Help RSS API Feed Maltego Contact                        

Domain > exofire.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to exofire.com

MD5A/V
44a462d875501c76381e05932a25b116[W32/Worm.NTCX-2095] [TR/PWS.Wow.A] [Win32/Cutwail.AQB] [Trojan.PWS.Stealer.116] [W32/Worm.BIRK] [P2P-Worm.Win32.Deecee] [Trojan-Dropper.Win32.Dorifel.ahkw] [PWS*Win32/Wowsteal.AA] [Trojan.Win32.Delf.fxm] [Troj/WowStl-A] [WORM_DEECEE.B] [P2P-Worm.Deecee]
bd077854406c33de204e9321ac1761fd
e2b0606a8041513986c68f5026146cd9[Trojan.Downloader-94073] [I-Worm/Delf.KG] [WORM/Deecee.A.9] [PWS-OnlineGames.em] [PWS*Win32/Wowsteal.AA]
2c4b3b3fb895cb12cec53eef8d0f15be[W32/Worm.NTCX-2095] [TR/PWS.Wow.A] [Win32/Cutwail.AQB] [Trojan.PWS.Stealer.116] [W32/Worm.BIRK] [P2P-Worm.Win32.Deecee] [Trojan-Dropper.Win32.Dorifel.ahkw] [PWS*Win32/Wowsteal.AA] [Trojan.Win32.Delf.fxm] [Troj/WowStl-A] [WORM_DEECEE.B] [P2P-Worm.Deecee]
a9b7afd6a55ce0ec41f589efef6d0783[PWS*Win32/Wowsteal.AA] [TR/PWS.Wow.A]
a90d46cc457de06077c5cddf5aee1442[Win32/Sality] [Virus*Win32/Sality.AU]
31c9b3ae311ff6b2a9be73eee5156a22[TR/PWS.Wow.A]
a56976e201d1eb939dbb12dc624af1c1[PWS*Win32/Wowsteal.AA]
67793d9130666136cb26918393625ce9[PWS*Win32/Wowsteal.AA] [TR/PWS.Wow.A]
ffb93ec4947b273e7294046be7cd9f01[PWS*Win32/Wowsteal.AA]

Whois

PropertyValue
Email PRIVACY@PROXYTECH.COM
NameServer NS2.POWER-DNS.COM
Created 2007-01-21 00:00:00
Changed 2015-03-04 00:00:00
Expires 2016-01-21 00:00:00
Registrar ENOM, INC.

DNS Resolutions

DateIP Address
2018-04-0435.182.185.60 (ClassC)
2018-11-1435.182.46.93 (ClassC)
2024-04-113.98.168.96 (ClassC)
2024-07-163.97.24.183 (ClassC)
2024-10-173.98.246.31 (ClassC)
2024-11-0915.157.122.131 (ClassC)
2025-01-1115.156.156.52 (ClassC)
2025-01-1415.223.161.9 (ClassC)
2025-04-283.97.156.204 (ClassC)
2025-05-0715.156.36.18 (ClassC)
2025-05-1015.157.177.161 (ClassC)
2025-09-243.96.98.42 (ClassC)
2025-11-1915.222.72.149 (ClassC)
2025-12-1552.60.43.125 (ClassC)
2026-01-0216.54.44.69 (ClassC)
2026-02-0215.223.254.251 (ClassC)

Port 80

Subdomains

DateDomainIP
www.endrothkel.exofire.com2014-04-2498.124.198.1
www.zeuwran.exofire.com2014-04-2498.124.198.1
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information