Help RSS API Feed Maltego Contact                        

Domain > yaoo.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to yaoo.com

MD5A/V
27213d33434bf796a9f535ec98e8a918[HW32.CDB.03b6]
8889d486a91b3448e8b429ef99a536d0[HW32.CDB.1cb9] [Trojan.Win32.Kryptik.cwzoai] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnla] [Backdoor.Hlux!yM05ScK42o0] [Trojan.Packed.26544] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.DNLA!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
11769c481554f793ec20fe2b0189a751[HW32.CDB.B5f3] [Packed.Win32.Katusha.3!O] [Trojan.Win32.Hlux.cxorid] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dsfl] [TrojWare.Win32.Kryptik.CBCJ] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.MalPacked] [Heur.Trojan.Hlux] [Trojan.Crypt] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.bCBLX]
981a83b3f0d4a74b0b38becda7c8cb9c[Artemis!981A83B3F0D4] [Trojan.Win32.Crypt.cxd] [W32/Yakes.FHJN!tr] [Win32/Cryptor]
86122dbf79ec3a983d9ecb120470a00f[Artemis!86122DBF79EC] [Trojan.Win32.Yakes.fhyw] [TR/Changeling.A.3509] [Win32.Trojan.Yakes.Dyfy] [Trojan.Win32.Spammer] [Win32/Cryptor] [Trojan.Win32.Spammer.bAC] [Win32/Trojan.Multi.daf]
038a21f4f89d526f853bba2a18b81708[Worm.Win32.Ngrbot.afvw] [Win32.HLLW.Autoruner2.1926] [TR/Crypt.Xpack.77749]

Whois

PropertyValue
Email domainadmin@yahoo-inc.com
NameServer NS2.YAHOO.COM
Created 2001-07-01 00:00:00
Changed 2014-05-30 00:00:00
Expires 2015-07-01 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2013-07-2368.180.206.184 (ClassC)
2013-08-0198.139.102.145 (ClassC)
2014-03-1174.6.50.24 (ClassC)
2014-03-1177.238.184.24 (ClassC)
2014-04-0777.238.184.24 (ClassC)
2014-05-30212.82.102.24 (ClassC)
2017-01-1698.137.236.24 (ClassC)
2017-02-1698.138.79.55 (ClassC)
2017-02-2472.30.203.4 (ClassC)
2017-03-13217.12.15.37 (ClassC)
2017-04-16206.190.42.177 (ClassC)
2019-06-1498.136.101.175 (ClassC)
2019-06-1498.136.96.140 (ClassC)
2019-06-1474.6.144.137 (ClassC)
2019-12-1198.136.103.24 (ClassC)
2019-12-11212.82.100.151 (ClassC)
2019-12-1174.6.136.151 (ClassC)
2019-12-11124.108.115.101 (ClassC)
2020-08-15106.10.248.151 (ClassC)
2020-08-17106.10.248.150 (ClassC)
2020-08-17212.82.100.150 (ClassC)
2020-08-1774.6.136.150 (ClassC)
2020-08-17124.108.115.100 (ClassC)
2023-07-1698.136.103.23 (ClassC)
2023-11-0113.50.184.192 (ClassC)
2023-12-1313.251.69.97 (ClassC)
2024-02-0434.225.127.72 (ClassC)
2024-02-1134.213.101.254 (ClassC)
2024-02-1413.49.212.207 (ClassC)
2024-02-1954.161.105.65 (ClassC)
2024-03-1018.136.37.69 (ClassC)
2024-03-1644.228.206.170 (ClassC)
2025-07-2576.223.84.192 (ClassC)
2025-08-1013.248.158.7 (ClassC)

Subdomains

DateDomainIP
tw.rd.yaoo.com2014-10-15188.125.73.108
pclick.internal.yaoo.com2014-10-2774.6.50.150
mail.yaoo.com2014-10-13188.125.73.108
in.yaoo.com2014-11-1974.6.50.150
autodiscover.yaoo.com2025-04-0413.248.158.7
kr.yaoo.com2014-10-13188.125.73.108
avatars.yaoo.com2024-01-1234.213.101.254
chat.yaoo.com2015-04-01188.125.73.108
fr.sport.yaoo.com2015-01-2674.6.50.150
att.yaoo.com2024-02-1634.213.101.254
www.yaoo.com2014-10-15188.125.73.108
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information