Help RSS API Feed Maltego Contact                        

Domain > herbalmedics.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to herbalmedics.com

MD5A/V
1d34692a57337fa75eb62d864e406f3a[Trojan/W32.Bublik.19968.F] [TrojanDownloader.Upatre.r4] [Downloader-FAAN] [Trojan.Email.FakeDoc] [Trojan.Bublik!DiMS/0ldcAk] [W32/Trojan3.ICS] [Downloader.Upatre] [Upatre.CJ] [Win32/Upatre.HKfRLSD] [Trojan.Win32.Bublik.clal] [Trojan.Win32.DownLoad3.cwscue] [Trojan.Win32.A.Bublik.19968.H] [UnclassifiedMalware] [Trojan.DownLoad3.28161] [TR/Dldr.Waski.A.6] [TROJ_UPATRE.YYKS] [Mal/Upatre-A] [Trojan/Win32.Bublik] [Win32.Troj.Bublik.cl.(kcloud)] [TrojanDownloader:Win32/Upatre.U] [W32/Trojan.BQIF-9208] [Win32/TrojanDownloader.Waski.A] [Trojan-Spy.Zbot] [W32/Krypt.KY!tr] [Trojan.Win32.Waski.A]

Whois

PropertyValue
NameServer NS2.DIRECTORY92.COM
Created 2011-11-01 00:00:00
Changed 2015-01-15 00:00:00
Expires 2016-11-01 00:00:00
Registrar PDR LTD. D/B/A PUBLI

DNS Resolutions

DateIP Address
2014-04-19108.59.251.118 (ClassC)
2019-08-15209.159.148.185 (ClassC)
2019-11-03209.99.40.222 (ClassC)
2019-11-03209.99.40.223 (ClassC)
2020-03-2864.20.43.235 (ClassC)
2020-08-0262.171.156.133 (ClassC)
2020-11-0313.248.196.204 (ClassC)
2021-05-2265.21.96.99 (ClassC)
2023-11-0735.186.223.180 (ClassC)
2024-08-2066.29.137.44 (ClassC)
2024-11-0215.197.240.20 (ClassC)
2025-08-11198.177.120.61 (ClassC)

Port 80

Port 443

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information