Help RSS API Feed Maltego Contact                        

Domain > p.rfihub.com

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as not malicious

Files that talk to p.rfihub.com

MD5A/V
a701e53f8e95139c34de1afef35da4e1[PWS-Zbot-FDR!A701E53F8E95] [Trojan] [WS.Reputation.1] [Artemis!A701E53F8E95] [Win32.Troj.Undef.(kcloud)] [W32/Injector.AJAR!tr]
82a7b6a8a65584343b087da22142f9b5
212c3a5c342e93f7398111083f37fd90
1e46c60e65ae9f9c9c8850372d8da491[PDF:Exploit.CVE-2011-2462.A] [Exploit.Pdf.Pidief.rhefk] [Trojan.Pidief] [PDF.Exploit-37] [Exploit.Win32.CVE-2011-2462.b] [UnclassifiedMalware] [HEUR_PDFEXP.B] [Troj/PDFEx-FJ] [CVE-2011-2462!Camelot] [EXP/2011-2462.A] [Exploit:Win32/CVE-2011-2462.B] [PDF.S.CVE-2011-2462.1201039[h]] [PDF/Cve-2011-2462] [Artemis!1E46C60E65AE] [Exploit.Win32.CVE-2011-2462] [JS/CVE20112462.A!exploit] [Exploit_c.WLF] [PDF.less.za.11]
f58fb6cfc42c049c1442d6ce54ea429d[W32/new-malware!Maximus] [TR/Graftor.2081254] [Trojan.Packed.194] [Win32/DH{fGSBEiV+ICMsgRNcV04}] [Trojan-Ransom.Win32.Blocker] [Artemis!F58FB6CFC42C] [Trojan.Packed!N6hauVnIyeg] [WS.Reputation.1] [Trojan.Win32.Graftor.czubpq] [Heuristic.LooksLike.Win32.Suspicious.J] [Win32/Trojan.fad]
f0bc927feca28a458159a8c4c808a3a7[W32/Sefnit.C] [Trojan.MulDrop4.11744] [W32/Sefnit.ZOEY-4762]
aff094c99c7a6f1196c5ec0ead6977a6
62c0efc3e8f551f5126e73976db69354[W32.JeneasyLTD.Trojan] [Artemis!62C0EFC3E8F5] [Worm.Ngrbot!OsowroSUll4] [Downloader] [Injector.GHNY] [Worm.Win32.Ngrbot.admj] [Worm/Ngrbot.adpp] [Worm/Win32.Ngrbot] [TrojanClicker:Win32/Tolouge] [Virus.Win32.Heur.p] [TScope.Trojan.VB] [Trojan.Backdoor.SmallX] [W32/Ngrbot.ADMJ!worm] [BackDoor.SmallX.BJN] [Trojan.Win32.Injector.BCDS] [Win32/Trojan.54b]
645d60825b362448151387d060593635[W32.Clod9e1.Trojan.1d9a] [Trojan.Win32.DownLoader10.cqvkbc] [WS.Reputation.1] [HKTL_CLICKER] [Trojan.Win32.S.Clicker.649728] [UnclassifiedMalware] [Trojan.DownLoader10.26566] [SPR/Surfairy.A] [Trj/CI.A] [Trojan.SuspectCRC] [Malware_fam.NB] [Hacktool.Win32.RiskTool.77] [Win32/DH{DyAiJQ}]
140f03d98cdfbd17d1ce1f63a9adcb80
5989dc0d2666bb6425369bceb7f3810e[W32/Sefnit.C] [Trojan.MulDrop4.11744] [W32/Sefnit.ZOEY-4762]
7f7639c14bd6ef0e0b7df893a3f7b93f
37c56e0a17d98540a5af059079b05f1c[W32.JeneasyLTD.Trojan] [Backdoor.Bot] [Worm/Win32.Kolab] [W32/Dorkbot.B!tr] [Worm.Win32.Ngrbot.Agt]
56c3441eb39e5cf95045bda5174d3ba2[W32/Pate.a] [W32.Perite.A] [W32/Pate.A] [Virus.Win32.Parite.a] [Win32.Parite.A] [Win32/Parite.A] [W32/Parite.A] [W32.Pinfi] [W32/Pinfi.B] [Win32:Parite] [Win32_Parite_A] [W32.Parite.B] [Win32.Parite.1] [W32/Parite] [PE_PARITE.A] [Heuristic.LooksLike.Win32.SuspiciousPE.H!87] [W32/Parite-A] [Win32/Pinfi.B] [Win32/Parite.a] [Virus/Win32.Parite] [Virus.Win32.Sality!IK] [Virus:Win32/Parite.A] [Win32/Parite.B] [Win32.Parite.a] [Virus.Win32.Sality] [W32/Parite.fam] [Win32/Parite] [W32/Parite.F]
e4d7099f1c188da54fd1e569f758b4b4
155f5a30dab6d7cd09d1f85e59a99322[W32/Pate.a] [Virus/W32.Parite] [W32.Perite.A] [Virus.Win32.Parite.a] [W32/Pate.A] [Win32.Parite.A] [Win32/Parite.A] [W32/Parite.A] [Virus.Win32.Sality!IK] [W32/Pinfi.B] [Win32:Parite] [Win32_Parite_A] [W32.Parite.B] [Virus.Win32.Parite.~A] [Win32.Parite.1] [W32/Parite] [PE_PARITE.A] [Heuristic.LooksLike.Win32.SuspiciousPE.H!87] [W32/Parite-A] [Win32/Pinfi.B] [Win32/Parite.a] [Virus:Win32/Parite.A] [Win32/Parite.B] [Win32.Parite.a] [Virus.Win32.Sality] [W32/Parite.fam] [Win32/Parite]
453079c819bcca32275ca2fc5d5d409b
c5b9b01391ba5cabf3540b62933f51e8[Trojan/W32.Inject_Packed.150016] [Trojan.Inject.hoe] [Trojan.Win32.ATRAPS.ctutwx] [TROJ_CLICKER.VG] [Trojan.Win32.Inject.hoed] [UnclassifiedMalware] [Trojan.Click3.5706] [TrojanClicker.SearchEngine.d] [W32/Trojan.UVBW-3864] [Trojan-Clicker.Win32.SearchEngine] [Trojan.Win32.Inject.aD] [Win32/Trojan.8ee]
676e9ec4022242ec9953909ad4e98510[SCRIPT.Virus]
c6094572fb4bc4fcef1d8133e7973f20

Whois

PropertyValue
NameServer NS2.P05.DYNECT.NET
Created 2008-05-14 00:00:00
Changed 2015-05-15 00:00:00
Expires 2016-05-14 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2013-10-28193.0.160.244 (ClassC)
2014-05-01185.31.128.232 (ClassC)
2014-07-01193.0.160.238 (ClassC)
2014-12-10205.210.187.217 (ClassC)
2015-06-08198.8.71.239 (ClassC)
2024-06-03198.8.71.130 (ClassC)
2024-06-10198.8.71.131 (ClassC)
2025-03-26199.38.167.130 (ClassC)
2025-05-28199.38.167.131 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
usw1-20.usw1-rtb1.rfihub.com2024-06-2054.183.250.121
usw1-21.usw1-rtb1.rfihub.com2024-09-1252.8.136.151
usw1-22.usw1-rtb1.rfihub.com2024-10-2252.8.136.151
usw1-23.usw1-rtb1.rfihub.com2024-10-2252.8.136.151
usw1-24.usw1-rtb1.rfihub.com2024-06-2054.183.250.121
usw1-25.usw1-rtb1.rfihub.com2024-10-2252.8.136.151
ewr-287.ewr-rtb1.rfihub.com2025-04-11199.38.167.152
ewr-348.ewr-rtb1.rfihub.com2025-03-20199.38.167.152
ams-100.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-10.ams-rtb1.rfihub.com2025-04-30193.0.160.154
ams-110.ams-rtb1.rfihub.com2025-05-01193.0.160.152
ams-20.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-120.ams-rtb1.rfihub.com2025-04-10193.0.160.154
ams-30.ams-rtb1.rfihub.com2024-09-02193.0.160.152
ams-150.ams-rtb1.rfihub.com2025-04-22193.0.160.152
ams-70.ams-rtb1.rfihub.com2024-12-30193.0.160.154
ams-170.ams-rtb1.rfihub.com2025-04-10193.0.160.154
ams-90.ams-rtb1.rfihub.com2025-05-04193.0.160.152
ams-11.ams-rtb1.rfihub.com2025-04-28193.0.160.152
ams-111.ams-rtb1.rfihub.com2025-04-30193.0.160.152
ams-121.ams-rtb1.rfihub.com2025-05-07193.0.160.154
ams-131.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-231.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-41.ams-rtb1.rfihub.com2025-05-10193.0.160.154
ams-71.ams-rtb1.rfihub.com2025-04-01193.0.160.154
ams-171.ams-rtb1.rfihub.com2025-04-22193.0.160.154
ams-191.ams-rtb1.rfihub.com2025-02-21193.0.160.154
ams-2.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-102.ams-rtb1.rfihub.com2025-04-23193.0.160.154
ams-12.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-112.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-122.ams-rtb1.rfihub.com2025-05-05193.0.160.154
ams-152.ams-rtb1.rfihub.com2025-04-10193.0.160.154
ams-162.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-172.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-92.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-192.ams-rtb1.rfihub.com2025-01-20193.0.160.154
ams-103.ams-rtb1.rfihub.com2025-04-10193.0.160.154
ams-113.ams-rtb1.rfihub.com2025-04-30193.0.160.152
ams-23.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-233.ams-rtb1.rfihub.com2025-05-03193.0.160.152
ams-153.ams-rtb1.rfihub.com2025-01-20193.0.160.154
ams-163.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-193.ams-rtb1.rfihub.com2025-01-20193.0.160.152
ams-4.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-14.ams-rtb1.rfihub.com2024-09-12193.0.160.152
ams-114.ams-rtb1.rfihub.com2025-05-02193.0.160.154
ams-24.ams-rtb1.rfihub.com2025-04-22193.0.160.154
ams-124.ams-rtb1.rfihub.com2025-02-04193.0.160.152
ams-134.ams-rtb1.rfihub.com2025-04-27193.0.160.154
ams-234.ams-rtb1.rfihub.com2025-04-28193.0.160.152
ams-154.ams-rtb1.rfihub.com2025-05-02193.0.160.154
ams-164.ams-rtb1.rfihub.com2025-01-20193.0.160.154
ams-74.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-174.ams-rtb1.rfihub.com2025-01-20193.0.160.154
ams-94.ams-rtb1.rfihub.com2025-05-12193.0.160.152
ams-194.ams-rtb1.rfihub.com2024-12-30193.0.160.152
ams-15.ams-rtb1.rfihub.com2025-01-23193.0.160.152
ams-115.ams-rtb1.rfihub.com2025-04-22193.0.160.152
ams-135.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-75.ams-rtb1.rfihub.com2025-04-08193.0.160.152
ams-175.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-85.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-95.ams-rtb1.rfihub.com2025-01-20193.0.160.154
ams-195.ams-rtb1.rfihub.com2024-12-28193.0.160.154
ams-116.ams-rtb1.rfihub.com2025-04-10193.0.160.154
ams-136.ams-rtb1.rfihub.com2025-04-26193.0.160.152
ams-156.ams-rtb1.rfihub.com2025-04-28193.0.160.152
ams-166.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-176.ams-rtb1.rfihub.com2025-04-21193.0.160.154
ams-86.ams-rtb1.rfihub.com2024-05-21193.0.160.154
ams-186.ams-rtb1.rfihub.com2025-01-20193.0.160.152
ams-96.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-196.ams-rtb1.rfihub.com2025-04-10193.0.160.154
ams-7.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-117.ams-rtb1.rfihub.com2024-12-30193.0.160.154
ams-147.ams-rtb1.rfihub.com2024-09-14193.0.160.154
ams-157.ams-rtb1.rfihub.com2025-05-02193.0.160.154
ams-87.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-187.ams-rtb1.rfihub.com2025-04-26193.0.160.152
ams-18.ams-rtb1.rfihub.com2025-04-28193.0.160.152
ams-118.ams-rtb1.rfihub.com2025-04-25193.0.160.154
ams-28.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-128.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-38.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-138.ams-rtb1.rfihub.com2024-12-30193.0.160.154
ams-158.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-168.ams-rtb1.rfihub.com2025-04-30193.0.160.154
ams-178.ams-rtb1.rfihub.com2025-04-28193.0.160.154
ams-88.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-188.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-98.ams-rtb1.rfihub.com2025-04-10193.0.160.152
ams-19.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-119.ams-rtb1.rfihub.com2025-04-22193.0.160.152
ams-29.ams-rtb1.rfihub.com2025-03-20193.0.160.152
ams-39.ams-rtb1.rfihub.com2025-04-10193.0.160.154
ams-139.ams-rtb1.rfihub.com2025-01-20193.0.160.152
ams-159.ams-rtb1.rfihub.com2025-04-30193.0.160.152
ams-189.ams-rtb1.rfihub.com2025-03-20193.0.160.154
ams-99.ams-rtb1.rfihub.com2025-04-10193.0.160.154
lax-120.lax-rtb1.rfihub.com2025-04-15199.38.167.130
lax-140.lax-rtb1.rfihub.com2025-04-19199.38.167.130
lax-271.lax-rtb1.rfihub.com2025-04-17199.38.167.131
lax-142.lax-rtb1.rfihub.com2025-04-11199.38.167.130
js2.rfihub.com2024-09-1218.161.6.3
a.rfihub.com2014-01-17185.31.128.232
smd.rfihub.com2025-04-28199.38.167.130
recs-prod.rfihub.com2024-04-1518.211.4.195
www.base64decode.orgeud.rfihub.com2024-05-14198.8.71.130
rud.rfihub.com2025-03-28199.38.167.130
com.rfihub.com2025-03-20199.38.167.130
oo.rfihub.com2025-04-15199.38.167.131
p.rfihub.com2013-10-28193.0.160.244
20860870p.rfihub.com2025-03-20199.38.167.130
20800390p.rfihub.com2025-03-17199.38.167.131
20725331p.rfihub.com2025-04-30199.38.167.130
20841163p.rfihub.com2024-12-03199.38.167.130
20846493p.rfihub.com2025-05-28199.38.167.130
20859514p.rfihub.com2025-04-15199.38.167.131
20845655p.rfihub.com2024-12-28199.38.167.130
20788575p.rfihub.com2025-03-20199.38.167.131
20827285p.rfihub.com2025-03-25199.38.167.130
20830466p.rfihub.com2025-04-17199.38.167.131
20858396p.rfihub.com2024-12-22199.38.167.131
20562657p.rfihub.com2015-04-25199.38.164.36
20726028p.rfihub.com2025-01-17199.38.167.131
20826348p.rfihub.com2025-05-06199.38.167.131
20839339p.rfihub.com2025-04-30199.38.167.131
20826349p.rfihub.com2025-03-21199.38.167.130
20856949p.rfihub.com2025-04-18199.38.167.131
2fp.rfihub.com2025-04-27199.38.167.130
s.rfihub.com2025-04-27199.38.167.131
ad-proxy-test.rfihub.com2024-06-0954.88.136.23
ad-proxy.rfihub.com2024-06-1618.210.123.107
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information