Help RSS API Feed Maltego Contact                        

Domain > ntkrnlpa.info

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to ntkrnlpa.info

MD5A/V
dd796b51dad439f0dd49c2cd9efad393[Trojan-Downloader/W32.Tuvir.2560.J] [TrojanDownloader.Tuvir.a] [Trojan-Downloader] [Trojan/Downloader.Small.fwh] [Virus.Win32.Virut.ce-based.hznt] [Downloader] [W32/DLoader.AONQO] [Trojan.Downloader-15903] [Trojan-Downloader.Win32.Tuvir.a] [Trojan.DL.Small!CZ6KxggQdUs] [Mal/Dorf-D] [TrojWare.Win32.TrojanDownloader.Small.SKM_20] [Trojan.DownLoader.34866] [TR/Dldr.Small.SKM.2] [TrojanDownloader.Small.vyb] [Win32.TrojDownloader.Tuvir.(kcloud)] [TrojanDownloader:Win32/Pakernat.A] [Trojan.Win32.Downloader.2560.R] [Win-Trojan/Downloader.2560.DJ] [Trojan-Downloader.Tuvir.a] [Trojan.Tiny!2930] [Virus.Downloader.Small] [W32/Tuvir.A!tr.dldr] [Downloader.Small] [Trj/CI.A]
d3265eeee42daa1c7634bd9791e8b8d2[W32.ScriptDropperE.Worm] [Trojan.HTML.Ramnit.A] [Script-VBS/W32.SpyEye] [VBS/Ramnit.BG] [W32/Ramnit.a!htm] [Trojan.Maliframe!html] [Win32/Ramnit.A] [VBS_RAMNIT.SMC] [HTML.Mefir] [Trojan.HTML.Ramnit.A] [Trojan.VBS.RmBot.A] [HTML:Dropper.Script.VBS.Fednu.a!1590497] [Trojan.HTML.Ramnit.A] [VBS/Inor-AA] [TrojWare.HTML.Mefir.P] [Trojan.HTML.Ramnit.A] [Trojan.Inor] [Dropper.Inor.VBS.1] [VBS_RAMNIT.SMC] [W32/Ramnit.a!htm] [JS/iFrame.EB.94] [Trojan:HTML/Iframe.A] [Trojan.HTML.Ramnit.A] [Trojan.HTML.Ramnit.A] [Trojan.IFrame.virtob.NtKrnlpa] [Html.Win32.Script.1500711] [Virus.VBS.Ramnit] [HTML/Iframe.YT!tr] [HTML/Framer] [W32/Cosmu.A] [virus.html.url.7]
3a924def75a6422e306e1406edacf093
579af07c309cbe8fff0de76ecce26a23[W32.Virut.E] [W32/Virut.av] [Virus] [Win32/Virut.AV] [W32/Backdoor2.EKVD] [W32.Virut.W] [W32/Ircbot.dam] [PE_VIRUT.AV] [Win32:Virtob] [Win32.TRCrypt.Ulpm] [W32.Virut-17] [Virus.Win32.Virut.av] [Worm.Win32.Neeris!IK] [Virus.Win32.Virut.AV] [BackDoor.IRC.Sdbot.4702] [W32/Virut.AX] [Heuristic.BehavesLike.Win32.ModifiedUPX.F] [W32/Virut-W] [Win32/Virut.7115] [Win32/Virut.af] [Virus:Win32/Virut.AC] [Virut] [W32/Virut.7116] [Win32/Virut.B] [Virus.Win32.Virut.2] [Malware.Virut] [Win32.Virut.ak] [Worm.Win32.Neeris] [W32/Virut.AV] [Win32/Virut] [W32/Virutas.FG]

Whois

PropertyValue
NameToni Koivunen
Organization Fitsec Ltd
Email info@fitsec.com
Address Tekniikantie 14
Zip Code 02150
City ESPOO
Country FI
Phone +358.935401360
NameServer pdns02.domaincontrol.com
Created 2008-11-07 13:10:20
Changed 2013-08-12 07:06:37
Expires 2015-11-07 13:10:20
Registrar GoDaddy.com, LLC (R1