Help RSS API Feed Maltego Contact                        

Domain > winup.publicvm.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to winup.publicvm.com

MD5A/V
6ef32f8ed9e6db30a4d0487b21f7775c[BackDoor-NJRat!6EF32F8ED9E6] [Trojan.0000000000/480000.mg] [MSIL/Bladabindi.AS] [Win32/Hedo] [Backdoor.Ratenjay] [Backdoor*MSIL/Bladabindi.AJ] [Trojan.MSIL.Bladabindi] [Trojan.Bladabindi.Win32.37147] [Trojan.MSIL.Disfa.bop] [BKDR_BLADABI.SMC] [Troj/Bbindi-W] [Trojan.MSIL.Disfa] [Win.Backdoor.Bladabindi-1] [Trojan.DownLoader18.23009]
9b6de6b3a099b1a88ca744f6829235d9[VBS/Downloader]
2d7e9c2fe9cda9d492cd1d0de61f5504[Win32.Trojan.WisdomEyes.151026.9950.9952] [SAPE.Heur.9C4C7] [BehavesLike.Win32.Backdoor.tc]
017cd8dfe9841068445782a797cc9a77
391ebc64d3db2a06d77777f176a1402c[Troj.Dropper.Vbs!c] [Worm:VBS/Jenxcus.K] [VBS/Downloader] [Win32/Trojan.Dropper.c85]
7f3518f47cd8603191b2a1c21c35a644
171dabfb315dec64e52691e93c432300[Troj.Dropper.Vbs!c] [VBS/Jenxcus.HM] [Worm:VBS/Jenxcus.K] [VBS/Downloader] [Win32/Trojan.Dropper.c85]

Whois

PropertyValue
Email jchen@dnsexit.com
NameServer NS11.DNSEXIT.COM
Created 2007-07-19 00:00:00
Changed 2014-08-04 00:00:00
Expires 2015-07-19 00:00:00
Registrar NETDORM, INC. DBA DN