Help RSS API Feed Maltego Contact                        

Domain > mkis.org

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://blog.fox-it.com/2016/03/24/website-of-secur...    
http://www.theregister.co.uk/2016/03/24/ec_council...    
https://otx.alienvault.com/pulse/56f410edaef92167c...    
https://otx.alienvault.com/pulse/56f4314aaef92167c...    
http://www.malware-traffic-analysis.net/2016/03/21...    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    

Files that talk to mkis.org

MD5A/V
1fc4c42ffcb966e5df58685046f4a2f2[Ransom.TeslaCrypt] [Trojan.AVKill.60638] [Trojan/Win32.Teslacrypt]
7f58ecf0d5f3842521bae6271715b925[Win32.Trojan.WisdomEyes.151026.9950.9999]
4f93a11fa69c7c067b2d6d43c76069d5
5f6f6ab33d9673e5856a9328cde174f6[Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_CRYPTESLA.YUYAJW] [Trojan.Win32.Yakes.phne] [Trojan.AVKill.60640] [Ransom_CRYPTESLA.YUYAJW] [BehavesLike.Win32.TeslaCrypt.fh] [Trojan.Yakes.idz] [TR/Crypt.Xpack.425559] [Trojan/Win32.Yakes] [Trojan/Win32.Teslacrypt] [Win32.Trojan.Filelocker.Sysl]
ff62756e3e36205c6459924ac580e074[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [trojan.js.downloader.1]
a1425da461babbf6e60368f19f6d5f7c
9eb88700b1a7d1c4eceb2168a3b956f5[HEUR.JS.Trojan.b] [JS/TrojanDownloader.Nemucod.KZ] [Js.Trojan.Raas.Auto] [trojan.js.downloader.1]
e7533bd18dab2fdc7d60a4d28cf3ad7a[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [trojan.js.downloader.1]
e37a97499e04c7c33b7a8e5a62f527c3[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [trojan.js.downloader.1]
721708e86afab9bc80c00981f6b0a564[Trojan.Kovter] [Trojan.AVKill.60640] [BehavesLike.Win32.PWSZbot.dc] [Mal/Behav-116] [Trojan.Graftor.D432EA] [W32/TeslaCrypt.I!tr] [Ransom_r.S]
6cfae30b371024d068d3a0fa6ea66535[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [trojan.js.downloader.1]
3c0b884e2e14f1e0d3172f362769a32a[Ransomware-FHE!3C0B884E2E14] [Trojan.SelfDelete] [Win32.Trojan.WisdomEyes.151026.9950.9999] [BehavesLike.Win32.Autorun.fh]
b1fc56026c3fcfb3e2479903c7a55382[HW32.Packed.6D76] [Suspect-AN!B1FC56026C3F] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.10000] [Suspicious.Cloud.5] [Win32/Filecoder.TeslaCrypt.K] [Trojan-Ransom.Win32.Bitman.tte] [Win32.Trojan.Bp-ransomware.Ejqz] [BehavesLike.Win32.PWSZbot.fc] [Trojan/Win32.Teslacrypt] [Ransom_r.AT]
b8ac4c1f9caf7b35303979e02245c2a3[Win32.Trojan.WisdomEyes.151026.9950.9999]
7f1082f46957dd390d8ee87f8f64a29e[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b]
bc373d4b10ecf7b2af813e6b12e057bb[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [Js.Trojan.Raas.Auto] [trojan.js.downloader.1]
9d61962457919c7ef30a93f76e6f4ae5[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [Js.Trojan.Raas.Auto] [trojan.js.downloader.1]
839256d6eeff6e79a8e9bc09cf25897f[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [Js.Trojan.Raas.Auto] [trojan.js.downloader.1]
237b232f77676049b734acfa37d3d557[JS/TrojanDownloader.Nemucod.KZ] [HEUR.JS.Trojan.b] [trojan.js.downloader.1]
e82d3cc05e0e26bea812771d7bdbe6bf[JS/TrojanDownloader.Nemucod.KZ] [Js.Trojan.Raas.Auto] [HEUR.JS.Trojan.b] [trojan.js.downloader.1]

Whois

PropertyValue
NameKevin Cole
Organization Hi-Tek Design Group UK
Email domains@hi-tek.co.uk
Zip Code PE19 1PQ
City St Neots
State Cambs
Country GB
Phone +44.441480404330
NameServer dns02.gpn.register.com
Created 2005-03-24 13:03:54
Changed 2015-12-08 23:09:05
Expires 2016-03-24 13:03:54
Registrar Register.com, Inc.

DNS Resolutions

DateIP Address
2016-03-25208.91.197.194 (ClassC)
2019-09-0650.87.127.96 (ClassC)
2026-02-0751.145.124.219 (ClassC)
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information