Loading...
CARD
INFO
Dominio: salvationarmy.org
Registrar: Network Solutions, LLC
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 30
- Innocuo: 64
Analisi Antivirus:
Motori che NON classificano il dominio come harmless:
Analisi DNS
Certificato HTTPS
LEAKS NOTI e MALWARE
Raw data
by HudsonRock
Summary
🧠 Dispositivi infetti: 75
🌐 Utenti compromessi: 47
🧑💼 Utenti aziendali compromessi: 28
🔑 Password aziendali esposte: 17
🔑 Password users esposte: 19
🧬 Stealer family e conteggio
🏢 Utenze aziendali compromesse (link/conteggio)
🔐 Utenze users compromesse
🛡️ Antivirus rilevati
Dominio: salvationarmy.org
Registrar: Network Solutions, LLC
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 30
- Innocuo: 64
Analisi Antivirus:
- Acronis: [harmless] clean
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [harmless] clean
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [harmless] clean
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Tipo: NS, Valore: pdns3.ultradns.org
- Tipo: TXT, Valore: facebook-domain-verification=qpbyy2h02qitacy9gdl1cwdvmjauze
- Tipo: MX, Valore: salvationarmy-org.mail.protection.outlook.com
- Tipo: A, Valore: 3.220.48.37
- Tipo: A, Valore: 52.86.199.145
- Tipo: NS, Valore: pdns2.ultradns.net
- Tipo: NS, Valore: pdns1.ultradns.net
- Tipo: TXT, Valore: v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf.protection.outlook.com -all
- Tipo: NS, Valore: pdns6.ultradns.co.uk
- Tipo: SOA, Valore: pdns1.ultradns.net
- Tipo: TXT, Valore: google-site-verification=ECzXYgOFSK0pAPUtGWuc2-2u2HcMWQ_Q7M9vc6idsi0
- Tipo: NS, Valore: pdns5.ultradns.info
- Tipo: TXT, Valore: k4lnu6r9rir1dql12bejjtc3v4b
- Tipo: TXT, Valore: atlassian-domain-verification=BQGMs65JUYMSeca9j7m0YaCI7ADAc0z65wvs/Jl7S1GqgmJqPkKrFo9Ow4VD7rWp
- Tipo: TXT, Valore: google-site-verification=6Pa6tO2EjM20xypqFTsAv0KGcRK2Y93CY2FRVScc0g4
- Tipo: NS, Valore: pdns4.ultradns.org
- Tipo: TXT, Valore: klaviyo-site-verification=XvRtQ5
- Tipo: TXT, Valore: facebook-domain-verification=qpbyy2h02qitacy9gdl1cwdvmjauze
- Tipo: MX, Valore: salvationarmy-org.mail.protection.outlook.com
- Tipo: A, Valore: 3.220.48.37
- Tipo: A, Valore: 52.86.199.145
- Tipo: NS, Valore: pdns2.ultradns.net
- Tipo: NS, Valore: pdns1.ultradns.net
- Tipo: TXT, Valore: v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf.protection.outlook.com -all
- Tipo: NS, Valore: pdns6.ultradns.co.uk
- Tipo: SOA, Valore: pdns1.ultradns.net
- Tipo: TXT, Valore: google-site-verification=ECzXYgOFSK0pAPUtGWuc2-2u2HcMWQ_Q7M9vc6idsi0
- Tipo: NS, Valore: pdns5.ultradns.info
- Tipo: TXT, Valore: k4lnu6r9rir1dql12bejjtc3v4b
- Tipo: TXT, Valore: atlassian-domain-verification=BQGMs65JUYMSeca9j7m0YaCI7ADAc0z65wvs/Jl7S1GqgmJqPkKrFo9Ow4VD7rWp
- Tipo: TXT, Valore: google-site-verification=6Pa6tO2EjM20xypqFTsAv0KGcRK2Y93CY2FRVScc0g4
- Tipo: NS, Valore: pdns4.ultradns.org
- Tipo: TXT, Valore: klaviyo-site-verification=XvRtQ5
- Emesso da: Amazon RSA 2048 M03
- Intestato a: salvationarmy.org
- Valido dal: 2024-07-20 00:00:00
- Valido fino al: 2025-08-18 23:59:59
- Algoritmo firma: RSA
- Versione: V3
- Serial number: d3b6bbae23857f958b3d14a7b3dac37
- Intestato a: salvationarmy.org
- Valido dal: 2024-07-20 00:00:00
- Valido fino al: 2025-08-18 23:59:59
- Algoritmo firma: RSA
- Versione: V3
- Serial number: d3b6bbae23857f958b3d14a7b3dac37
Summary
🧠 Dispositivi infetti: 75
🌐 Utenti compromessi: 47
🧑💼 Utenti aziendali compromessi: 28
🔑 Password aziendali esposte: 17
🔑 Password users esposte: 19
🧬 Stealer family e conteggio
RedLine: 27
Lumma: 14
Generic Stealer: 14
Azorult: 7
StealC: 5
Raccoon: 5
UNKNOWN: 2
Vidar: 1
Lumma: 14
Generic Stealer: 14
Azorult: 7
StealC: 5
Raccoon: 5
UNKNOWN: 2
Vidar: 1
https://sts.can.salvationarmy.org/adfs/ls: 7
https://sts.can.salvationarmy.org: 6
https://sts.can.salvationarmy.org/adfs/ls/: 5
https://ukimail.salvationarmy.org/mail/mkarickova.nsf: 4
https://sapmail.salvationarmy.org: 4
https://•••••••.salvationarmy.org/•••••.•••: 4
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/••••: 3
http://••••••.salvationarmy.org: 3
http://•••••.salvationarmy.org/••••••••••/•••••/••••••••.••••: 3
https://•••••.salvationarmy.org/••••/••••••/•••••••••: 2
https://•••.•••.salvationarmy.org/••••/••••••/••••••••••••••: 2
https://•••••••••••.salvationarmy.org/•••••••••••/•••••: 2
https://•••••••.salvationarmy.org/••••/••••••.•••: 2
https://•••••••••.salvationarmy.org: 2
https://••••••••••.salvationarmy.org: 2
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/•••••: 2
https://•••••••••••.salvationarmy.org/••••••••/•••••: 2
http://•••••.salvationarmy.org: 2
https://••••.•••.salvationarmy.org/••••/••••••••••••••••.•••/($•••••)/••••••••••••••••••••••••••••••••/: 1
https://•••.•••.salvationarmy.org/: 1
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/••••/: 1
https://•••.salvationarmy.org/•••••••: 1
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/••••: 1
https://••••-••.salvationarmy.org: 1
https://•••••••••••.salvationarmy.org/•••••••/•••••: 1
https://••••.•••.salvationarmy.org/••••/•••••••••.•••/••••••/••••: 1
https://••••.•••.salvationarmy.org/••••/••••••••••.•••/••••••/••••: 1
http://••••••.salvationarmy.org/••••/••••••••.•••/••••••/•••••: 1
https://•••••••••.salvationarmy.org/••••/•••/••••••.•••: 1
https://sts.can.salvationarmy.org: 6
https://sts.can.salvationarmy.org/adfs/ls/: 5
https://ukimail.salvationarmy.org/mail/mkarickova.nsf: 4
https://sapmail.salvationarmy.org: 4
https://•••••••.salvationarmy.org/•••••.•••: 4
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/••••: 3
http://••••••.salvationarmy.org: 3
http://•••••.salvationarmy.org/••••••••••/•••••/••••••••.••••: 3
https://•••••.salvationarmy.org/••••/••••••/•••••••••: 2
https://•••.•••.salvationarmy.org/••••/••••••/••••••••••••••: 2
https://•••••••••••.salvationarmy.org/•••••••••••/•••••: 2
https://•••••••.salvationarmy.org/••••/••••••.•••: 2
https://•••••••••.salvationarmy.org: 2
https://••••••••••.salvationarmy.org: 2
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/•••••: 2
https://•••••••••••.salvationarmy.org/••••••••/•••••: 2
http://•••••.salvationarmy.org: 2
https://••••.•••.salvationarmy.org/••••/••••••••••••••••.•••/($•••••)/••••••••••••••••••••••••••••••••/: 1
https://•••.•••.salvationarmy.org/: 1
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/••••/: 1
https://•••.salvationarmy.org/•••••••: 1
https://•••••••.salvationarmy.org/••••/••••••••.•••/••••••/••••: 1
https://••••-••.salvationarmy.org: 1
https://•••••••••••.salvationarmy.org/•••••••/•••••: 1
https://••••.•••.salvationarmy.org/••••/•••••••••.•••/••••••/••••: 1
https://••••.•••.salvationarmy.org/••••/••••••••••.•••/••••••/••••: 1
http://••••••.salvationarmy.org/••••/••••••••.•••/••••••/•••••: 1
https://•••••••••.salvationarmy.org/••••/•••/••••••.•••: 1
-
https://sigem.salvationarmy.org/ModSistema/Forms/FrmLogin.aspx: 89
https://mobilising.salvationarmy.org: 14
https://kyainotes.salvationarmy.org/names.nsf: 6
http://sigem.salvationarmy.org/ModSistema/Forms/FrmLogin.aspx: 4
https://sasaw2.salvationarmy.org: 4
https://••••••.salvationarmy.org/••••••••.•••: 4
https://••••••.salvationarmy.org/•••••.•••: 4
https://••••••••••.salvationarmy.org/: 3
http://••••••.salvationarmy.org/••••••••.•••: 3
https://•••••••.salvationarmy.org/••••••••.•••: 3
https://•••••••.salvationarmy.org: 3
https://••••.•••.salvationarmy.org/: 2
https://••••••.salvationarmy.org/•••••.•••: 2
https://••••••.salvationarmy.org/: 2
https://•••••••••.salvationarmy.org/•••••.•••: 2
http://•••••••••••.salvationarmy.org: 2
https://•••••••••.salvationarmy.org: 2
https://•••••••••.salvationarmy.org: 2
https://•••••••••.salvationarmy.org/•••••.•••: 2
https://••••.•••.salvationarmy.org: 2
http://••••••.salvationarmy.org/: 1
https://••••.•••.salvationarmy.org/•••••.•••: 1
https://•••••••••••.salvationarmy.org/: 1
https://•••••••••.salvationarmy.org/: 1
https://••••.salvationarmy.org/•••••-•••-•••••: 1
https://•••••••.salvationarmy.org/: 1
https://•••.salvationarmy.org/•••••.•••: 1
https://••••••••••.salvationarmy.org/•••••;••••••••••=••••••••••••••••••••••••••••••••: 1
https://•••.•••.salvationarmy.org/••••••••/•••••••••.•••: 1
https://•••••••••••.salvationarmy.org: 1
https://•••••••••••.salvationarmy.org/••••••••/•••••: 1
http://•••••••••••.salvationarmy.org/••••••••/•••••••••••••••••••: 1
http://•••••••••••.salvationarmy.org/•••••••/•••••: 1
http://••••••.salvationarmy.org/•••••.•••: 1
http://•••••••••••.salvationarmy.org/••••••••/••••••••••••••••••••: 1
https://•••••••••••.salvationarmy.org/••••••••/••••••••••••••••••••: 1
https://•••••-•••.salvationarmy.org/••••••••••/•••••/••••••••.••••: 1
https://••••.salvationarmy.org/•••/•••••-•••••••: 1
Avira Antivirus: 1
Reason Cybersecurity: 1
Windows Defender: 2
Not Found: 1
IObit Malware Fighter: 1
Reason Cybersecurity: 1
Windows Defender: 2
Not Found: 1
IObit Malware Fighter: 1