Help RSS API Feed Maltego Contact                        

Domain > yourfiledownloader.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://blog.dynamoo.com/2016/01/evil-network-19919...    
https://otx.alienvault.com/pulse/568adbd84637f2624...    

Files that talk to yourfiledownloader.com

MD5A/V
0f4bfdff3decd66c17982c8d93759abb[HTML:Iframe-inf]
4210fe16121fd4b5d7de5d0faec6d5ac[Packed.Win32.Obfuscated.10!O] [PUP.Optional.Installrex] [Trojan/Downloader.Fosniw.upi] [Trojan.Inject!+TANHb4ahN4] [WS.Reputation.1] [Inject.BVKV] [Trojan.Win32.Inject.lckp] [Trojan.Win32.InstallMonster.cwchsc] [Trojan.InstallMonster.62] [VIRUS_UNKNOWN] [Trojan.Inject] [PE:Trojan.StartPage!6.213] [Trojan.Win32.Inject] [W32/Injector.AYAH!tr] [Skodna.ArchSMS.AHN] [Win32/Trojan.5dd]
560a83769e8595336e3897746be85de8[Packed.Win32.Obfuscated.10!O] [Artemis!560A83769E85] [PUP.Optional.Installrex] [Trojan/Downloader.Fosniw.upi] [Trojan.Inject!+TANHb4ahN4] [WS.Reputation.1] [Inject.BVKV] [Trojan.Win32.Inject.lckp] [Trojan.Win32.InstallMonster.cwchsc] [Trojan.InstallMonster.62] [VIRUS_UNKNOWN] [Trojan.Inject] [PE:Trojan.StartPage!6.213] [Trojan.Win32.Inject] [W32/Injector.AYAH!tr] [Skodna.ArchSMS.AHN] [Win32/Trojan.aac]

Whois

PropertyValue
Email 5436fc72hd27muaa@5225b4d0pi3627q9.whoisprivacycorp.com
NameServer NS2.YOURFILEDOWNLOADER.COM
Created 2012-04-26 00:00:00
Changed 2015-03-02 00:00:00
Expires 2016-04-26 00:00:00
Registrar INTERNET.BS CORP.

DNS Resolutions

DateIP Address
2012-05-1366.90.64.139 (ClassC)
2012-06-1769.197.5.65 (ClassC)
2012-07-01199.195.194.5 (ClassC)
2012-07-03188.122.91.10 (ClassC)
2012-07-0346.165.196.236 (ClassC)
2012-09-1972.20.51.146 (ClassC)
2012-09-2567.159.12.74 (ClassC)
2013-01-21188.122.91.8 (ClassC)
2013-01-21188.122.91.9 (ClassC)
2013-10-0450.7.28.2 (ClassC)
2014-05-2872.8.167.150 (ClassC)
2014-11-1750.7.29.78 (ClassC)
2024-11-12195.201.124.255 (ClassC)
2024-12-2465.21.240.245 (ClassC)
2025-04-1623.88.53.29 (ClassC)
2025-05-22159.69.83.207 (ClassC)
2025-05-25159.69.42.212 (ClassC)
2025-06-07162.55.172.212 (ClassC)
2025-07-2395.216.161.60 (ClassC)
2025-08-10168.119.245.137 (ClassC)
2025-08-17159.69.186.9 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
NS2.YOURFILEDOWNLOADER.COM2024-04-1465.21.240.245
i.yourfiledownloader.com2014-06-29188.122.91.9
smart.yourfiledownloader.com2014-06-29188.122.91.8
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information