Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
eddereklam.com
Domain ⚠ 12 PULSE HITS
↓ CSV ↓ JSON
40
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 40/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
30/30
12 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Indicatoreddereklam.com
Whois Domainhttp://whois.domaintools.com/eddereklam.com
Typedomain
AlienVault OTX Analysis ↗ View on OTX
12
PULSE HITS
Pulse Hits 12
Indicator Type Domain
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
Unpacking NetSupport RAT Loaders Delivered via ClickFix 2025-10-24
NetSupport 2025-07-13
netsup 2025-07-16
NetSupport 2025-07-13
NetSupport 2025-06-28
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 22
ASSOCIATED URLs
URL STATUS / TYPE DATE
https://eddereklam.com/tumo.zip offline 2025-06-30
https://eddereklam.com/smqw.zip?lxxe=49/ offline 2025-06-30
https://eddereklam.com/fylo.zip?lxxe=68 offline 2025-06-30
https://eddereklam.com/zitz.zip?le=32 offline 2025-06-30
https://eddereklam.com/smqw.zip?lxxe=49 offline 2025-06-30
https://eddereklam.com/smzi.zip?le=6 offline 2025-06-30
http://eddereklam.com/zitz.zip?le=32 offline 2025-06-30
https://eddereklam.com/fylo.zip?lxxe=24 offline 2025-06-30
http://eddereklam.com/smqw.zip offline 2025-06-30
http://eddereklam.com/smzi.zip offline 2025-06-30