Help RSS API Feed Maltego Contact                        

Domain > 1qdisk.vicp.cc

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to 1qdisk.vicp.cc

MD5A/V
a3e963a6189ca175c140f5328e120582[Packed.Win32.TDSS.2!O] [UnclassifiedMalware] [DLOADER.Trojan] [BehavesLike.Win32.Dropper.dm] [W32/Trojan.YEYM-3809] [Heur:TrojanDropper.TDSS] [BDS/Zegost.282624.3] [Backdoor:Win32/Zegost.BZ] [Backdoor/Win32.Zegost] [BScope.P2P-Worm.Palevo] [PE:Trojan.Darier!1.9CCD] [Backdoor.Win32.Farfli] [W32/Farfli.AXW!tr]
6f8d5e34b858c246f04e0fac3674ea41
1d8ae61398434cd26e4442af4c3e0095[Packed.Win32.Katusha.1!O] [Backdoor.Bot] [WS.Reputation.1] [Trojan.Win32.Farfli.djbyhg] [UnclassifiedMalware] [BehavesLike.Win32.Trojan.cm] [Heur:TrojanDropper.TDSS] [Backdoor/Win32.Farfli] [Trojan-GameThief.Win32.Magania] [W32/Farfli.CLM!tr] [Win32/Heur] [Trojan.Win32.Farfli.BAYA] [Artemis!1D8AE6139843] [BehavesLike.Win32.Kudj.cm] [PE:Malware.Obscure/Heur!1.9E03]
24097d613f19fc6a5278e07f5f5933ae[Trojan/W32.KRBanker.45177] [Trojan.Rimod.r7] [Trojan.Win32.ServStart.dawnyd] [Backdoor.Trojan] [ServStart.G] [Trojan.Win32.ServStart.aqj] [Trojan.ServStart!n6igvhGx4as] [PE:Backdoor.Storm!1.9C70] [Trojan.DownLoad3.33677] [TR/Graftor.129744.44] [Trojan:Win32/Rimod!gmb] [W32/Trojan.MCUG-2362] [Trojan.ServStart] [Win32.Trojan.Servstart.Hnkz] [Trojan.Win32.ServStart] [W32/ServStart.EF!tr] [Downloader.Small.KTA] [Trojan.Win32.ServStart.BHB] [Trojan.ServStart.Win32.2683] [W32/Trojan5.JWW] [UnclassifiedMalware] [Trojan/Win32.ServStart] [Win32.Troj.ServStart.a.(kcloud)]
2fc8a443720c95a40206b76b4d3cecde[Backdoor.Farfli!DrQZbUbDG5U] [Win32/Farfli.PZ] [Backdoor.Win32.Farfli.zsj] [Trojan.Win32.Farfli.dwpugq] [Troj/Zegost-GO] [Backdoor/Farfli.xg] [Trojan[Backdoor]/Win32.Farfli] [Trojan.Mikey.D5B6A] [Trojan/Win32.Zegost] [Backdoor:Win32/Zegost!rfn] [PE:Trojan.Zegost!1.65A1[F1]]

Whois

PropertyValue
Email cyy@vavic.com
NameServer NS2.EXHERA.COM
Created 2006-08-03 07:52:52
Changed 2015-04-08 00:40:12
Registrar WEB COMMERCE COMMUNI

DNS Resolutions

DateIP Address
0000-00-00115.144.79.123 (ClassC)
2014-06-30101.79.5.180 (ClassC)
2014-06-30101.79.5.241 (ClassC)
2015-05-05115.144.79.123 (ClassC)
2016-03-31103.31.15.64 (ClassC)
2017-08-11106.75.65.176 (ClassC)
2018-12-20174.128.255.253 (ClassC)
2019-06-20174.128.255.236 (ClassC)
2019-06-25174.128.255.245 (ClassC)
2019-07-12174.128.255.232 (ClassC)
2019-08-09174.128.255.234 (ClassC)
2019-08-13174.128.255.229 (ClassC)
2019-08-24174.128.255.254 (ClassC)
2019-08-24174.128.255.228 (ClassC)
2019-08-31174.128.255.237 (ClassC)
2019-09-17174.128.255.233 (ClassC)
2019-10-08174.128.255.230 (ClassC)
2020-12-31174.128.255.252 (ClassC)
2025-05-240.0.0.0 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information