Help RSS API Feed Maltego Contact                        

Domain > rms-server.tektonit.ru

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to rms-server.tektonit.ru

MD5A/V
7a43ac072f830cde130728e818034e35
c515a2f04606f058f6b35fbb2fdf2893[Trojan.Win32.Stealer.crkvhr] [TR/Graftor.2081254] [RemoteAdmin/Win32.RMS] [VIRUS_UNKNOWN] [BAT/RA-based.AG] [Trojan.BAT.RadminInstaller]
cc289582ce9a5854e503d6daed838305[Heur.Win32.Veebee.1!O] [Trojan.Packed.26004] [Win32/Injector.AYPS] [VBCrypt.ICT]
63bd5b4fb747b8c0e0340b4234c88bc8
f125005055aed91873ce71010b67eb55
3d7f076e745efa6c2bbd637b4bdcdf4b[TROJ_SPNR.15L411] [Worm.Autorun-8201] [not-a-virus:RemoteAdmin.Win32.RMS.g] [Riskware/Hooker] [RemoteAdmin.CKH]
c164854a55a31b759f7142705c0233db
6e9436cc7182ba43b06ff8f92cd1e9a7[W32.Clodda4.Trojan.9a20] [Packed.Win32.Obfuscated.10!O] [WS.Reputation.1] [not-a-virus:RemoteAdmin.Win32.RMS.cf] [Riskware.RemoteAdmin!] [RemoteAdmin] [HackTool.Win32.RemoteAdmin.aU] [RemoteAdmin.CVI]
4388144928cf0d1c3bd61ef0543cd1f0[Artemis!4388144928CF] [Riskware.Win32.RemoteAdmin.cjvhfh] [Trojan.Hooker.21745] [TR/Graftor.2081254] [VIRUS_UNKNOWN] [Trojan/Win32.RAdmin] [Trojan.BAT.RadminInstaller]
9678f500538ca0eadc9f97cc0995b2d1
8d77e8c28e643c383a883f56948a61e2[Virus.Ramnit] [Riskware.Win32.RemoteAdmin.ctdafp] [W32/Ramnit.B] [W32.Ramnit!inf] [Ramnit.AS] [Trojan.BAT.RadminInstaller.s] [PE:Win32.Ramnit.a!1590234] [W32/Patched-I] [Program.RemoteAdmin.702] [W32/Pedalac.A] [Win32/Nimnul.a] [Trojan/BAT.RadminInstaller.s] [VIRUS_UNKNOWN] [Virus:Win32/Ramnit.B] [Trojan/Win32.RAdmin] [Virus.Win32.Nimnul.a] [BAT/RA-based.AG] [Trojan.BAT.RadminInstaller]
e8f70feebc5845a1e83e2b430894c694[Riskware/Sim]
9754f83864fb515cf5d2e588d65640d4[Trojan.CoinMiner.CP]
7eb25fc927d707428425feb34b8eeab1[W32/Trojan.UXJT-0945] [Win32/RA-based.NBP] [Trojan-Dropper.Win32.Kromeser] [Trojan-Dropper.Win32.Kromeser.bx]
e36691bfb94f5ebfa431463cd1c031b0[Artemis!E36691BFB94F] [Riskware.Win32.RemoteAdmin.dachew] [Trojan.InstallRadmin.B] [BackDoor.Radmin.126] [Win32/RA-based.NBF] [Hacktool.Win32.RemoteUtilities.D]
4a19b5727a6bf3f052c876c0e006ce7e[Virus.Ramnit] [Riskware.Win32.RemoteAdmin.ctdafp] [W32/Ramnit.B] [W32.Ramnit!inf] [Ramnit.AS] [Trojan.BAT.RadminInstaller.s] [PE:Win32.Ramnit.a!1590234] [W32/Patched-I] [Program.RemoteAdmin.702] [W32/Pedalac.A] [Win32/Nimnul.a] [Trojan/BAT.RadminInstaller.s] [VIRUS_UNKNOWN] [Virus:Win32/Ramnit.B] [Trojan/Win32.RAdmin] [Virus.Win32.Nimnul.a] [BAT/RA-based.AG] [Trojan.BAT.RadminInstaller] [Win32/Virus.b54]
3a99b3dd0916c0ea4a6a0085edc96fe4[Riskware.RemoteAdmin] [Riskware.Win32.RemoteAdmin.cjvhfh] [Riskware.RemoteAdmin!] [Program.RemoteAdmin.702] [TR/Graftor.2081254] [Win32/RemoteAdmin.RemoteUtilities.C] [VIRUS_UNKNOWN] [Trojan/Win32.RAdmin] [Trojan.BAT.RadminInstaller]
6a77a4cfbb56defa4da463fa0006872f
d41139cc7547152f6f15e01ba4673c13[Artemis!D41139CC7547] [Trojan.InstallRadmin.B] [WS.Reputation.1] [Riskware.Win32.RemoteAdmin.dachew] [BackDoor.Radmin.135] [Artemis] [Hacktool.Win32.RemoteUtilities.BD] [Win32/RA-based.NBF]
8dcd46b255e6e5be6b7d26ea3347fd35[Trojan.Win32.Click2.wmggg] [Trojan.Win32.A.Buzus.233472.M] [Trojan.Click2.23489] [Mal/FakeAV-KL] [Win32.SuspectCrc] [W32/TrojanDropper.AUG!tr]

DNS Resolutions

DateIP Address
2013-04-01109.234.156.178 (ClassC)
2013-08-15109.234.156.179 (ClassC)
2014-02-25109.234.156.179 (ClassC)
2018-12-23109.234.156.181 (ClassC)
2019-07-15109.234.156.182 (ClassC)
2020-09-03109.234.156.180 (ClassC)
2021-02-10185.175.44.167 (ClassC)
2024-12-0195.213.205.83 (ClassC)
2024-12-2177.223.124.212 (ClassC)
2025-07-2377.223.119.187 (ClassC)
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information