Ask Your Question

Revision history [back]

click to hide/show revision 1
initial version

llmnr malicious domain

I've captured a compromised system. I filter llmnr and found a collection of suspicious results. Some of the requests are sent to domains with mixed characters. Such as "kdonszushlwi" or as "ytdfgejjknsc". What are these?