ZeuS Tracker :: C&C l3d1.pp.ru

The list below shows all ZeuS configs, ZeuS binaries, ZeuS dropzones and FakeURLs which are hosted on l3d1.pp.ru.

Live Information

ZeuS C&C:l3d1.pp.ru
Malware:Citadel
IP address:194.226.41.11
Host status:online
Uptime:838:59:59
Hostname:n/a
SBL:Not listed
AS number:15835
AS name:MAP ROSNIIROS Russian Institute for Public Networks,RU
Country:- Russian Federation (RU)
Level:4 (Unknown / not categorized)
Sponsoring registrar:RU-CENTER-3LVL
Nameserver(s):a.dns.ripn.net | b.dns.ripn.net | d.dns.ripn.net | e.dns.ripn.net | f.dns.ripn.net
Date added:2017-07-15
Last checked:2018-05-07
Last updated:2018-05-07
BL status:This host is being published on the ZeuS Blocklist!

ZeuS ConfigURLs on this C&C

DateaddedZeuS ConfigURLStatusVBuilderFilesizeMD5 hashHTTP StatusFile download
2017-07-15l3d1.pp.ru/dollar1/file.phpoffline2n/a174'87649fe76998576137c87edccfaf679fcea200- download

ZeuS BinaryURLs on this C&C

DateaddedZeuS BinaryURLStatusFilesizeMD5 hashAnubisVirustotalHTTP StatusFile download

none

ZeuS DropURLs (Dropzones) on this C&C

DateaddedDropURLStatusHTTP Status
2017-07-15l3d1.pp.ru/dollar1/gate.phpoffline200

FakeURLs referenced by ZeuS Configs

ZeuS Config MD5FakeURLProtocol

Historical information

ConfigURL History

ChangedateHostConfigURLHashFile Download
2017-07-16l3d1.pp.rul3d1.pp.ru/dollar1/file.php0236d16f405afd2b34c3caa67006de3f- download
2017-07-16l3d1.pp.rul3d1.pp.ru/dollar1/file.php49fe76998576137c87edccfaf679fcea- download

# of rows: 2

Domain History

ChangedateHostIP addressAS numberAS nameCountry
2018-05-07l3d1.pp.ru0
-
2017-08-31l3d1.pp.ru179.43.184.19551852PLI-AS Private Layer INC
-
2017-08-14l3d1.pp.ru0
-
2017-08-10l3d1.pp.ru179.43.184.20151852PLI-AS Private Layer INC
-
2017-08-04l3d1.pp.ru179.43.184.19451852PLI-AS Private Layer INC
-
2017-07-24l3d1.pp.ru0
-
2017-07-21l3d1.pp.ru179.43.184.20151852PLI-AS Private Layer INC
-
2017-07-17l3d1.pp.ru179.43.184.19851852PLI-AS Private Layer INC
-

# of rows: 8