Help RSS API Feed Maltego Contact                        

Domain > updatesw.zoka.cc

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

https://securelist.com/files/2014/11/darkhotelappe...    

Files that talk to updatesw.zoka.cc

MD5A/V
08a41624e624d8fb26eeed7a3b1f5009[TrojanAPT.Garveep.A3] [Backdoor]
2b443cc331fec486a6ccbcfcd92e76a4[TrojanAPT.Garveep.A3] [Trojan/Downloader.Small.ozt] [Trojan.DarkHotel.1] [TROJ_GARVEEP.SMA] [Win32.Trojan.WisdomEyes.16070401.9500.9942] [W32/MalwareF.RCAF] [Win32/Tnega.CAFYIUB] [TROJ_GARVEEP.SMA] [Trojan-Spy.Win32.Small.psi] [Trojan.Win32.A.Downloader.20480.AIM[h]] [Win32.Trojan-spy.Small.Hrpc] [Heur.Suspicious] [Trojan.DownLoader5.12775] [BehavesLike.Win32.Downloader.mz] [Troj/DwnLdr-IVY] [W32/Risk.DBXI-5540] [TR/Dldr.Garveep.A.19] [TrojanDownloader:Win32/Garveep.A] [Uds.Dangerousobject.Multi!c] [Trojan/Win32.Amber.R5186] [Trojan.DL.Small!zAw1XmCAyn4] [Trojan.BadCert] [W32/Dx.TVR!tr] [Cryptic.BYF] [Trj/StartPage.DAW] [Win32/Trojan.Downloader.714]

Whois

PropertyValue
Email [email protected]
NameServer NS2.ZOKA.CC
Created 2009-03-15 14:33:20
Changed 2014-03-16 04:00:28
Registrar 1 API GMBH

DNS Resolutions

DateIP Address
2023-12-03162.210.196.171 (ClassC)
2023-12-21199.115.116.162 (ClassC)
2024-02-21185.107.56.60 (ClassC)
2024-03-22162.210.196.173 (ClassC)
2024-04-12185.107.56.59 (ClassC)
2024-05-09162.210.196.172 (ClassC)
2024-07-13208.91.197.46 (ClassC)
2025-01-23103.224.212.212 (ClassC)
2025-08-26103.224.182.213 (ClassC)

Port 80

Port 443

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information