Help RSS API Feed Maltego Contact                        

Domain > vnexpress.net

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Files that talk to vnexpress.net

MD5A/V
8bc66e28368dde288d802e3987ddede2[Win.Trojan.Ultrasurf]
007f55e5b2892c8e0f0885f96f90be5b[Tool.Proxy.2518]
75f9ec3d295358444c9ed0dc3782a890[W32.TempQfjbatLnr.Trojan] [Trojan/W32.FakeAV.95744] [Trojan.Renos.PG] [Downloader-CEW.ay] [Trojan.Downloader] [Trojan/Downloader.CodecPack.atjv] [Trojan.Win32.Kryptik.cfzwf] [Trojan.FakeAV] [Kryptik.TF] [TROJ_KRYPTK.SMCA] [Trojan.Downloader-112966] [Trojan.DL.CodecPack!aiGfVOTDYP0] [Trojan.Win32.Downloader.95744.BG] [TrojWare.Win32.Kryptik.BBTC] [TR/Dldr.CodecPack.atmj] [Mal/FakeAV-NJ] [Trojan/Win32.CodecPack.sjt[Downloader]] [TrojanDownloader:Win32/Renos.PG] [Win-Trojan/Fakeav.95744.HH] [Trojan-Downloader.2521] [Win32/TrojanDownloader.FakeAlert.BBT] [PE:Trojan.Renos!6.134] [Trojan.Win32.Art]
768cc25208c7b5286b18246941d65c0e[Trojan.Renos.OE] [Downloader-CEW.ay] [Trojan-Downloader] [Trojan/Downloader.CodecPack.atic] [Trojan.DL.CodecPack!jKZMu7p5V+Q] [Win32/TrojanDownloader.FakeAlert.BBT] [Trojan.FakeAV] [W32/Kryptik.TF] [TROJ_FAKEAV.SM94] [Trojan.Downloader-109556] [Trojan-Downloader.Win32.CodecPack.atic] [Trojan.Win32.Downloader.96256.AV] [Trojan-Downloader.SuspectCRC!IK] [TrojWare.Win32.Kryptik.BBTC] [Trojan.DownLoader2.58892] [TR/Fakealert.OM.1] [Win32/Renos.CGA] [TrojanDownloader.CodecPack.ccr] [TrojanDownloader:Win32/Renos.PG] [Win-Trojan/Fakeav.96256.NJ] [TrojanDownloader.CodecPack.atic] [Trojan.FakeAV!rem] [Trojan-Downloader.SuspectCRC] [W32/CodecPack.AY!tr.dldr]
a58a1521443184596a93822f853c9992
81f0d17de768b98fc167f42d3ceff415
5772ce7e137df0a19dd3a98000abe6c7[Trojan.Renos.OE] [Downloader-CEW.ay] [Trojan/Downloader.CodecPack.atic] [Trojan-Downloader] [Trojan.DL.CodecPack!jKZMu7p5V+Q] [Win32/TrojanDownloader.FakeAlert.BBT] [Trojan.FakeAV] [W32/Kryptik.TF] [TROJ_FAKEAV.SM94] [Trojan.Downloader-109556] [Trojan-Downloader.Win32.CodecPack.atic] [Trojan.Win32.Downloader.96256.AV] [UnclassifiedMalware] [Trojan.DownLoader2.58892] [TR/Fakealert.OM.1] [Trojan-Downloader.SuspectCRC!IK] [Win32/Renos.CGA] [TrojanDownloader.CodecPack.ccr] [TrojanDownloader:Win32/Renos.PG] [Win-Trojan/Fakeav.96256.NJ] [TrojanDownloader.CodecPack.atic] [Trojan.FakeAV!rem] [Trojan-Downloader.SuspectCRC] [W32/CodecPack.AY!tr.dldr]
1acf24bd806d4284dc02f7796e569260[Trojan.Packed-1518]
d77649b6abc7e23a2f14b80e06504be1
59bcab797af51b6992e34e0f69c6655d[W32.TempOfvbatLnrA.Trojan] [Trojan-Downloader/W32.CodecPack.97280.D] [Trojan-Downloader.Win32.CodecPack!O] [Trojan.Renos.PG] [Downloader-CEW.ay] [Trojan.Downloader] [Trojan.FakeAV.Win32.232581] [Trojan/Downloader.CodecPack.atdt] [Trojan.Win32.CodecPack.crgap] [Trojan.FakeAV] [Kryptik.TF] [Trojan.Delf-10443] [Trojan-Downloader.Win32.CodecPack.atdt] [Trojan.DL.CodecPack!Mek2nGWmSCI] [Trojan.Win32.Downloader.97280.BK] [TrojWare.Win32.Kryptik.BBTC] [Trojan.DownLoader2.57910] [TROJ_FAKEAV.SM94] [Mal/FakeAV-NJ] [TrojanDownloader.CodecPack.cby] [Trojan/Win32.CodecPack.sjt[Downloader]] [TrojanDownloader:Win32/Renos.PG] [Trojan/Win32.FakeAV] [Troja]
42fdc23a2d6c6d3b40d00dae0c5a5755[Hupigon.Lyud] [W32/Trojan.YPYH-6953] [TR/Rogue.2162373] [Riskware/UltraSurf] [W32/Trojan2.ASYO] [NetTool.Win32.UltraSurf.c] [Backdoor.Hupigon]
76c7792b8d41e2affbe5c3922e077803[Win.Trojan.Ultrasurf] [BackDoor.Bifrose.OKB]
b8546576ea66a1a26a2d6bd26a2a60e2[Win.Trojan.Ultrasurf] [TR/Kazy.19678] [BackDoor.Bifrose.OKB]
c29d327f1774119534d05ac30efb9b72[W32/Backdoor.KPPZ-8765] [Tool.Proxy.2518] [Riskware/UltraSurf] [W32/Backdoor2.CZUJ] [Trojan-Downloader.E.TR] [NetTool.Win32.UltraSurf.c]
9c71057b1d47eb025336e230d30f2eb3
11bc744801b516d0b84fba5850ec8789[Heur.W32] [W32/Trojan.WRHU-4536] [Win.Trojan.Ultrasurf] [Trojan.DownLoader10.1944] [Riskware/UltraSurf] [NetTool.Win32.UltraSurf.a] [HackTool.Proxy] [win32legacy/Bifrose.BMBS]
0db359059aa8e920249a7b6e03da7b84[Win.Trojan.Ultrasurf] [BackDoor.Bifrose.OKB]
83514ea57db4f5fbe1368c049f570553
0b898e8748d742ba589168c1757f73c2
4d9df7345743666facfdd057bd83ea45[JS:Trojan.JS.Likejack.A] [JS:Trojan.JS.Likejack.A] [JS/Faceliker.H] [JS/Faceliker.a] [Trojan.Malscript!html] [Fbjack.C] [JS:Trojan.JS.Likejack.A] [JS:Trojan.JS.Likejack.A] [TrojWare.JS.TrojanClicker.FbLiker.A] [JS:Trojan.JS.Likejack.A] [JS/Faceliker.aoua] [JS/Faceliker] [Mal/FBJack-R] [TrojanClicker:JS/Faceliker.A] [JS:Trojan.JS.Likejack.A] [Trojan-Clicker.JS.Faceliker] [JS/FBJack.I!tr] [JS/Clicker]

Whois

PropertyValue
NamePERFECT PRIVACY, LLC
Email 0de724c30a1612334243690fc2dc1acd@domaindiscreet.com
Address 12808 Gran Bay Pkwy West
Zip Code 32258
City Jacksonville
State FL
Country US
Phone +1.9027492701
NameServer ns2.gate.vn
Created 2000-08-15 13:59:57
Changed 2000-08-15 04:00:00
Expires 2018-08-15 00:00:00
Registrar Register.com, Inc.

DNS Resolutions

DateIP Address
2009-10-30210.245.86.184 (ClassC)
2009-10-30210.245.86.192 (ClassC)
2009-10-30210.245.86.193 (ClassC)
2012-11-02180.148.142.66 (ClassC)
2012-11-02180.148.142.139 (ClassC)
2012-12-23111.65.248.148 (ClassC)
2013-06-2163.220.1.56 (ClassC)
2014-01-08111.65.248.136 (ClassC)
2014-06-24111.65.248.142 (ClassC)
2014-07-22111.65.248.174 (ClassC)
2014-09-16180.148.142.98 (ClassC)
2014-09-16180.148.142.99 (ClassC)
2014-09-16180.148.142.95 (ClassC)
2014-09-16180.148.142.96 (ClassC)
2014-09-16118.69.251.4 (ClassC)
2014-09-16210.245.31.21 (ClassC)
2014-09-16180.148.142.97 (ClassC)
2014-09-16118.69.251.6 (ClassC)
2014-09-16210.245.31.22 (ClassC)
2015-01-11111.65.248.132 (ClassC)
2015-03-06180.210.207.160 (ClassC)
2015-03-07111.65.248.153 (ClassC)
2015-03-07111.65.248.157 (ClassC)
2015-03-07180.148.142.45 (ClassC)
2015-03-08180.148.134.72 (ClassC)
2015-03-08111.65.248.146 (ClassC)
2015-03-10180.148.131.150 (ClassC)
2015-03-13111.65.248.135 (ClassC)
2015-03-13111.65.248.173 (ClassC)
2015-03-15111.65.242.193 (ClassC)
2015-03-17111.65.248.137 (ClassC)
2015-03-29180.148.142.51 (ClassC)
2015-03-30111.65.248.171 (ClassC)
2015-03-31111.65.248.166 (ClassC)
2018-10-14111.65.248.132 (ClassC)
2025-08-10111.65.250.2 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
sohoa.vnexpress.net2025-07-29111.65.249.59
e.vnexpress.net2025-07-30111.65.250.15
s-logperf.vnexpress.net2025-08-05180.148.129.21
giaitri.vnexpress.net2025-07-29111.65.249.59
evan.vnexpress.net2014-06-28180.148.142.51
thethao.vnexpress.net2025-07-29111.65.249.59
autodiscover.vnexpress.net2024-07-3052.96.164.88
usi-saas.vnexpress.net2025-07-29111.65.248.197
ps.vnexpress.net2025-08-06111.65.248.177
gw.vnexpress.net2025-08-05180.148.132.75
www.vnexpress.net2025-08-04111.65.249.59
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information