Loading...
CARD
INFO
Dominio: repremundo.com.co
Registrar: Mi.com.co
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 31
- Innocuo: 63
Analisi Antivirus:
Motori che NON classificano il dominio come harmless:
Analisi DNS
Certificato HTTPS
LEAKS NOTI e MALWARE
Raw data
by HudsonRock
Summary
🧠 Dispositivi infetti: 55
🌐 Utenti compromessi: 51
🧑💼 Utenti aziendali compromessi: 4
🔑 Password aziendali esposte: 4
🔑 Password users esposte: 229
🧬 Stealer family e conteggio
🏢 Utenze aziendali compromesse (link/conteggio)
🔐 Utenze users compromesse
🛡️ Antivirus rilevati
Dominio: repremundo.com.co
Registrar: Mi.com.co
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 31
- Innocuo: 63
Analisi Antivirus:
- Acronis: [harmless] clean
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [undetected] unrated
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [undetected] unrated
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- Xcitium Verdict Cloud: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- Xcitium Verdict Cloud: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Tipo: NS, Valore: nameserver01.mi.com.co
- Tipo: TXT, Valore: r36hbkju325q9a61jp1vdkhves
- Tipo: SOA, Valore: nameserver01.mi.com.co
- Tipo: TXT, Valore: MS=ms68943950
- Tipo: TXT, Valore: MS=F8FDC83B95DF324F8FC7AAFEDBF9CC28D090858D
- Tipo: NS, Valore: nameserver03.mi.com.co
- Tipo: NS, Valore: nameserver04.mi.com.co
- Tipo: A, Valore: 192.124.249.4
- Tipo: NS, Valore: nameserver02.mi.com.co
- Tipo: TXT, Valore: v=spf1 +a:ocapp.repremundo.com.co ip4:45.169.253.100 include:spf.mandrillapp.com include:servers.mcsv.net include:6919278.spf06.hubspotemail.net include:spf.protection.outlook.com ~all
- Tipo: MX, Valore: repremundo-com-co.mail.protection.outlook.com
- Tipo: TXT, Valore: r36hbkju325q9a61jp1vdkhves
- Tipo: SOA, Valore: nameserver01.mi.com.co
- Tipo: TXT, Valore: MS=ms68943950
- Tipo: TXT, Valore: MS=F8FDC83B95DF324F8FC7AAFEDBF9CC28D090858D
- Tipo: NS, Valore: nameserver03.mi.com.co
- Tipo: NS, Valore: nameserver04.mi.com.co
- Tipo: A, Valore: 192.124.249.4
- Tipo: NS, Valore: nameserver02.mi.com.co
- Tipo: TXT, Valore: v=spf1 +a:ocapp.repremundo.com.co ip4:45.169.253.100 include:spf.mandrillapp.com include:servers.mcsv.net include:6919278.spf06.hubspotemail.net include:spf.protection.outlook.com ~all
- Tipo: MX, Valore: repremundo-com-co.mail.protection.outlook.com
- Emesso da: Starfield Secure Certificate Authority - G2
- Intestato a: repremundo.com.co
- Valido dal: 2024-08-09 14:29:44
- Valido fino al: 2025-08-09 14:29:44
- Algoritmo firma: RSA
- Versione: V3
- Serial number: 4de38adde8d38e46
- Intestato a: repremundo.com.co
- Valido dal: 2024-08-09 14:29:44
- Valido fino al: 2025-08-09 14:29:44
- Algoritmo firma: RSA
- Versione: V3
- Serial number: 4de38adde8d38e46
Summary
🧠 Dispositivi infetti: 55
🌐 Utenti compromessi: 51
🧑💼 Utenti aziendali compromessi: 4
🔑 Password aziendali esposte: 4
🔑 Password users esposte: 229
🧬 Stealer family e conteggio
RedLine: 35
Generic Stealer: 7
Lumma: 6
StealC: 5
Raccoon: 2
Generic Stealer: 7
Lumma: 6
StealC: 5
Raccoon: 2
http://nomina.repremundo.com.co:18080/NominaWEB/common/mainPages/login.seam: 2
http://nomina.repremundo.com.co:18080/nominaweb/common/mainpages/login.seam: 1
http://git-repo.repremundo.com.co/users/sign_in: 1
http://nomina.repremundo.com.co:18080/nominaweb/common/mainpages/login.seam: 1
http://git-repo.repremundo.com.co/users/sign_in: 1
-
http://app.repremundo.com.co/produccion/opencomex/forms/importar/frrsynue.php: 23
https://gestordocumental.repremundo.com.co/user/login: 23
https://conexiongrm.repremundo.com.co/produccion/Kaizen: 21
https://conexiongrm.repremundo.com.co/produccion/Kaizen/index.php: 17
https://visordocumental.repremundo.com.co/dist: 10
http://•••••••••••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/•••••••••.•••: 9
http://•••••••••••.repremundo.com.co/••••••••••/•••••••••/•••••/••••••••/••••••••.•••: 9
https://•••••••••••.repremundo.com.co/••••••••••/•••••••••/•••••/••••••••/••••••••.•••: 9
https://•••••••••••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/•••••••••.•••: 9
http://•••.repremundo.com.co/••••••••••/••••••••••/: 6
http://•••••••.repremundo.com.co/••••••••••/••••••••••/: 6
https://•••••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/•••••••••.•••: 6
https://•••••••••••.repremundo.com.co/••••••••••/••••••/: 5
http://•••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/•••••••••.•••: 5
https://•••••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/••••••••.•••: 4
http://•••••••••••.repremundo.com.co/••••••••••/••••••••/••••••••••.•••: 4
https://•••••••••••.repremundo.com.co/••••••••••/••••••/•••••.•••: 4
https://•••••••••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/•••••••••.•••: 4
https://•••••••••••••••.repremundo.com.co/••••/: 4
https://•••.repremundo.com.co/••••••••••/•••/••••••: 4
https://•••••-•••••••.repremundo.com.co/•••••: 4
https://•••••••••••.repremundo.com.co/••••••••••/••••••••••: 3
http://•••.repremundo.com.co/••••••••••/••••••••••: 3
http://•••••••.repremundo.com.co/••••••••••/••••••••••: 3
http://••••••.repremundo.com.co:•••••/•••••••••/••••••/•••••••••/•••••.••••: 3
https://•••••••••••.repremundo.com.co/••••••••••/••••••••••/•••••/•••••••/••••••••.•••: 3
https://••••••••••.repremundo.com.co/•••••: 3
http://••••••.repremundo.com.co:•••••/•••••••••/••••••/•••••••••/•••••.••••: 2
https://••••••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/•••••••••.•••: 2
https://•••••••••.repremundo.com.co/••••••••••/•••••••••/•••••/•••••/••••••••.•••: 2
https://•••••.repremundo.com.co: 2
http://•••-••••.repremundo.com.co/•••••/••••_••: 2
http://•••-•••.repremundo.com.co/•••/•••••.•••: 2
https://•••••••••••.repremundo.com.co/••••••••••/••••••••••/•••••.•••: 2
http://•••.repremundo.com.co/••••••••••/•••/••••••: 1
https://•••.repremundo.com.co/••••••••••/•••/••••••/: 1
https://•••••••••••.repremundo.com.co/••••••••••/••••••••/••••••••••.•••: 1
http://•••••••.repremundo.com.co: 1
http://•••-•••••.repremundo.com.co/•••••: 1
https://•••••••••••.repremundo.com.co/••••••••••/•••••••••••/•••••/•••••/•••••••.•••: 1
https://••••••••••-••••.repremundo.com.co: 1
https://••••••••••-•••••.repremundo.com.co: 1
http://•••-•••.repremundo.com.co/•••: 1
https://•••-••••••.repremundo.com.co/•••••: 1
https://•••••.repremundo.com.co: 1
Windows Defender: 3