Everyday is lazarus.dayβ

Kimsuky: DNS Intel Gathering

2024-01-08, Whoisxmlapi


Investigating the UNC2975 Malvertising Campaign Infrastructure
WhoisXML API found 3,000+ artifacts that could have ties to the UNC2975 malvertising campaign. Download the threat research materials now.Continue reading Download report
Provide current and historical ownership information on domains / IPs. Identify all connections between domains, registrants, registrars, and DNS servers.
Look into all current and historical DNS / IP connections between domains and A, MX, NS, and other records. Monitor suspicious changes to DNS records.
Get detailed context on an IP address, including its user’s geolocation, time zone, connected domains, connection type, IP range, ASN, and other network ownership details.
Access our web-based solution to dig into and monitor all domain events of interest.
Get access to a web-based enterprise-grade solution to search and monitor domain registrations and ownership details for branded terms, fuzzy matches, registrants of interest, and more.
Our complete set of domain, IP, and DNS intelligence available via API calls as an annual subscription with …