Help RSS API Feed Maltego Contact                        

Domain > xtgem.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to xtgem.com

MD5A/V
0a19b527f577ba9e494bc96c18ada03c[W32.HfsIframe.7fa3] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
461f07be63fc8c158dd62377ee675dde[W32.HfsIframe.C10d] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
58f43e576ed0d332620489a0aff8e2b4[W32.HfsIframe.4583] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
49793c0cc0b5c39fa4f1863c5745f78d[HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028] [virus.html.url]
8055099af043dc62fe27bdd9e8082b5a[W32.HfsIframe.9f43] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
000fe17e4e6797bb7e86b966f1b2bfb7[W32.HfsIframe.8089] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
0ee1511fdf76e580319b79f8cb847c11[W32.HfsIframe.Db5b] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
5b59eaf51df010c1a21bcf3badcd6ebc[W32.HfsIframe.A25f] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
0cf5118dcfa6820381d958a86ef1d898[W32.HfsIframe.7ad4] [HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028]
0721c00b3ba8513a412809c7346faa2c[HTML/Framer.pyvcht] [HTML:Backdoor.Script.HTML.C99shell.b!1608028] [virus.html.url]
2b7809c589a059c4bb04b8f582f267e7
37ebc318fd6bc94412e1d69962db1c85

Whois

PropertyValue
NameServer NS2.XTGEM.COM
Created 2006-11-15 00:00:00
Changed 2014-11-04 00:00:00
Expires 2015-11-15 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2009-07-16213.163.86.17 (ClassC)
2009-12-21213.163.85.226 (ClassC)
2012-12-24188.95.50.114 (ClassC)
2013-10-19188.95.50.112 (ClassC)
2014-06-27188.95.50.112 (ClassC)
2017-09-0554.36.30.32 (ClassC)
2018-03-2854.36.158.41 (ClassC)
2018-03-2854.36.158.42 (ClassC)
2018-10-27178.33.123.228 (ClassC)
2019-12-13178.33.123.218 (ClassC)
2025-02-20141.94.172.213 (ClassC)
2025-07-12104.21.62.197 (ClassC)
2025-07-16172.67.138.193 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
ns1.xtgem.com2025-07-0854.36.158.42
ns2.xtgem.com2025-08-0651.79.140.240
k00ra.xtgem.com2025-06-1854.36.158.42
lb.xtgem.com2025-05-2654.36.158.42
chidoskeywap.xtgem.com2025-06-1754.36.158.41
www.xtgem.com2024-12-28141.94.172.213
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information