Help RSS API Feed Maltego Contact                        

Domain > d.2012down.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to d.2012down.com

MD5A/V
c0f49dc98720e9ab38c2bff809af7c23[W32.SafeDrvHAR.Worm] [Packed.Win32.TDSS!O] [Worm.Autorun.DM8] [Artemis!C0F49DC98720] [Trojan.Downloader] [Trojan.Buzus!1xqIPjvIXyo] [W32.Buzus] [Suspicious_F.E] [Win32/Autorun.K] [Worm.Win32.AutoRun.gcpp] [Trojan.Win32.Buzus.bnskj] [Trojan.Win32.Buzus.59401] [Virus.Win32.Heur.a] [Worm.Win32.AutoRun.aag] [TrojWare.Win32.Buzus.ebgb] [Worm.Win32.AutoRun] [Mal_Otorun5] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [Troj/Buzus-FX] [Trojan/Win32.Buzus] [Worm.Autorun.(kcloud)] [Worm:Win32/Yeltminky.A] [Trojan/Win32.Buzus] [Win32/AutoRun.Delf.EP] [BScope.P2P-Worm.Palevo] [Trj/Buzus.AH] [Trojan-PWS.Win32.Lmir] [W32/Delf.EP!worm] [Trojan.Win32.Buzus.AmVX] [Win32/Trojan.a1b]

Whois

PropertyValue
Email admin@newvcorp.com
NameServer NS2646.ZTOMY.COM
Created 2014-01-04 00:00:00
Changed 2015-03-24 00:00:00
Expires 2017-01-04 00:00:00
Registrar DOMAINSOFCOURSE.COM

DNS Resolutions

DateIP Address
2014-10-1764.74.223.13 (ClassC)
2016-03-31141.8.226.14 (ClassC)
2017-01-12104.130.124.96 (ClassC)
2017-04-2745.33.9.234 (ClassC)
2024-02-24154.88.87.102 (ClassC)
2024-11-2845.199.2.69 (ClassC)
2025-08-0538.238.255.4 (ClassC)

Subdomains

DateDomainIP
a1.2012down.com2014-12-2969.64.147.243
a.2012down.com2014-07-15141.8.225.62
d.2012down.com2017-01-12104.130.124.96
www.2012down.com2014-11-3069.64.147.243
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information