Help RSS API Feed Maltego Contact                        

Domain > naver.net

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to naver.net

MD5A/V
31332f88773a7451f2d6f75d9a363549[W32.HfsIframe.581d]
7971D2C5F1F1E0F027E75D43EFEDC2BE
C21A35EBA9F20416DC011B0F31FCAFDB
87867ef4ca9163f3104eaec672ad4288[Artemis!87867EF4CA91] [WS.Reputation.1] [Malware] [Win.Trojan.Qhost-1813] [PUP/Win32.Helper]
78274f866570cfcb5b12471b2a525ac3[W32.HfsAutoB.0fab] [Trojan/W32.KRBanker.21642] [TrojanProxy.Potukorp.r2] [Artemis!78274F866570] [Trojan.Qhost!2YNGuQoJWPc] [Trojan.Win32.NSPM.cyvvtf] [PE:Backdoor.Win32.Obfuscator.bl!1075339587] [Heuristic.LooksLike.Win32.Suspicious.C] [Mal/Behav-160] [TrojanProxy:Win32/Potukorp.A] [Trojan/Win32.Banki] [W32/Trojan.SHNZ-5798] [Trojan.Win32.Banker.bOW] [Win32.Backdoor.Obfuscator.Aglb] [Trojan-Proxy] [W32/Qhost_Banker.OW!tr] [Proxy.BDAM] [Trj/CI.A] [Suspicious.Cloud.5]
20e1869be2d72209912aafb1e4924726[Trojan/W32.KRBanker.28160.G] [Trojan-Spy.Win32.Zbot!O] [TrojanSpy.Zbot.r4] [Spyware.Zbot.JWZ] [W32/Heuristic-210!Eldorado] [TROJ_FORUCON.BMC] [Trojan.Win32.Zbot.cxbdqz] [Trojan.Win32.A.Zbot.28160.D] [TrojWare.Win32.Injector.cej] [Trojan.Packed.22856] [Heuristic.LooksLike.Win32.Suspicious.C!86] [Mal/Dropper-AB] [Trojan/Hijacker.lc] [TrojanProxy:Win32/Potukorp.A] [Win-Trojan/Banki.28160] [Trj/CI.A] [PE:Trojan.Win32.Injector.fo!1075351907] [Trojan-Spy.Win32.Zbot] [W32/Injector.ZBT!tr] [Pakes_c.BPIV] [Trojan.Win32.Zbot.AF]
ec5ef009fc2c8de0d789c9ca8c9a9081[Trojan/W32.KRBanker.29184.O] [RDN/PWS-Banker!dh] [Posible_Worm32] [Win32/Oflwr.A!crypt] [TROJ_BLKMUN.A] [Trojan-Banker.Win32.Qhost.ach] [Trojan.PWS.Qhost!NAi4DG7wiCA] [Win32.Trojan-banker.Qhost.Also] [UnclassifiedMalware] [Trojan.Click3.6101] [TR/Proxy.Potukorp.A.44] [Heuristic.BehavesLike.Win32.Suspicious-PKR.K] [Mal/Behav-160] [Trojan[Banker]/Win32.Qhost] [TrojanProxy:Win32/Potukorp.A] [Trojan/Win32.Banki] [Trj/CI.A] [PE:Trojan.Friet!1.9DB0] [Trojan-Proxy.Win32.Potukorp] [W32/Qhost.ACH!tr] [Trojan.Win32.Banker.BOM] [Artemis!EC5EF009FC2C] [TrojanBanker.Qhost.r3] [Trojan.Win32.Qhost.dayvjl] [Win32.Troj.Banker.(kcloud)] [Trojan-Banker.Win32.Qhost] [Trojan.Win32.Banker.AG]
570dfabd34410ec1c0627224a2bc9808[Packed.Win32.TDSS!O] [Trojan.Downloader] [W32/Heuristic-210!Eldorado] [Suspicious.Cloud.5] [Suspicious_F.E] [Win32/Oflwr.A!crypt] [Packed/FSG] [Mal/Packer] [Trojan.Click3.6101] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [TrojanProxy:Win32/Potukorp.A] [PE:Trojan.Friet!1.9DB0] [Luhe.Packed.A] [Trojan.Win32.Banker.OM] [Trojan/W32.KRBanker.27221] [Artemis!570DFABD3441] [Trojan/Win32.Potukorp] [W32/Qhost_Banker.OM!tr]
db27472fc81bad71d0bedb0a0c2947f7[Trojan/W32.KRBanker.24397] [Packed.Win32.TDSS!O] [RDN/PWS-Banker!da] [Trojan.Downloader] [W32/Heuristic-210!Eldorado] [Suspicious.Cloud.5] [Suspicious_F.E] [Win32/Oflwr.A!crypt] [Trojan-Banker.Win32.Qhost.acb] [Packed/FSG] [Trojan.Win32.S.Banker.24397] [Mal/Behav-160] [Trojan.StartPage.61045] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [TrojanProxy:Win32/Potukorp.A] [Trojan.Win32.Banker.am] [PE:Trojan.Friet!1.9DB0] [W32/Qhost_Banker.OM!tr] [Luhe.Packed.A]
8e988686ff97d1220d6c799e7ab3581d[HW32.CDB.D305] [Suspicious.MH690.A] [HEUR:Trojan.Win32.StartPage] [Trojan.Click3.6101] [Heuristic.LooksLike.Win32.Suspicious.F] [Mal/EncPk-ABF] [Win32/Trojan.968]
8a231f2d30c65cfc99f9d421b40fdc4e[HW32.CDB.221a] [Suspicious.Cloud.5] [Cryp_Xin1] [Packed/PECompact] [Mal/Behav-160] [Heuristic.LooksLike.Win32.Suspicious.F] [TrojanProxy:Win32/Potukorp.A] [PE:Trojan.Friet!1.9DB0]
74a375056aa81a2b850c937024ab69ee[Suspicious.Cloud.5] [Cryp_Xin1] [Trojan-Banker.Win32.Qhost.ach] [Packed/PECompact] [Trojan.Click3.6522] [Heuristic.LooksLike.Win32.Suspicious.F] [Mal/Behav-160] [TrojanProxy:Win32/Potukorp.A] [TrojanBanker.Qhost] [PE:Trojan.Friet!1.9DB0] [W32/Qhost.ACH!tr] [PSW.Banker6.BHIR]
73bfc2718fcf3759d556af9aa5af62b3[W32.HfsAutoB.796e] [Suspicious.Cloud.5] [HEUR:Trojan.Win32.StartPage] [Trojan.Click3.6101] [Heuristic.LooksLike.Win32.Suspicious.C] [Mal/Behav-160] [TrojanProxy:Win32/Potukorp.A] [Trojan/Win32.OnlineGameHack] [PE:Backdoor.Win32.Obfuscator.bl!1075339587]
89ba112a89496e2f66a28e8123d21eca[HW32.CDB.5543] [Trojan/W32.KRBanker.21320] [TrojanBanker.Qhost.r2] [RDN/PWS-Banker!df] [Trojan.Dropper] [W32/Behav-Heuristic-066] [Trojan.PWS.Qhost!whRFxlwhm4k] [W32/Heuristic-210A!Eldorado] [Win32/Oflwr.A!crypt] [Trojan-Banker.Win32.Qhost.ach] [Trojan.Win32.Qhost.cxatip] [PE:Trojan.Friet!1.9DB0] [Trojan.StartPage.63383] [TR/Proxy.Potukorp.A.38] [Cryp_MEW-11] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [Mal/EncPk-BA] [TrojanProxy:Win32/Potukorp.A] [TrojanBanker.Qhost] [Win32.Trojan.Mew.Edeg] [Trojan-Proxy.Win32.Potukorp] [W32/Qhost.ACH!tr] [Trojan.Win32.Banker.Ah]
ef0e4f5460dfdc693dd45688d7b36995
a289f48a3b705ed923273e9df136208e
8421f430cafac253263b3d1d93e0a3f3[Trojan/W32.KRBanker.355840] [Trojan.Pasta.r3] [Spyware.PWS.KRBanker.M] [Trojan.Dropper] [Trojan.Pasta.Win32.11440] [Trojan.Win32.Pasta.dnkeih] [W32/Pasta.G] [OnLineGames.LWBP] [TROJ_SPNV.01B715] [Trojan.Win32.Pasta.advy] [UnclassifiedMalware] [BehavesLike.Win32.Backdoor.fc] [W32/Pasta.SPXF-4735] [Trojan/Win32.Pasta] [Win-Trojan/Pasta.355840] [Trj/CI.A] [Riskware/FlyStudio] [SHeur4.CGBU]
3e3fb12e92a8da8e3fdeeaedd72cdde1[Trojan/W32.KRBanker.31232.H] [Trojan-Spy.Win32.Zbot!O] [TrojanSpy.Zbot.r4] [Spyware.Zbot.JWZ] [Trojan.Zbot.Win32.156954] [Trojan.Win32.Zbot.cyyegn] [W32/Heuristic-210!Eldorado] [ZBot.TESZ] [TROJ_FORUCON.BMC] [Trojan-Spy.Win32.Zbot.ahhv] [TrojanSpy.Zbot!HwDphQiwGB4] [Win32.Trojan-spy.Zbot.Llhv] [Trojan.Packed.22856] [Mal/Dropper-AB] [Trojan/Hijacker.lc] [Trojan[Spy]/Win32.Zbot] [TrojanProxy:Win32/Potukorp.A] [Trojan/Win32.GhostRat] [Trj/CI.A] [PE:Trojan.Win32.Injector.fo!1075351907] [Trojan-Spy.Win32.Zbot] [W32/Injector.ZBT!tr] [Pakes_c.BTUC] [Trojan.Win32.Injector.BBEJ]
57d8b65e5d8340d126fbf5fc6b1c8641
b34a69cd59ee371ed57f0a68043d4041

Whois

PropertyValue
Email white.4818@navercorp.com
NameServer NS2.NAVER.COM
Created 1998-12-12 00:00:00
Changed 2014-10-29 00:00:00
Expires 2015-11-10 00:00:00
Registrar GABIA, INC.

DNS Resolutions

DateIP Address
2012-04-06222.239.222.43 (ClassC)
2012-06-23114.111.42.145 (ClassC)
2012-06-23175.158.10.63 (ClassC)
2012-06-23219.254.32.24 (ClassC)
2012-06-29121.189.13.145 (ClassC)
2012-07-19175.158.10.39 (ClassC)
2012-11-10202.131.25.89 (ClassC)
2012-12-07112.175.248.94 (ClassC)
2013-03-14202.131.29.71 (ClassC)
2013-05-0595.100.249.123 (ClassC)
2013-06-0723.62.61.43 (ClassC)
2013-07-2723.62.61.17 (ClassC)
2013-07-2723.62.61.26 (ClassC)
2013-11-15125.209.226.233 (ClassC)
2014-06-0623.14.93.157 (ClassC)
2014-06-241.255.52.41 (ClassC)
2014-07-2861.247.193.243 (ClassC)
2014-10-20182.162.92.14 (ClassC)
2014-10-30182.162.92.22 (ClassC)
2014-11-02182.162.92.21 (ClassC)
2014-11-19222.122.117.44 (ClassC)
2015-04-03125.209.218.20 (ClassC)
2023-09-19223.130.200.107 (ClassC)
2023-12-18223.130.195.200 (ClassC)
2024-02-10223.130.195.95 (ClassC)
2024-03-07223.130.200.104 (ClassC)
2025-06-26223.130.192.247 (ClassC)
2025-07-29223.130.192.248 (ClassC)
2025-08-04223.130.200.219 (ClassC)
2025-08-08223.130.200.236 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
blogfiles10.naver.net2014-07-18165.254.24.142
postfiles10.naver.net2014-06-2523.65.181.59
blogfiles11.naver.net2014-10-165.178.43.26
postfiles11.naver.net2014-06-2588.221.216.114
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information