Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
rtost.duckdns.org
Domain ✓ CLEAN — No Pulse Hits
↓ CSV ↓ JSON
10
/100
LOW
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
LOW 10/100 confidence
Limited signals detected. Monitor and correlate with other indicators.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
0/30
0 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Indicatorrtost.duckdns.org
Whois Domainhttp://whois.domaintools.com/rtost.duckdns.org
Typedomain
AlienVault OTX Analysis ↗ View on OTX
0
PULSE HITS
Pulse Hits 0
Indicator Type Domain
Threat Level
Validation majestic
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 54
ASSOCIATED URLs
URL STATUS / TYPE DATE
http://rtost.duckdns.org/target/handshake.php offline 2025-08-25
http://rtost.duckdns.org/mimicr/winlogon.com offline 2025-08-25
http://rtost.duckdns.org/mimicr/Launcher.exe offline 2025-08-25
http://rtost.duckdns.org/mimicr/WinUpdatehan.exe offline 2025-08-25
http://rtost.duckdns.org/mimicr/WinUpdate2han.exe offline 2025-08-25
http://rtost.duckdns.org/mimicr/mimicr5.7.rar offline 2025-08-25
http://rtost.duckdns.org/mimicr/LogonUi.exe offline 2025-08-25
http://rtost.duckdns.org/mimicr/Launcherhmd.exe offline 2025-08-25
http://rtost.duckdns.org/mimicr/tokenborkerdll.exe offline 2025-08-25
http://rtost.duckdns.org/mimicr/TokenBorkerCFG.exe offline 2025-08-25