Help RSS API Feed Maltego Contact                        

Domain > icybin.flnet.org

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

https://www.fireeye.com/blog/threat-research/2014/...    

Files that talk to icybin.flnet.org

MD5A/V
0294f9280491f85d898ebe471f0fb58e[W32.Clodb98.Trojan.ad33] [Artemis!0294F9280491] [Trojan.Backdoor] [Trojan/Farfli.og] [Trojan.Win32.DownLoader6.twhos] [TROJ_SPNR.0BHT12] [Trojan.Farfli!N0A0u2Ok0g0] [Trojan.DownLoader6.24544] [Mal/EncPk-AGS] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Moudoor.A] [Dropper/Win32.Backdoor] [W32/Trojan.ZGXJ-7467] [BScope.Trojan.SvcHorse.01643] [Trojan.Win32.Farfli.OG] [Backdoor.Win32.Moudoor] [W32/Farfli.OG] [Win32/Trojan.e6d]

Whois

PropertyValue
NameHostmaster Manager
Organization North Loop Networks
Email hostmaster@northloopnetworks.com
Address 1807 3rd st ne
Zip Code 55418
City Minneapolis
State MN
Country US
Phone +1.6123855501
NameServer ns2.darktech.org
Created 2001-12-12 04:09:50
Changed 2013-10-14 03:39:49
Expires 2015-12-12 04:09:50
Registrar DNC Holdings, Inc. (

DNS Resolutions

DateIP Address
2014-02-188.8.8.8 (ClassC)
2014-02-208.8.8.8 (ClassC)
2014-12-13127.0.0.1 (ClassC)
2016-04-1858.158.177.102 (ClassC)
2019-10-09192.64.147.171 (ClassC)
2019-12-3074.117.219.198 (ClassC)
2019-12-3074.117.219.199 (ClassC)
2020-02-2795.211.75.10 (ClassC)
2020-05-31207.244.67.218 (ClassC)
2020-05-31199.115.115.116 (ClassC)
2020-07-1437.48.65.145 (ClassC)
2020-08-27199.115.115.102 (ClassC)
2020-12-3096.47.230.69 (ClassC)
2022-04-21185.107.56.52 (ClassC)
2022-05-0582.192.82.228 (ClassC)
2024-02-0174.63.241.26 (ClassC)
2024-04-22192.157.56.142 (ClassC)
2024-06-10185.107.56.53 (ClassC)
2024-06-24185.107.56.192 (ClassC)
2024-06-2737.48.65.144 (ClassC)
2024-07-3074.63.241.25 (ClassC)
2024-08-15162.210.199.65 (ClassC)
2024-09-0369.162.95.4 (ClassC)
2024-09-1337.48.65.155 (ClassC)
2024-11-13162.210.196.168 (ClassC)
2025-01-1537.48.65.152 (ClassC)
2025-04-1282.192.82.226 (ClassC)
2025-04-19192.157.56.140 (ClassC)
2025-05-0169.162.95.3 (ClassC)
2025-05-11162.210.196.166 (ClassC)
2025-05-15185.107.56.194 (ClassC)
2025-05-2237.48.65.154 (ClassC)
2025-05-28199.115.116.216 (ClassC)
2025-06-21162.210.199.85 (ClassC)
2025-07-0169.162.95.6 (ClassC)
2025-07-06162.210.196.167 (ClassC)
2025-07-1674.63.241.21 (ClassC)
2025-07-21162.210.199.87 (ClassC)
2025-07-3174.63.241.19 (ClassC)
2025-08-0669.162.95.2 (ClassC)
2025-08-11207.244.65.58 (ClassC)

Port 80

Subdomains

DateDomainIP
kxz1ot6.flnet.org2024-07-2474.63.241.24
21sdtdbzdrbrd7.flnet.org2013-07-2646.161.27.166
samira.flnet.org2013-06-05192.168.0.1
superweb.flnet.org2024-07-22162.210.199.87
gjjb.flnet.org2015-01-2395.211.172.143
uprnd.flnet.org2024-09-1137.48.65.153
feelsgood.flnet.org2024-10-0737.48.65.155
reg.flnet.org2025-01-21162.210.196.167
yuming.flnet.org2024-12-0374.63.241.21
www.yuming.flnet.org2025-02-1969.162.95.2
yellowblog.flnet.org2024-06-19162.210.196.166
5poyujk.flnet.org2024-08-13185.107.56.55
book.flnet.org2018-12-2774.117.221.144
icybin.flnet.org2014-12-13127.0.0.1
admin.flnet.org2013-11-2078.138.98.230
info.flnet.org2014-12-13127.0.0.1
raybans-bouto.flnet.org2025-01-1569.162.95.5
supp.flnet.org2024-06-22192.157.56.142
yahoomessenger.flnet.org2018-07-22255.255.255.255
feepk.agpbs.flnet.org2025-05-2674.63.241.19
4terropet.flnet.org2013-05-05192.168.0.1
birdsoft.flnet.org2019-09-01192.64.147.171
yftpost.flnet.org2024-01-14185.107.56.195
text-first.flnet.org2024-06-06185.107.56.194
text-First.flnet.org2024-09-10185.107.56.192
hrahanell-buy.flnet.org2024-11-19207.244.65.58
hrahristiano-buy.flnet.org2024-11-19207.244.65.58
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information