Loading...
CARD
INFO
Dominio: tbc.sa
Registrar: N/A
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 31
- Innocuo: 63
Analisi Antivirus:
Motori che NON classificano il dominio come harmless:
Analisi DNS
Certificato HTTPS
LEAKS NOTI e MALWARE
Raw data
by HudsonRock
Summary
🧠 Dispositivi infetti: 1128
🌐 Utenti compromessi: 1100
🧑💼 Utenti aziendali compromessi: 28
🔑 Password aziendali esposte: 0
🔑 Password users esposte: 0
🧬 Stealer family e conteggio
🏢 Utenze aziendali compromesse (link/conteggio)
🔐 Utenze users compromesse
🛡️ Antivirus rilevati
Dominio: tbc.sa
Registrar: N/A
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 31
- Innocuo: 63
Analisi Antivirus:
- Acronis: [harmless] clean
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [harmless] clean
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [undetected] unrated
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [undetected] unrated
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [harmless] clean
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [undetected] unrated
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [undetected] unrated
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SOCRadar: undetected (unrated)
- Trustwave: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- Xcitium Verdict Cloud: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SOCRadar: undetected (unrated)
- Trustwave: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- Xcitium Verdict Cloud: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Tipo: A, Valore: 85.184.233.178
- Tipo: TXT, Valore: MS=ms25254522
- Tipo: NS, Valore: ns2.topnet.net.sa
- Tipo: TXT, Valore: kyg5qqly5yqnnbrcv7253x6jtpczr8kg
- Tipo: TXT, Valore: lfqukc5i2gh4nv6erlkdpdajma
- Tipo: NS, Valore: ns7.topnet.net.sa
- Tipo: TXT, Valore: v=spf1 mx a a:mail.tbc.sa ip4:176.241.185.161 ip4:176.241.185.162 include:spf.protection.outlook.com ~all
- Tipo: SOA, Valore: ns2.topnet.net.sa
- Tipo: TXT, Valore: MS=ms39584212
- Tipo: MX, Valore: tbc-sa.mail.protection.outlook.com
- Tipo: TXT, Valore: q5+VyTpk5Us8Q9Jt8KQZmk+y0nMlyv/kWrkU8fqRtBQ22Om7lO/8qCiTCdbvqWzWyNR432AhJEGwk9i4+AurqQ==
- Tipo: TXT, Valore: docusign=9c9a0740-74ec-4ece-9aa1-387a27d123ac
- Tipo: NS, Valore: ns4.topnet.net.sa
- Tipo: TXT, Valore: MS=ms25254522
- Tipo: NS, Valore: ns2.topnet.net.sa
- Tipo: TXT, Valore: kyg5qqly5yqnnbrcv7253x6jtpczr8kg
- Tipo: TXT, Valore: lfqukc5i2gh4nv6erlkdpdajma
- Tipo: NS, Valore: ns7.topnet.net.sa
- Tipo: TXT, Valore: v=spf1 mx a a:mail.tbc.sa ip4:176.241.185.161 ip4:176.241.185.162 include:spf.protection.outlook.com ~all
- Tipo: SOA, Valore: ns2.topnet.net.sa
- Tipo: TXT, Valore: MS=ms39584212
- Tipo: MX, Valore: tbc-sa.mail.protection.outlook.com
- Tipo: TXT, Valore: q5+VyTpk5Us8Q9Jt8KQZmk+y0nMlyv/kWrkU8fqRtBQ22Om7lO/8qCiTCdbvqWzWyNR432AhJEGwk9i4+AurqQ==
- Tipo: TXT, Valore: docusign=9c9a0740-74ec-4ece-9aa1-387a27d123ac
- Tipo: NS, Valore: ns4.topnet.net.sa
- Emesso da: DigiCert Global G2 TLS RSA SHA256 2020 CA1
- Intestato a: *.tbc.sa
- Valido dal: 2025-02-13 00:00:00
- Valido fino al: 2026-03-16 23:59:59
- Algoritmo firma: RSA
- Versione: V3
- Serial number: b14abfa9f3242b89debc10dc569d4eb
- Intestato a: *.tbc.sa
- Valido dal: 2025-02-13 00:00:00
- Valido fino al: 2026-03-16 23:59:59
- Algoritmo firma: RSA
- Versione: V3
- Serial number: b14abfa9f3242b89debc10dc569d4eb
Summary
🧠 Dispositivi infetti: 1128
🌐 Utenti compromessi: 1100
🧑💼 Utenti aziendali compromessi: 28
🔑 Password aziendali esposte: 0
🔑 Password users esposte: 0
🧬 Stealer family e conteggio
RedLine: 972
Lumma: 576
Raccoon: 152
StealC: 122
Vidar: 78
UNKNOWN: 18
Azorult: 12
Mystic: 8
CRYPTBOT: 4
Ficker: 2
Lumma: 576
Raccoon: 152
StealC: 122
Vidar: 78
UNKNOWN: 18
Azorult: 12
Mystic: 8
CRYPTBOT: 4
Ficker: 2
https://mail.tbc.sa/owa/auth/logon.aspx: 29
https://vpn.tbc.sa/dana-na/auth/url_default/welcome.cgi: 16
https://idserv.tbc.sa/Account/Login: 5
https://digital.tbc.sa/TBC-Fusion-SSHR-TEST-Element: 5
https://digital.tbc.sa/TBC-Fusion-SSHR-TEST: 2
https://•••••••.tbc.sa: 2
https://•••••••.tbc.sa/•••-•••••••: 2
https://••••.tbc.sa: 1
https://••••.tbc.sa/•••/••••••••••••••••/••••••••.••••: 1
https://vpn.tbc.sa/dana-na/auth/url_default/welcome.cgi: 16
https://idserv.tbc.sa/Account/Login: 5
https://digital.tbc.sa/TBC-Fusion-SSHR-TEST-Element: 5
https://digital.tbc.sa/TBC-Fusion-SSHR-TEST: 2
https://•••••••.tbc.sa: 2
https://•••••••.tbc.sa/•••-•••••••: 2
https://••••.tbc.sa: 1
https://••••.tbc.sa/•••/••••••••••••••••/••••••••.••••: 1
-
https://idserv.tbc.sa/Account/Login: 764
https://es.tbc.sa/TBCPortalUI: 190
http://tbc.sa/Tarkhees/AR/Login.aspx: 152
http://cq.tbc.sa/login.aspx: 137
https://idserv.tbc.sa/account/login: 125
https://tbc.sa/••••••••/••/•••••.••••: 124
http://••.tbc.sa/••••••.••••: 106
https://••••••.tbc.sa: 87
https://••-•••.tbc.sa: 57
https://•••.tbc.sa/••••••••/••/•••••.••••: 53
https://tbc.sa/•••••••••/••••••••.••••: 46
https://••.tbc.sa/•••••••••••/: 40
http://tbc.sa/•••••••/••/•••••.••••: 31
https://tbc.sa/•••••••/••/•••••.••••: 29
https://••••••••.tbc.sa/•••••/•••••••••/••••••: 29
http://••.tbc.sa: 29
http://tbc.sa/•••••••••/••••••••.••••: 25
https://••••••••.tbc.sa/•••••/•••••••••/••••••••: 24
http://tbc.sa/••••••••/••/•••••.••••: 23
https://tbc.sa/••••••••/••/•••••.••••: 21
https://tbc.sa: 20
https://••-•••.tbc.sa/•••••••: 18
https://•••.tbc.sa/••••••••/••/••••••.••••: 18
https://••.tbc.sa: 16
https://•••.tbc.sa: 14
https://•••••••••.tbc.sa: 13
https://••••••••.tbc.sa: 12
https://tbc.sa/•••••••/••/•••••.••••: 11
http://tbc.sa/•••••••••/•••••.••••: 10
https://•••••••••.tbc.sa/•••••••••/•••••/•••••.••••: 9
https://•••.tbc.sa/••••••••/••/•••••.••••: 8
https://•••.tbc.sa/••••••••••/••/•••••.••••: 8
https://tbc.sa/•••••••••/••••••••.••••: 7
https://•••••••••.tbc.sa/•••••••••/•••••/•••••.••••: 7
http://tbc.sa: 7
https://•••.tbc.sa/••••••••/•••••/••••••••/•••••.••••: 7
https://tbc.sa/•••••••••/•••••.••••: 7
https://•••••••••.tbc.sa/: 6
https://•••.tbc.sa/••••••••/••/••••••.••••: 6
http://tbc.sa/••••••••/•••••/••••••••/•••••.••••: 6
https://•••.tbc.sa/•••••••••/•••••.••: 5
https://••.tbc.sa/•••••••••••/••••: 5
https://•••.tbc.sa/•••••••/••/•••••.••••: 4
http://tbc.sa/•••••••/••/•••••.••••: 4
https://tbc.sa/•••••••/•••/•••••.••••: 4
https://••.tbc.sa/••••••/•••••: 3
http://••.tbc.sa/: 3
http://tbc.sa/•••••••••/••••••••.••••: 3
https://tbc.sa/••••••••/••/••••••.••••: 3
https://•••.tbc.sa/•••••••••/•••••.••: 3
http://tbc.sa/••••••••/••/•••••.••••: 3
https://tbc.sa/••••••••/••/••••••.••••: 3
http://tbc.sa/••••••••/••/••••••.••••: 3
https://tbc.sa/•••••••/••/•••••••••••.••••: 3
https://tbc.sa/•••••••/•••••••/•••••.••••: 3
https://tbc.sa/••••••••/•••••/••••••••/•••••.••••: 3
https://••.tbc.sa/•••••••••••: 2
https://tbc.sa/••••••••••/••/•••••.••••: 2
https://•••.tbc.sa/•••••••/••/•••••.••••: 2
https://•••••••••.tbc.sa/•••••••••/•••••/•••••.••••: 2
https://•••••••.tbc.sa/•••-•••••••: 2
http://••••••.tbc.sa: 2
https://••••••••.tbc.sa: 2
http://••••••.tbc.sa/••••••••/•••••••/•••••••••••••: 2
https://••••••••.tbc.sa/•••-•••••••: 2
https://•••••••.tbc.sa: 2
http://tbc.sa/•••••••/••/•••••.••••: 2
https://••••••.tbc.sa: 2
https://tbc.sa/••••••••••/••/•••••.••••: 2
http://tbc.sa/•••••••/••/•••••••••••.••••: 1
http://tbc.sa/••••••••/••/••••••.••••: 1
http://•••.tbc.sa/: 1
http://•••.tbc.sa/•••••••/••/•••••.••••: 1
https://•••.tbc.sa/: 1
https://•••.tbc.sa/•••••••/•••••••/•••••: 1
https://••••••.tbc.sa/: 1
https://••••••.tbc.sa/: 1
https://•••.tbc.sa/: 1
http://•••.tbc.sa: 1
https://•••••••.tbc.sa/•••-••••••-••••-••••: 1
https://tbc.sa/•••••••/••/••••••••••••••••••.••••: 1
https://••.tbc.sa/•••••••••••/•••••••••: 1
https://•••.tbc.sa/•••••••••/••••••••.•••: 1
https://••••••••.tbc.sa:••••/••••••/•••••••••••.••••••: 1
http://•••.tbc.sa/•••••••/••/•••••.••••: 1
https://tbc.sa/•••••••/••/•••••.••••: 1
https://•••.tbc.sa/•••••••/•••••••/•••••: 1
https://tbc.sa/•••••••/••/•••••••••••.••••: 1
http://•••.tbc.sa/•••••••••/•••••.••••: 1
https://tbc.sa/••••••••: 1
http://tbc.sa/•••••••/•••/•••••.••••: 1
Norton Security: 3
Windows Defender: 11
Avast Antivirus: 3
Not Found: 7
Windows Defender: 11
Avast Antivirus: 3
Not Found: 7