Help RSS API Feed Maltego Contact                        

Domain > esg.nhs.net

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to esg.nhs.net

MD5A/V
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
c7bf064346fafe4fc55b43abcfe96b00[HW32.CDB.E6f3] [Backdoor.Kelihos.r3] [Backdoor.Hlux!zUFIktBYK3s] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djfw] [Trojan.Win32.S.PSW-Tepfer.835600.AM] [UnclassifiedMalware] [BackDoor.Slym.14049] [Mal/Kelihos-A] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [W32/Trojan.QQUO-1304] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUC] [Trojan.Win32.Kryptik.BZIX]
1be1d71fb76a46afa15fc4ee16ac1d11[HW32.CDB.39c9] [Backdoor.Hlux.r3] [RDN/q2z-art6.s_318383!a] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnzz] [Backdoor.Hlux!eaxFLDBT/AM] [Mal/FakeAV-UF] [BackDoor.Slym.13348] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[Backdoor]/Win32.Hlux] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Trojan.Win32.Kryptik.CASL]
274256a090dcd9ee3a406cf95cd18d47[HW32.CDB.398d] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dpru] [Backdoor.Hlux!RvRbcitOmAk] [TrojWare.Win32.Kryptik.CAUP] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CAXO] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CAXO]
981a83b3f0d4a74b0b38becda7c8cb9c[Artemis!981A83B3F0D4] [Trojan.Win32.Crypt.cxd] [W32/Yakes.FHJN!tr] [Win32/Cryptor]
86122dbf79ec3a983d9ecb120470a00f[Artemis!86122DBF79EC] [Trojan.Win32.Yakes.fhyw] [TR/Changeling.A.3509] [Win32.Trojan.Yakes.Dyfy] [Trojan.Win32.Spammer] [Win32/Cryptor] [Trojan.Win32.Spammer.bAC] [Win32/Trojan.Multi.daf]
0f85c93f59bf57bcc7573e7f8e373c21[HW32.CDB.47eb] [Backdoor.Hlux.r3] [Backdoor.Hlux!kSgAszTjhZg] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dmru] [Trojan.Win32.Hlux.cwzljo] [Mal/FakeAV-UF] [BackDoor.Slym.13348] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.VZXF-1556] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Trojan.Win32.Kryptik.CASL]

Whois

PropertyValue
NameServer ANS2.CW.NET
Created 1999-09-17 00:00:00
Changed 2013-09-18 00:00:00
Expires 2018-09-17 00:00:00
Registrar NETWORK SOLUTIONS, L

DNS Resolutions

DateIP Address
2013-05-1662.208.144.158 (ClassC)
2024-06-22150.70.226.147 (ClassC)
2024-08-29213.161.89.71 (ClassC)
2025-01-2552.101.89.2 (ClassC)
2025-04-1652.101.99.0 (ClassC)
2025-05-2052.101.89.1 (ClassC)
2025-06-0252.101.89.0 (ClassC)

Subdomains

DateDomainIP
web.nhs.net2025-05-1751.132.65.86
esg.nhs.net2013-05-1662.208.144.158
esi.nhs.net2025-05-2420.40.108.247
reader.nhs.net2025-04-3020.40.108.246
lft.nhs.net2025-05-1720.49.211.240
www.nhs.net2025-01-2520.49.233.54
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information