Tracker
Ransomware Tracker to distinguishes between the following threats:
- Ransomware botnet Command & Control servers (C&Cs)
- Ransomware Payment Sites
- Ransomware Distribution Sites
Each entry in Ransomware Tracker is tagged to a threat and a malware. Currently, the following Ransomware families are tracked:
- TeslaCrypt
- CryptoWall (if you do want to know more about CryptoWall, check out CryptoWall Tracker)
- TorrentLocker
- PadCrypt
- Locky
- CTB-Locker
- FAKBEN
- PayCrypt
New submissions for Ransomware Tracker are warmly welcome. You can send new additions to rt-RintANel@abuse.ch (remove all letters in uppercase). Malware binaries that you suspect to be associated with a certain Ransomware family can be send to rt-malwSOareM@abuse.ch (remove all letters in uppercase) for analysis.
Search
You can search for a host or URL using the following search form:
Set a filter for the list below
Below is a list of Ransomware botnet C&C servers tracked by Ransomware Tracker. You have the possibility to filter the list below using certain pre-defined filters shown below.
General filters: Remove filter (Show all) | Online hosts
Filter by threat: | |
Filter by malware: | | | | | | | | | | |
Dateadded (UTC) | Threat | Malware | Host (?Domain name or IP address used by the Ransomware. The leading dots (Red, Green, Grey) indicate whether the Host is active or not. Red = Online Green = Offline Grey = Unknown) | Domain Registrar (?In some cases Ransomware Tracker is not able to determine the sponsoring Registrar of a domain name. Thats either because the Registry does not reveal this information in the whois or because the Registry doesn't offer a whois service.) | IP address (ASN, Country) |
---|---|---|---|---|---|
2016-10-27 05:23 | airsmmvk.ru | R01-RU | (n/a) | ||
2016-10-27 05:23 | milianjie.com | ENAME TECHNOLOGY CO., LTD. | (n/a) | ||
2016-10-27 05:22 | yinstseck.com | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:22 | beardy.dk | (n/a) | |||
2016-10-27 05:22 | dadaniu.cn | 阿里云计算有限公司([...] | 139.129.236.180 (![]() | ||
2016-10-27 05:21 | zoonhers.net | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:20 | dentystachojnice.com | PDR LTD. D/B/A PUBLICDOMAINREGIS[...] | 209.99.40.223 (![]() | ||
2016-10-27 05:20 | gulfatopy.com | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:19 | folddon.com | PAKNIC (PRIVATE) LIMITED | 208.91.197.91 (![]() | ||
2016-10-27 05:19 | yinstseck.com | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:19 | 502mm.com | XIN NET TECHNOLOGY CORPORATION | 209.99.40.222 (![]() | ||
2016-10-27 05:18 | dentydich.net | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:18 | enrico.ru | RU-CENTER-RU | 82.202.197.27 (![]() | ||
2016-10-27 05:17 | fareastcoal.com | ASCIO TECHNOLOGIES, INC. DANMARK[...] | (n/a) | ||
2016-10-27 05:17 | szylbx.com | SHANGHAI MEICHENG TECHNOLOGY INF[...] | 209.99.40.222 (![]() | ||
2016-10-27 05:17 | basicelectro.ru | REGTIME-RU | (n/a) | ||
2016-10-27 05:16 | alexandriadent.ru | RU-CENTER-RU | 87.236.16.212 (![]() | ||
2016-10-27 05:16 | maani.family | ENom Inc. | (n/a) | ||
2016-10-27 05:15 | koffsambo.net | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:15 | yinstseck.com | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:15 | favourfinance.com | GODADDY.COM, LLC | 23.20.239.12 (![]() | ||
2016-10-27 05:14 | new.zssmayak.ru | REGRU-RU | 91.221.70.80 (![]() | ||
2016-10-27 05:14 | babilon.by | Reliable Software, Ltd | 93.125.99.123 (![]() | ||
2016-10-27 05:14 | dentydich.net | PAKNIC (PRIVATE) LIMITED | (n/a) | ||
2016-10-27 05:13 | 59secondmedia.com | ENOM, INC. | 198.54.115.172 (![]() | ||
2016-10-27 05:12 | folddon.com | PAKNIC (PRIVATE) LIMITED | 208.91.197.91 (![]() | ||
2016-10-27 04:49 | vyohacxzoue32vvk.t6ueop.bid | Eranet International Limited | (n/a) | ||
2016-10-26 21:42 | umjjvccteg.biz | DYNADOT LLC | 69.195.129.70 (![]() | ||
2016-10-26 18:09 | jymhmkdaxfbl.click | NAMECHEAP | 208.100.26.234 (![]() | ||
2016-10-26 14:44 | ojmekzw4mujvqeju.dreamtest.at | 103.224.182.250 (![]() | |||
2016-10-26 14:41 | ojmekzw4mujvqeju.bioserv.at | 176.9.172.166 (![]() | |||
2016-10-26 12:34 | dongyigg.com | 35 TECHNOLOGY CO., LTD | (n/a) | ||
2016-10-26 12:33 | glyderm.com.ph | 72.52.179.175 (![]() | |||
2016-10-26 12:33 | edepolama.com | NICS TELEKOMUNIKASYON TIC LTD. S[...] | 178.18.193.234 (![]() | ||
2016-10-26 12:32 | mannersfromtheheart.com | DOMAINPEOPLE, INC. | 64.71.34.152 (![]() | ||
2016-10-26 12:32 | 03991ce.netsolhost.com | NETWORK SOLUTIONS, LLC. | (n/a) | ||
2016-10-26 12:31 | dmtya.ru | RU-CENTER-RU | 92.53.96.20 (![]() | ||
2016-10-26 12:31 | fbstone.com | CHENGDU WEST DIMENSION DIGITAL T[...] | 154.91.228.28 (![]() | ||
2016-10-26 12:31 | titmaius.net | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:31 | dzyncreative.com | NETEARTH ONE INC. D/B/A NETEARTH | 192.243.98.44 (![]() | ||
2016-10-26 12:31 | entersukses.com | WEB COMMERCE COMMUNICATIONS LIMI[...] | (n/a) | ||
2016-10-26 12:31 | nakedglobal.com | XIN NET TECHNOLOGY CORPORATION | 47.90.40.110 (![]() | ||
2016-10-26 12:30 | sheatcatan.com | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:30 | giancarlorentacar.ae | DURRAQ | (n/a) | ||
2016-10-26 12:30 | bibliocultura.org | Register.com, Inc. | (n/a) | ||
2016-10-26 12:30 | smaatapps.com | FASTDOMAIN, INC. | 50.63.202.38 (![]() | ||
2016-10-26 12:30 | fengxiaohui.com | HICHINA ZHICHENG TECHNOLOGY LTD. | 104.24.120.34 (![]() ![]() | ||
2016-10-26 12:30 | dominoassociates.com | TUCOWS DOMAINS INC. | 149.115.21.142 (![]() | ||
2016-10-26 12:29 | cryochoice.com | FASTDOMAIN, INC. | 173.254.70.156 (![]() | ||
2016-10-26 12:29 | cimeli.limitsiz.de | 85.13.136.232 (![]() | |||
2016-10-26 12:29 | dont.pl | premium.pl Sp. z o.o. | 178.32.149.185 (![]() | ||
2016-10-26 12:29 | bonetti.nl | Registrar.eu | 136.144.156.31 (![]() | ||
2016-10-26 12:29 | esteticapro.com | GODADDY.COM, LLC | 194.1.147.81 (![]() ![]() | ||
2016-10-26 12:28 | thegiftsoflove.co | NAMECHEAP, INC. | (n/a) | ||
2016-10-26 12:28 | filenetp8.info | eNom, Inc. | 198.143.149.3 (![]() | ||
2016-10-26 12:28 | abaffbedip.net | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:27 | flw123.com | CHENGDU WEST DIMENSION DIGITAL T[...] | 104.203.87.31 (![]() | ||
2016-10-26 12:27 | cloudafis.com | ENOM, INC. | (n/a) | ||
2016-10-26 12:27 | ergobois.com | OVH | 51.255.75.16 (![]() | ||
2016-10-26 12:26 | sheatcatan.com | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:25 | roweliced.net | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:25 | brkos.borec.cz | REG-STABLE | 185.64.219.7 (![]() | ||
2016-10-26 12:25 | dovgan.bclas.ru | RU-CENTER-RU | 81.177.139.112 (![]() | ||
2016-10-26 12:24 | guymorgandaily.com | GODADDY.COM, LLC | 35.226.75.249 (![]() | ||
2016-10-26 12:24 | bluecuracao.nl | Registrar.eu | 185.56.147.92 (![]() | ||
2016-10-26 12:24 | sathiyapariwar.com | GODADDY.COM, LLC | 142.4.5.74 (![]() | ||
2016-10-26 12:24 | esysports.com | DOTNAME KOREA CORP | 112.175.184.60 (![]() | ||
2016-10-26 12:24 | cbautocare.com.au | Tucows | (n/a) | ||
2016-10-26 12:23 | caulgreet.com | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:23 | caulgreet.com | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:23 | asastrologer.com | NAME.COM, INC. | 204.11.56.46 (![]() | ||
2016-10-26 12:22 | roweliced.net | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:22 | exquisiteescape.com | GODADDY.COM, LLC | 104.27.142.117 (![]() ![]() | ||
2016-10-26 12:21 | banana2.jp | 219.118.65.29 (![]() | |||
2016-10-26 12:21 | titmaius.net | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:20 | laprovi.com | GODADDY.COM, LLC | 184.168.131.241 (![]() | ||
2016-10-26 12:20 | hotsigns.net | ENOM, INC. | 198.144.27.170 (![]() | ||
2016-10-26 12:20 | aiccard.co.th | T.H.NIC Co., Ltd. | 139.59.123.159 (![]() | ||
2016-10-26 12:19 | ecentz.com | ENOM, INC. | (n/a) | ||
2016-10-26 12:19 | laexplosionmusical.com | DINAHOSTING SL | 213.136.65.61 (![]() | ||
2016-10-26 12:19 | begbuilders.com | GODADDY.COM, LLC | 207.180.195.136 (![]() | ||
2016-10-26 12:19 | elafgroup.com | NETWORK SOLUTIONS, LLC. | 159.203.83.44 (![]() | ||
2016-10-26 12:19 | lanmaicao.com | SHANGHAI BEST ORAY INFORMATION S[...] | 154.84.126.244 (![]() | ||
2016-10-26 12:19 | ciscscout.net | WILD WEST DOMAINS, LLC | 80.211.73.13 (![]() | ||
2016-10-26 12:18 | alvida.de | 195.226.185.62 (![]() | |||
2016-10-26 12:18 | landondavid.com | FASTDOMAIN, INC. | (n/a) | ||
2016-10-26 12:18 | sheatcatan.com | KEY-SYSTEMS GMBH | (n/a) | ||
2016-10-26 12:17 | promenadedental.com | GODADDY.COM, LLC | 198.71.233.254 (![]() | ||
2016-10-26 12:17 | aat.worldatclick.com | PDR LTD. D/B/A PUBLICDOMAINREGIS[...] | (n/a) | ||
2016-10-26 12:16 | hankookm.com | GABIA, INC. | 183.111.153.172 (![]() | ||
2016-10-26 12:15 | jean-ealogy.com | COREHUB, S.R.L. | (n/a) | ||
2016-10-26 12:15 | sbastrologer.com | BIGROCK SOLUTIONS LIMITED | 209.99.40.224 (![]() | ||
2016-10-26 12:14 | mimiphotography.com.au | Tucows | 116.90.59.30 (![]() | ||
2016-10-26 12:14 | cpugame.com | NAME.COM, INC. | 173.208.215.66 (![]() ![]() | ||
2016-10-26 12:13 | ramgopalshastri.com | NAME.COM, INC. | (n/a) | ||
2016-10-26 12:13 | silverfoxfoundry.com | GODADDY.COM, LLC | 104.219.248.121 (![]() | ||
2016-10-26 12:13 | bk-host.com | FASTDOMAIN, INC. | 173.254.75.64 (![]() | ||
2016-10-26 12:12 | shahidastrologer.com | NAME.COM, INC. | 156.237.82.189 (![]() | ||
2016-10-26 12:12 | wolvcreative.com | GODADDY.COM, LLC | (n/a) | ||
2016-10-26 12:12 | abaffbedip.net | KEY-SYSTEMS GMBH | (n/a) |
# of rows displayed: 100
# of entries in database: 13'867