Help RSS API Feed Maltego Contact                        

Domain > firstflight.net

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to firstflight.net

MD5A/V
971d6821a96e8f41da919db02ebc60da[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Yakes] [W32/Kelihos.BCEB!tr]
3220ab9b63a767c299000ea9d9e3a056[HW32.CDB.1b0b] [Packed.Win32.Katusha.1!O] [Backdoor.Hlux!u8SUOkHyYnA] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.RbUfAWB] [Backdoor.Win32.Hlux.dpoo] [Trojan.Win32.Hlux.cxxuzn] [TrojWare.Win32.Kryptik.CAUP] [BackDoor.Slym.12819] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Backdoor.Hlux] [Win32/Kryptik.CAXO] [Win32.Backdoor.Hlux.Lgjg] [Trojan.Crypt_s] [W32/Kryptik.CAXO!tr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CAXO]
860dd245cbecd656df047b97456d0ad0[HW32.CDB.9069] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.AntiWare!1.9D9B] [W32/Kelihos.KK@mm]
dde053529fc90359815908c8ee1def65[FakeSecTool-FCX!DDE053529FC9] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
3223f61af50aa26a1c3bb96fe1779011[HW32.CDB.D56b] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux.Win32.9065] [Trojan.Win32.Kryptik.czfnsp] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.dueu] [Backdoor.Hlux!DdFHfWii/ns] [UnclassifiedMalware] [TR/Kryptik.oenzk] [Backdoor:Win32/Kelihos] [Trojan/Win32.FakeAV] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.cri] [Trojan.Crypt3] [W32/Kryptik.CBOM!tr] [Crypt3.ORV] [Backdoor.Win32.Hlux.Acmu] [Win32/Trojan.7bf]
3ff79e59f23983931c7f8b78ff705df1[HW32.CDB.6c99] [Kryptik.CCFN] [Win32/Kelihos.SeNdHLB] [Backdoor.Win32.Hlux.dlkp] [Backdoor.Hlux!oUNizOsy5vo] [TrojWare.Win32.Kryptik.CASU] [Trojan.Packed.26544] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.At] [Trojan-Downloader.Win32.Waledac] [W32/Hlux.AGWI!tr] [Win32/Trojan.337]
c86f315b840f993b805369f3a29ba797[HW32.CDB.9f50] [Packed.Win32.Katusha.3!O] [Crypt_s.GNC]
fe734b28009c7dd5389f64d72722bb21
2ecde55cc501d71803f0c57d668fa546[HW32.CDB.7c65] [WS.Reputation.1] [Kryptik.CCFN] [Trojan-PSW.Win32.Tepfer.txcq] [Trojan.PWS.Tepfer!kS2SkVA+79E] [TrojWare.Win32.Kryptik.CAUP] [Trojan.Packed.26581] [Mal/FakeAV-UF] [Trojan[PSW]/Win32.Tepfer] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.Trojan-qqpass.Qqrob.Hvtt] [Trojan-Downloader.Win32.Waledac] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CAUP]

Whois

PropertyValue
NameFirst Flight Couriers Ltd
Organization First Flight Couriers Ltd
Email webmaster@worldindia.com
Address 15/16, National House
Zip Code 400 072
City Mumbai
State Maharashtra
Country IN
Phone +91.2239520816
NameServer NS8.WORLDINDIA.COM
Created 1999-01-23 05:00:00
Changed 2015-01-28 23:25:47
Expires 2016-01-23 00:00:00
Registrar NETWORK SOLUTIONS, L

DNS Resolutions

DateIP Address
2013-06-0159.163.53.209 (ClassC)
2014-03-0959.144.106.230 (ClassC)
2014-07-0559.144.106.230 (ClassC)
2014-11-24175.100.185.227 (ClassC)
2021-03-08104.21.32.25 (ClassC)
2024-07-22154.83.2.70 (ClassC)
2024-09-1245.194.53.81 (ClassC)
2024-12-1545.194.53.162 (ClassC)
2024-12-2445.194.53.26 (ClassC)
2026-01-10104.21.74.108 (ClassC)
2026-01-23172.67.201.199 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
mx01.firstflight.net2013-12-02115.113.27.120
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information