Help RSS API Feed Maltego Contact                        

Domain > mail-news.eicp.net

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Reports

https://otx.alienvault.com/pulse/56aa6c6e67db8c6aa...    
https://www.proofpoint.com/us/exploring-bergard-ol...    

Files that talk to mail-news.eicp.net

MD5A/V
74fa8ec55482ca81b41dfd356af9b187[Trojan/W32.CVE-2012-4792.509440] [Trojan.Plugx] [BackDoor-FKE] [Trojan.Backdoor.CH] [Riskware] [Trojan/Shyape.a] [Trojan.Win32.Gulpix.benlcr] [Backdoor.Win32.Gulpix.al] [UnclassifiedMalware] [Trojan.MulDrop4.20942] [TR/Shyape.A] [Win32.Hack.Undef.(kcloud)] [Trojan:Win32/Plugx.B] [Backdoor.Gulpix.al] [Suspicious] [Trojan.Win32.a] [Crypt.BGTW] [Trj/CI.A]
62c6f595b570eafda24cab01dc2e18a2[Backdoor.Zegost.r4] [Artemis!62C6F595B570] [Trojan.Win32.DownLoader15.dvsxss] [W32/Heuristic-KPP!Eldorado] [Backdoor.Trojan] [Win32/Farfli.BQR] [Trojan.Win32.AVKill.im] [Trojan.Farfli!sc2lvlywhDY] [Virus.Win32.Heur.g] [Win32.Backdoor.Zegost.Wozu] [Trojan.DownLoader15.59256] [Trojan.Farfli.Win32.22543] [BehavesLike.Win32.Downloader.fh] [W32/Heuristic-KPP!Eldorado] [BDS/Zegost.368640] [Backdoor:Win32/Zegost.L] [Uds.Dangerousobject.Multi!c] [Trojan.Win32.Farfli.BQR] [Trojan.SuspectCRC] [Trj/GdSda.A]
ac2f55cefd715937e9584752b706712b[Trojan.Symmi.D71A] [Trojan.Win32.DownLoader12.dmjxke] [W32/Heuristic-KPP!Eldorado] [Virus.Win32.Part.g] [Trojan.Win32.AVKill.il] [Trojan.DownLoader!] [Uds.Dangerousobject.Multi!c] [Trojan.DownLoader12.6893] [BehavesLike.Win32.Klez.fh] [W32/Heuristic-KPP!Eldorado] [TR/Symmi.327680.4] [Win32.SuspectCrc] [Win32/Trojan.Multi.daf]
4e2d8ca775d0214e2532acd778b91424[Trojan.Redosdru.r4] [Trojan.Farfli.Win32.22543] [Trojan.Win32.DownLoader15.dvsxss] [W32/Heuristic-KPP!Eldorado] [PUA.Downloader] [Virus.Win32.Heur.g] [Trojan.Win32.AVKill.im] [Trojan.Farfli!sc2lvlywhDY] [Troj.W32.Avkill!c] [Win32.Trojan.Avkill.Pdwn] [Trojan.DownLoader15.59256] [BehavesLike.Win32.Downloader.fh] [W32/Heuristic-KPP!Eldorado] [Trojan:Win32/Redosdru.L] [Trj/GdSda.A]

Whois

PropertyValue
Email [email protected]
NameServer NS2.EXHERA.COM
Created 2002-08-26 00:00:00
Changed 2014-03-28 00:00:00
Expires 2015-08-26 00:00:00
Registrar SHANGHAI BEST ORAY I