Help RSS API Feed Maltego Contact                        

Domain > gent0401.codns.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to gent0401.codns.com

MD5A/V
4fcf65dd2c2ed0cd3b05ab59cba26bb9[MSIL/Bladabindi.AS] [BKDR_BLADABI.SMC] [Trojan.Click3.7576] [VB2.AECS] [BDS/Bladabindi.auje] [Trojan*Win32/Bagsu!rfn] [Trojan.MSIL.Bladabindi] [Trojan.Win32.Writos.rdp] [TScope.Trojan.VB] [Win.Backdoor.Bladabindi-1] [BDS/Bladabindi.auje] [Trojan.Writos.rdp.qzsi] [MSIL/Bladabindi.AS] [Trojan*Win32/Bagsu!rfn] [Backdoor.Bot!4E4F] [BackDoor-NJRat!F859FC04F1C1] [Trojan.Writos.rdp.qzsi] [VB2.AECS] [Trojan.Writos.Win32.995] [Troj/MSIL-HX] [Trojan.Bladabindi.B3] [Backdoor.Bot!4E4F] [BackDoor-NJRat!F859FC04F1C1] [Trojan.MSIL.Bladabindi]
e2dbd5e9f85177333dd41f3ebfc07225[Trojan.Injector.Autoit.DR.plpk] [Win32/TrojanDropper.Autoit.IR*MSIL/Bladabindi.AS*Win32/TrojanDropper.Autoit.IN] [VB2.AECS.dropper] [W32/Autoit.IN!tr] [Trojan*Win32/Bagsu!rfn*Trojan*Win32/Scrarev.C] [AIT*Trojan.Autoit.CLN[ZP]] [Trojan-Dropper.Win32.Autoit] [Trojan.Win32.Writos.rdp] [Win.Backdoor.Bladabindi-1] [Win32.HLLW.Autoruner2.16681] [Trojan.Injector.Autoit.DR.plpk] [Win32/TrojanDropper.Autoit.IR*MSIL/Bladabindi.AS*Win32/TrojanDropper.Autoit.IN] [VB2.AECS.dropper] [W32/Autoit.IN!tr] [Trojan*Win32/Bagsu!rfn*Trojan*Win32/Scrarev.C] [AIT*Trojan.Autoit.CLN[ZP]] [Trojan-Dropper.Win32.Autoit]
93fa5349aa904f379c6d77e22c83246d[Trojan.Injector.Autoit.DR.plpk] [Win32/TrojanDropper.Autoit.IR*Win32/ServStart.DT*Win32/TrojanDropper.Autoit.IN] [VB2.AECS.dropper] [W32/Autoit.IN!tr] [DDoS*Win32/Nitol.A*Trojan*Win32/Scrarev.C] [AIT*Trojan.Autoit.CLN[ZP]] [Trojan-Dropper.Win32.Autoit] [Trojan.Win32.Writos.rdp] [Trojan.Click3.7576] [Trojan.Injector.Autoit.DR.plpk] [Win32/TrojanDropper.Autoit.IR*Win32/ServStart.DT*Win32/TrojanDropper.Autoit.IN] [VB2.AECS.dropper] [W32/Autoit.IN!tr] [DDoS*Win32/Nitol.A*Trojan*Win32/Scrarev.C] [AIT*Trojan.Autoit.CLN[ZP]] [Trojan-Dropper.Win32.Autoit]
1b14af18642109ad8e191f4732c72946[Trojan.Injector.Autoit.DR.plpk] [Win32/TrojanDropper.Autoit.IR*Win32/ServStart.AD*Win32/TrojanDropper.Autoit.IN] [Flooder.MFJ] [W32/Autoit.IN!tr] [DDoS*Win32/Nitol.A*Trojan*Win32/Scrarev.C] [Trojan-Dropper.Win32.Autoit] [Trojan.DownLoader10.22140] [Trojan.Injector.Autoit.DR.plpk] [Win32/TrojanDropper.Autoit.IR*Win32/ServStart.AD*Win32/TrojanDropper.Autoit.IN] [Flooder.MFJ] [W32/Autoit.IN!tr] [DDoS*Win32/Nitol.A*Trojan*Win32/Scrarev.C] [Trojan-Dropper.Win32.Autoit]

Whois

PropertyValue
Email manager@nehom.com
NameServer NS3.CODNS.COM
Created 2000-06-28 00:00:00
Changed 2014-06-28 00:00:00
Expires 2019-06-28 00:00:00
Registrar INAMES CO., LTD.