Help RSS API Feed Maltego Contact                        

Domain > insta.reduct.ru

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

https://www.us-cert.gov/security-publications/GRIZ...    

Files that talk to insta.reduct.ru

MD5A/V
ae38389caf1143dd71719265327f764d
e1c27e9a7888dc35e8d07282eebe905d
f79ec84df5c3eed2d15d3ed38b46eacf
2078ad3263d8f3fa596bb665229944e1
29bdd6a89bdc9395c4ef4dec4070ff49[W97M.Dropper.DL] [W97M.Dropper.DL] [W2KM_FAREIT.DDZ] [Trojan.Script.Stealer.ebqncn] [W97M.Dropper.DL] [Troj/DocDl-CIU] [W97M.Dropper.DL] [W2KM_FAREIT.DDZ] [Artemis!CA82B694C2E0] [W97M/Dropper] [TrojanDropper:O97M/Farheyt.C] [HEUR.VBA.Trojan.e] [W97M.Dropper.DL] [Artemis!CA82B694C2E0] [WM/Fareit.GTZ!tr] [virus.office.obfuscated.1]

DNS Resolutions

DateIP Address
2016-04-18146.185.161.126 (ClassC)
2018-04-04109.70.26.37 (ClassC)
2018-11-0272.52.4.90 (ClassC)
2019-07-1991.195.240.126 (ClassC)
2019-09-0591.195.240.210 (ClassC)
2019-11-26185.53.179.29 (ClassC)
2019-11-2752.50.65.32 (ClassC)
2019-12-0891.195.240.136 (ClassC)
2020-05-1475.2.111.214 (ClassC)
2021-07-2764.190.63.136 (ClassC)
2024-04-24185.189.15.13 (ClassC)
2025-08-0162.122.170.171 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information