Files
ShadowShells/blocklist.csv
Joseph Goydish II c45145756d Add files via upload
2025-12-10 18:23:29 -05:00

1.3 KiB

1typevaluefirst_seenconfidenceactionnotes
2domaingithub.stormbreaker.pro2025-12-07Highmonitor_blockPrimary suspected C2 (observed repeatedly)
3domainstormbreaker.pro2025-12-07Highmonitor_blockC2 variant
4domainkaylees.site2025-12-09Highmonitor_blockSecondary C2 / proxy
5domainpir.kaylees.site2025-12-09Highmonitor_blockRelay/variant
6domainspple.cf2025-12-09MediummonitorTyposquat / possible phishing
7domainapple.cf2025-12-09MediummonitorTyposquat / impersonation risk
8domainpstack.cf2025-12-09Highmonitor_blockDNS queries observed in telemetry
9domaine.zip2025-12-09Highmonitor_blockDownload/payload host observed
10domaincom.apple.pro2025-12-09MediummonitorImpersonation-like domain
11domaincom.apple.online2025-12-09MediummonitorImpersonation-like domain
12domainmodes.ga2025-12-09MediummonitorObserved in related telemetry
13domainquikit.ru2025-12-09MediummonitorPossible typosquat
14domaincs.cf2025-12-09MediummonitorSuspicious free-TLD domain
15domainauthoriz.gq2025-12-09MediummonitorSuspect domain
16domainphotod.cn2025-12-09MediummonitorSuspect domain
17domainnthropic.cn2025-12-09MediummonitorSuspect domain
18domaincaller-id.ru2025-12-09MediummonitorSuspect domain
19domainfamily.cn2025-12-09MediummonitorSuspect domain
20domainios.ml2025-12-09MediummonitorSuspect domain