Help RSS API Feed Maltego Contact                        

Domain > ngrok.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to ngrok.com

MD5A/V
468ccdc4e7db0b15ea491b9c1de8e6b1
fdd7b67a4fd955fce3ef50bb16bde7d3[Backdoor.NJBot.MSIL] [Backdoor.Ratenjay] [Win.Backdoor.Bladabindi-1] [Trojan.Win32.DownLoader11.cxfbrl] [Troj/Bladabi-V] [Backdoor.MSIL.Bladabindi.A] [BackDoor.Bladabindi.1056] [BehavesLike.Win32.BackdoorNJRat.mm] [Backdoor:MSIL/Bladabindi.AL] [Trojan.MSIL.Bladabindi] [MSIL/Bladabindi.Q!tr] [PSW.ILUSpy]
52c4daf2a840aab98c243db0334f7fe2

Whois

PropertyValue
Email F5EE09C3BCE846E3BEECDF8266D2F61C.PROTECT@WHOISGUARD.COM
NameServer NS-1552.AWSDNS-02.CO.UK
Created 2013-03-18 00:00:00
Changed 2015-03-08 00:00:00
Expires 2017-03-18 00:00:00
Registrar ENOM, INC.

DNS Resolutions

DateIP Address
2013-11-13173.255.204.192 (ClassC)
2016-04-07198.58.102.42 (ClassC)
2016-04-0845.33.127.226 (ClassC)
2016-04-09198.58.107.51 (ClassC)
2018-11-0852.25.124.181 (ClassC)
2019-05-0552.41.214.241 (ClassC)
2019-05-0654.68.226.153 (ClassC)
2019-11-0452.42.164.6 (ClassC)
2019-11-0752.32.88.99 (ClassC)
2019-11-1352.43.45.18 (ClassC)
2019-12-0334.211.12.31 (ClassC)
2021-01-1554.218.215.34 (ClassC)
2021-01-1854.244.165.26 (ClassC)
2023-08-2634.211.83.157 (ClassC)
2023-09-2944.234.65.150 (ClassC)
2023-11-1234.210.2.84 (ClassC)
2023-12-0154.149.139.58 (ClassC)
2024-01-1135.87.166.80 (ClassC)
2024-01-2735.89.85.219 (ClassC)
2024-02-1135.87.54.183 (ClassC)
2024-04-1934.214.56.111 (ClassC)
2024-05-2434.220.8.67 (ClassC)
2024-06-0834.219.99.10 (ClassC)
2024-07-0134.220.143.141 (ClassC)
2024-11-0934.222.178.168 (ClassC)
2024-12-0454.212.130.123 (ClassC)
2024-12-1234.212.23.211 (ClassC)
2024-12-1652.12.198.198 (ClassC)
2025-01-0435.92.55.128 (ClassC)
2025-05-2813.56.217.111 (ClassC)
2025-05-31184.72.44.51 (ClassC)
2025-06-3054.193.184.75 (ClassC)
2025-07-1150.18.8.146 (ClassC)
2025-07-1452.8.87.87 (ClassC)
2025-07-2554.183.107.205 (ClassC)
2025-08-0613.57.100.232 (ClassC)
2025-09-23184.169.177.238 (ClassC)
2025-10-2352.53.65.125 (ClassC)
2026-01-1913.57.90.134 (ClassC)
2026-01-2513.52.160.34 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
tunnel.us-cal-1.ngrok.com2025-03-0152.53.75.151
tunnel.sa.ngrok.com2025-03-1518.228.107.150
download.ngrok.com2025-04-27184.72.44.51
dashboard.ngrok.com2024-08-19184.72.44.51
crl.ngrok.com2024-03-1418.65.229.65
cdn.ngrok.com2024-10-0750.18.8.146
tunnel.in.ngrok.com2025-03-2113.232.212.61
tunnel.jp.ngrok.com2025-03-2154.178.247.185
docs.ngrok.com2025-10-053.101.222.125
assets.ngrok.com2025-01-173.163.158.41
tunnel.us.ngrok.com2025-05-143.20.27.198
tunnel.eu.ngrok.com2025-04-273.125.92.105
www.ngrok.com2024-08-1034.212.23.211
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information