Help RSS API Feed Maltego Contact                        

Domain > war.winxps.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to war.winxps.com

MD5A/V
b38b2eae598ee1f5204ef5198d16dcdf[Win32/FakeDoc_i] [Trojan.DownLoader6.27583] [Win.Trojan.Dropped-1456] [Mal/Behav-112] [Trojan-Dropper.Win32.Demp.albu] [Trojan.SuspectCRC] [Trojan.Dropper.FW] [Trojan*Win32/Zoxpng.B] [Win32/DH{fgA1DyAkIgk}] [Trojan.400064A1000000005.mg] [TR/Zusy.10347.6]
86fd00eb911c241c9367bf0d4c079300[Win32/FakeDoc_i] [TR/Zusy.10347.7] [Trojan.400064A1000000005.mg] [Win32/DH{fgA1DyAkIgk}] [Trojan*Win32/Zoxpng.B] [Trojan.Dropper.FW] [W32/Trojan.ODQU-1785] [Trojan.SuspectCRC] [Trojan-Dropper.Win32.Demp.alby] [Mal/Behav-112] [Win.Trojan.Dropped-1456] [Trojan.DownLoader6.27595]
5048a96b8a0abb9dc9c068e16373598b[Win32/FakeDoc_i] [Trojan.DownLoader6.27605] [Win.Trojan.Dropped-1456] [Mal/Behav-112] [Trojan-Dropper.Win32.Demp.albz] [Trojan.SuspectCRC] [W32/Trojan.GZOE-8221] [Trojan.Dropper.FW] [Trojan*Win32/Zoxpng.B] [Win32/DH{fgA1DyAkIgk}] [Trojan.400064A1000000005.mg] [TR/Zusy.10347.11]
33d385520a2677cb4232d25fdd49407f[Win32/FakeDoc_i] [Trojan.DownLoader6.27583] [Win.Trojan.Dropped-1456] [Mal/Behav-112] [Trojan-Dropper.Win32.Demp.albt] [Trojan.SuspectCRC] [Trojan.Dropper.FW] [Trojan*Win32/Zoxpng.B] [Win32/DH{fgA1DyAkIgk}] [Trojan.400064A1000000005.mg] [TR/Zusy.10347.5]
1ec70a07ec2aa63ba568160d22a78611[Win32/FakeDoc_i] [Trojan.DownLoader6.27594] [Win.Trojan.Dropped-1456] [Mal/Behav-112] [Trojan-Dropper.Win32.Demp.albw] [Trojan.SuspectCRC] [Trojan.Dropper.FW] [Trojan*Win32/Zoxpng.B] [Win32/DH{ADUPICQiCQ}] [Trojan.400064A1000000005.mg] [TR/Zusy.10347.9]
08d6daeb84ac0f5c271f52e734b53cda[Win32/FakeDoc_i] [Trojan.DownLoader6.2084] [Win.Trojan.Dropped-1456] [Mal/Behav-112] [Trojan-Dropper.Win32.Demp.alcw] [Trojan.SuspectCRC] [W32/Trojan.IKDY-4400] [Trojan.Dropper.FW] [Trojan*Win32/Zoxpng.B] [Malware_fam.NB] [Win32/DH{fgA1DyAkIgk}] [Trojan.400064A1000000005.mg]
6eefa1529bcf192f7ccea1f5aeefe707[TR/Strictor.650.2] [Trojan.400064A1000000005.mg] [Win32/DH{fgA1DyAkIgk}] [Trojan*Win32/Zoxpng.B] [Trojan.Dropper.FW] [Trojan.SuspectCRC] [Trojan-Dropper.Win32.Demp.alca] [Mal/Behav-112] [Trojan.DownLoader6.2084] [Win32/FakeDoc_i]
e64d1b662f98aa977e0dbb424b2c344d[Win32/FakeDoc_i] [Trojan.DownLoader6.27581] [Win.Trojan.Dropped-1456] [Mal/Behav-112] [Trojan-Dropper.Win32.Demp.albv] [Trojan.SuspectCRC] [Trojan.Dropper.FW] [Trojan*Win32/Zoxpng.B] [Win32/DH{ADUPICQiCQ}] [Trojan.400064A1000000005.mg] [TR/Zusy.10347.4]

Whois

PropertyValue
Email 895BA885AD3E4EC7B4A8A0A87C4F961F.PROTECT@WHOISGUARD.COM
NameServer NS2.VIRUSSINKHOLE.NET
Created 2015-03-21 00:00:00
Changed 2015-03-22 00:00:00
Expires 2016-03-21 00:00:00
Registrar ENOM, INC.