Help RSS API Feed Maltego Contact                        

Domain > nhs.uk

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as not malicious

Files that talk to nhs.uk

MD5A/V
292ad75fbab2288a453c7f7db162eed0[HW32.CDB.A2b5] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux!xuwpKhCjMA8] [WS.Reputation.1] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqzg] [UnclassifiedMalware] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.HATR-5126] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.Aj] [Win32/Trojan.112]
833009a54c295a72ad64ab0941f482fe[Suspicious.Cloud.5] [Kryptik.CCFN] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [TR/Crypt.EPACK.9220] [Heuristic.BehavesLike.Win32.Suspicious-BAY.K] [Mal/FakeAV-UF] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GIF] [Trojan.Win32.Kryptik.BZOO]
860dd245cbecd656df047b97456d0ad0[HW32.CDB.9069] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.AntiWare!1.9D9B] [W32/Kelihos.KK@mm]
abe19665682ad3e10ba09471775c150b[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E]
1E3B4C2E93239CCE2B9793C514BE4767
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
9d52b8bb0f293d6adf237b964078d566[HW32.CDB.63e2] [Backdoor.Hlux.r3] [Trojan.Win32.Kryptik.cwzoag] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnld] [Backdoor.Hlux!zgxT2bGF2IQ] [UnclassifiedMalware] [Trojan.Packed.26544] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [W32/Trojan.HFNJ-2013] [Heur.Trojan.Hlux] [Trojan.Win32.Kryptik.CASL] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.CASL!tr.bdr] [Crypt_s.GMK]
0f85c93f59bf57bcc7573e7f8e373c21[HW32.CDB.47eb] [Backdoor.Hlux.r3] [Backdoor.Hlux!kSgAszTjhZg] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dmru] [Trojan.Win32.Hlux.cwzljo] [Mal/FakeAV-UF] [BackDoor.Slym.13348] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.VZXF-1556] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Trojan.Win32.Kryptik.CASL]
14a2291e48bd02b528d0c018fee03e86[HW32.CDB.A3eb] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [Trojan.Packed.26581] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.XULT-7356] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.CBCJ!tr] [Crypt_s.GNC]
0d42b2efd88f95f4d5af60b548d7290a[FraudTool.Security] [W32/Tepfer.MQ!tr] [Win32/Cryptor]
e6d960bf587f5cb1497520fe716f1fb4[Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [PE:Malware.XPACK/RDM!5.1]
2bb1e0a0c6f6082824d6fd9d4095bcd0[Malware.Packer.SCD] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.BDPK!tr]
888cf6888e476ab89daef8385b7ae881[HW32.CDB.B8e4] [Backdoor.Hlux.r3] [Trojan.Win32.Hlux.cxcinh] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djfk] [Backdoor.Hlux!Jm3TflIszzA] [Mal/Kelihos-A] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHF] [Trojan.Win32.Kryptik.BZIX]
639dd203d5ceeee335bccca69d4e8050[HW32.CDB.9a0b] [Backdoor.Hlux.r3] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djdi] [Backdoor.Hlux!dcOGw3a4azY] [Mal/Kelihos-A] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHF] [Trojan.Win32.Kryptik.BZIX]
9aa81fa022c0b159758efa1bda4f9be1[HW32.CDB.A20b] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dthd] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Win32.Backdoor.Hlux.Hwcu] [Trojan.Crypt3] [W32/Kryptik.BD!tr] [Crypt3.OHL] [Backdoor.Win32.Hlux.Ac]
971d6821a96e8f41da919db02ebc60da[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Yakes] [W32/Kelihos.BCEB!tr]
db5b440f6419090cd9567f3b33fd3ced[Malware.Packer.HGX1] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
8889d486a91b3448e8b429ef99a536d0[HW32.CDB.1cb9] [Trojan.Win32.Kryptik.cwzoai] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnla] [Backdoor.Hlux!yM05ScK42o0] [Trojan.Packed.26544] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.DNLA!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
d38a3646d932d062528aea48d2122315
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]

Whois

PropertyValue
Organization Nominet UK
Email td@nominet.org.uk
NameServer DNS2.NIC.UK
Created 1985-07-24 00:00:00
Changed 2015-09-01 00:00:00

DNS Resolutions

DateIP Address
2009-09-13217.64.234.29 (ClassC)
2012-02-04109.123.69.6 (ClassC)
2012-11-26217.64.234.65 (ClassC)
2013-05-1383.98.30.176 (ClassC)
2013-08-10217.33.237.6 (ClassC)
2013-08-2031.222.155.36 (ClassC)
2013-08-24213.229.71.78 (ClassC)
2013-09-1184.45.124.80 (ClassC)
2013-11-10193.195.78.74 (ClassC)
2014-04-1091.151.211.148 (ClassC)
2014-05-3186.28.79.152 (ClassC)
2014-06-0685.232.51.138 (ClassC)
2014-06-06109.169.78.149 (ClassC)
2014-06-23109.123.103.129 (ClassC)
2014-06-2389.200.142.163 (ClassC)
2014-06-2480.193.119.90 (ClassC)
2014-06-24193.62.94.223 (ClassC)
2014-06-2495.130.103.83 (ClassC)
2014-06-2454.228.50.73 (ClassC)
2014-06-2494.236.93.178 (ClassC)
2014-06-25217.33.237.21 (ClassC)
2014-07-02212.188.192.232 (ClassC)
2014-07-02213.121.240.52 (ClassC)
2014-08-11188.121.60.90 (ClassC)
2014-10-1985.232.51.231 (ClassC)
2014-10-19162.13.38.76 (ClassC)
2014-10-1983.138.161.2 (ClassC)
2014-10-1992.52.104.22 (ClassC)
2014-10-19195.224.12.39 (ClassC)
2014-10-30195.89.24.39 (ClassC)
2014-11-0231.222.191.107 (ClassC)
2014-11-05193.61.119.8 (ClassC)
2014-11-05194.168.132.153 (ClassC)
2014-11-07161.17.0.33 (ClassC)
2014-11-0789.145.71.234 (ClassC)
2014-11-07162.13.38.52 (ClassC)
2014-11-0783.138.144.227 (ClassC)
2014-11-07212.250.43.28 (ClassC)
2014-11-0986.28.79.146 (ClassC)
2014-12-03149.255.61.6 (ClassC)
2014-12-0931.222.164.74 (ClassC)
2024-07-1594.245.104.73 (ClassC)
2025-05-174.158.93.42 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
111.nhs.uk2023-08-26184.28.198.97
staging.111.nhs.uk2023-08-2692.122.92.43
www.111.nhs.uk2024-07-25184.28.198.97
www1.nhs.uk2025-04-18217.64.234.65
apply-for-care-identity.care-identity-service2.nhs.uk2022-02-23108.159.227.12
mail2.nhs.uk2014-06-1862.208.144.158
what0-18.nhs.uk2025-05-1245.157.40.144
www.what0-18.nhs.uk2024-09-12104.22.71.250
covid-19.nhs.uk2023-12-2013.227.74.93
www.covid-19.nhs.uk2024-07-013.163.24.74
covid19.nhs.uk2023-12-073.163.24.96
dev.register.covid19.nhs.uk2024-11-0518.65.229.80
dev.covid19.nhs.uk2025-02-113.163.24.54
bau.dev.covid19.nhs.uk2024-10-08108.138.94.5
cfa.nhs.uk2024-08-2952.56.177.58
northumbria.nhs.uk2024-09-29107.154.115.122
www.northumbria.nhs.uk2025-04-3045.60.12.138
www.hpa.nhs.uk2014-09-08184.84.180.9
hra.nhs.uk2024-12-0635.178.153.235
www.hra.nhs.uk2024-03-1118.161.6.66
nhsbsa.nhs.uk2024-11-26212.84.170.1
connect-a.nhsbsa.nhs.uk2024-12-29213.105.55.133
api.card-payment-service.nhsbsa.nhs.uk2024-11-2418.134.118.83
buy-prescription-prepayment-certificate.nhsbsa.nhs.uk2024-11-2418.132.152.185
request-a-form.nhsbsa.nhs.uk2024-11-2418.135.125.60
cms.nhsbsa.nhs.uk2025-05-16185.181.127.66
compass.nhsbsa.nhs.uk2025-05-10213.107.187.134
tst.api.cvd.pharmacy.mys.nhsbsa.nhs.uk2024-05-3035.179.58.170
connect.nhsbsa.nhs.uk2025-04-30213.105.55.133
single-user-view.nhsbsa.nhs.uk2024-11-243.9.32.129
www.nhsbsa.nhs.uk2025-01-16185.181.127.71
npsa.nhs.uk2025-03-0285.232.51.147
author.metadata.nhs.uk2024-09-04204.246.191.26
nta.nhs.uk2025-04-26151.101.2.30
uhdb.nhs.uk2025-04-2851.11.17.98
myid.uhb.nhs.uk2024-03-1018.133.25.144
eastamb.nhs.uk2023-08-2751.145.101.99
uhmb.nhs.uk2025-05-06185.217.40.160
ebusiness.dpb.nhs.uk2025-05-07213.107.187.140
hwstaffhub.nhs.uk2025-05-0551.11.17.98
clatterbridgecc.nhs.uk2023-08-27178.238.129.79
westlondonhcc.nhs.uk2025-05-0251.104.28.65
www.commercialsolutions-sec.nhs.uk2024-08-013.248.82.25
www.beaconsidehc.nhs.uk2014-12-0283.223.106.8
ghc.nhs.uk2025-04-2962.182.18.204
datagov.ic.nhs.uk2014-06-2754.230.89.47
ncic.nhs.uk2025-05-0245.60.74.41
www.transformingcancercaremc.nhs.uk2015-03-18162.159.253.121
noc.nhs.uk2013-12-10109.71.120.10
northoftyneapc.nhs.uk2025-05-0445.60.20.138
www.northoftyneapc.nhs.uk2024-12-2945.60.12.138
ebpc.nhs.uk2025-04-25185.230.63.107
shsc.nhs.uk2025-02-0935.178.153.235
jarvis.shsc.nhs.uk2024-09-1718.161.6.65
www.shsc.nhs.uk2024-04-23204.246.191.34
bwc.nhs.uk2025-04-2551.11.17.97
intranet.bwc.nhs.uk2025-04-2551.104.237.235
northmid.nhs.uk2024-04-2651.11.17.97
aovpn.northmid.nhs.uk2025-01-1620.90.157.46
nwpgmd.nhs.uk2025-05-0820.68.241.136
gpathand.nhs.uk2023-08-2799.80.231.80
england.nhs.uk2024-07-143.10.95.29
tabtest.data.england.nhs.uk2025-04-2652.151.125.1
content.qilearning.england.nhs.uk2024-11-023.163.24.103
innovation.england.nhs.uk2024-07-0252.169.184.163
www.performer.england.nhs.uk2025-05-1645.60.31.150
lms.england.nhs.uk2024-08-0154.195.26.172
www.qst.england.nhs.uk2025-04-1720.76.227.243
www.england.nhs.uk2019-10-1113.32.255.217
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information