Loading...
CARD
INFO
Dominio: justiciamilitar.gov.co
Registrar: .CO Internet S.A.S.
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 32
- Innocuo: 62
Analisi Antivirus:
Motori che NON classificano il dominio come harmless:
Analisi DNS
Certificato HTTPS
LEAKS NOTI e MALWARE
Raw data
by HudsonRock
Summary
🧠 Dispositivi infetti: 179
🌐 Utenti compromessi: 162
🧑💼 Utenti aziendali compromessi: 17
🔑 Password aziendali esposte: 53
🔑 Password users esposte: 215
🧬 Stealer family e conteggio
🏢 Utenze aziendali compromesse (link/conteggio)
🔐 Utenze users compromesse
🛡️ Antivirus rilevati
Dominio: justiciamilitar.gov.co
Registrar: .CO Internet S.A.S.
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 32
- Innocuo: 62
Analisi Antivirus:
- Acronis: [harmless] clean
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [undetected] unrated
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [undetected] unrated
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [harmless] clean
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [undetected] unrated
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [undetected] unrated
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [harmless] clean
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: undetected (unrated)
- Axur: undetected (unrated)
- alphaMountain.ai: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Kaspersky: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Axur: undetected (unrated)
- alphaMountain.ai: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Kaspersky: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Tipo: TXT, Valore: MS=ms93621143
- Tipo: NS, Valore: ans1co.cirion.live
- Tipo: MX, Valore: justiciamilitar-gov-co.mail.protection.outlook.com
- Tipo: TXT, Valore: MS=CB0FB24A8FA70C64AEE44AD730454290AA55329A
- Tipo: AAAA, Valore: 2600:1f16:51d:b101:57a4:9b99:8fb1:d531
- Tipo: TXT, Valore: 6FA5721A2847973F9DA2977A2D8DD65C49733A6A54D9F9787FF29F1CA3C0058B comodoca.com ZIdA1SO8
- Tipo: TXT, Valore: verification=1b9883dad2b617eee5a91f262951d6dc904a8ec764b7b8e3c19fa21f832096ec
- Tipo: AAAA, Valore: 2600:1f16:51d:b102:9c6f:a89f:26d3:10f7
- Tipo: NS, Valore: ans2co.cirion.live
- Tipo: A, Valore: 3.148.4.205
- Tipo: A, Valore: 52.15.171.225
- Tipo: SOA, Valore: ns-872.awsdns-45.net
- Tipo: TXT, Valore: v=spf1 a mx ip4:204.199.89.211 ip4:204.199.89.212 ip4:204.199.89.213 ip4:204.199.89.214 ip4:204.199.89.215 ip4:204.199.89.216 ip4:204.199.89.217 include:spf.protection.outlook.com -all
- Tipo: NS, Valore: ans1co.cirion.live
- Tipo: MX, Valore: justiciamilitar-gov-co.mail.protection.outlook.com
- Tipo: TXT, Valore: MS=CB0FB24A8FA70C64AEE44AD730454290AA55329A
- Tipo: AAAA, Valore: 2600:1f16:51d:b101:57a4:9b99:8fb1:d531
- Tipo: TXT, Valore: 6FA5721A2847973F9DA2977A2D8DD65C49733A6A54D9F9787FF29F1CA3C0058B comodoca.com ZIdA1SO8
- Tipo: TXT, Valore: verification=1b9883dad2b617eee5a91f262951d6dc904a8ec764b7b8e3c19fa21f832096ec
- Tipo: AAAA, Valore: 2600:1f16:51d:b102:9c6f:a89f:26d3:10f7
- Tipo: NS, Valore: ans2co.cirion.live
- Tipo: A, Valore: 3.148.4.205
- Tipo: A, Valore: 52.15.171.225
- Tipo: SOA, Valore: ns-872.awsdns-45.net
- Tipo: TXT, Valore: v=spf1 a mx ip4:204.199.89.211 ip4:204.199.89.212 ip4:204.199.89.213 ip4:204.199.89.214 ip4:204.199.89.215 ip4:204.199.89.216 ip4:204.199.89.217 include:spf.protection.outlook.com -all
- Emesso da: Sectigo RSA Organization Validation Secure Server CA
- Intestato a: *.justiciamilitar.gov.co
- Valido dal: 2024-05-29 00:00:00
- Valido fino al: 2025-06-29 23:59:59
- Algoritmo firma: RSA
- Versione: V3
- Serial number: f9ebba4d0b1a1059fa676030c24e9a13
- Intestato a: *.justiciamilitar.gov.co
- Valido dal: 2024-05-29 00:00:00
- Valido fino al: 2025-06-29 23:59:59
- Algoritmo firma: RSA
- Versione: V3
- Serial number: f9ebba4d0b1a1059fa676030c24e9a13
Summary
🧠 Dispositivi infetti: 179
🌐 Utenti compromessi: 162
🧑💼 Utenti aziendali compromessi: 17
🔑 Password aziendali esposte: 53
🔑 Password users esposte: 215
🧬 Stealer family e conteggio
RedLine: 206
Lumma: 54
Raccoon: 42
Generic Stealer: 15
StealC: 10
Vidar: 4
UNKNOWN: 4
Lumma: 54
Raccoon: 42
Generic Stealer: 15
StealC: 10
Vidar: 4
UNKNOWN: 4
https://correo.justiciamilitar.gov.co/owa/auth/logon.aspx: 28
https://correo.justiciamilitar.gov.co: 23
https://soportejpm.justiciamilitar.gov.co: 1
https://aula.justiciamilitar.gov.co/moodle/login/index.php: 1
https://correo.justiciamilitar.gov.co: 23
https://soportejpm.justiciamilitar.gov.co: 1
https://aula.justiciamilitar.gov.co/moodle/login/index.php: 1
-
https://www.justiciamilitar.gov.co/irj/servlet/prt/portal/prtroot/pcd!3aportal_content!2fportales!2fmdn!2fEspanol!2fsuper_administrador!2fframework!2fcontenido!2fgov.mdn.desktop_contenido_mdn!2fframeworkPages!2fgov.mdn.home_mdn!2fcom.sap.portal.innerpage: 80
https://justiciamilitar.gov.co/irj/servlet/prt/portal/prtroot/pcd!3aportal_content!2fportales!2fmdn!2fEspanol!2fsuper_administrador!2fframework!2fcontenido!2fgov.mdn.desktop_contenido_mdn!2fframeworkPages!2fgov.mdn.home_mdn!2fcom.sap.portal.innerpage: 49
https://www.justiciamilitar.gov.co/irj/servlet/prt/portal/prtroot/pcd!3aportal_content!2fportales!2fmdn!2fespanol!2fsuper_administrador!2fframework!2fcontenido!2fgov.mdn.desktop_contenido_mdn!2fframeworkpages!2fgov.mdn.home_mdn!2fcom.sap.portal.innerpage: 40
https://justiciamilitar.gov.co/irj/servlet/prt/portal/prtroot/pcd!3aportal_content!2fportales!2fmdn!2fespanol!2fsuper_administrador!2fframework!2fcontenido!2fgov.mdn.desktop_contenido_mdn!2fframeworkpages!2fgov.mdn.home_mdn!2fcom.sap.portal.innerpage: 29
https://www.justiciamilitar.gov.co: 6
https://•••-•••.justiciamilitar.gov.co/•••.•••/•••••: 5
https://••••••-•••.justiciamilitar.gov.co/•••••.••••: 5
https://•••.justiciamilitar.gov.co/: 3
https://justiciamilitar.gov.co/•••/••••••/••••••••••/•••••••••/•••••: 1
https://•••.justiciamilitar.gov.co/•••/•••••••/•••/••••••/••••••••••••/••••••••/•••••••/•••!••••••••_•••••••!••••••••••!•••••!•••••••••!•••••••_•••••••••••••!•••••••••••!•••••••••••!•••••.•••.•••••••_•••••••••_•••!••••••••••••••••!•••••.•••.••••_•••!•••••.•••.••••••.•••••••••: 1
https://•••.justiciamilitar.gov.co/•••.•••/•••••: 1
Norton Security Ultra: 1
Avast Antivirus: 1
Windows Defender: 7
Not Found: 2
Avast Antivirus: 1
Windows Defender: 7
Not Found: 2