mypdns / matrix

My Privacy DNS #Matrix lists for blacklisting
https://mypdns.org/
Other
85 stars 11 forks source link

hild.shop #721

Closed g0d33p3rsec closed 2 months ago

g0d33p3rsec commented 2 months ago

Comments

This domain is being used by the IP in https://github.com/mypdns/matrix/issues/707 to distribute Strella Stealer

Wildcard domain records

hild.shop|malicious

Sub-Domain records

No response

Hosts (RFC:953) specific records, not used by DNS RPZ firewalls

No response

SeafeSearch records

No response

Screenshots

Screenshot

Links to external sources

https://urlscan.io/search/#page.ip:%2245.9.74.32%22
http://hild.shop:8888/3700.dll
https://urlscan.io/result/aa13ca1b-e505-4191-8933-bfa9679fbd22/
https://www.virustotal.com/gui/file/8fe4d6a7d3ac4641d2d66eb4432e419e495d8046728a6f7f0d7a2201e1264657

logs from uBlock Origin

N/A