Help RSS API Feed Maltego Contact                        

Domain > dedydns.ns01.us

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

https://raw.githubusercontent.com/fireeye/pivy-rep...    
https://www.fireeye.com/resources/pdfs/fireeye-poi...    

Files that talk to dedydns.ns01.us

MD5A/V
e84853c0484b02b7518dd683787d04fc[Trojan/W32.Small.40960.BBF] [BackDoor-AMQ.dr] [Trojan.Win32.Inject.nctgw] [Backdoor.Beasty] [BKDR_POISON.SME4] [Troj/Skcirb-A] [UnclassifiedMalware] [Trojan.DownLoader5.52730] [BDS/Poison.E.675] [Backdoor/Inject.acc] [Backdoor:Win32/Poison.BP] [Backdoor/Win32.Inject] [Backdoor.Inject] [Backdoor.Win32.Inject] [W32/Injector.VQF!tr] [Backdoor*Win32/Poison.BP]
291976ba47cec4b3c0e31cbc50ab1923[Backdoor*Win32/Plugx.A]
75fb8c95c71fce20912db38934eccaf1[Luhe.Fiha.A]

Whois

PropertyValue
NameChangeIP.com
Organization ChangeIP.com
Email noc@changeip.com
Zip Code 33131
City Miami
State FL
Country US
Phone +1.8007913367
Fax +1.7862246593
NameServer NS2.CHANGEIP.ORG
Created 2002-04-24 19:27:24
Changed 2013-04-23 21:08:29
Expires 2015-04-24 01:59:59
Registrar NETWORK SOLUTIONS IN