Help RSS API Feed Maltego Contact                        

Domain > forwitmeand.com

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://www.morphick.com/resources/lab-blog/closer-...    
http://www.broadanalysis.com/2016/07/11/neutrino-e...    
https://www.minerva-labs.com/post/new-hancitor-pim...    

Files that talk to forwitmeand.com

MD5A/V
9100d8326ff04a1f771bac7d956831c9
a9d969538b75615652a7e0a5a5da0e83
0be80f84d16108a70bbbf26eeae17bc4
6392659a82a29b4ed4498e75ac9c17a4
cd55897b8415738b09398b5fc976a702
95898d38b95179f2ce87a004e6c597d7
af04d9d945c23148e96ec16386d3676a
a6d838fa716928428621a3fba12231f3
598cd8c6380c9109b9313e482f40c3fe[W97M.Downloader] [W2KM_HANCITOR.YYSVG] [Trojan:W97M/Nastjencro.A] [W97M_DONOFF.E]
47f7ea767c7a5ab6d5734dbd70a34d0e
deefe54939a9ec5e6771ad8e7ebd1fd4
359f20dd2e57ce4cc0157fa8193114a1
b57d05fd01c1779b7a1be20a96d407e2[w97m.Downloader.DUN] [Trojan.Mdropper] [W2KM_HANCITOR.YYSVG] [w97m.Downloader.DUN] [Troj/DocDl-DXJ] [Trojan:W97M/Nastjencro.A] [W2KM_HANCITOR.YYSVG] [Trojan:O97M/Madeba.A!det] [w97m.Downloader.DUN]
a0f51bf36b9e9514803caeef90a9b7c7
8326a12e4636600256d5ee6a6f858018
6e77127fe0d92b2632210938154cf813
80f2b863a07817ee1914647c25a60d1d
5a48d2c02ae40018462665a3e7568b68
7aa9041f7bc15340284b3df3dbba98b3
6873481dc1a762739975e68455b440cc

Whois

PropertyValue
Email marekkazuewsky@gazeta.pl
NameServer NS3.XTREMEWEB.DE
Created 2016-07-06 00:00:00
Changed 2016-07-06 00:00:00
Expires 2017-07-06 00:00:00
Registrar BIZCN.COM, INC.