Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
two-root.com
Domain ⚠ 8 PULSE HITS
↓ CSV ↓ JSON
30
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 30/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
8 pulses
VIRUSTOTAL
/35
N/A
ABUSEIPDB
/25
IPv4 only
URLHAUS
10/10
LISTED
General Information
Indicatortwo-root.com
Whois Domainhttp://whois.domaintools.com/two-root.com
Typedomain
AlienVault OTX Analysis ↗ View on OTX
8
PULSE HITS
Pulse Hits 8
Indicator Type Domain
Threat Level
ASSOCIATED PULSES
PULSE NAMEDATE
LummaC2 Malware and Malicious Chrome Extension Delivered 2024-09-09
LummaC2 Indicators of Compromise - 2024 2025-01-24
Usage of the LegionLoader malware to Steal Credentials 2025-01-02
StreamMining 2024-11-24
StreamMining 2024-11-24
VirusTotal Analysis ↗ View on VirusTotal
⚠ VirusTotal rate limit reached. Try again shortly.
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ LISTED
URLHAUS
URLs Found 1
ASSOCIATED URLs
URL STATUS / TYPE DATE
https://two-root.com/2407.bs64 offline 2024-07-29