Help
RSS
API
Feed
Maltego
Contact
Domain > efa2-5.ervywakq.my
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
DNS Resolutions
Date
IP Address
2025-10-05
3.171.85.67
(
ClassC
)
2025-10-18
3.175.34.93
(
ClassC
)
Port 80
HTTP/1.1 301 Moved PermanentlyServer: CloudFrontDate: Sat, 18 Oct 2025 10:51:18 GMTContent-Type: text/htmlContent-Length: 167Connection: keep-aliveLocation: https://efa2-5.ervywakq.my/X-Cache: Redirect from cloudfrontVia: 1.1 17220d5b0843b7d6f37da152096b8a14.cloudfront.net (CloudFront)X-Amz-Cf-Pop: HIO52-P3X-Amz-Cf-Id: sFluneje9u4ZE9t_SsyVvyk0i6FonKoB7_-aUGzMOClTJ4db-vdfSg html>head>title>301 Moved Permanently/title>/head>body>center>h1>301 Moved Permanently/h1>/center>hr>center>CloudFront/center>/body>/html>
Port 443
HTTP/1.1 200 OKContent-Type: text/html; charsetUTF-8Transfer-Encoding: chunkedConnection: keep-aliveServer: nginxDate: Sat, 18 Oct 2025 10:51:18 GMTCache-Control: no-cache,must-revalidatePragma: no-cacheVary: Accept-EncodingVary: Accept-EncodingX-Powered-By: PHP/7.4.33X-Cache: Miss from cloudfrontVia: 1.1 14d8985a9dc0ead7a1065737baef3fe0.cloudfront.net (CloudFront)X-Amz-Cf-Pop: HIO52-P3X-Amz-Cf-Id: ivtOJ-9UfcLKZk_0Z3oZvDabFFZzY8BVpDy1rG-v_HLsR9_whaDoYAStrict-Transport-Security: max-age63072000; includeSubDomains; preload !DOCTYPE html>html langen>head> base herf/theme/skin1/.?_v20230202> meta charsetUTF-8> title>/title> meta namereferrer contentno-referrer> meta namekeywords content> meta namedescription content> meta http-equivPragma contentno-cache,no-store,must-revalidate> meta http-equivCache-Control contentCache-Control: no-store, no-cache, max-age0, must-revalidate, proxy-revalidate> meta http-equivExpires content0> meta http-equivX-UA-Compatible contentIEedge> meta nameviewport contentwidthdevice-width, initial-scale1.0, user-scalable0, minimum-scale1.0, maximum-scale1.0> link relicon typeimage/x-icon href/theme/skin1/logo.ico?_v20230202> link relShortcut Icon href/theme/skin1/logo.ico?_v20230202> link relBookmark href/theme/skin1/logo.ico?_v20230202> link relstylesheet href/theme/skin1/css/public.css?_v20230202> link relstylesheet href/theme/skin1/css/index.css?_v20230202> !-- Counter tag (ctag.js) -->link relpreload asscript href/ctag/a.js>script>!function(w){w._ccQw._ccQ||;w.CCounterw.CCounter||{};w.CCounter.eventw.CCounter.event||function(){w._ccQ.push(event,.slice.call(arguments))};w.CCounter.initw.CCounter.init||function(){w._ccQ.push(init,.slice.call(arguments))}}(window);!function(d,w){var sd.createElement(script);s.src/ctag/a.js;s.defer1;s.onloadfunction f(){if(!(w.CCounter&&functiontypeof w.CCounter.init&&functiontypeof w.CCounter.event))return setTimeout(f,30);try{w.CCounter.init(e3b804fbd21ecdcc,/ctag,)}catch(e){}if(!w._ccFlushed){var qw._ccQ||;w._ccFlushed1;w._ccQ;for(var i0;iq.length;i++){var tqi0,aqi1;try{functiontypeof w.CCountert&&w.CCountert.apply(w.CCounter,a)}catch(e){}}}};d.head.appendChild(s)}(document,window);/script>/head>body>div classpc> header classheader> h1>img src/theme/skin1//images/pc/logo.webp?_v20230202 alt>/h1> a hrefhttps://t.me/+ue2O_DoC_LNkNDM1> img src/theme/skin1//images/pc/link_bus.webp?_v20230202 alt> /a> a hrefhttps://t.me/+ue2O_DoC_LNkNDM1> img src/theme/skin1//images/pc/link_tg.webp?_v20230202 alt> /a> /header> main classmain> div classleft> h2>img src/theme/skin1//images/pc/sub_logo.webp?_v20230202 alt>/h2> div classcode> div classqr> div idqr>/div> /div> img src/theme/skin1//images/pc/tip.webp?_v20230202 alt> /div> /div> img src/theme/skin1//images/pc/poster.webp?_v20230202 alt> /main>/div>/body>script typetext/javascript src/theme/skin1/js/jquery.min.js?_v20230202>/script>script src/theme/skin1/js/qrcode.min.js?_v20230202>/script>script> $(document).ready(function () { var app_link window.location.href; var fontsize parseFloat($(html).css(font-size)) creatQr(qr, app_link, 1.1 * fontsize) function creatQr(id, url, size) { new QRCode(document.getElementById(id), { text: url, width: size, height: size, colorDark: #000000, colorLight: #ffffff, correctLevel: QRCode.CorrectLevel.Q, }) } //禁止鼠标右键 $(document).on(contextmenu, function (event) { event.preventDefault(); }) })/script>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]