Help
RSS
API
Feed
Maltego
Contact
Domain > dafatan.com
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
Files that talk to dafatan.com
MD5
A/V
ebb928d03703ef34c1c273042c6b6eb2
[
VirTool*Win32/Obfuscator.AAV
]
a53fe9366e314c5d55a864936181a873
96f17bd24b65c1d7c7e142a04be43430
[
VirTool*Win32/Obfuscator.AAV
]
adf5dce7d1ffba4ad28f337ce2710c40
527fba7ebe6889b3765ed9cb7f8b6c43
c05ada1a2c4810e04189ce7453a86cd1
3b117b0dd319037b53258e343e7eb750
[
VirTool*Win32/Obfuscator.AAV
]
55b72b8f246e7dfcc936d5f0b834a362
c35e8da635ac05ab342272cacf713753
eeaf023149199ca9a39ac9f555ee27a1
89fcb988a7f90f585f998ad0899fb805
c95458e64b73747a8d588075a23860c1
[
TR/Graftor.1091823
] [
TrojanSpy.Nivdort.r3
] [
Virus.Win32.Vundo
] [
TrojanSpy*Win32/Nivdort.T
] [
win32*win32/SB/Malware
] [
Mal/EncPk-AJD
]
f2255db8abd60ac1d8a479b3186c7f71
[
VirTool*Win32/Obfuscator.AAV
]
4198f9f18d87ec333d7ae61f427b8584
42ed61efb3a74ee821e97e879ab4a673
368d47e650302bc17f927ebfa37868d2
[
VirTool*Win32/Obfuscator.AAV
]
5885a93073ceaf93c90bb03e86409723
d9813ca7dcc318d69aa3a25136dfa9f2
[
TR/Graftor.1091823
] [
Win32/Tnega.XATL!suspicious
] [
Trojan.DownLoader7.51303
] [
Virus.Win32.Vundo
] [
TrojanSpy*Win32/Nivdort.T
] [
win32*win32/SB/Malware
]
60b65064dbab6b950980888d0a1ddb20
[
VirTool*Win32/Obfuscator.AAV
]
fc37e425aa5e36e820bcd55d9b425f25
[
TR/Graftor.1091823
] [
Win32/Tnega.XATN!suspicious
] [
Trojan.Win32.Webprefix
] [
TrojanSpy*Win32/Nivdort.T
] [
win32*win32/SB/Malware
] [
Mal/EncPk-AJD
]
DNS Resolutions
Date
IP Address
2014-02-07
208.73.211.247
(
ClassC
)
2014-02-18
208.73.211.249
(
ClassC
)
2014-03-04
208.73.211.196
(
ClassC
)
2014-03-07
208.73.211.152
(
ClassC
)
2014-03-11
208.73.211.236
(
ClassC
)
2014-04-02
208.73.211.177
(
ClassC
)
2014-04-06
208.73.211.182
(
ClassC
)
2014-04-09
208.73.211.161
(
ClassC
)
2014-04-10
208.73.210.215
(
ClassC
)
2014-04-12
208.73.211.167
(
ClassC
)
2014-04-17
208.73.211.250
(
ClassC
)
2014-04-20
208.73.211.172
(
ClassC
)
2014-05-11
208.73.211.176
(
ClassC
)
2014-05-16
208.73.211.235
(
ClassC
)
2014-05-20
208.73.211.165
(
ClassC
)
2014-06-14
208.73.211.175
(
ClassC
)
2014-06-18
208.73.211.246
(
ClassC
)
2014-06-19
208.73.211.173
(
ClassC
)
2014-06-20
208.73.210.210
(
ClassC
)
2014-06-23
208.73.211.242
(
ClassC
)
2014-06-24
208.73.211.240
(
ClassC
)
2014-06-27
208.73.210.205
(
ClassC
)
2014-07-26
208.73.210.203
(
ClassC
)
2014-08-01
208.73.211.242
(
ClassC
)
2014-08-01
208.73.211.193
(
ClassC
)
2014-08-01
208.73.211.175
(
ClassC
)
2014-08-01
208.73.211.163
(
ClassC
)
2014-08-01
208.73.211.163
(
ClassC
)
2014-08-13
208.73.211.233
(
ClassC
)
2014-08-23
208.73.211.174
(
ClassC
)
2014-08-23
208.73.210.219
(
ClassC
)
2014-08-23
208.73.211.235
(
ClassC
)
2014-08-23
208.73.211.174
(
ClassC
)
2014-08-23
208.73.211.246
(
ClassC
)
2014-08-23
208.73.211.233
(
ClassC
)
2014-08-28
208.73.211.178
(
ClassC
)
2014-09-19
208.73.210.200
(
ClassC
)
2014-09-19
208.73.210.214
(
ClassC
)
2014-09-19
208.73.210.217
(
ClassC
)
2014-09-28
208.73.211.199
(
ClassC
)
2014-09-28
208.73.211.179
(
ClassC
)
2014-09-28
208.73.210.204
(
ClassC
)
2014-12-15
69.43.161.127
(
ClassC
)
2014-12-15
69.43.161.127
(
ClassC
)
2025-01-25
199.59.243.228
(
ClassC
)
Port 80
HTTP/1.1 200 OKDate: Sat, 18 Jan 2025 14:55:55 GMTContent-Type: text/html; charsetutf-8Content-Length: 1038X-Request-Id: d5f34031-6696-4abc-9886-64a7073124cfCache-Control: no-store, max-age0Accept-Ch: !doctype html>html data-adblockkeyMFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANDrp2lz7AOmADaN8tA50LsWcjLFyQFcb/P2Txc58oYOeILb3vBw7J6f4pamkAQVSQuqYsKx3YzdUHCvbVZvFUsCAwEAAQ_hm/OM5JGH3IZCd2bxmoR/DAya7ytW3/aEFVdNzzUvx3pFFjPvLP3rw6tn8f0vKm6zofD81Jw1LA7EopwOzLl2w langen stylebackground: #2B2B2B;>head> meta charsetutf-8> meta nameviewport contentwidthdevice-width, initial-scale1> link relicon hrefdata:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAIAAACQd1PeAAAADElEQVQI12P4//8/AAX+Av7czFnnAAAAAElFTkSuQmCC> link relpreconnect hrefhttps://www.google.com crossorigin>/head>body>div idtarget styleopacity: 0>/div>script>window.park eyJ1dWlkIjoiZDVmMzQwMzEtNjY5Ni00YWJjLTk4ODYtNjRhNzA3MzEyNGNmIiwicGFnZV90aW1lIjoxNzM3MjEyMTU1LCJwYWdlX3VybCI6Imh0dHA6Ly9kYWZhdGFuLmNvbS8iLCJwYWdlX21ldGhvZCI6IkdFVCIsInBhZ2VfcmVxdWVzdCI6e30sInBhZ2VfaGVhZGVycyI6e30sImhvc3QiOiJkYWZhdGFuLmNvbSIsImlwIjoiNTIuNDAuMjM0LjEwNSJ9Cg;/script>script src/bnhyZEfFr.js>/script>/body>/html>
Port 443
HTTP/1.1 200 OKDate: Sat, 18 Jan 2025 14:55:54 GMTContent-Type: text/html; charsetutf-8Content-Length: 1038X-Request-Id: b98d3b94-8377-4aac-bb90-b0b37ec1baa5Cache-Control: no-store, max-age0Accept-Ch: !doctype html>html data-adblockkeyMFwwDQYJKoZIhvcNAQEBBQADSwAwSAJBANDrp2lz7AOmADaN8tA50LsWcjLFyQFcb/P2Txc58oYOeILb3vBw7J6f4pamkAQVSQuqYsKx3YzdUHCvbVZvFUsCAwEAAQ_hm/OM5JGH3IZCd2bxmoR/DAya7ytW3/aEFVdNzzUvx3pFFjPvLP3rw6tn8f0vKm6zofD81Jw1LA7EopwOzLl2w langen stylebackground: #2B2B2B;>head> meta charsetutf-8> meta nameviewport contentwidthdevice-width, initial-scale1> link relicon hrefdata:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAIAAACQd1PeAAAADElEQVQI12P4//8/AAX+Av7czFnnAAAAAElFTkSuQmCC> link relpreconnect hrefhttps://www.google.com crossorigin>/head>body>div idtarget styleopacity: 0>/div>script>window.park eyJ1dWlkIjoiYjk4ZDNiOTQtODM3Ny00YWFjLWJiOTAtYjBiMzdlYzFiYWE1IiwicGFnZV90aW1lIjoxNzM3MjEyMTU1LCJwYWdlX3VybCI6Imh0dHBzOi8vZGFmYXRhbi5jb20vIiwicGFnZV9tZXRob2QiOiJHRVQiLCJwYWdlX3JlcXVlc3QiOnt9LCJwYWdlX2hlYWRlcnMiOnt9LCJob3N0IjoiZGFmYXRhbi5jb20iLCJpcCI6IjUyLjQwLjIzNC4xMDUifQo;/script>script src/bleQsLxVg.js>/script>/body>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]