Help RSS API Feed Maltego Contact                        

Domain > gfans.onmypc.us

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

https://www.secureworks.com/research/analysis-of-d...    

Files that talk to gfans.onmypc.us

MD5A/V
b13ab523e89d9bb055aee4d4566ab34f[PWS-FBNX]
0e058126f26b54b3a4a950313ec5dbce[UnclassifiedMalware] [W32/Dx.CL3!tr] [Trj/Vilsel.AF] [Backdoor.Toyecma] [PWS-FBNX] [Trojan.Krast] [TROJ_AHENTE.RED] [TrojanSpy.KeyLogger!GSKBdfHkyqU] [Trojan.Win32.KeyLogger.93696] [Trojan.PWS.Gamania.42279] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Toyecma.A] [Virus.Win32.Cryptor] [Trojan.Win32.KeyLogger.OFI] [Win32/Trojan.b5d]

Whois

PropertyValue
NameChangeIP Network OperationsZZZ
Email noc@changeip.com
Zip Code 33131
City Miami
State FL
Country US
Phone +1.8007913367
Fax +1.7862246593
NameServer NS2.CHANGEIP.ORG
Created 2012-07-12 15:49:55
Changed 2015-04-01 15:18:00
Expires 2016-07-11 23:59:59
Registrar NETWORK SOLUTIONS IN