Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
ransokk.de
Domain ⚠ 7 PULSE HITS
↓ CSV ↓ JSON
30
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 30/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
7 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Indicatorransokk.de
Whois Domainhttp://whois.domaintools.com/ransokk.de
Typedomain
AlienVault OTX Analysis ↗ View on OTX
7
PULSE HITS
Pulse Hits 7
Indicator Type Domain
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
URLHaus 2026-02-08
Malware_Distribution | Feb 20, 2026 2026-02-20
Malware_Distribution | Feb 20, 2026 2026-02-19
Malware_Distribution | Feb 20, 2026 2026-02-19
Malware_Distribution | Feb 19, 2026 2026-02-19
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 16
ASSOCIATED URLs
URL STATUS / TYPE DATE
http://ransokk.de/bins/morte.x86_64 offline 2025-09-06
http://ransokk.de/bins/morte.x86 offline 2025-09-06
http://ransokk.de/1.sh offline 2025-09-06
http://ransokk.de/bins/morte.arm6 offline 2025-09-06
http://ransokk.de/bins/morte.i686 offline 2025-09-06
http://ransokk.de/bins/morte.arm7 offline 2025-09-06
http://ransokk.de/bins/morte.mpsl offline 2025-09-06
http://ransokk.de/bins/morte.sh4 offline 2025-09-06
http://ransokk.de/bins/morte.mips offline 2025-09-06
http://ransokk.de/bins/morte.spc offline 2025-09-06