Help RSS API Feed Maltego Contact                        

Domain > doosan.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to doosan.com

MD5A/V
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
db5b440f6419090cd9567f3b33fd3ced[Malware.Packer.HGX1] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
b36385662ebdaf40bc3d28f90b6a4751[Spyware.Zbot.USBV] [Trojan] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Foreign]
4c83c209b92c70bd0cff8a6036589670[HW32.CDB.E5ca] [Trojan.Win32.Kryptik.cwscgd] [Kryptik.CCFN] [UnclassifiedMalware] [Trojan.Packed.26527] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [Crypt_s.GKU] [Trojan.Win32.Kryptik.BWUN] [Win32/Trojan.337]
315325f544912a68464bf38e3edf6371[HW32.CDB.9e5e] [Backdoor/W32.Hlux.829456.H] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux!aauIqdu764w] [Trojan.FakeAV] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqyy] [Win32.Backdoor.Hlux.Lhdb] [UnclassifiedMalware] [Trojan.Packed.26581] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.aZvR] [Win32/Trojan.337]
d38a3646d932d062528aea48d2122315
2c05ffe297116df3062faac792c44c91[HW32.CDB.B4b9] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Win32/Trojan.0de]
c86f315b840f993b805369f3a29ba797[HW32.CDB.9f50] [Packed.Win32.Katusha.3!O] [Crypt_s.GNC]
1ca8bda50d98c89332d39dbaf3aac976[HW32.CDB.29c0] [Packed.Win32.Katusha.3!O] [Trojan.Win32.Kryptik.cxmkag] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC]
14a2291e48bd02b528d0c018fee03e86[HW32.CDB.A3eb] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [Trojan.Packed.26581] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.XULT-7356] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.CBCJ!tr] [Crypt_s.GNC]
292ad75fbab2288a453c7f7db162eed0[HW32.CDB.A2b5] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux!xuwpKhCjMA8] [WS.Reputation.1] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqzg] [UnclassifiedMalware] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.HATR-5126] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.Aj] [Win32/Trojan.112]
914c63052f0694efe5c231d14c135d36[HW32.CDB.D6a5] [TrojanPSW.Tepfer.r3] [Trojan.PWS.Tepfer!8N7nPFhLHXs] [WS.Reputation.1] [Kryptik.CCFN] [Trojan-PSW.Win32.Tepfer.twri] [Trojan.Win32.Kryptik.cxajaq] [Mal/FakeAV-UF] [UnclassifiedMalware] [Trojan.Packed.26544] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[PSW]/Win32.Tepfer] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Tepfer.CASL!tr.pws] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]

Whois

PropertyValue
Email dsdomain@doosan.com
NameServer NS002.DOOSAN.COM
Created 1996-01-23 00:00:00
Changed 2014-12-22 00:00:00
Expires 2016-01-24 00:00:00
Registrar WHOISNETWORKS CO., L

DNS Resolutions

DateIP Address
2013-05-1614.63.211.50 (ClassC)
2014-07-1154.238.216.234 (ClassC)
2014-09-1754.238.216.234 (ClassC)
2020-03-2354.65.124.61 (ClassC)
2021-11-07207.54.83.244 (ClassC)
2021-11-07139.138.45.171 (ClassC)
2024-10-1413.209.57.72 (ClassC)
2025-12-03103.253.240.161 (ClassC)
2026-01-18103.253.240.160 (ClassC)

Port 80

Subdomains

DateDomainIP
spam1.doosan.com2013-05-16203.226.128.1
ns002.doosan.com2025-12-31203.226.138.12
ns003.doosan.com2025-12-09203.226.64.46
email-na.doosan.com2025-12-27209.59.236.66
email.doosan.com2025-12-04103.253.240.29
m.doosan.com2024-10-0213.209.57.72
career.doosan.com2023-08-2520.200.225.100
dealernet.doosan.com2025-12-0954.192.48.87
gpt.doosan.com2025-12-2720.200.227.72
chatgpt.doosan.com2026-01-0420.194.29.99
www.doosan.com2021-07-29104.65.189.112
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information