Help RSS API Feed Maltego Contact                        

Domain > www.friendlyduck.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to www.friendlyduck.com

MD5A/V
5df1c2c1c2678f4279b6b9d4db8e0f0d[pws.win32.hupigon.aaa] [Heur.AdvML.B] [Trojan.InstallMonster.1942] [ADWARE/InstMonster.npskk] [not-a-virus:AdWare.InstallMonster]
b3ca1e14c70ca8664f40fca8107cd7d4[TrjnDwnldr.NSIS.Quireap.B] [Troj.Downloader.Nsis!c] [trojandownloader.win32.adload.dp!bit] [Win32.Trojan.WisdomEyes.16070401.9500.9936] [NSIS/TrojanDownloader.Adload.CF] [Trojan-Downloader.NSIS.Adload.bx] [Riskware.Nsis.Vittalia.eaeqpo] [Trojan.Win32.Z.Adload.2785620[h]] [TrojWare.Win32.Downloader.bqqdg] [Trojan.Vittalia.7648] [BehavesLike.Win32.AdwareSweet.vc] [TrojanDownloader:Win32/Adload.DP!bit] [Downloader/Win32.Adload.N2089244900] [Artemis!B3CA1E14C70C] [Nsis.Trojan-downloader.Adload.Pgcw] [Trojan-Downloader.NSIS.Adload] [W32/NSISMultiDropper.F6C!tr] [Trj/CI.A]
874c194e29bdd91c459f65b450fbf03d[TrjnDwnldr.NSIS.Quireap.B] [trojandownloader.win32.adload.dp!bit] [NSIS.Trojan-Downloader.Adload.k] [NSIS/TrojanDownloader.Adload.CF] [Trojan-Downloader.NSIS.Adload.bx] [Riskware.Nsis.Vittalia.eaeqpo] [Trojan.Vittalia.7648] [BehavesLike.Win32.AdwareAdload.wc] [PUP/Win32.Downloader.R188513] [Trojan-Downloader.NSIS.Adload] [W32/NSISMultiDropper.F6C!tr]
f48f86e51d09598bc37fab228fdf3470[TrjnDwnldr.NSIS.Quireap.B] [trojandownloader.win32.adload.dp!bit] [Win32.Trojan.WisdomEyes.16070401.9500.9962] [Heur.AdvML.B] [NSIS/TrojanDownloader.Adload.CF] [Trojan-Downloader.NSIS.Adload.bx] [Riskware.Nsis.Vittalia.eaeqpo] [Trojan.Vittalia.7648] [BehavesLike.Win32.AdwareAdload.tc] [Trojan/MSIL.ajtu] [Artemis!F48F86E51D09] [Nsis.Trojan-downloader.Adload.Ectz] [Trojan-Downloader.NSIS.Adload] [W32/NSISMultiDropper.F6C!tr]
3d194d06aaa154e59a83aebd6a4f9a55[W32.HfsAdware.F627] [Heur.AdvML.B] [Trojan.Amonetize.14167] [virus.win32.parite.b] [BehavesLike.Win32.Downloader.rc] [GrayWare[AdWare]/Win32.InstallMonstr.qj] [PUA.Installmonstr]
8cc7059412731c7c5678a26587ffd6ca[virus.win32.parite.b] [Heur.AdvML.B] [GrayWare[AdWare]/Win32.InstallMonstr.qj] [PUA.Installmonstr]
4cacb56efff98516344e7717b96190f5[Heur.AdvML.B] [Trojan.InstallMonster.2028] [virus.win32.parite.b] [GrayWare[AdWare]/Win32.InstallMonstr.qj] [PUA.Installmonstr]
7dcd7e93660b2a2c5360758e82c9b334
d595e26b7d6c5cf30fee339de48bef8e
b5b0e1b26dd5fe8d5ec646d38b4f7b13[TrjnDwnldr.NSIS.Quireap.B] [RiskWare.Tool.HCK] [Trojan.Application.Zusy.D2C598] [trojandownloader.win32.adload.dp!bit] [Win32.Trojan.WisdomEyes.16070401.9500.9786] [TROJ_GE.D0F416D1] [Trojan-Downloader.NSIS.Adload.bx] [Trojan.Win32.Kiser.eelcmy] [UnclassifiedMalware] [Trojan.Vittalia.7648] [Tool.Kiser.Win32.1349] [TROJ_GE.D0F416D1] [BehavesLike.Win32.Downloader.vh] [W32/Trojan.ZXTL-5761] [HackTool/Kiser.kx.a] [HackTool[:HEUR]/Win32.Kiser] [TrojanDownloader:Win32/Adload.DP!bit] [Artemis!B5B0E1B26DD5] [NSIS/TrojanDownloader.Adload.CF] [Riskware.HackTool!SY2QftBUSEE] [Trojan-Downloader.NSIS.Adload] [W32/NSISMultiDropper.F6C!tr]
c92954928e26a2e551a6aac48af3a4db

Whois

PropertyValue
Email admin@friendlyduck.com
NameServer B.NS14.NET
Created 2008-06-23 00:00:00
Changed 2016-06-24 00:00:00
Expires 2017-06-23 00:00:00
Registrar PSI-USA, INC. DBA DO

DNS Resolutions

DateIP Address
2013-04-01209.200.154.113 (ClassC)
2013-10-1172.52.9.97 (ClassC)
2014-11-12213.244.129.200 (ClassC)
2014-11-26213.244.162.222 (ClassC)
2018-07-09128.65.210.109 (ClassC)
2019-02-08104.24.130.10 (ClassC)
2019-02-08104.24.131.10 (ClassC)
2019-12-13104.20.219.106 (ClassC)
2019-12-13104.20.220.106 (ClassC)
2020-05-24104.25.32.20 (ClassC)
2020-05-24104.25.33.20 (ClassC)
2020-05-27172.67.174.132 (ClassC)
2020-05-27104.27.148.196 (ClassC)
2020-05-27104.27.149.196 (ClassC)
2021-01-15104.21.80.54 (ClassC)
2021-11-24188.114.97.44 (ClassC)
2021-11-24188.114.96.44 (ClassC)
2022-01-27188.114.96.15 (ClassC)
2022-01-27188.114.96.0 (ClassC)
2022-01-27188.114.97.15 (ClassC)
2022-01-27188.114.97.0 (ClassC)
2022-02-01188.114.96.3 (ClassC)
2022-02-01188.114.97.3 (ClassC)
2022-04-02188.114.96.7 (ClassC)
2022-04-02188.114.97.7 (ClassC)
2022-06-07188.114.96.14 (ClassC)
2022-06-15188.114.96.2 (ClassC)
2022-06-15188.114.97.2 (ClassC)
2022-06-21188.114.97.1 (ClassC)
2022-07-27188.114.97.14 (ClassC)
2022-10-01188.114.96.5 (ClassC)
2022-10-01188.114.97.5 (ClassC)
2022-10-08188.114.96.1 (ClassC)
2022-12-19188.114.97.13 (ClassC)
2023-01-13188.114.96.13 (ClassC)
2024-08-19104.21.79.104 (ClassC)
2025-01-06172.67.169.240 (ClassC)
2025-03-31104.21.112.1 (ClassC)
2025-05-21104.21.64.1 (ClassC)
2025-06-13104.21.32.1 (ClassC)
2025-07-01104.21.80.1 (ClassC)
2025-08-16104.21.48.1 (ClassC)
2025-08-19104.21.96.1 (ClassC)

Port 80

Subdomains

DateDomainIP
www.friendlyduck.com2019-12-13104.20.219.106
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information