Tracker
Ransomware Tracker to distinguishes between the following threats:
- Ransomware botnet Command & Control servers (C&Cs)
- Ransomware Payment Sites
- Ransomware Distribution Sites
Each entry in Ransomware Tracker is tagged to a threat and a malware. Currently, the following Ransomware families are tracked:
- TeslaCrypt
- CryptoWall (if you do want to know more about CryptoWall, check out CryptoWall Tracker)
- TorrentLocker
- PadCrypt
- Locky
- CTB-Locker
- FAKBEN
- PayCrypt
New submissions for Ransomware Tracker are warmly welcome. You can send new additions to rt-RintANel@abuse.ch (remove all letters in uppercase). Malware binaries that you suspect to be associated with a certain Ransomware family can be send to rt-malwSOareM@abuse.ch (remove all letters in uppercase) for analysis.
Search
You can search for a host or URL using the following search form:
Set a filter for the list below
Below is a list of Ransomware botnet C&C servers tracked by Ransomware Tracker. You have the possibility to filter the list below using certain pre-defined filters shown below.
General filters: Remove filter (Show all) | Online hosts
Filter by threat: | |
Filter by malware: | | | | | | | | | | |
Dateadded (UTC) | Threat | Malware | Host (?Domain name or IP address used by the Ransomware. The leading dots (Red, Green, Grey) indicate whether the Host is active or not. Red = Online Green = Offline Grey = Unknown) | Domain Registrar (?In some cases Ransomware Tracker is not able to determine the sponsoring Registrar of a domain name. Thats either because the Registry does not reveal this information in the whois or because the Registry doesn't offer a whois service.) | IP address (ASN, Country) |
---|---|---|---|---|---|
2016-11-04 14:38 | hexinjituan.com | HICHINA ZHICHENG TECHNOLOGY LTD. | 107.165.128.154 (![]() | ||
2016-11-04 14:37 | hjggt.com | HICHINA ZHICHENG TECHNOLOGY LTD. | 43.242.34.94 (![]() | ||
2016-11-04 14:37 | gomlektube.com | IHS TELEKOM, INC. | 185.28.62.7 (![]() | ||
2016-11-04 14:36 | bahutnorma.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:36 | fotoray.pl | Active 24 sp. z o.o. | 85.128.134.227 (![]() | ||
2016-11-04 14:36 | gaztone.com.au | Web Address Registration | 203.170.87.113 (![]() | ||
2016-11-04 14:36 | fvch.co.uk | Chunky Chips.net Ltd | 81.187.30.81 (![]() | ||
2016-11-04 14:36 | ramlimsy.net | PAKNIC (PRIVATE) LIMITED | 184.105.192.2 (![]() | ||
2016-11-04 14:36 | gistraxx.eu | CSL GmbH Computer Service Langen[...] | 104.24.116.114 (![]() ![]() | ||
2016-11-04 14:36 | ayvalik.info.tr | 188.125.164.2 (![]() | |||
2016-11-04 14:35 | gencemiz.biz | PDR LTD. D/B/A PUBLICDOMAINREGIS[...] | (n/a) | ||
2016-11-04 14:35 | aizheni.cn | 阿里云计算有限公司([...] | 23.224.49.61 (![]() | ||
2016-11-04 14:33 | bahutnorma.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:33 | gemusbagages.com | GODADDY.COM, LLC | 160.153.129.211 (![]() | ||
2016-11-04 14:33 | brshops.com.br | 163.172.153.79 (![]() | |||
2016-11-04 14:33 | lithcon.com | NETWORK SOLUTIONS, LLC. | 149.115.17.135 (![]() | ||
2016-11-04 14:32 | bjjmmt.com | BEIJING INNOVATIVE LINKAGE TECHN[...] | (n/a) | ||
2016-11-04 14:32 | rangyinby.com | PAKNIC (PRIVATE) LIMITED | 184.105.192.2 (![]() | ||
2016-11-04 14:32 | bahutnorma.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:32 | boosyy.com | HICHINA ZHICHENG TECHNOLOGY LTD. | (n/a) | ||
2016-11-04 14:31 | rangyinby.com | PAKNIC (PRIVATE) LIMITED | 184.105.192.2 (![]() | ||
2016-11-04 14:30 | ulewicky.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:30 | dmamart.com | WEB COMMERCE COMMUNICATIONS LIMI[...] | (n/a) | ||
2016-11-04 14:29 | good-gamess.ru | REGRU-RU | (n/a) | ||
2016-11-04 14:29 | bubbleonlineshop.com | HICHINA ZHICHENG TECHNOLOGY LTD. | 204.11.56.48 (![]() | ||
2016-11-04 14:28 | ramlimsy.net | PAKNIC (PRIVATE) LIMITED | 184.105.192.2 (![]() | ||
2016-11-04 14:28 | ramlimsy.net | PAKNIC (PRIVATE) LIMITED | 184.105.192.2 (![]() | ||
2016-11-04 14:28 | ulewicky.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:27 | gussacks.com | GODADDY.COM, LLC | 184.168.131.241 (![]() | ||
2016-11-04 14:26 | bestsourcecode.com | PDR LTD. D/B/A PUBLICDOMAINREGIS[...] | 209.99.40.223 (![]() | ||
2016-11-04 14:26 | rangyinby.com | PAKNIC (PRIVATE) LIMITED | 184.105.192.2 (![]() | ||
2016-11-04 14:26 | decouer.com | GO CANADA DOMAINS, LLC | 162.241.238.167 (![]() | ||
2016-11-04 14:25 | globalgraf.es | 164.138.210.6 (![]() | |||
2016-11-04 14:25 | fluidbalance.com.au | Web Address Registration | 69.90.162.160 (![]() | ||
2016-11-04 14:25 | atdi.in.th | T.H.NIC Co., Ltd. | 203.146.170.111 (![]() | ||
2016-11-04 14:25 | grecirea.net | OVH | 213.186.33.19 (![]() | ||
2016-11-04 14:25 | holidayhops.com | GODADDY.COM, LLC | 50.63.202.32 (![]() | ||
2016-11-04 14:25 | cgcobelli.com | DOMAIN.COM, LLC | 18.185.180.74 (![]() | ||
2016-11-04 14:23 | sozluktr.com | GODADDY.COM, LLC | 23.20.239.12 (![]() | ||
2016-11-04 14:23 | gothamserver.net | GODADDY.COM, LLC | 173.254.231.63 (![]() | ||
2016-11-04 14:23 | astrotranspersonal.com.ar | 181.225.136.70 (![]() | |||
2016-11-04 14:22 | blueerdos.com | HICHINA ZHICHENG TECHNOLOGY LTD. | 47.92.39.86 (![]() | ||
2016-11-04 14:22 | hobbytip.nl | Stichting Digi NL | 37.97.254.27 (![]() | ||
2016-11-04 14:21 | frangipani.be | Totaaldomein B.V. | 185.56.147.47 (![]() | ||
2016-11-04 14:21 | bensongdinh.com | ENOM, INC. | 198.38.82.122 (![]() | ||
2016-11-04 14:20 | giftoo.net | CSL COMPUTER SERVICE LANGENBACH [...] | 212.44.102.137 (![]() | ||
2016-11-04 14:20 | geniusservices.in | Endurance Domains Technology Pvt[...] | 155.254.29.178 (![]() | ||
2016-11-04 14:20 | bilchbenzo.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:20 | zapotech.com | GODADDY.COM, LLC | 184.168.221.70 (![]() | ||
2016-11-04 14:20 | bilchbenzo.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:20 | chokepaisarn.com | PDR LTD. D/B/A PUBLICDOMAINREGIS[...] | 209.99.40.223 (![]() | ||
2016-11-04 14:19 | bj-fzwb.com | SHANGHAI YOVOLE NETWORKS INC. | (n/a) | ||
2016-11-04 14:19 | ulewicky.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:19 | rangyinby.com | PAKNIC (PRIVATE) LIMITED | 184.105.192.2 (![]() | ||
2016-11-04 14:18 | chulkyu.com | GABIA, INC. | 175.126.195.54 (![]() | ||
2016-11-04 14:18 | gintreja.lt | Kauno technologijos universiteta[...] | 194.135.87.57 (![]() | ||
2016-11-04 14:18 | bilchbenzo.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:17 | frozem.ca | Tucows.com Co. | 209.44.124.150 (![]() | ||
2016-11-04 14:17 | friendlybookkeeping.ca | Promo People Inc. | 23.236.62.147 (![]() | ||
2016-11-04 14:17 | bncxwood.com | BIZCN.COM, INC. | 45.35.124.76 (![]() | ||
2016-11-04 14:16 | bahutnorma.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:16 | goldendogs.nl | TransIP BV | 145.131.5.68 (![]() | ||
2016-11-04 14:15 | alex-beauty.com | REGIONAL NETWORK INFORMATION CEN[...] | 31.31.196.106 (![]() | ||
2016-11-04 14:15 | hetvliegendwiel.be | One.com A/S | 136.144.128.125 (![]() | ||
2016-11-04 14:15 | xn--41a.xn----8sbivjiocsggj.xn--p1ai | (n/a) | |||
2016-11-04 14:15 | ganwen.cn | 厦门易名科技股份有限[...] | 104.27.172.159 (![]() ![]() | ||
2016-11-04 14:14 | bvn.lt | Kauno technologijos universiteta[...] | (n/a) | ||
2016-11-04 14:14 | forum.hrubieszow.info | PDR Ltd. d/b/a PublicDomainRegis[...] | 195.114.1.131 (![]() | ||
2016-11-04 14:14 | fekabt.lapok.hu | 195.228.86.53 (![]() | |||
2016-11-04 14:13 | gilaad1.co.il | 81.218.229.154 (![]() | |||
2016-11-04 14:13 | bilchbenzo.net | KEY-SYSTEMS GMBH | 184.105.192.2 (![]() | ||
2016-11-04 14:12 | goldsaju.com | MEGAZONE CORP. DBA HOSTING.KR | 222.239.249.80 (![]() | ||
2016-11-04 14:12 | freetube.nl | TransIP BV | 82.161.224.253 (![]() | ||
2016-11-04 14:11 | gaokaoyasuo.com | 35 TECHNOLOGY CO., LTD | 45.120.4.13 (![]() | ||
2016-11-04 11:56 | vyohacxzoue32vvk.cp3yme.top | Eranet International Limited | (n/a) | ||
2016-11-04 06:47 | berrysbarber.com | GODADDY.COM, LLC | 50.63.202.56 (![]() | ||
2016-11-04 06:47 | bontimon.net | KEY-SYSTEMS GMBH | (n/a) | ||
2016-11-04 06:47 | hdtv9.com | REGISTER.IT SPA | 23.20.239.12 (![]() | ||
2016-11-04 06:46 | deborahshallcross.com | GODADDY.COM, LLC | (n/a) | ||
2016-11-04 06:46 | anamose.com | KEY-SYSTEMS GMBH | (n/a) | ||
2016-11-04 06:46 | hartphp.eu | nazwa.pl sp. z o.o. | 104.18.44.61 (![]() ![]() | ||
2016-11-04 06:46 | aertsbonarius.nl | Flexwebhosting BV | 149.210.196.23 (![]() | ||
2016-11-04 06:46 | bj-fzwb.com | SHANGHAI YOVOLE NETWORKS INC. | (n/a) | ||
2016-11-04 06:46 | cielitodrive.com | GODADDY.COM, LLC | 184.168.221.35 (![]() | ||
2016-11-04 06:46 | cor-huizer.nl | ecoMation | 185.182.56.32 (![]() | ||
2016-11-04 06:46 | faizaledrus.com | CV. RUMAHWEB INDONESIA | 104.28.28.184 (![]() ![]() | ||
2016-11-04 06:45 | buybynet.com | CHENGDU WEST DIMENSION DIGITAL T[...] | (n/a) | ||
2016-11-04 06:45 | viptabien.com | PDR LTD. D/B/A PUBLICDOMAINREGIS[...] | 209.99.40.222 (![]() | ||
2016-11-04 06:45 | coachatelier.nl | Antagonist B.V. | 141.138.169.200 (![]() | ||
2016-11-04 06:45 | 1maximus.ru | REGRU-RU | (n/a) | ||
2016-11-04 06:44 | aca24.ru | RU-CENTER-RU | (n/a) | ||
2016-11-04 06:44 | supplyglassess.com | ENOM, INC. | (n/a) | ||
2016-11-04 06:44 | americanfancies.com | GODADDY.COM, LLC | 162.241.253.129 (![]() | ||
2016-11-04 06:44 | ccilfov.ro | ICI - ROTLD | 188.215.250.201 (![]() | ||
2016-11-04 06:44 | desertkingwaterproofing.com | NAME.COM, INC. | 160.153.16.67 (![]() | ||
2016-11-04 06:44 | autoparts-outlet.nl | Webcreators Internet Services | 92.48.206.89 (![]() | ||
2016-11-04 06:44 | allebanken.net | TLD REGISTRAR SOLUTIONS LTD | (n/a) | ||
2016-11-04 06:44 | mascottepak.com | KEY-SYSTEMS GMBH | 185.10.51.178 (![]() | ||
2016-11-04 06:44 | ayurvedic.by | Reliable Software, Ltd | 31.130.203.168 (![]() | ||
2016-11-04 06:43 | gaozhao-edu.com | ENOM, INC. | 154.210.236.202 (![]() |
# of rows displayed: 100
# of entries in database: 13'867