Help RSS API Feed Maltego Contact                        

Domain > www.20mbweb.com

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Files that talk to www.20mbweb.com

MD5A/V
aac80af1c694f335ff1d730eee1bdbbf[Trojan.Downloader.Small.AAOM] [W32/Downloader.IFWG-4124] [TR/Dldr.Small.coc.1] [Win32/Robzips] [TrojanDownloader.Small.coc.n3] [Trojan.Downloader.Small-1164] [Trojan.DownLoader.7376] [W32/Dloadr.ADW!tr] [W32/Downloader.SEI] [Win32/DH{fQNhDyAkJVw}] [Trojan-Downloader.Win32.Small] [Trojan-Downloader.Win32.Small.coc] [TrojanDownloader*Win32/Small.BKR] [Trojan.DL.Small.dfv] [Troj/Dloadr-ADW] [Downloader] [TrojanDownloader.Small]
1d83ee4bb3af4c3064ea44ba7d36c054[Trojan.Downloader.Small.AAOM] [W32/Downloader-Tir!Eldorado] [TR/Dldr.Small.coc.1] [Win32/Robzips] [TrojanDownloader.Small.coc] [Trojan.Downloader.Small-1164] [Trojan.DownLoader.7376] [W32/Downloader.SEI] [Win32/DH{fQNhDyAkJVw}] [Trojan-Downloader.Win32.Small] [Trojan-Downloader.Win32.Small.coc] [TrojanDownloader*Win32/Small.BKR] [Trojan.DL.Small.dfv] [Troj/Dloadr-ALO] [Downloader] [TROJ_DLOADER.BXA] [TrojanDownloader.Small]
fb76ec46ed085f808ead7a1f39a9a93d[Trojan.Downloader.Small.AAOM] [W32/Downloader-Tir!Eldorado] [TR/Dldr.Small.coc.1] [Win32/Robzips] [TrojanDownloader.Small.coc.n3] [Trojan.Downloader.Small-1164] [Trojan.DownLoader.7376] [W32/Small.COC!tr.dldr] [W32/Downloader.SEI] [Trojan-Downloader.Win32.Small] [Trojan-Downloader.Win32.Small.coc] [Downloader-AVI] [TrojanDownloader*Win32/Small.BKR] [Trojan.DL.Small.dfv] [Troj/Dloadr-ALO] [Downloader] [TrojanDownloader.Small]
4536a05093774c9c547ed8bf02e44267[I-Worm.Brontok.q] [EmailWorm] [W32/Brontok.q] [Worm.Brontok!NGv5HdnGBIE] [Win32/Brontok.AS] [W32/Worm.BCCQ] [W32.Rontokbro@mm] [W32/Rontokbro] [Win32:Brontok-CE] [Win32.Stration] [Worm.Brontok.H] [Email-Worm.Win32.Brontok.q] [I-Worm.Win32.Brontok.50059] [Worm/Brontok.E.1] [Heuristic.LooksLike.Win32.Suspicious.J] [Email-Worm.Win32.Brontok!IK] [Win32/Robknot.CI] [Worm/Brontok.io] [W32/Worm.BCCQ] [Worm:Win32/Brontok.BM@mm] [Win32/Brontok.worm.44427] [Email-Worm.Rontokbro!rem] [Worm.Mail.Brontok.gc] [Email-Worm.Win32.Brontok] [W32/PackedBrontok.A@mm] [I-Worm/Brontok.X] [W32/Brontok.O.worm] [Win32:Brontok-CE]

Whois

PropertyValue
NameServer NS2.SEDOPARKING.COM
Created 2010-02-10 00:00:00
Changed 2015-01-26 00:00:00
Expires 2016-02-10 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2013-04-01127.0.0.1 (ClassC)
2013-10-0482.98.86.171 (ClassC)
2013-12-3072.52.4.90 (ClassC)
2014-11-2072.52.4.121 (ClassC)
2018-06-1491.195.241.21 (ClassC)
2018-06-2972.52.4.121 (ClassC)
2018-06-3072.52.4.89 (ClassC)
2019-02-0672.52.4.119 (ClassC)
2019-02-0691.195.240.240 (ClassC)
2019-10-0891.195.240.126 (ClassC)
2024-10-18172.67.175.227 (ClassC)
2024-12-23104.21.80.75 (ClassC)
2025-01-23104.21.32.1 (ClassC)
2025-01-27104.21.112.1 (ClassC)
2025-02-24104.21.16.1 (ClassC)
2025-03-07104.21.96.1 (ClassC)
2025-04-26104.21.80.1 (ClassC)
2025-07-28104.21.80.39 (ClassC)
2025-08-11172.67.174.14 (ClassC)

Port 80

Subdomains

DateDomainIP
www.20mbweb.com2014-11-2072.52.4.121
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information