Website stats and analysis

APT reports GhostEmperor: From ProxyLogon to kernel mode While investigating a recent rise of attacks against Exchange servers, we noticed a recurring cluster of activity that appeared in several distinct compromised networks. With a long-standing operation, high profile victims, advanced toolset and no affinity to a known threat actor, we decided to dub the cluster GhostEmperor. ...

2.48 Rating by Usitestat

securelist.com was registered 1 decade 9 years ago. It has a alexa rank of #134,345 in the world. It is a domain having .com extension. It is estimated worth of $ 93,000.00 and have a daily income of around $ 155.00. As no active threats were reported recently, securelist.com is SAFE to browse.

Traffic Report

Daily Unique Visitors: 12,400
Daily Pageviews: 62,000

Estimated Valuation

Income Per Day: $ 155.00
Estimated Worth: $ 93,000.00

Search Engine Indexes

Google Indexed Pages: Not Applicable
Yahoo Indexed Pages: Not Applicable
Bing Indexed Pages: Not Applicable

Search Engine Backlinks

Google Backlinks: Not Applicable
Bing Backlinks: 9
Alexa BackLinks: Not Applicable

Safety Information

Google Safe Browsing: No Risk Issues
Siteadvisor Rating: Not Applicable
WOT Trustworthiness: Very Poor
WOT Privacy: Very Poor
WOT Child Safety: Very Poor

Website Ranks & Scores

Alexa Rank: 134,345
PageSpeed Score: 89 ON 100
Domain Authority: 49 ON 100
Bounce Rate: Not Applicable
Time On Site: Not Applicable

Web Server Information

Hosted IP Address:

35.173.160.135

Hosted Country:

United States US

Location Latitude:

39.0437

Location Longitude:

-77.4875

Traffic Classification

Total Traffic: 306.54K
Direct Traffic: 65.17%
Referral Traffic: 8.08%
Search Traffic: 24.83%
Social Traffic: 1.71%
Mail Traffic: 0.20%
Display Traffic: 0.01%

Search Engine Results For securelist.com

Submissions from securelist.com | Hacker News

- https://news.ycombinator.com/from?site=securelist.com

Sunburst backdoor – code overlaps with Kazuar – Securelist (securelist.com). 3 points by megahz 7 months ago | past · Lazarus covets Covid-19-related ...


Kaspersky IT Encyclopedia

- https://encyclopedia.kaspersky.com/

Connect With Us. Blog List. Securelist · Kaspersky Daily · Eugene Personal Blog · Threatpost. Copyright © 2021 AO Kaspersky Lab. All Rights Reserved.


Securelist | Kaspersky: Análisis e informes sobre amenazas ...

- https://securelist.lat/

Kaspersky: Análisis e informes sobre amenazas cibernéticas.


Securelist | Аналитика и отчеты о киберугрозах «Лаборатории ...

- https://securelist.ru/

Блог Securelist – отчеты «Лаборатории Касперского» об угрозах информационной безопасности, анализ угроз, реверс-инжиниринг вирусов и статистика.


Securelist | Rapports et recherche en cyber-menaces de Kaspersky

- https://securelist.fr/

Au début de l'année 2017, les chercheurs de Kaspersky Lab ont découvert une tendance émergente dangereuse : de plus en plus de cybercriminels abandonnent les ...


Kaspersky Employees, Location, Careers | LinkedIn

- https://hk.linkedin.com/company/kaspersky

https://securelist.com. 12 · Like Comment Share · Kaspersky. 249,566 followers. 4d. Report this post ... https://securelist.com.


Threat Intelligence Report for the Telecommunications Industry

- https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2018/03/07185213/Kaspersky_Telecom_Threats_2016.pdf

Further details on these can be found on Kaspersky Lab's expert Securelist blog or through a subscription to the Kaspersky APT Threat Intelligence Reporting ...


Malware Reports — Malware Archaeology

- https://www.malwarearchaeology.com/analysis

https://securelist.com/blog/research/77403/fileless-attacks-against-enterprise-networks/. Aug 2016 - SecureWorks - Malware lingers with BITS.


rules/APT_Equation.yar at master · Yara-Rules/rules - GitHub

- https://github.com/Yara-Rules/rules/blob/master/malware/APT_Equation.yar

reference = "http://securelist.com/blog/research/68750/equation-the-death-star-of-malware-galaxy/". strings: $mz="MZ". $a1={06 00 42 00 49 00 4E 00 52 00 45&nbs...


PetrWrap - Ransomware - Threat Landscape Dashboard | McAfee

- https://www.mcafee.com/enterprise/en-us/threat-center/threat-landscape-dashboard/ransomware-details.petrwrap-ransomware.html

... https://securelist.com/blog/research/77762/petrwrap-the-new-petya-based-ransomware-used-in-targeted-attacks/. Related Threats. Exploit Kits. Campaigns ...


Securelist | Kaspersky's threat research and reports

- https://securelist.com/

The Securelist blog houses Kaspersky's threat intelligence reports, malware research, APT analysis and statistics.


Definition of SecureList - WordAZ

- https://www.wordaz.com/SecureList.html

This is the place for SecureList definition. You find here SecureList meaning, synonyms of SecureList and images for SecureList.


Securelist — LiveJournal

- https://securelist.livejournal.com/

securelist - the new blog in LiveJournal. There should be new interesting records soon.


安全文章

- http://buaq.net/?p=1&d=securelist.com

securelist.com. 2021-06-07 21:00:02 • 阅读135 • 点我收藏 · Email spoofing: how attackers impersonate legitimate senders · securelist.com.


What Is a Trojan Horse Virus & How Do You Get Rid of It?

- https://www.security.org/antivirus/trojan/

Apr 7, 2021 ... Secure List. (2021). Mobile malware evolution 2020. securelist.com/mobile-malware-evolution-2020/101029/. buguroo. ( ...


WatchGuard APT Blocker - Direct Voice and Data

- https://www.direct-voiceanddata.com/data/files/file/WatchGuard_APT_Blocker_Datasheet.pdf

Securelist.com. APT Blocker not only provides a new level of protection against advanced malware, it does it in a way that's simple and intuitive.


poisonplug (Malware Family) - Malpedia

- https://malpedia.caad.fkie.fraunhofer.de/details/win.poisonplug

... url = {https://securelist.com/apt-trends-report-q3-2020/99204/}, language = {English}, urldate = {2020-11-04} } APT trends report Q3 2020


Equation Group - Wikipedia

- https://en.wikipedia.org/wiki/Equation_Group

The Equation Group, classified as an advanced persistent threat, is a highly sophisticated ... SecureList, Costin Raiu (director of Kaspersky Lab's global research and ...


CVE-2011-3402 - The MITRE Corporation

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2011-3402

... MISC:http://isc.sans.edu/diary/Duqu+Mitigation/11950 · MISC:http://www.securelist.com/en/blog/208193197/The_Mystery_of_Duqu_Part_Two ...


RansomEXX Trojan Attacks Linux systems - AlienVault OTX

- https://otx.alienvault.com/pulse/5fa577b4aa9de26c3b347142

Nov 6, 2020 ... This malware is notorious for attacking large organizations and was most active earlier this year. Reference: https://securelist.com/ransomexx- ...


'We have discovered malware developed by the CIA,' Kaspersky ...

- https://gigazine.net/gsc_news/en/20210430-kaspersky-cia-malware/

Apr 30, 2021 ... APT trends report Q1 2021 | Securelist https://securelist.com/apt-trends-report-q1-2021/101967/ Security firm Kaspersky believes it found ...


Turla, Waterbug, Venomous Bear - Threat Group Cards

- https://apt.thaicert.or.th/cgi-bin/showcard.cgi?g=Turla,+Waterbug,+Venomous+Bear&n=1

JS backdoor“. Since the end of November 2016, Kaspersky Lab has observed Turla using this new JavaScript payload and specific macro variant.

Page Resources Breakdown

Homepage Links Analysis

Securelist | Kaspersky’s threat research and reports
The Securelist blog houses Kaspersky’s threat intelligence reports, malware research, APT analysis and statistics

Website Inpage Analysis

H1 Headings: 1 H2 Headings: Not Applicable
H3 Headings: 20 H4 Headings: Not Applicable
H5 Headings: 6 H6 Headings: 3
Total IFRAMEs: 4 Total Images: 47
Google Adsense: Not Applicable Google Analytics: Not Applicable

Two Phrase Analysis

Words Occurrences Density Possible Spam
by Kaspersky 2 7.407 % No
Kaspersky by 1 3.704 % No
Kaspersky CompanyAccount 1 3.704 % No
Securelist by 1 3.704 % No
employees Securelist 1 3.704 % No
CompanyAccount Get 1 3.704 % No
Get In 1 3.704 % No
mode off 1 3.704 % No
off Solutions 1 3.704 % No
Dark mode 1 3.704 % No
Touch Dark 1 3.704 % No
In Touch 1 3.704 % No
1000 employees 1 3.704 % No
Enterprise 1000 1 3.704 % No
Small Business 1 3.704 % No
Business 150 1 3.704 % No
Products Small 1 3.704 % No
Home Products 1 3.704 % No
for Home 1 3.704 % No
150 employees 1 3.704 % No

Four Phrase Analysis

Words Occurrences Density Possible Spam
by Kaspersky CompanyAccount Get 1 3.704 % No
Kaspersky CompanyAccount Get In 1 3.704 % No
Kaspersky by Kaspersky CompanyAccount 1 3.704 % No
by Kaspersky by Kaspersky 1 3.704 % No
Securelist by Kaspersky by 1 3.704 % No
CompanyAccount Get In Touch 1 3.704 % No
Get In Touch Dark 1 3.704 % No
mode off Solutions 1 3.704 % No
off Solutions 1 3.704 % No
Dark mode off Solutions 1 3.704 % No
Touch Dark mode off 1 3.704 % No
In Touch Dark mode 1 3.704 % No
employees Securelist by Kaspersky 1 3.704 % No
1000 employees Securelist by 1 3.704 % No
Small Business 150 employees 1 3.704 % No
Business 150 employees Medium 1 3.704 % No
Products Small Business 150 1 3.704 % No
Home Products Small Business 1 3.704 % No
for Home Products Small 1 3.704 % No
150 employees Medium Business 1 3.704 % No

Websites Hosted on Same IP (i.e. 35.173.160.135)

Threatpost | Новости информационной безопасности

- threatpost.ru

Новости информационной безопасности

  510,221   $ 2,640.00

Securelist

- securelist.ru

Аналитика и отчеты о киберугрозах «Касперского»

  322,899   $ 28,620.00

Securelist | Kaspersky Lab’s cyberthreat research and reports

- viruslist.com

Kaspersky Lab’s cyberthreat research and reports

  Not Applicable   $ 8.95

Threatpost | The first stop for security news

- threatpost.com

Threatpost, is an independent news site which is a leading source of information about IT and business security for hundreds of thousands of professionals worldwide.

  70,602   $ 214,560.00

HTTP Header Analysis

Http-Version: 1.1
Status-Code: 200
Status: 200 OK
Server: nginx
Date: Mon, 04 Oct 2021 20:48:24 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Content-Security-Policy: connect-src 'self' https://*.clicktale.net https://*.demdex.net https://*.doubleclick.net https://*.everesttech.net https://*.facebook.com https://*.facebook.net https://*.google-analytics.com https://*.google.com https://*.mktoresp.com https://*.optimizely.com https://*.pingdom.net https://*.reddit.com https://*.securelist.com https://*.youtube.com https://box.kaspersky.com https://cdn.securelist.com https://e.infogram.com https://hn.algolia.com https://kaspersky.d3.sc.omtrdc.net https://kasperskycontenthub.com https://securelist.com https://tagmanager.google.com https://tpc.googlesyndication.com https://www.google-analytics.com; default-src 'self' https://*.securelist.com https://box.kaspersky.com https://cdn.securelist.com https://kasperskycontenthub.com https://kasperskycontenthub.com/securelist https://securelist.com https://tpc.googlesyndication.com; font-src 'self' data: https://*.gstatic.com https://*.securelist.com https://*.wp.com https://assets.kasperskycontenthub.com https://assets.threatpost.com https://box.kaspersky.com https://cdn.securelist.com https://fonts.googleapis.com https://fonts.gstatic.com https://kasperskycontenthub.com https://securelist.com https://tpc.googlesyndication.com; frame-src 'self' http://*.slideshare.net https://*.addthis.com https://*.doubleclick.net https://*.facebook.com https://*.google.com https://*.infogram.com https://*.instagram.com https://*.libsyn.com https://*.marketo.com https://*.securelist.com https://*.sekindo.com https://*.sharethis.com https://*.slideshare.net https://*.twitter.com https://*.wp.com https://*.youtube.com https://box.kaspersky.com https://cdn.securelist.com https://go.kaspersky.com https://infogram.com https://kasperskycontenthub.com https://player.vimeo.com https://s-static.ak.facebook.com https://securelist.com https://tagmanager.google.com https://tpc.googlesyndication.com https://www.brighttalk.com; img-src 'self' data: http://*.netdna-cdn.com http://*.wordpress.com http://*.wp.com http://assets.kasperskycontenthub.com http://assets.kasperskydaily.com http://assets.threatpost.com http://d2538mqrb7brka.cloudfront.net http://forum.kasperskyclub.ru http://i0.poll.fm http://media.kasperskycontenthub.com http://media.kasperskydaily.com http://media.threatpost.com https://*.addthis.com https://*.cdninstagram.com https://*.doubleclick.net https://*.facebook.com https://*.google-analytics.com https://*.google.com https://*.google.ru https://*.gravatar.com https://*.gstatic.com https://*.infogram.com https://*.instagram.com https://*.netdna-cdn.com https://*.netdna-ssl.com https://*.securelist.com https://*.sekindo.com https://*.sharethis.com https://*.staticflickr.com https://*.twimg.com https://*.twitter.com https://*.wordpress.com https://*.wp.com https://*.ytimg.com https://addevent.com https://assets.kasperskycontenthub.com https://assets.kasperskydaily.com https://assets.threatpost.com https://blog.kaspersky.com https://box.kaspersky.com https://cdn.securelist.com https://csi.gstatic.com https://d1srlirzdlmpew.cloudfront.net https://d2538mqrb7brka.cloudfront.net https://geo.yahoo.com https://images.telechargement.fr https://instagramimages-a.akamaihd.net https://kaspersky.d2.sc.omtrdc.net https://kaspersky.d3.sc.omtrdc.net https://kasperskycontenthub.com https://m.addthis.com https://maps.googleapis.com https://media.kasperskycontenthub.com https://media.kasperskydaily.com https://media.threatpost.com https://player.vimeo.com https://polldaddy.com https://rum-collector.pingdom.net https://s.w.org https://s3-eu-west-1.amazonaws.com https://scontent.cdninstagram.com https://securelist.com https://stats.g.doubleclick.net https://t.co https://tagmanager.google.com https://threatpost.com https://tpc.googlesyndication.com https://track.addevent.com; object-src 'self' https://*.securelist.com https://box.kaspersky.com https://kasperskycontenthub.com https://player.vimeo.com https://polldaddy.com https://securelist.com https://tpc.googlesyndication.com; script-src 'self' 'unsafe-eval' 'unsafe-inline' http://assets.kasperskycontenthub.com http://assets.threatpost.com https://*.addevent.com https://*.addthis.com https://*.cloudfront.net https://*.crazyegg.com https://*.demdex.net https://*.doubleclick.net https://*.facebook.com https://*.facebook.net https://*.flickr.com https://*.google-analytics.com https://*.google.com https://*.googleapis.com https://*.googlesyndication.com https://*.gravatar.com https://*.gstatic.com https://*.instagram.com https://*.kaspersky.com https://*.marketo.com https://*.marketo.net https://*.optimizely.com https://*.polldaddy.com https://*.securelist.com https://*.sekindo.com https://*.sharethis.com https://*.twimg.com https://*.twitter.com https://*.woopra.com https://*.wp.com https://addthisevent.com https://adservice.google.com https://adservice.google.hr https://adservice.google.ru https://assets.adobedtm.com https://assets.kasperskycontenthub.com https://assets.threatpost.com https://box.kaspersky.com https://cdn.optimizely.com https://cdn.securelist.com https://connect.facebook.net https://connect.mail.ru https://e.infogram.com https://kaspersky.d2.sc.omtrdc.net https://kasperskycontenthub.com https://m.addthis.com https://m.addthisedge.com https://munchkin.marketo.net https://player.vimeo.com https://polldaddy.com https://rum-static.pingdom.net https://script.crazyegg.com https://securelist.com https://share.yandex.ru/ https://static.ads-twitter.com https://tagmanager.google.com https://tpc.googlesyndication.com https://vk.com https://www.addevent.com https://www.brighttalk.com https://www.flickr.com https://www.googletagmanager.com https://www.googletagservices.com https://www.linkedin.com; style-src 'self' 'unsafe-inline' http://*.googleapis.com http://assets.kasperskycontenthub.com http://assets.threatpost.com https://*.googleapis.com https://*.gravatar.com https://*.kaspersky.com https://*.marketo.com https://*.securelist.com https://*.sekindo.com https://*.sharethis.com https://*.twimg.com https://*.twitter.com https://*.wp.com https://assets.kasperskycontenthub.com https://assets.threatpost.com https://box.kaspersky.com https://cdn.securelist.com https://fonts.googleapis.com https://kasperskycontenthub.com https://s0.wp.com https://secure.gravatar.com https://securelist.com https://tagmanager.google.com https://tpc.googlesyndication.com
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Pingback: https://securelist.com/xmlrpc.php
Link: ; rel=shortlink
X-Frame-Options: SAMEORIGIN
X-Debug-Auth: off
X-Request-Host: securelist.com
x-cache-hit: HIT
Content-Encoding: gzip

Domain Information

Domain Registrar: MarkMonitor Inc.
Registration Date: 2004-12-06 1 decade 9 years 11 months ago
Last Modified: 2020-11-03 4 years 2 weeks 3 days ago

Domain Nameserver Information

Host IP Address Country
ns1.kasperskylabs.net 195.122.169.47 United Kingdom United Kingdom
ns2.kasperskylabs.net 77.74.183.10 Russia Russia
ns3.kasperskylabs.net 4.28.136.50 United States United States

DNS Record Analysis

Host Type TTL Extra
securelist.com A 296 IP: 35.173.160.135
securelist.com NS 86400 Target: ns3.kasperskylabs.net
securelist.com NS 86400 Target: ns2.kasperskylabs.net
securelist.com NS 86400 Target: ns1.kasperskylabs.net
securelist.com SOA 3600 MNAME: dnsmaster.kasperskylabs.net
RNAME: dnsadmin.kaspersky.com
Serial: 2021052601
Refresh: 7200
Retry: 3600
Expire: 8640000
securelist.com MX 3600 Priority: 10
Target: mx11.kaspersky-labs.com
securelist.com MX 3600 Priority: 10
Target: mx12.kaspersky-labs.com
securelist.com MX 3600 Priority: 10
Target: mx13.kaspersky-labs.com
securelist.com TXT 3600 TXT: v=spf1 redirect=kaspersky.com

Top Organic Keyword

1. keylogger
2. securelist
3. securet list
4. how to detect keylogger
5. world.exe ransomware

Top Paid Keyword

Not Applicable

Top Referral Site

1. threats.kaspersky.com
2. attack.mitre.org
3. apt.thaicert.or.th
4. research.net
5. usa.kaspersky.com

Top Destination Site

1. media.kasperskycontenthub.com
2. kaspersky.com
3. securelist.ru
4. kaspersky.ru
5. encyclopedia.kaspersky.de

Full WHOIS Lookup

Domain Name: SECURELIST.COM
Registry Domain ID:
136690349_DOMAIN_COM-VRSN
Registrar WHOIS Server:
whois.markmonitor.com
Registrar URL:
http://www.markmonitor.com
Updated Date:
2020-11-03T10:35:12Z
Creation Date:
2004-12-05T19:16:56Z
Registry Expiry Date:
2022-12-05T19:16:56Z
Registrar: MarkMonitor Inc.
Registrar
IANA ID: 292
Registrar Abuse Contact Email:
[email protected]
Registrar Abuse Contact Phone:
+1.2083895740
Domain Status: clientDeleteProhibited
https://icann.org/epp#clientDeleteProhibited
Domain Status:
clientTransferProhibited
https://icann.org/epp#clientTransferProhibited
Domain Status:
clientUpdateProhibited
https://icann.org/epp#clientUpdateProhibited
Name Server:
NS1.KASPERSKYLABS.NET
Name Server: NS2.KASPERSKYLABS.NET
Name
Server: NS3.KASPERSKYLABS.NET
DNSSEC: unsigned
URL of the
ICANN Whois Inaccuracy Complaint Form:
https://www.icann.org/wicf/
>>> Last update of whois database:
2021-10-04T20:48:16Z

Similarly Ranked Websites

Luxury Sports Cars, Executive Saloons and SUVs | Jaguar UK

- jaguar.co.uk

Jaguar - The Art of Performance. Explore our range of luxury sports cars, saloon cars and SUVs including the XE, XF, XJ, F-TYPE, and F-PACE.

134,346   $ 93,000.00

Headless CMS with GraphQL | GraphCMS

- graphcms.com

Next generation headless CMS. Create content with GraphCMS & access on any platform using GraphQL. Start building API-first & for free!

134,346   $ 93,000.00

Kullanıcı Girişi - Yazbee

- yazbee.com

134,349   $ 93,000.00

Luxury Latin America travel: best 5-star hotels, resorts, tours

- luxurylatinamerica.com

The best luxury hotels, travel tours, 5-star resorts, and upscale vacation real estate in Mexico, Central America, and South America. #1 Latin American travel resource and...

134,351   $ 93,000.00

Luxury Performance Cars | Audi Australia Official Website

- audi.com.au

Explore the range of new and used Audi models. Offering luxury, performance & safety. Find your nearest Audi dealer, book a service, or calculate finance repayments.

134,355   $ 93,000.00