Help RSS API Feed Maltego Contact                        

Domain > cafat2.messagescreen.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to cafat2.messagescreen.com

MD5A/V
9aa81fa022c0b159758efa1bda4f9be1[HW32.CDB.A20b] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dthd] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Win32.Backdoor.Hlux.Hwcu] [Trojan.Crypt3] [W32/Kryptik.BD!tr] [Crypt3.OHL] [Backdoor.Win32.Hlux.Ac]

Whois

PropertyValue
NameServer NS2.MARSYS.COM
Created 2002-03-28 00:00:00
Changed 2015-04-21 00:00:00
Expires 2017-03-28 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2014-07-2364.56.219.56 (ClassC)
2015-05-2064.56.208.56 (ClassC)
2024-08-1238.109.53.20 (ClassC)
2025-04-2338.111.198.185 (ClassC)
2025-07-1438.89.254.156 (ClassC)
2025-08-1338.101.250.150 (ClassC)

Subdomains

DateDomainIP
bm1.messagescreen.com2014-07-0564.56.219.53
nassco1.messagescreen.com2014-07-0564.56.219.53
cafat2.messagescreen.com2014-07-2364.56.219.56
mw2.messagescreen.com2014-06-1864.56.219.50
mw3.messagescreen.com2014-06-1864.56.219.51
249.messagescreen.com2025-07-3138.71.16.244
witcc.messagescreen.com2013-05-16207.154.15.30
jwmcd.messagescreen.com2014-06-1864.56.219.54
arqule.messagescreen.com2013-04-18207.154.15.20
license.messagescreen.com2025-06-2238.101.250.150
asante.messagescreen.com2014-07-0564.56.219.54
cei.messagescreen.com2014-06-18207.154.15.54
ashton.messagescreen.com2014-05-2964.56.219.54
aisgroup.messagescreen.com2013-12-04207.154.15.21
sager.messagescreen.com2014-05-24207.154.15.55
mmnt.messagescreen.com2014-03-2464.56.219.120
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information