Help RSS API Feed Maltego Contact                        

Domain > rat.58mgm.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to rat.58mgm.com

MD5A/V
298a194256857c69f4d3ef9e54085124[Trojan.Darier!564E] [BDS/Backdoor.A.6569] [Win32/Farfli.AYA] [W32/Farfli.BEC!tr] [Backdoor*Win32/Zegost.BU] [W32/Trojan.BSVC-1940] [Trojan-GameThief.Win32.Magania] [Backdoor.Win32.Farfli.yjb] [Backdoor.Zegost.BZ4] [BScope.P2P-Worm.Palevo] [Trojan.DownLoader15.2578]
27029200b0bd9ed7be20f8511f6bec42[Trojan.DownLoader14.51851] [W32/Trojan.AGFT-6452] [Backdoor*Win32/Zegost.BU] [Win32/Farfli.AYA] [W32/Farfli.BEC!tr] [BDS/Zegost.klzeimu] [W32.Farfli.AYA.ljki] [Trojan.Darier!564E] [Trojan-GameThief.Win32.Magania] [Backdoor.Zegost.BZ4] [BScope.P2P-Worm.Palevo] [Backdoor.Krap.Win32.13765]

Whois

PropertyValue
Email 4404691@qq.com
NameServer NS7.IDCSPY.NET
Created 2014-06-19 00:00:00
Changed 2015-07-12 00:00:00
Expires 2016-06-19 00:00:00
Registrar PDR LTD. D/B/A PUBLI

DNS Resolutions

DateIP Address
2023-12-2767.21.93.253 (ClassC)
2024-01-1867.21.93.232 (ClassC)
2024-02-12107.167.27.72 (ClassC)
2024-04-15107.167.27.89 (ClassC)
2024-06-14107.167.27.92 (ClassC)
2024-08-06208.98.40.76 (ClassC)
2024-08-16107.167.27.82 (ClassC)
2024-08-23208.98.40.203 (ClassC)
2024-09-04104.160.169.201 (ClassC)
2025-01-16208.98.40.202 (ClassC)
2025-01-22208.98.43.13 (ClassC)
2025-05-01208.98.40.78 (ClassC)
2025-05-04208.98.40.204 (ClassC)
2025-05-14208.98.43.78 (ClassC)
2025-06-26208.98.40.19 (ClassC)
2025-08-03208.98.40.88 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information