Lookalike Crowdstrike Domains Discovered by DNSFilter to Date
by Will Strafach on Jul 22, 2024 1:43:19 PM
As most of the world is aware, after a routine update pushed by CrowdStrike last week to Microsoft devices, a global IT outage occurred impacting a range of industries including hospitals, broadcast television, government, and most notoriously airlines.
After last week’s world-wide outage, we have noticed a significant uptick in the use of “crowdstrike” (or similar) in the names of newly registered domains. Some of the following domains have threat indicators, while some have simply been registered since the outage. Out of an abundance of caution at DNSFilter, we are marking all of these newly registered domains as blocked on our network.
The list currently sits at 65 FQDNs, but as we discover more we will publish them here:
crowdstrike[.]technology
crowdstrikeout[.]com
fix-crowdstrike-bsod[.]com
crowdstrikefixer[.]com
fixcrowdstrike[.]com[.]au
crowdstrikecommuication[.]app
crowdstrikeclassaction[.]com
crowdstrikesuporte[.]com
crowdstrikewindowsoutage[.]com
suportecrowdstrike[.]com
fix-crowdstrike-apocalypse[.]com
crowdstrikefix[.]zip
crowdstrikelawsuit[.]com
crowdstrike[.]xn--node
crowdstrikedown[.]com
iscrowdstrikedown[.]com
supportfalconcrowdstrike[.]com
crowdstrikeevents[.]com
crowdstrikeblueteam[.]com
crowdstrike[.]blue
crowdstrike[.]buzz
crowdstrikeold[.]com
crowdstrikeoopsie[.]com
crowdstrikebsod[.]com
crowdstrike[.]live
crowdstrike[.]fail
crowdstrikezeroday[.]com
fix-crowdstrike[.]com
isitcrowdstrike[.]com
crowdstrike-out[.]com
crowdstrikeoops[.]com
crowdstrike[.]bot
crowdstrike[.]life
crowdstrikeodayl[.]com
crowdstrike-helpdesk[.]com
crowdstrike-falcon[.]online
crowdstriketoken[.]com
crowdstrike[.]feedback
crowdstrikeoutage[.]com
microsoftcrowdstrike[.]com
crowdstrikeglitch[.]com
crowdstrike-bsod[.]com
crowdstrikeclaims[.]com
fix-crowdstrike-bsod[.]com
www[.]fix-crowdstrike-bsod[.]com
crowdstrikeoutage[.]info
crowdstrikeclaim[.]com
crowdstrikebluescreen[.]com
crowdstrikerecovery[.]com
crowdstrikefail[.]com
crowdstrikedown[.]site
crowdstrikeupdate[.]com
crowdstrikebug[.]com
crowdstrikecure[.]com
crowdstrike[.]site
crowdstrike[.]help
crowdstrike0day[.]com
crowdstrike[.]bsod[.]com
crowdstrikerecovery[.]pro
whatiscrowdstrike[.]com
crowdstrike[.]cam
crowdstrikefix[.]com
crowdstrikereport[.]com
crowdstrike-falcon[.]online
www[.]crowdstrike-helpdesk[.]com
crowdstrikedoomsday[.]com
Edited on 7/23/2024 to add the following domains:
crowdstrikekernelcar[.]com
crowdstrikerecovery[.]info
crowdstrikepatch[.]com
crowdstriked[.]net
crowdstrikeyou[.]xyz
crowdstrikefix[.]lol
crowdstrikefix[.]blog
crowdstrikebug[.]info
crowdstrikerestore[.]com
fixmycrowdstrike[.]com
secure-crowdstrike[.]com
supportcrowdstrike[.]blog
Edited on 7/25/2024 to add the following domains:
crowdstrikebugrestorer[.]com
crowdstrikeerrorfix[.]com
crowdstrikesysmendpro[.]com
crowdstrikerecovery[.]lol
crowdstrikerecovery[.]live
crowdstrike-office365[.]com
crowdstrikerescue[.]org
crowdstrikebugfix[.]com
crowdstrikefailpatch[.]com
outagecrowdstrike[.]com
downstrike[.]lol
crowdstrife[.]com
Updated on 7/26/2024 to add the following domains:
crudstrike[.]com
crowdstroke[.]zip
crowstrike[.]net
crowstrike[.]org
crowdstuck[.]org
croudstrike[.]org
crowdstrikingit[.]com
crowd-struck[.]com
crowdstrikefixes[.]com
crowdstrikehelp[.]info
crowdstrikekernelshield[.]com
crowdstrikeclassactionlawsuit[.]com
crowdstrikekernelcare[.]com
crowdstrikeerrormender[.]com
crowdstrikefix[.]info
crowdstrikebugfixpro[.]com
Why Scaling Your MSP Doesn’t Mean Hiring More Technicians
Growth should feel like progress. But for a lot of MSPs, there comes a point where growth starts to feel heavier instead. New clients are coming in, and revenue is rising, yet the day-to-day operation feels more stretched, not more efficient. The service desk is constantly busy. Senior techs keep getting pulled into escalations. The team is working harder just to maintain the same standard of delivery.The usual response is to hire more people. On...
The Hidden Cost of “Good Enough” Security in MSP Environments
“Good enough” security checks the boxes and keeps the dashboards green. It covers the basics and gets you through onboarding. But in MSP environments, “good enough” usually means nothing breaks badly enough to force action. And that’s exactly the problem.The tooling system doesn’t fail. It just becomes more expensive to run, gradually turning your service desk into a permanent cleanup crew.Over time, reactive security tools create a profitability...
