Help RSS API Feed Maltego Contact                        

Domain > yahooo.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://researchcenter.paloaltonetworks.com/2016/02...    
https://otx.alienvault.com/pulse/56cf3cc167db8c17d...    

Files that talk to yahooo.com

MD5A/V
0f5f90b03b49b276d148f7e6be7c30f1[HW32.CDB.27e0] [Packed.Win32.Katusha.1!O] [Trojan.Win32.Hlux.cxxldj] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.OWUMMQC] [Backdoor.Win32.Hlux.dqeh] [Backdoor.Hlux!9TTR+wn2IWc] [Backdoor.Win32.Hlux.DUHE] [BackDoor.Slym.12819] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CAXO] [Win32.Backdoor.Hlux.Hpn] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.ArxZ]
2748ea7375275e992ebde4575fe7c1a6[HW32.CDB.90bf] [Backdoor.Hlux.r3] [Backdoor.Hlux!wF4QLfqeA5I] [Kryptik.CCFN] [Backdoor.Win32.Hlux.crc] [Trojan.Win32.Hlux.cwzkvh] [TrojWare.Win32.Kryptik.BZOO] [BackDoor.Slym.14056] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GID] [Trojan.Win32.Kryptik.BZOO]
038a21f4f89d526f853bba2a18b81708[Worm.Win32.Ngrbot.afvw] [Win32.HLLW.Autoruner2.1926] [TR/Crypt.Xpack.77749]

Whois

PropertyValue
Email domainadmin@yahoo-inc.com
NameServer NS2.YAHOO.COM
Created 1999-01-28 00:00:00
Changed 2014-12-27 00:00:00
Expires 2016-01-28 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2013-01-3168.180.206.184 (ClassC)
2013-10-0798.139.102.145 (ClassC)
2013-10-2177.238.178.122 (ClassC)
2013-12-0987.248.120.148 (ClassC)
2014-05-2468.180.206.184 (ClassC)
2014-07-1398.139.102.145 (ClassC)
2024-01-0944.228.206.170 (ClassC)
2024-02-1634.225.127.72 (ClassC)
2024-03-1213.251.69.97 (ClassC)
2025-07-1276.223.84.192 (ClassC)
2025-08-0113.248.158.7 (ClassC)

Port 80

Subdomains

DateDomainIP
2000.yahooo.com2025-03-1013.248.158.7
123.yahooo.com2024-01-1234.213.101.254
18.yahooo.com2025-04-0613.248.158.7
hk.yahooo.com2015-04-01188.125.73.108
in.yahooo.com2015-03-31188.125.73.108
ads.yahooo.com2025-03-1076.223.84.192
sports.yahooo.com2014-06-1774.6.50.150
att.yahooo.com2025-04-0476.223.84.192
www.yahooo.com2014-10-14188.125.73.108
biz.yahooo.com2024-12-0913.248.158.7
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information