Help RSS API Feed Maltego Contact                        

Domain > zjhao.dtdns.net

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://researchcenter.paloaltonetworks.com/2016/01...    
http://www.trendmicro.it/media/wp/fakem-rat-whitep...    
http://www.welivesecurity.com/wp-content/uploads/2...    
https://otx.alienvault.com/pulse/56a5aa2867db8c6aa...    

Files that talk to zjhao.dtdns.net

MD5A/V
8dca8e66a5445f460e72137a7c96b1ac[Exploit/W32.CVE-2012-0158.X] [TROJ_ARTIEF.ABD] [Exploit.Win32.CVE-2012-0158.l] [Exploit.Win32.CVE-2012-0158!IK] [UnclassifiedMalware] [Exploit.CVE2012-0158.13] [EXPL_CVE20120158] [Exp/20120158-A] [Exploit:Win32/CVE-2012-0158.N] [Trojan.Win32.A.EX-CVE-2012-0158.109587] [Exploit.Win32.CVE-2012-0158]
8cb9f8f4e2b950549f552d0e965bb886
049e20ccb8e921095db7c1680c3beea4[WS.Reputation.1] [BKDR_FAKEM.SMC] [Troj/Poison-EJ] [UnclassifiedMalware] [W32/Trojan.NQKY-7256] [VirTool:Win32/Obfuscator.AID] [Trojan.Win32.Webprefix] [Trj/CI.A]

Whois

PropertyValue
NameHostmaster Manager
Organization North Loop Networks
Email hostmaster@northloopnetworks.com
Address 1807 3rd st ne
Zip Code 55418
City Minneapolis
State MN
Country US
Phone +1.6123855501
NameServer NS2.DTDNS.COM
Created 1999-03-08 06:00:00
Changed 2014-01-22 08:12:56
Expires 2015-03-08 00:00:00
Registrar DNC Holdings, Inc.