Help
RSS
API
Feed
Maltego
Contact
Domain > alkfor.ru
×
This indicator is
referenced
in AlienVault OTX pulse ""
Is this malicious?
Yes
No
Most users have voted this as
MALICIOUS
Reports
http://pastebin.com/2FUaQNv2
http://pastebin.com/XmxAhyrf
Files that talk to alkfor.ru
MD5
A/V
0b9d3b74c4147ee48d55cbfacbd38ee7
0f5409ad171fab87fa26b8568493341e
[
JS.Trojan-Downloader.Nemucod.oa
] [
JS.Downloader
] [
Trojan.Script.Heuristic-js.iacgm
] [
Js.Trojan.Raas.Auto
] [
JS/Nemucod.CA1!Eldorado
] [
Script.Trojan-Downloader.Locky.CQ
] [
JS/Nemucod.BJJ!tr
]
25bd19feaa4bfe286ff98da9cdb8bfaf
461c3be41f7090ef7866dfb851e4d754
[
JS.Trojan-Downloader.Nemucod.oa
] [
JS.Downloader
] [
Trojan.Script.Heuristic-js.iacgm
] [
JS/Nemucod.CA1!Eldorado
] [
Script.Trojan-Downloader.Locky.CQ
] [
Js.Trojan.Raas.Auto
] [
JS/Nemucod.BJJ!tr
]
602902823c074a67d60f4ec0aa63dc27
d18fd42768b8a7604f6d239059276ddb
DNS Resolutions
Date
IP Address
2013-11-15
92.53.113.85
(
ClassC
)
2016-11-01
92.53.96.18
(
ClassC
)
2024-06-30
194.67.71.133
(
ClassC
)
2025-07-15
157.90.34.134
(
ClassC
)
2025-08-01
185.182.104.150
(
ClassC
)
Port 80
HTTP/1.1 200 OKServer: nginxDate: Sun, 30 Jun 2024 03:21:19 GMTContent-Type: text/htmlTransfer-Encoding: chunkedConnection: keep-aliveExpires: Fri, 09 Apr 2021 13:17:22 GMTCache-Control: no-cache !doctype html>html langen classis_adaptive data-page-typeparking-crew>head>meta charsetUTF-8>meta namerobots contentnoindex>meta namerobots contentnofollow>meta namerobots contentnoarchive>meta propertyog:site_name contentalkfor.ru>meta propertyog:url contenthttp://alkfor.ru/>meta propertyog:image contenthttp://yourmine.ru/i/parking/glob_parking.png>meta propertyfb:app_id content280542925476675>meta nameviewport contentwidthdevice-width,initial-scale1>meta nameparking contentape>title>Срок регистрации домена alkfor.ru истёк/title>link relstylesheet mediaall href/parking-crew.css>link relstylesheet hrefhttp://i.cdnpark.com/themes/registrar/035524.css>style>body { background: #E5E5E5; }/style>link relicon href/favicon.ico typeimage/x-icon>script>/*!CDATA*/window.trackScriptLoad function(){};/*>*//script>script onloadwindow.trackScriptLoad(/manifest.js) onerrorwindow.trackScriptLoad(/manifest.js, 1) src/manifest.js charsetutf-8>/script>script onloadwindow.trackScriptLoad(/head-scripts-content.js) onerrorwindow.trackScriptLoad(/head-scripts-content.js, 1) src/head-scripts-content.js charsetutf-8>/script>script onloadwindow.trackScriptLoad(/head-scripts.js) onerrorwindow.trackScriptLoad(/head-scripts.js, 1) src/head-scripts.js charsetutf-8>/script>script typetext/javascript>var cname 035524; var identifier ;/script>/head>body>header classb-header-parking b-header-parking_type_crew>p classb-text b-text_margin_none>Домен зарегистрирован в a hrefhttps://reg.ru?target_blank classb-link relnofollow noopener noreferrer target_blank>REG.RU/a>/p>/header>main classb-pcrew>div classb-pcrew-notification>div classb-pcrew__wrapper>p classb-pcrew-notification__text>Срок регистрации домена истек.br>Требуется продление, чтобы возобновитьbr>работу домена и его сервисов./p>div classb-pcrew-notification__dname>span classpuny>alkfor.ru/span>/div>div classb-pcrew-noti
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]