Help
RSS
API
Feed
Maltego
Contact
Domain > shafter.com
×
Welcome!
Right click nodes and scroll the mouse to navigate the graph.
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
Files that talk to shafter.com
MD5
A/V
1929530a1f2d6d48a87aac928220e460
[
HW32.CDB.4199
] [
Backdoor.Hlux.r3
] [
Trojan.Win32.Hlux.cwwgjj
] [
Kryptik.CCFN
] [
Backdoor.Win32.Hlux.crc
] [
Backdoor.Hlux!GJ0f5FTmyog
] [
UnclassifiedMalware
] [
BackDoor.Slym.14056
] [
Heuristic.LooksLike.Win32.Suspicious.E
] [
Mal/Kelihos-A
] [
Trojan[Backdoor]/Win32.Hlux
] [
Trojan:Win32/Sisron
] [
Trojan/Win32.Tepfer
] [
Heur.Trojan.Hlux
] [
Win32.SuspectCrc
] [
W32/Hlux.BWUN!tr.bdr
] [
Crypt_s.GJB
] [
Trojan.Win32.Kryptik.BZWV
] [
Win32/Trojan.e55
]
1ca8bda50d98c89332d39dbaf3aac976
[
HW32.CDB.29c0
] [
Packed.Win32.Katusha.3!O
] [
Trojan.Win32.Kryptik.cxmkag
] [
WS.Reputation.1
] [
Kryptik.CDQY
] [
TrojWare.Win32.Kryptik.CBCJ
] [
BackDoor.Slym.13873
] [
Win32.Troj.Undef.(kcloud)
] [
Backdoor:Win32/Kelihos.F
] [
Trojan/Win32.Tepfer
] [
Heur.Trojan.Hlux
] [
Trojan.Crypt_s
] [
Crypt_s.GNC
]
56bbeac9d1a70afb8bb8b80ec1387750
[
HW32.CDB.39f5
] [
Backdoor.Hlux.r3
] [
Trojan.Win32.Hlux.cxcewe
] [
Kryptik.CCFN
] [
Backdoor.Win32.Hlux.djcw
] [
Backdoor.Hlux!yo75di6Nrfc
] [
TrojWare.Win32.Kryptik.BLUU
] [
BackDoor.Slym.14044
] [
TR/Kryptik.oeons
] [
Mal/Kelihos-A
] [
Trojan[Backdoor]/Win32.Hlux
] [
Backdoor:Win32/Kelihos.F
] [
Trojan/Win32.Tepfer
] [
Heur.Trojan.Hlux
] [
Trojan.Crypt_s
] [
W32/Hlux.BWUN!tr.bdr
] [
Crypt_s.GGV
] [
Trojan.Win32.Kryptik.BZDO
] [
Win32/Trojan.fec
]
Whois
Property
Value
Email
whois@emailaddressprotection.com
NameServer
DNS2.CIVICPLUS.COM
Created
1996-06-25 00:00:00
Changed
2014-03-17 00:00:00
Expires
2023-06-24 00:00:00
Registrar
TIERRANET INC. D/B/A
DNS Resolutions
Date
IP Address
2024-11-09
208.90.190.33
(
ClassC
)
Port 80
HTTP/1.1 302 FoundCache-Control: private, s-maxage600,no-transformContent-Type: text/html; charsetutf-8ETag: Location: https://www.shafter.com/Server: Microsoft-IIS/10.0p3p: CPIDC DSP COR ADM DEVi TA html>head>title>Object moved/title>/head>body>h2>Object moved to a hrefhttps://www.shafter.com/>here/a>./h2>/body>/html>
Port 443
HTTP/1.1 200 OKCache-Control: private, s-maxage600,no-transformContent-Type: text/html; charsetutf-8ETag: Server: Microsoft-IIS/10.0p3p: CPIDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND !DOCTYPE html>html langen>head> meta http-equivContent-type contenttext/html; charsetUTF-8 />!-- Google Tag Manager --> script>(function(w,d,s,l,i){w.GATrackingIdUA-204535805-53;wlwl||;wl.push({gtm.start: new Date().getTime(),event:gtm.js});var fd.getElementsByTagName(s)0, jd.createElement(s),dll!dataLayer?&l+l:;j.asynctrue;j.src https://www.googletagmanager.com/gtm.js?id+i+dl;f.parentNode.insertBefore(j,f); })(window,document,script,cpDataLayer,GTM-WKGQMK5);/script> !-- End Google Tag Manager -->!-- Google Tag Manager for GA4 --> script>(function(w,d,s,l,i){w.GAMeasurementIDG-T6D40JERKV;wlwl||;wl.push({gtm.start: new Date().getTime(),event:gtm.js});var fd.getElementsByTagName(s)0, jd.createElement(s),dll!dataLayer?&l+l:;j.asynctrue;j.src https://www.googletagmanager.com/gtm.js?id+i+dl;f.parentNode.insertBefore(j,f); })(window,document,script,cpDataLayerGA4,GTM-K73C5PS);/script> !-- End Google Tag Manager for GA4 --> script typetext/javascript> var enableTelemetry false var aiConfig { instrumentationKey: 1cde048e-3185-4906-aa46-c92a7312b60f } var appInsights window.appInsights || function (a) { function b(a) { ca function () { var b arguments; c.queue.push(function () { ca.apply(c, b) }) } } var c { config: a }, d document, e window; setTimeout(function () { var b d.createElement(script); b.src a.url || https://az416426.vo.msecnd.net/scripts/a/ai.0.js, d.getElementsByTagName(script)0.parentNode.appendChild(b) }); try { c.cookie d.cookie } catch (a) { } c.queue ; for (var f Event, Exception, Metric, PageView, Trace, Dependency; f.length;)b(track + f.pop()); if (b(setAuthenticatedUserContext), b(clearAuthenticatedUserContext), b(startTrackEvent), b(stopTrackEvent), b(startTrackPage), b(stopTrackPage), b(flush), !a.disableExceptionTracking) { f onerror, b(_ + f); var g ef; ef function (a, b, d, e, h) { var i g && g(a, b, d, e, h); return !0 ! i && c_ + f(a, b, d, e, h), i } } return c }(aiConfig); window.appInsights appInsights, a
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]