mypdns / matrix

My Privacy DNS #Matrix lists for blacklisting
https://mypdns.org/
Other
88 stars 13 forks source link

download-binance.online #743

Closed g0d33p3rsec closed 3 months ago

g0d33p3rsec commented 3 months ago

Comments

This domain is hosting a Binance lure and distributing binaries containing Poverty Stealer.

Wildcard domain records

download-binance.online|malicious,phishing

Sub-Domain records

No response

Hosts (RFC:953) specific records, not used by DNS RPZ firewalls

No response

SeafeSearch records

No response

Screenshots

Screenshot ![353162769-7da781c5-582b-4f9c-90af-44b7e757a5ad](https://github.com/user-attachments/assets/45b6804d-32a0-4703-93ac-0df92de83217)

Links to external sources

https://download-binance.online/
https://download-binance.online/binance-setup.exe
https://download-binance.online/BinanceSetup.zip
https://urlscan.io/search/#page.domain%3Adownload-binance.online
https://urlscan.io/result/bbf80d5c-bfe9-42bb-b658-53b6418cd79f/
https://www.virustotal.com/gui/file/9b85fb69d2828fe57a9994afa64905970a9941e809a3a3c6be8a87159f72f1c8/
https://tria.ge/240729-t5h1fsxhkq/behavioral1
https://www.shodan.io/host/147.45.47.178
https://search.censys.io/hosts/147.45.47.178?resource=hosts&sort=RELEVANCE&per_page=25&virtual_hosts=EXCLUDE&q=download-binance.online&at_time=2024-07-29T11%3A00%3A26.701Z

logs from uBlock Origin

N/A