bp / Bohmini.A | N/A |
| N/A | - | 194.54.90.246/kkq2.gif | - | Expiro / Kakavex / LdPinch | N/A |
| N/A | - | 195.225.176.63/in.php?id=16&se=1&keyword=Polliciy22.info&host=gremmioti.cn&dkw= | - | Zlob | N/A |
| N/A | - | 195.225.176.63/in.php?id=25 | - | Rogue | N/A |
| N/A | - | 195.225.177.18/cgi-bin/404/redirect | - | Directs to sites with malware | N/A |
| N/A | - | 200.115.102.151/html/sitio/lib/news.htm | calamardo.telesat.com.co | Exploits | N/A |
| N/A | - | 201.245.59.250/catalog/download/postcard.exe | mail.sat-pcs.com | Zapchast | N/A |
| N/A | - | 202.102.135.97/aftcle/admin/a.jpg | - | Exploits | N/A |
| N/A | - | 202.102.135.97/aftcle/admin/vip.exe | - | Hupigon | N/A |
| N/A | - | 202.157.177.19/a/funny.php?adv=1&spl=java | shinjiru.cn | Downloader | N/A |
| N/A | - | 202.99.235.66/mmyy/NewsInfo.asp?id=63 | - | Exploits | N/A |
| N/A | - | 203.121.68.191/~ftwest/list/win651.exe | - | Downloader | N/A |
| N/A | - | 204.2.183.2/phuong-hong/task.rar | www.freewebs.com | Agent.hox / VB.AXY | N/A |
| N/A | - | 205.177.122.104/CF/45aTq2V13X0001Wm30290V0u | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/CF/os1zn2mO7Z0001n7pbtb6gsq | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/LP/?w=os1zn2mO7Z&log=frun&wmid=eMvDm90V0u&err=0 | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/NL/45aTq2V13X0001?id=0&e=9&err=0&c=Wm30290V0u | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/NL/45aTq2V13X0001?id=03&e=19&err=0&c=swEN0t21N6 | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/NL/os1zn2mO7Z0001?id=0&e=1&err=0&c=n7pbtb6gsq | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/PG/01os1zn2mO7Z0001n7pbtb6gsq | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/campaign/o.sc?cid=9XsG4b6gsq&wmid=os1zn2mO7Z&ver=1003&bid=712695191&newerr=0&newhr=0&size=0 | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/log5/?w=45aTq2V13X&id=0&e=6&err=5e3&cid=swEN0t21N6 | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/log5/?w=os1zn2mO7Z&id=0&e=1&err=0&cid=n7pbtb6gsq | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/pr3/?http://205.177.122.104/ucleaner_os1zn2mO7Z.exe | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/pr3/?http://205.177.122.104/udefender_os1zn2mO7Z.exe | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/pr3/?http://205.177.122.104/ufixer_os1zn2mO7Z.exe | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/pr3/?hxxp://205.177.122.104/ucleaner_45aTq2V13X.exe | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/pr3/?hxxp://205.177.122.104/udefender_45aTq2V13X.exe | - | Malware calls home | N/A |
| N/A | - | 205.177.122.104/pr3/?hxxp://205.177.122.104/ufixer_45aTq2V13X.exe | - | Malware calls home | N/A |
| N/A | - | 206.161.200.42/notifier/519/e82996b7-e0a6-4c38-9a3e-c5e6709aedd8.exe | - | Malware calls home | N/A |
| N/A | - | 206.51.233.130/iexplore.exe | - | Spy.Agent.QD | N/A |
| N/A | - | 207.218.156.176/first/modules/IEMod.dll | host-207-218-156-176.optynex.com | Nuklus / Neptunia | N/A |
| N/A | - | 207.226.177.100/1/gdnGB2093.exe | - | Trojan | N/A |
| N/A | - | 208.101.56.102/synctl/upd/s01.exe | mirhosting.com | Zhelatin | N/A |
| N/A | - | 208.101.56.102/synctl/upd/u.txt | mirhosting.com | Malware calls home | N/A |
| N/A | - | 208.122.40.111/klik.php?data= | - | Zlob | N/A |
| N/A | - | 208.122.40.112/klik.php?data= | - | Zlob | N/A |
| N/A | - | 208.122.40.113/klik.php?data= | - | Zlob | N/A |
| N/A | - | 208.122.40.114/klik.php?data= | - | Zlob | N/A |
| N/A | - | 208.66.194.180/40e8001430303030303030303030303030303030303031306c0000003c66000000007600000002 | - | Email-Worm.Win32.Agent.BX | N/A |
| N/A | - | 208.66.194.180/40e8001430303030303030303030303030303030303031306c0000004d66000000007600000002 | - | Trojan-Dropper.Win32.Agent.dnu | N/A |
| N/A | - | 208.66.194.234/s_18_3232235904?m=3&a=1&hdd=3030&gen=0&os=940000 | - | RootKit | N/A |
| N/A | - | 208.66.194.234/s_88_3232235910?m=3&a=1&hdd=3030&fs=1&gen=0&os=940000 | - | Rookit | N/A |
| N/A | - | 208.66.194.241/s_18_3232235904?m=3&a=1&hdd=3030&gen=0&os=940000 | - | RootKit | N/A |
| N/A | - | 208.66.194.241/s_46_0?m=3&a=1&r=1&hdd=202&os=940 | - | Ntrootkit | N/A |
| N/A | - | 208.66.194.241/s_88_3232235910?m=3&a=1&hdd=3030&fs=1&gen=0&os=940000 | - | Rootkit | N/A |
| N/A | - | 208.66.194.7:8080/404.txt | - | Malware calls home | N/A |
| N/A | - | 208.66.195.15/40e8001430303030303030303030303030303030303031306c0000003c66000000007600000002 | - | Email-Worm.Win32.Agent.BX | N/A |
| N/A | - | 208.66.195.15/40e8001430303030303030303030303030303030303031306c0000004d66000000007600000002 | - | Trojan-Dropper.Win32.Agent.dnu | N/A |
| N/A | - | 208.66.195.15/40e8001430303030303030303030303030303030303031306c0000006866000000007600000002 | - | Trojan | N/A |
| N/A | - | 208.66.195.165/40e8001430303030303030303030303030303030303031306c0000003c66000000007600000002 | - | Email-Worm.Win32.Agent.BX | N/A |
| N/A | - | 208.66.195.165/40e8001430303030303030303030303030303030303031306c0000004d66000000007600000002 | - | Trojan-Dropper.Win32.Agent.dnu | N/A |
| N/A | - | 208.66.195.71/40e8001430303030303030303030303030303030303031306c0000004d66000000007600000002 | - | Trojan-Dropper.Win32.Agent.dnu | N/A |
| N/A | - | 208.66.70.5/mun1_26_11_070.exe | - | Agent.dbo | N/A |
| N/A | - | 208.72.168.164:8080/404.txt | ns1.webstorenews.com | Malware calla home | N/A |
| N/A | - | 208.72.168.233/404.txt | - | Malware calla home | N/A |
| N/A | - | 208.72.169.15/df34.jpg | - | Agent.VE | N/A |
| N/A | - | 208.72.169.181/ocr_tim3.cgi | - | Malware calls home | N/A |
| N/A | - | 208.72.169.54/data.php | ns1.softgetsnews.com | Malware calls home | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/43.exe | - | Downloader | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/dnl.php?file=183aa.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/dnl.php?file=43.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/dnl.php?file=kwpop_43.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/dnl.php?file=pbho.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/dnl.php?file=specialdialer.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/ext1.php | - | Malware calls home | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/kwpop.php | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.61/server/npopup/dnl/pbho.exe | - | BHO.afz | N/A |
| N/A | - | 209.44.117.61/server/npopup/kwupd.php | - | Malware calls home | N/A |
| N/A | - | 209.44.117.61/server/npopup/upd.php | - | Malware calls home | N/A |
| N/A | - | 209.44.117.62/server/npopup/dnl/43.exe | - | Agent | N/A |
| N/A | - | 209.44.117.62/server/npopup/dnl/dnl.php?file=43.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.62/server/npopup/dnl/dnl.php?file=kwpop_43.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.62/server/npopup/dnl/dnl.php?file=pbho.exe | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.62/server/npopup/dnl/ext1.php | - | Malware calls home | N/A |
| N/A | - | 209.44.117.62/server/npopup/dnl/kwpop.php | - | Malware calls home, gets a PE file (in hex) | N/A |
| N/A | - | 209.44.117.62/server/npopup/ins.php | - | Malware calls home | N/A |
| N/A | - | 209.44.117.62/server/npopup/kwupd.php | - | Malware calls home, POSTs data=34337C37613366323564636163393863373336333337346463656461656434323137617C352E317C4C414E7C372E302E353733302E31317C313032342A3736387C337C397C2D31&key=JKXDPEORIDE | N/A |
| N/A | - | 209.44.117.62/server/npopup/upd.php | - | Malware calls home, POSTs data=34337C37613366323564636163393863373336333337346463656461656434323137617C352E317C4C414E7C372E302E353733302E31317C313032342A3736387C32307C397C2D31&key=JKXDPEORIDE | N/A |
| N/A | - | 209.62.108.213/getloader.php?id=1700 | ev1s-209-62-108-213.ev1servers.net | Trojan | N/A |
| N/A | - | 209.62.108.213/getsoft.php?id=1700&soft=22 | ev1s-209-62-108-213.ev1servers.net | Malware calls home | N/A |
| N/A | - | 209.62.108.213/getsoft.php?id=1700&soft=8 | ev1s-209-62-108-213.ev1servers.net | Malware calls home | N/A |
| N/A | - | 209.9.170.171/MTgyOjUxMjo=/ucleaner_setup.exe | 209-9-179-171.pccwglobal.net | Rogue | N/A |
| N/A | - | 212.146.145.91:7000 | host-212-146-145-91.anet.net.tr | IRC C&C | N/A |
| N/A | - | 212.239.40.78/bp/bp/inviosmss.htm | - | Downloader | N/A |
| N/A | - | 212.239.40.78/bp/bp/sms.exe | - | Dialer | N/A |
| N/A | - | 212.77.215.220 | tcfa.qa | Exploits | N/A |
| N/A | - | 216.127.95.105/aad.exe | ev1s-216-127-95-105.ev1servers.net | DropSpam | N/A |
| N/A | - | 216.133.67.110 | reserved.linuxwebnet.com | Adware SecondThought | N/A |
| N/A | - | 216.152.240.13/setup_file.exe | unknown.xeex.net | Elitebar | N/A |
| N/A | - | 216.195.55.50:2559 | - | Malware calls home, sends 00 00 00 00 C0 A8 1F 80 70 00 00 00 00 00 00 00 00 00 00 00 05 01 28 0A 00 00 00 00 00 00 00 00 | N/A |
| N/A | - | 216.195.56.251/ocr/ | - | Malware calls home | N/A |
| N/A | - | 216.255.182.35/in.cgi?default | 216.255.182.35-custblock.intercage.com | Zlob | N/A |
| N/A | - | 216.255.183.93 | 216.255.183.93-custblock.intercage.com | Directs to sites with malware | N/A |
| N/A | - | 216.255.184.162/aff/dir/ | - | Zhelatin | N/A |
| N/A | - | 216.255.189.214/aff/dir/away.exe | 216.255.189.214-custblock.intercage.com | Zhelatin | N/A |
| N/A | - | 216.255.189.85 | 216.255.189.85-custblock.intercage.com | Malware calls home | N/A |
| N/A | - | 216.32.92.134 | 134.92.32.216.static.reverse.layeredtech.com | Trojan | N/A |
| N/A | - | 216.40.219.141/dw.php | ev1s-216-40-219-141.ev1servers.net | Zlob | N/A |
Page