List of malicious URLs from public websites

Date Source URL IP Description
26-05-2016 RansomwareTracker http://212.109.219.31/userinfo.php 212.109.219.31 Ransomware-Locky-C2
26-05-2016 RansomwareTracker http://104.131.182.103/userinfo.php 104.131.182.103 Ransomware-Locky-C2
26-05-2016 RansomwareTracker http://164.132.40.47/userinfo.php 164.132.40.47 Ransomware-Locky-C2
26-05-2016 RansomwareTracker http://cdgame.kgb.pl/k7jhrt4hertg 195.114.0.64 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://birlesimsucuklari.com/k7jhrt4hertg 31.192.209.44 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://equalityindonesia.com/65g434f?DIzsPrRU=lJWUsACOo 202.52.146.56 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://selonija.lv/3g34t3t4tggrt?flGhlRMvQ=SAdbkxWTyJ 85.15.231.195 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://iwebmediasavvy.com/k7jhrt4hertg 63.77.93.12 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://hate-metal.com/k7jhrt4hertg 5.9.13.83 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://colleenthestylist.com/43454yt32?VpNJfuhNdHb=fHdhoAO 166.62.28.112 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://www.broxlab.com/3g34t3t4tggrt?iCiUcN=PUVLThwaEKC 104.28.14.71|10 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://apelecomp.com/3g34t3t4tggrt?qyRwdP=OwYXLtxeaz 188.68.56.129 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://humanoit.hu/65g434f?aNSyzgv=rewtEy 195.56.148.160 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://majaz.co.uk/k7jhrt4hertg 81.27.85.11 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://bizconsulting.ro/3g34t3t4tggrt?EVFoHNMM=yIXUGgBggPR 86.35.15.215 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://edupei.com.mx/3g34t3t4tggrt?vUHGndBlj=pOhgMAWsNxE 65.99.225.183 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://cjglobal.co/3g34t3t4tggrt?oXbzBrtgXdd=HksMkxlfHR 192.186.192.134 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://tspipp.tsu.tula.ru/3g34t3t4tggrt?XwlNdBImei=oXcxheSjDSR 85.142.133.41 Ransomware-Locky-Distribution Site
26-05-2016 RansomwareTracker http://cjglobal.co/3g34t3t4tggrt?szIcWWTRS=lulpYS 192.186.192.134 Ransomware-Locky-Distribution Site
25-05-2016 MDL xn--snyggaklnning-ifb.nu/ 188.95.227.20 seudo darkleech on compromised site leads to Angler EK
25-05-2016 CyberCrime wasnoenhes.com/zapoy/admin.php 62.75.196.125 ny
25-05-2016 CyberCrime wasnoenhes.com/h/admin.php?do=auth 62.75.196.125 N1
25-05-2016 CyberCrime jougmehad.ru/h/admin.php?do=auth 62.75.196.125 N1
25-05-2016 CyberCrime toftsparlinget.ru/h/admin.php?do=auth 89.253.227.83 N1
25-05-2016 CyberCrime www.tclogs.com/panel/login 109.236.82.158 py
25-05-2016 CyberCrime www.tclogs.com/admin.php 109.236.82.158 ny
25-05-2016 CyberCrime irveshopmart.com/england/Panel/admin.php 149.56.134.65 ny
25-05-2016 CyberCrime irveshopmart.com/main/Panel/admin.php 149.56.134.65 ny
25-05-2016 CyberCrime buycoolmatter.info/X5YofLgo/login.php 107.180.27.171 onos
25-05-2016 CyberCrime buycoolmatter.com/ca/index.php 107.180.27.171 bInject
25-05-2016 Clean-MX http://m.xxxl84675900374.com/foo/9-orlisjjufavid3i3bpww/1462783767/mro1_cpu/svchost.exe 146.185.234.88 spicious
25-05-2016 Clean-MX http://yaivacostumediscounters.com/1951248662746/1951248662746/146241561048892/flashplayer.exe 141.8.224.93 spicious
25-05-2016 Clean-MX http://ahcheyuyanzhe.com/1031250005951/1031250005951/1463745981418422/flashplayer.exe 103.224.182.222 spicious
25-05-2016 Clean-MX http://ahcheyuyanzhe.com/1321611912287/1321611912287/1463747332262806/flashplayer.exe 103.224.182.222 spicious
25-05-2016 Clean-MX http://ahcheyuyanzhe.com/1553092795440/1553092795440/1463749681906766/flashplayer.exe 103.224.182.222 spicious
25-05-2016 Clean-MX http://ahcheyuyanzhe.com/2291759834209/2291759834209/146375055597210/flashplayer.exe 103.224.182.222 spicious
25-05-2016 Clean-MX http://ahcheyuyanzhe.com/5352908473693/5352908473693/1463752149997704/flashplayer.exe 103.224.182.222 spicious
25-05-2016 Clean-MX http://ahcheyuyanzhe.com/613405309622/613405309622/1463750964181196/flashplayer.exe 103.224.182.222 spicious
25-05-2016 Clean-MX http://ahcheyuyanzhe.com/631393928002/631393928002/1463748543300107/flashplayer.exe 103.224.182.222 spicious
25-05-2016 Clean-MX http://www.47yz.com/1.exe 124.74.97.242 spicious
25-05-2016 Clean-MX http://gaoyounews.com.cn/a/pinglun/2016/0308/svchost.exe 123.60.247.41 spicious
25-05-2016 Clean-MX http://diet4life.net/images/banners/2.exe 82.80.209.62 spicious
25-05-2016 Clean-MX http://tendearteplast.com/1.exe 81.88.48.78 spicious
25-05-2016 Clean-MX http://50.22.109.98/consegna/Ordine.zip 50.22.109.98 spicious
25-05-2016 PhishTank http://redchilliesfnb.com/Arc/Archive/index.php N/A ishing-Google
25-05-2016 PhishTank http://redchilliesfnb.com/ovo/index.php N/A ishing-Google
25-05-2016 PhishTank http://omarjeeholidays.com/blog/usaacrps/ N/A ishing-"United Services Automobile Association"
25-05-2016 PhishTank http://warmatrierindo.com/cgi2012/ N/A ishing-Other
25-05-2016 PhishTank http://www.uvla.org/_task=mail/33|#|32|#|25|#|34/ N/A ishing-Other
25-05-2016 PhishTank http://www.radiogospelreviver.com/fm/log/f955721ddae2f837c3a1cf23eba04f9b/ N/A ishing-Other