Help RSS API Feed Maltego Contact                        

Domain > ftp.alr3ady.net

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://paper.seebug.org/papers/APT/APT_CyberCrimin...    
https://github.com/kbandla/APTnotes/blob/master/20...    

Files that talk to ftp.alr3ady.net

MD5A/V
12874bf21a56709451f2df221c073f03[Backdoor.Trojan] [Win32/FakeDoc_i] [TROJ_SPNR.2FAC12] [UnclassifiedMalware] [TrojanSpy.KeyLogger.cxor] [Backdoor:Win32/Hanove.A] [W32/Trojan.KLMX-3695] [Spyware/Win32.KeyLogger] [TrojanSpy.KeyLogger] [Trojan.Win32.KeyLogger.AN]
acde02979b7b04a7645e00375f90f67d[W32.Clod714.Trojan.b62e] [Artemis!ACDE02979B7B] [Trojan.Win32.Upload.dbbym] [W32/Trojan2.NMQZ] [UnclassifiedMalware] [Trojan.Upload.47] [Trojan/Win32.VB] [VIRUS_UNKNOWN] [Trojan/Win32.Zapchast] [W32/Trojan.XEIW-4131] [Virus.Win32.Heur.l] [Trojan.BAT.Zapchast] [W32/PWS_y.CZP!tr]
6ba65e2bcd8cfe224454371c1c592891[W32.Clod475.Trojan.ff02] [Artemis!6BA65E2BCD8C] [Trojan.Win32.Upload.dbbym] [W32/Trojan2.NMQZ] [Trojan.Upload.47] [VIRUS_UNKNOWN] [W32/Trojan.MKNN-8426] [Trojan.BAT.Zapchast] [W32/PWS_y.CZP!tr]

Whois

PropertyValue
Email ALR3ADY.NET@domainsbyproxy.com
NameServer PDNS04.DOMAINCONTROL.COM
Created 2014-03-10 00:00:00
Changed 2014-03-10 00:00:00
Expires 2015-03-10 00:00:00
Registrar GODADDY.COM, LLC