IOC LOOKUP
// SEARCH IP, DOMAIN, HASH, OR URL AGAINST OTX THREAT INTELLIGENCE
Indicator of Compromise Search
✦ IPv4 Address
✦ Domain
✦ MD5/SHA1/SHA256 Hash
✦ URL
INDICATOR
msofficecloudtransferfileprotocolsys.duckdns.org
35
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM
35/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN
LOW
MED
HIGH
CRIT
0
25
50
75
100
OTX
0/30
0 pulses
VIRUSTOTAL
25/35
8/94 detected
ABUSEIPDB
—/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
| Indicator | msofficecloudtransferfileprotocolsys.duckdns.org |
| Whois Domain | http://whois.domaintools.com/msofficecloudtransferfileprotocolsys.duckdns.org |
| Type | domain |
AlienVault OTX Analysis
↗ View on OTX
0
PULSE HITS
| Pulse Hits | 0 |
| Indicator Type | Domain |
| Threat Level | |
| Validation | majestic |
VirusTotal Analysis
↗ View on VirusTotal
8/94
DETECTIONS
MALICIOUS
| Malicious | 8 |
| Suspicious | 0 |
| Harmless | 53 |
| Undetected | 33 |
| Reputation | 0 |
TOP DETECTIONS
| VENDOR | RESULT |
|---|---|
| ADMINUSLabs | malicious |
| BitDefender | malware |
| CyRadar | malware |
| Fortinet | malware |
| G-Data | malware |
| Sophos | malicious |
| Webroot | malicious |
| alphaMountain.ai | malicious |
URLhaus (abuse.ch)
↗ View on URLhaus
⚠ LISTED
URLHAUS
| URLs Found | 6 |
ASSOCIATED URLs
| URL | STATUS / TYPE | DATE |
|---|---|---|
| http://msofficecloudtransferfileprotocolsys.duc... | offline | 2020-02-03 |
| http://msofficecloudtransferfileprotocolsys.duc... | offline | 2020-02-03 |
| http://msofficecloudtransferfileprotocolsys.duc... | offline | 2020-02-03 |
| http://msofficecloudtransferfileprotocolsys.duc... | offline | 2020-02-03 |
| http://msofficecloudtransferfileprotocolsys.duc... | offline | 2020-02-03 |
| http://msofficecloudtransferfileprotocolsys.duc... | offline | 2020-02-03 |