Help RSS API Feed Maltego Contact                        

Domain > down1.evil5.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to down1.evil5.com

MD5A/V
e68d87bd62bc36a5a3876c48c6cebb6f[W32.HfsAutoB.535E] [Win32.PWS.Frethog.AJ.3] [W32/Behav-Heuristic-063] [Packed/NSPack] [Backdoor.Win32.Zegost.mswve] [Mal/Packer] [Trojan.Graftor.D2B910] [Trojan/Win32.Backdoor] [Trj/Chgt.O] [Win32.Backdoor.Zegost.Akoz] [nspack] [Backdoor.Win32.Zegost.mswve] [Win32/Backdoor.67c]

Whois

PropertyValue
Email YuMing@YinSiBaoHu.AliYun.com
NameServer DNS32.HICHINA.COM
Created 2014-03-01 00:00:00
Changed 2014-12-31 00:00:00
Expires 2016-03-01 00:00:00
Registrar HICHINA ZHICHENG TEC

DNS Resolutions

DateIP Address
2015-02-18112.124.141.130 (ClassC)
2015-06-3042.120.217.94 (ClassC)
2016-02-21112.124.219.93 (ClassC)
2016-02-21112.124.219.82 (ClassC)
2016-03-20112.124.219.71 (ClassC)
2016-04-26112.124.219.43 (ClassC)
2016-08-22120.27.176.61 (ClassC)
2017-01-19120.27.176.111 (ClassC)
2017-01-28118.178.62.49 (ClassC)
2017-08-31118.178.29.42 (ClassC)
2017-09-03120.55.35.9 (ClassC)
2017-10-12116.62.99.177 (ClassC)
2018-04-01120.27.176.40 (ClassC)
2018-06-10116.62.99.172 (ClassC)
2018-06-10116.62.99.183 (ClassC)
2018-08-31120.27.176.9 (ClassC)
2018-08-31116.62.99.176 (ClassC)
2018-10-21118.31.219.217 (ClassC)
2019-01-01118.31.219.210 (ClassC)
2019-03-19118.31.219.226 (ClassC)
2019-04-07118.31.219.223 (ClassC)
2019-09-0947.110.177.108 (ClassC)
2019-09-2247.110.177.99 (ClassC)
2019-09-3047.110.177.126 (ClassC)
2019-12-0447.110.177.15 (ClassC)
2020-04-2347.110.177.144 (ClassC)
2020-05-2747.110.23.78 (ClassC)
2020-06-1947.110.177.59 (ClassC)
2020-08-20118.31.219.207 (ClassC)
2020-09-09118.31.219.193 (ClassC)
2020-10-03118.31.219.221 (ClassC)
2023-12-20118.31.219.209 (ClassC)
2024-01-30118.31.219.216 (ClassC)
2024-02-16118.31.219.199 (ClassC)
2024-02-23118.31.219.222 (ClassC)
2024-05-07118.31.219.201 (ClassC)
2024-07-30118.31.219.212 (ClassC)
2024-10-21118.31.219.198 (ClassC)
2025-01-05118.31.219.225 (ClassC)
2025-04-28118.31.219.204 (ClassC)
2025-05-11118.31.219.202 (ClassC)
2025-06-02118.31.219.206 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information