cloud.microsoftshop.org
Classification: Malicious
cloud.microsoftshop.org is a malicious hostname. Linked to Backdoordiplomacy activity. Reported by 1 threat source, last seen 2023-01-21.
Current activity
- Offline — no longer resolving. Last online 2023-11-12 13:27:06.
MITRE ATT&CK associations
Intrusion sets: BACKDOORDIPLOMACY (G0135)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Backdoordiplomacy | Maltiverse | 2023-01-20 04:17:13 | 2023-01-21 18:01:40 | malicious-activity | G0135 BackdoorDiplomacy |
Tags
aptIP addresses resolved by this hostname
- 52.25.92.0 (2023-11-12 13:27:06)
- 54.65.172.3 (2023-11-09 20:55:47)
- 58.158.177.102 (2023-10-13 18:04:54)
Whois information
- AS name
- AS17506 UCOM Corp.
- Domain
- microsoftshop.org
- TLD
- org
- DNSSEC
- ['unsigned']
- Nameservers
- ns77.domaincontrol.com, ns78.domaincontrol.com
- Registrant
- GoDaddy.com, LLC
- Contact email
- [email protected]
- Domain created
- 2026-03-02 09:12:51
- Domain expires
- 2027-03-02 09:12:51
- First indexed
- 2023-01-21 17:51:43
- Last updated
- 2026-09-13 04:42:00