Help RSS API Feed Maltego Contact                        

Domain > redshift.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to redshift.com

MD5A/V
9aa81fa022c0b159758efa1bda4f9be1[HW32.CDB.A20b] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dthd] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Win32.Backdoor.Hlux.Hwcu] [Trojan.Crypt3] [W32/Kryptik.BD!tr] [Crypt3.OHL] [Backdoor.Win32.Hlux.Ac]
d6a71b4d3098eab4dddab30fddbaef35[FakeSecTool-FCX!D6A71B4D3098] [Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]

Whois

PropertyValue
NameServer NS0.REDSHIFT.COM
Created 1994-12-16 00:00:00
Changed 2013-06-24 00:00:00
Expires 2017-12-15 00:00:00
Registrar TUCOWS DOMAINS INC.

DNS Resolutions

DateIP Address
2014-07-23216.228.2.89 (ClassC)
2014-08-02216.228.2.145 (ClassC)
2014-08-02216.228.2.127 (ClassC)
2014-08-02216.228.2.80 (ClassC)
2014-12-30216.228.2.92 (ClassC)
2014-12-30216.228.2.54 (ClassC)
2015-01-02216.228.2.165 (ClassC)
2015-01-03207.177.231.62 (ClassC)
2015-01-07216.228.2.136 (ClassC)
2015-04-21216.228.2.203 (ClassC)
2026-02-21152.67.250.137 (ClassC)

Port 443

Subdomains

DateDomainIP
NS0.REDSHIFT.COM2025-06-13152.67.250.137
www.redshift.com2026-02-09152.67.250.137
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information