Help RSS API Feed Maltego Contact                        

Domain > yaho.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to yaho.com

MD5A/V
0f5f90b03b49b276d148f7e6be7c30f1[HW32.CDB.27e0] [Packed.Win32.Katusha.1!O] [Trojan.Win32.Hlux.cxxldj] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.OWUMMQC] [Backdoor.Win32.Hlux.dqeh] [Backdoor.Hlux!9TTR+wn2IWc] [Backdoor.Win32.Hlux.DUHE] [BackDoor.Slym.12819] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CAXO] [Win32.Backdoor.Hlux.Hpn] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.ArxZ]
2ff91f4e0068fc52bdb39d02fc662591[HW32.CDB.080a] [Heur.Win32.Veebee.1!O] [Trojan.VB.r3] [W32/Worm-AAEH.pd!2FF91F4E0068] [Trojan.Win32.VBKrypt.cwzxet] [WS.Reputation.1] [Trojan.Win32.VBKrypt.uqhh] [Trojan.Injector!IlLZsuIElYQ] [TrojWare.Win32.VB.ICOX] [Win32.HLLW.BackDates.309] [Mal/SillyFDC-AH] [Trojan/Win32.VBKrypt] [Worm:Win32/Vobfus.YQ] [Trojan/Win32.Vobfus] [W32/Trojan.HHET-7467] [TScope.Trojan.VB] [Trojan.Win32.VBKrypt.avIT] [PE:Malware.XPACK-HIE/Heur!1.9C48] [Worm.Win32.Vobfus] [W32/Injector.VOX!tr]
e6d960bf587f5cb1497520fe716f1fb4[Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [PE:Malware.XPACK/RDM!5.1]
8889d486a91b3448e8b429ef99a536d0[HW32.CDB.1cb9] [Trojan.Win32.Kryptik.cwzoai] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnla] [Backdoor.Hlux!yM05ScK42o0] [Trojan.Packed.26544] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.DNLA!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
699e08acdfcaee959d993e4d06bfb610[HW32.CDB.A965] [Backdoor.Hlux.r3] [Trojan.Win32.Hlux.cxcjld] [Kryptik.CCFN] [Backdoor.Hlux!C9Vjtd8HQw0] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.YDRM-4099] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHF] [Trojan.Win32.Kryptik.BZIX]
981a83b3f0d4a74b0b38becda7c8cb9c[Artemis!981A83B3F0D4] [Trojan.Win32.Crypt.cxd] [W32/Yakes.FHJN!tr] [Win32/Cryptor]
4cca20614b980e5237e738d8f322f151[HW32.Laneul.jcwu] [Trojan.Ransom.ED]
038a21f4f89d526f853bba2a18b81708[Worm.Win32.Ngrbot.afvw] [Win32.HLLW.Autoruner2.1926] [TR/Crypt.Xpack.77749]

Whois

PropertyValue
Email domainadmin@yahoo-inc.com
NameServer NS2.YAHOO.COM
Created 1997-02-26 00:00:00
Changed 2015-01-26 00:00:00
Expires 2016-02-27 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2013-12-1968.180.206.184 (ClassC)
2014-03-0774.6.50.24 (ClassC)
2014-05-24212.82.102.24 (ClassC)
2014-05-3074.6.50.24 (ClassC)
2014-07-1377.238.184.24 (ClassC)
2015-05-24-
2019-12-1198.136.103.24 (ClassC)
2023-07-18124.108.115.100 (ClassC)
2023-08-1598.136.103.23 (ClassC)
2023-10-30106.10.248.150 (ClassC)
2024-01-1444.228.206.170 (ClassC)
2024-02-1634.225.127.72 (ClassC)
2024-03-0113.251.69.97 (ClassC)
2024-03-1118.136.37.69 (ClassC)
2024-03-1554.161.105.65 (ClassC)
2025-07-0576.223.84.192 (ClassC)
2025-08-0813.248.158.7 (ClassC)

Port 80

Subdomains

DateDomainIP
add.yaho.com2025-03-1076.223.84.192
finance.yaho.com2015-04-01188.125.73.108
in.mobile.yaho.com2014-05-0374.6.50.24
advocatehealth.yaho.com2025-01-2713.248.158.7
hk.yaho.com2015-04-02188.125.73.108
autodiscover.yaho.com2023-07-1298.136.103.23
answer.yaho.com2015-01-1474.6.50.150
att.yaho.com2024-02-2834.213.101.254
tw.yaho.com2014-05-0674.6.50.24
www.yaho.com2014-10-14188.125.73.108
mx.yaho.com2014-09-2674.6.50.150
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information