Help RSS API Feed Maltego Contact                        

Domain > devilreturns.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

https://github.com/kbandla/APTnotes/blob/master/20...    

Files that talk to devilreturns.com

MD5A/V
616eff3e9a7575ae73821b4668d2801c[W32.Clode62.Trojan.6442] [Artemis!616EFF3E9A75] [Backdoor.UDiroc] [W32/MalwareF.UAJY] [Backdoor.Trojan] [Heur.Suspicious] [W32/Risk.YXSQ-1000] [Trojan.VBRA.018783] [Trojan.Win32.Darkddoser] [W32/Injector.AFOI!tr] [Win32/Trojan.d89]
aed60553047ae484acc49cd2d5177c75

Whois

PropertyValue
Email james@runwaymagazineinc.com
NameServer NS08.DOMAINCONTROL.COM
Created 2012-06-01 00:00:00
Changed 2014-05-29 00:00:00
Expires 2015-06-01 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2013-08-0764.202.189.170 (ClassC)
2014-04-27184.168.221.21 (ClassC)
2014-12-14184.168.221.21 (ClassC)
2015-09-2454.174.31.254 (ClassC)
2016-06-0954.152.144.243 (ClassC)
2018-03-1452.72.167.138 (ClassC)
2018-03-1454.236.221.45 (ClassC)
2018-04-2652.86.22.136 (ClassC)
2018-04-2654.174.212.152 (ClassC)
2018-05-0754.80.72.81 (ClassC)
2018-05-0752.71.210.200 (ClassC)
2018-05-3052.86.23.17 (ClassC)
2018-06-2252.5.103.164 (ClassC)
2018-07-0652.5.142.190 (ClassC)
2018-07-0652.72.89.116 (ClassC)
2018-07-2054.165.156.210 (ClassC)
2018-07-2052.73.115.80 (ClassC)
2018-08-0352.54.24.134 (ClassC)
2018-08-0352.6.128.155 (ClassC)
2018-08-2354.208.75.210 (ClassC)
2018-08-2352.6.224.208 (ClassC)
2018-10-2152.22.89.169 (ClassC)
2018-10-2154.144.21.246 (ClassC)
2019-08-1523.20.239.12 (ClassC)
2024-02-2154.209.32.212 (ClassC)
2024-08-253.130.204.160 (ClassC)
2025-01-143.19.116.195 (ClassC)
2025-01-183.18.7.81 (ClassC)
2025-01-2954.161.222.85 (ClassC)
2025-03-173.140.13.188 (ClassC)
2025-04-0118.119.154.66 (ClassC)
2025-04-1552.71.57.184 (ClassC)
2025-04-1934.205.242.146 (ClassC)
2025-04-2252.86.6.113 (ClassC)
2025-05-203.130.253.23 (ClassC)
2025-08-0213.216.111.180 (ClassC)
2025-08-2954.243.117.197 (ClassC)
2025-09-1413.223.25.84 (ClassC)

Port 80

Subdomains

DateDomainIP
ftp.devilreturns.com2014-12-14184.168.221.21
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information