Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
https://subs-paynow.msdxcdn.microsoft-ppe.com
URL ⚠ 14 PULSE HITS ⚡ CACHED
↓ CSV ↓ JSON
30
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 30/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
30/30
14 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
NOT LISTED
General Information
No additional detail available for this indicator type.
AlienVault OTX Analysis ↗ View on OTX
14
PULSE HITS
Pulse Hits 14
Indicator Type URL
Threat Level
Source ⚡ CACHED
ASSOCIATED PULSES
PULSE NAMEDATE
Trojan Dropper | Espionage | Keylogger affecting medical centers 2025-07-22
Delete service | Affects Threat Research Platforms 2025-06-23
Spyware 2025-07-21
Regarding Minority Report 2.0 | Aggresive Remote device tracking (multiple) | Network Rat 2025-06-17
Source: https://cloud.samsara.com/o/79639/flee 2025-06-17
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
✓ NOT LISTED No malicious activity found in URLhaus database.