Help
RSS
API
Feed
Maltego
Contact
Domain > 6bwcf4.w5xpfky4xbp.my
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
DNS Resolutions
Date
IP Address
2025-09-30
3.170.185.7
(
ClassC
)
2025-11-22
18.161.6.127
(
ClassC
)
Port 80
HTTP/1.1 200 OKContent-Type: text/html; charsetUTF-8Transfer-Encoding: chunkedConnection: keep-aliveServer: nginxDate: Sat, 22 Nov 2025 22:25:49 GMTCache-Control: no-cache,must-revalidatePragma: no-cacheVary: Accept-EncodingX-Cache: Miss from cloudfrontVia: 1.1 02f1a759e4ec9fab6fc17c080dd851dc.cloudfront.net (CloudFront)X-Amz-Cf-Pop: HIO52-P1X-Amz-Cf-Id: Vd2HpoVvfJQGUsnZehRqHY_Gz0GS_3hppTOwkrgULnn3z3W1m8poog !DOCTYPE html>html langen>head> meta charsetUTF-8> !-- cache control --> !-- title>/title> --> meta namekeywords content> meta namedescription content> meta http-equivPragma contentno-cache,no-store,must-revalidate> meta http-equivCache-Control contentCache-Control: no-store, no-cache, max-age0, must-revalidate, proxy-revalidate> meta http-equivExpires content0> meta http-equivX-UA-Compatible contentIEedge> meta nameviewport contentwidthdevice-width, initial-scale1.0, user-scalable0, minimum-scale1.0, maximum-scale1.0> link relstylesheet href/theme/skin5/css/public.css?_v20250526> link relstylesheet href/theme/skin5/css/index.css?_v20250526> link relicon typeimage/x-icon href/theme/skin5/logo.ico?_v20250526> link relShortcut Icon href/theme/skin5/logo.ico?_v20250526> link relBookmark href/theme/skin5/logo.ico?_v20250526> meta propertyog:image content> script> // 微信环境检测函数 const isWeChat navigator.userAgent.includes(MicroMessenger); // QQ环境检测函数 const isQQ navigator.userAgent.includes(QQ); // const isQQ true // console.log(isWeChat, isQQ) // 如果在微信或 QQ 环境中,则跳转 if (isWeChat || isQQ) { location.replace(/qqwechat); } /script>/head>body> header classlogo> h1>img src/theme/skin5/images/pc/logo.png?_v20250526 alt>/h1> a hrefhttps://t.me/tianmeient> img src/theme/skin5/images/pc/link_bus.png?_v20250526 alt> /a> a hrefhttps://t.me/anwang_777> img src/theme/skin5/images/pc/link_tg.png?_v20250526 alt> /a> /header> div classpc> div classleft> h2>img src/theme/skin5/images/pc/text.png?_v20250526 alt>/h2> article classcode> div idqr>/div> /article> /div> img src/theme/skin5/images/pc/poster.png?_v20250526 alt> /div>/body>script typetext/javascript src/theme/skin5/js/jquery.min.js?_v20250526>/script>script src/theme/skin5/js/qrcode.min.js?_v20250526>/script>script> window.counterData { counterId: 32df35255e9d14c2, clipboardValue: , _ios_download_url: /download/ios-91aw-1763850349.mobileconfig, _link: decodeURIComponent(escape(atob(/Android/i.test(navigator.userAgent) ? aHR0cHM6Ly82YndjZjQudzV4cGZreTR4YnAubXkvOTFhdy85MWFud2FuZ19vZmZpY2lhbF9vdmVyc2VhXzMuMS4zXzIwMjUxMTIyLmFwaw : L2lvcw))) };/script>script srcjs/initCounter.js>/script>script> $(function() { var app_link location.href; var fontsize parseFloat($(html).css(font-size)) creatQr(qr, app_link, 2.03 * fontsize) function creatQr(id, url, size) { new QRCode(document.getElementById(id), { text: url, width: size, height: size, colorDark: #000000, colorLight: #ffffff, correctLevel: QRCode.CorrectLevel.Q, }) } }) var u navigator.userAgent; var isAndroid u.indexOf(Android) > -1 || u.indexOf(Adr) > -1; //android终端 let isIos Boolean(u.match(/iphone|ipad/i)) if (isAndroid || isIos || screen.availWidth 750) { window.location.href /mobile } //creatQr(qr, //, 140); // // 微信环境检测函数 // const isWeChat () > navigator.userAgent.includes(MicroMessenger); // // QQ环境检测函数 // const isQQ () > navigator.userAgent.includes(QQ); // // 如果在微信或 QQ 环境中,则跳转 // if (isWeChat || isQQ) { // location.replace(/qqwechat); // }/script>/html>
Port 443
HTTP/1.1 200 OKContent-Type: text/html; charsetUTF-8Transfer-Encoding: chunkedConnection: keep-aliveServer: nginxDate: Sat, 22 Nov 2025 22:25:49 GMTCache-Control: no-cache,must-revalidatePragma: no-cacheVary: Accept-EncodingX-Cache: Miss from cloudfrontVia: 1.1 46673955829b59a6da0ab071e0b7fbea.cloudfront.net (CloudFront)X-Amz-Cf-Pop: HIO52-P1X-Amz-Cf-Id: tPM8VVYOF5BuDaleu4xfl3K3hzslBkKcRTZweb7UcX8mewAFzNfsMg !DOCTYPE html>html langen>head> meta charsetUTF-8> !-- cache control --> !-- title>/title> --> meta namekeywords content> meta namedescription content> meta http-equivPragma contentno-cache,no-store,must-revalidate> meta http-equivCache-Control contentCache-Control: no-store, no-cache, max-age0, must-revalidate, proxy-revalidate> meta http-equivExpires content0> meta http-equivX-UA-Compatible contentIEedge> meta nameviewport contentwidthdevice-width, initial-scale1.0, user-scalable0, minimum-scale1.0, maximum-scale1.0> link relstylesheet href/theme/skin5/css/public.css?_v20250526> link relstylesheet href/theme/skin5/css/index.css?_v20250526> link relicon typeimage/x-icon href/theme/skin5/logo.ico?_v20250526> link relShortcut Icon href/theme/skin5/logo.ico?_v20250526> link relBookmark href/theme/skin5/logo.ico?_v20250526> meta propertyog:image content> script> // 微信环境检测函数 const isWeChat navigator.userAgent.includes(MicroMessenger); // QQ环境检测函数 const isQQ navigator.userAgent.includes(QQ); // const isQQ true // console.log(isWeChat, isQQ) // 如果在微信或 QQ 环境中,则跳转 if (isWeChat || isQQ) { location.replace(/qqwechat); } /script>/head>body> header classlogo> h1>img src/theme/skin5/images/pc/logo.png?_v20250526 alt>/h1> a hrefhttps://t.me/tianmeient> img src/theme/skin5/images/pc/link_bus.png?_v20250526 alt> /a> a hrefhttps://t.me/anwang_777> img src/theme/skin5/images/pc/link_tg.png?_v20250526 alt> /a> /header> div classpc> div classleft> h2>img src/theme/skin5/images/pc/text.png?_v20250526 alt>/h2> article classcode> div idqr>/div> /article> /div> img src/theme/skin5/images/pc/poster.png?_v20250526 alt> /div>/body>script typetext/javascript src/theme/skin5/js/jquery.min.js?_v20250526>/script>script src/theme/skin5/js/qrcode.min.js?_v20250526>/script>script> window.counterData { counterId: 32df35255e9d14c2, clipboardValue: , _ios_download_url: /download/ios-91aw-1763850349.mobileconfig, _link: decodeURIComponent(escape(atob(/Android/i.test(navigator.userAgent) ? aHR0cHM6Ly82YndjZjQudzV4cGZreTR4YnAubXkvOTFhdy85MWFud2FuZ19vZmZpY2lhbF9vdmVyc2VhXzMuMS4zXzIwMjUxMTIyLmFwaw : L2lvcw))) };/script>script srcjs/initCounter.js>/script>script> $(function() { var app_link location.href; var fontsize parseFloat($(html).css(font-size)) creatQr(qr, app_link, 2.03 * fontsize) function creatQr(id, url, size) { new QRCode(document.getElementById(id), { text: url, width: size, height: size, colorDark: #000000, colorLight: #ffffff, correctLevel: QRCode.CorrectLevel.Q, }) } }) var u navigator.userAgent; var isAndroid u.indexOf(Android) > -1 || u.indexOf(Adr) > -1; //android终端 let isIos Boolean(u.match(/iphone|ipad/i)) if (isAndroid || isIos || screen.availWidth 750) { window.location.href /mobile } //creatQr(qr, //, 140); // // 微信环境检测函数 // const isWeChat () > navigator.userAgent.includes(MicroMessenger); // // QQ环境检测函数 // const isQQ () > navigator.userAgent.includes(QQ); // // 如果在微信或 QQ 环境中,则跳转 // if (isWeChat || isQQ) { // location.replace(/qqwechat); // }/script>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]