Help
RSS
API
Feed
Maltego
Contact
Domain > 132993.vip
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
DNS Resolutions
Date
IP Address
2017-10-23
103.71.237.131
(
ClassC
)
2024-11-13
52.184.68.44
(
ClassC
)
Port 80
HTTP/1.1 200 OKContent-Type: text/htmlDate: Wed, 13 Nov 2024 06:27:54 GMTEtag: W/6729494c-a7aLast-Modified: Mon, 04 Nov 2024 22:23:08 GMTServer: nginxVary: Accept-EncodingX-Cache: BYPASSTransfer-Encoding: chunked !DOCTYPE html>html langen>meta http-equivcontent-type contenttext/html;charsetutf-8 />head> meta charsetUTF-8> meta nameviewport contentwidthdevice-width, initial-scale1.0> meta http-equivX-UA-Compatible contentieedge> title>/title> body> script> var userAgent window.navigator.userAgent.toLowerCase(); if(userAgent.match(/MicroMessenger/i) micromessenger){ window.location.href https://c.pc.qq.com/middle.html?pfurl+window.location.host;} /script>/head> script> var browser { versions: function() { var u navigator.userAgent, app navigator.appVersion; return { //移动终端浏览器版本信息 trident: u.indexOf(Trident) > -1, //IE内核 presto: u.indexOf(Presto) > -1, //opera内核 webKit: u.indexOf(AppleWebKit) > -1, //苹果、谷歌内核 gecko: u.indexOf(Gecko) > -1 && u.indexOf(KHTML) -1, //火狐内核 mobile: !!u.match(/AppleWebKit.*Mobile.*/), //是否为移动终端 ios: !!u.match(/\(i^;+;( U;)? CPU.+Mac OS X/), //ios终端 android: u.indexOf(Android) > -1 || u.indexOf(Linux) > -1, //android终端或者uc浏览器 iPhone: u.indexOf(iPhone) > -1, //是否为iPhone或者QQHD浏览器 iPad: u.indexOf(iPad) > -1, //是否iPad webApp: u.indexOf(Safari) -1 //是否web应该程序,没有头部与底部 }; }(), language: (navigator.browserLanguage || navigator.language).toLowerCase() } var $_GET (function() { var url window.document.location.href.toString(); var u url.split(?); if(typeof(u1) string) { u u1.split(&); var get {}; for(var i in u) { var j ui.split(); getj0 j1; } return get; } else { return {}; } })(); var shareName $_GETshareName || ; var proxyAccount $_GETproxyAccount || ; if(!shareName) shareName window.location.hostname; console.log(shareName); var domains https://txdyaaah5.eastasia.cloudapp.azure.com:8043, https://txdybbbh5.eastasia.cloudapp.azure.com:8043, https://txdyccch5.eastasia.cloudapp.azure.com:8043, https://txdydddh5.eastasia.cloudapp.azure.com:8043, https://txdyeeeh5.eastasia.cloudapp.azure.com:8043, https://txdy8043.eastasia.cloudapp.azure.com:8043 ; var randomIndex Math.floor(Math.random() * domains.length); var targetUrl domainsrandomIndex + ?shareName + shareName; window.location.href targetUrl; /script>body> /body>/html>
Port 443
HTTP/1.1 200 OKContent-Type: text/htmlDate: Wed, 13 Nov 2024 06:27:54 GMTEtag: W/6729494c-a7aLast-Modified: Mon, 04 Nov 2024 22:23:08 GMTServer: nginxVary: Accept-EncodingX-Cache: BYPASSTransfer-Encoding: chunked !DOCTYPE html>html langen>meta http-equivcontent-type contenttext/html;charsetutf-8 />head> meta charsetUTF-8> meta nameviewport contentwidthdevice-width, initial-scale1.0> meta http-equivX-UA-Compatible contentieedge> title>/title> body> script> var userAgent window.navigator.userAgent.toLowerCase(); if(userAgent.match(/MicroMessenger/i) micromessenger){ window.location.href https://c.pc.qq.com/middle.html?pfurl+window.location.host;} /script>/head> script> var browser { versions: function() { var u navigator.userAgent, app navigator.appVersion; return { //移动终端浏览器版本信息 trident: u.indexOf(Trident) > -1, //IE内核 presto: u.indexOf(Presto) > -1, //opera内核 webKit: u.indexOf(AppleWebKit) > -1, //苹果、谷歌内核 gecko: u.indexOf(Gecko) > -1 && u.indexOf(KHTML) -1, //火狐内核 mobile: !!u.match(/AppleWebKit.*Mobile.*/), //是否为移动终端 ios: !!u.match(/\(i^;+;( U;)? CPU.+Mac OS X/), //ios终端 android: u.indexOf(Android) > -1 || u.indexOf(Linux) > -1, //android终端或者uc浏览器 iPhone: u.indexOf(iPhone) > -1, //是否为iPhone或者QQHD浏览器 iPad: u.indexOf(iPad) > -1, //是否iPad webApp: u.indexOf(Safari) -1 //是否web应该程序,没有头部与底部 }; }(), language: (navigator.browserLanguage || navigator.language).toLowerCase() } var $_GET (function() { var url window.document.location.href.toString(); var u url.split(?); if(typeof(u1) string) { u u1.split(&); var get {}; for(var i in u) { var j ui.split(); getj0 j1; } return get; } else { return {}; } })(); var shareName $_GETshareName || ; var proxyAccount $_GETproxyAccount || ; if(!shareName) shareName window.location.hostname; console.log(shareName); var domains https://txdyaaah5.eastasia.cloudapp.azure.com:8043, https://txdybbbh5.eastasia.cloudapp.azure.com:8043, https://txdyccch5.eastasia.cloudapp.azure.com:8043, https://txdydddh5.eastasia.cloudapp.azure.com:8043, https://txdyeeeh5.eastasia.cloudapp.azure.com:8043, https://txdy8043.eastasia.cloudapp.azure.com:8043 ; var randomIndex Math.floor(Math.random() * domains.length); var targetUrl domainsrandomIndex + ?shareName + shareName; window.location.href targetUrl; /script>body> /body>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]