Help
RSS
API
Feed
Maltego
Contact
Domain > theballantyne.com
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
Files that talk to theballantyne.com
MD5
A/V
a480649c0695ca403c2650c2f5ec4796
[
HW32.CDB.6149
] [
Packed.Win32.Katusha.1!O
] [
Trojan.FakeAV
] [
Kryptik.CCFN
] [
Win32/Kelihos.QbYCJQ
] [
Backdoor.Win32.Hlux.dqiv
] [
Backdoor.Hlux!zx6Z3QU4CJg
] [
Backdoor.Win32.Hlux.DUHE
] [
Trojan.Packed.26581
] [
Trojan[Backdoor]/Win32.Hlux
] [
Backdoor:Win32/Kelihos.F
] [
W32/Trojan.TGXU-8116
] [
Trojan/Win32.Tepfer
] [
Heur.Trojan.Hlux
] [
Win32.Backdoor.Hlux.Lmai
] [
Trojan.Crypt_s
] [
W32/Hlux.BWUN!tr.bdr
] [
Crypt_s.GNC
] [
Trojan.Win32.Kryptik.bCBCJ
]
DNS Resolutions
Date
IP Address
2014-05-24
72.15.208.60
(
ClassC
)
2024-07-13
142.44.217.176
(
ClassC
)
Port 80
HTTP/1.1 301 Moved PermanentlyDate: Sat, 20 Apr 2024 22:46:57 GMTServer: ApacheX-Frame-Options: SAMEORIGINLocation: http://www.theballantynehotel.com/Content-Length: 242Content-Type: text/html; charse !DOCTYPE HTML PUBLIC -//IETF//DTD HTML 2.0//EN>html>head>title>301 Moved Permanently/title>/head>body>h1>Moved Permanently/h1>p>The document has moved a hrefhttp://www.theballantynehotel.com/>here/a>./p>/body>/html>
Port 443
HTTP/1.1 301 Moved PermanentlyDate: Sat, 20 Apr 2024 22:46:57 GMTServer: ApacheX-Frame-Options: SAMEORIGINStrict-Transport-Security: max-age63072000; includeSubDomainsLocation: http://www.theballantyn !DOCTYPE HTML PUBLIC -//IETF//DTD HTML 2.0//EN>html>head>title>301 Moved Permanently/title>/head>body>h1>Moved Permanently/h1>p>The document has moved a hrefhttp://www.theballantynehotel.com/>here/a>./p>/body>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]