Help RSS API Feed Maltego Contact                        

Domain > bannerhealth.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to bannerhealth.com

MD5A/V
0f5f90b03b49b276d148f7e6be7c30f1[HW32.CDB.27e0] [Packed.Win32.Katusha.1!O] [Trojan.Win32.Hlux.cxxldj] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.OWUMMQC] [Backdoor.Win32.Hlux.dqeh] [Backdoor.Hlux!9TTR+wn2IWc] [Backdoor.Win32.Hlux.DUHE] [BackDoor.Slym.12819] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CAXO] [Win32.Backdoor.Hlux.Hpn] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.ArxZ]
709622547c3e4b44144047282940995b[HW32.CDB.9120] [Packed.Win32.Katusha.1!O] [Backdoor.Hlux!iLXsQOxcJ2A] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dprt] [TrojWare.Win32.Kryptik.CAUP] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CAXO] [Backdoor.Win32.Kelihos] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.AP]
61b408e2de1c4996c3708f1f46913d60[HW32.CDB.C1b5] [Trojan.Kryptik!QyFpAm9uzfY] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djft] [Trojan.Win32.S.PSW-Tepfer.835600.AI] [UnclassifiedMalware] [BackDoor.Slym.14044] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Trojan/Win32.Tepfer] [W32/Trojan.AJYO-7526] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUF] [Trojan.Win32.Kryptik.BZIX]
20837cfed9fcc3df5a3e414c18eff646[Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]

Whois

PropertyValue
NameServer PDNS02.DOMAINCONTROL.COM
Created 1999-08-30 00:00:00
Changed 2015-04-26 00:00:00
Expires 2015-08-30 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2013-05-22206.213.41.50 (ClassC)
2023-08-13104.18.21.58 (ClassC)
2023-08-26104.18.20.58 (ClassC)
2024-08-09104.18.27.112 (ClassC)
2025-11-02104.18.41.180 (ClassC)
2026-03-05172.64.146.76 (ClassC)

Port 443

Subdomains

DateDomainIP
firefish2.bannerhealth.com2014-05-24206.213.41.245
meals-qa.bannerhealth.com2023-08-2652.180.95.21
apiqa.bannerhealth.com2025-01-14104.18.41.180
beta.bannerhealth.com2023-08-26104.18.17.144
urgentcare.bannerhealth.com2025-07-14172.64.146.76
emergencycare.bannerhealth.com2025-02-05172.64.146.76
give.bannerhealth.com2025-09-12216.235.194.92
bhcmbumcmg.bannerhealth.com2024-12-3120.237.192.23
apistg.bannerhealth.com2023-08-2640.78.41.58
api.bannerhealth.com2023-08-1540.112.181.57
qa-mybanner-api.bannerhealth.com2023-08-26104.18.21.58
login.bannerhealth.com2025-09-2834.223.206.18
symptomchecker.bannerhealth.com2024-12-2420.80.156.48
doctors.bannerhealth.com2025-08-0445.60.233.26
bannermdandersondoctors.bannerhealth.com2021-07-28204.246.191.69
uat.bannerhealth.com2025-10-08172.64.146.76
image.enewsletter-target.bannerhealth.com2025-01-2523.44.244.47
click.enewsletter-target.bannerhealth.com2025-12-0313.111.131.155
account.bannerhealth.com2023-08-2520.245.83.36
qa-account.bannerhealth.com2023-08-26104.18.20.58
dev-account.bannerhealth.com2025-09-28172.64.146.76
azguest.bannerhealth.com2025-11-10192.0.2.1
apidev.bannerhealth.com2026-02-04172.64.146.76
www.bannerhealth.com2024-08-10104.18.27.112
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information