Help RSS API Feed Maltego Contact                        

Domain > tau.rghost.ru

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to tau.rghost.ru

MD5A/V
19ff2e8613be36335a88ca30f2d66eab
3b0e3916f98277882c6f942bf643e4b8
41e67dca33376c8723aa88c49c0a38af
3c9b84d13045a38f9994693ffa3ee725
52cb9d6fe8c9d09eb28e6a250f235ade
36ae9e597b297fdc2543dac51978720d
38fa884e6cf1eeccd8a134701e2b87a2
295b4a2464ae69b59a45248614575c04[Trojan.Win32.Llac]
4bd939cf0747f726cc4f99104fbf491d
2408b2c4fe8208c59a303f6281f9b72b[Trojan.DownLoader4.56255]
014e2ae816258eb51061f3c8cafe32b6[Artemis!014E2AE81625] [Adware.Downware.3965] [Trojan.Win32.Llac] [PossibleThreat]
4b95c5997a834624a5d08bd9ae54899c
42100d0d9a40803a6f99c69d463d3dce
92ec6db2df53d85fee61f86f0491dd0e
3c0e312424d331ddbdf2d8ae46aa06c1
422cca7d6b26a65ba56f91b15ba5fb9e
72b70cd4b73c90a9240effe15efb735d
60a29cad0e41b1ad11f64df476f848f6
1c0408f944a45da23812f9498478ee6a
8186ed60422bb9348af6a069d323d967

DNS Resolutions

DateIP Address
2013-10-19217.199.217.180 (ClassC)
2014-07-0189.248.225.43 (ClassC)
2015-05-1789.248.225.43 (ClassC)
2016-02-26149.202.95.42 (ClassC)
2022-05-05138.201.21.203 (ClassC)
2024-08-30104.21.64.31 (ClassC)
2024-12-28172.67.175.16 (ClassC)
2025-01-20104.21.64.1 (ClassC)
2025-06-05104.21.48.1 (ClassC)
2025-06-22104.21.32.1 (ClassC)
2025-06-27104.21.80.1 (ClassC)
2025-07-05104.21.16.1 (ClassC)
2025-07-17104.21.96.1 (ClassC)
2025-08-02104.21.112.1 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information