Help RSS API Feed Maltego Contact                        

Domain > www.microsoftupdate.dynssl.com

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

https://raw.githubusercontent.com/fireeye/pivy-rep...    
https://www.fireeye.com/blog/threat-research/2013/...    
https://www.fireeye.com/resources/pdfs/fireeye-poi...    

Files that talk to www.microsoftupdate.dynssl.com

MD5A/V
a45d3564d1fa27161b33712f035a5962[W32.Clod059.Trojan.d148] [Trojan/W32.Siscos.26112] [Artemis!A45D3564D1FA] [Trojan.Backdoor.DF] [Trojan/Delf.oih] [Trojan.Win32.Siscos.brmubt] [Delf.MPPO] [TROJ_SPNR.35CD13] [Trojan.Win32.Siscos.mrq] [Trojan.Siscos!zxesqQm4ofc] [TrojWare.Win32.Sysn.SCZ] [Trojan.DownLoad3.19270] [Win32.Troj.Siscos.m.(kcloud)] [Backdoor:Win32/Bezigate.B] [Trojan.Siscos] [Trojan-Dropper.Delf] [W32/Delf.OIH!tr] [Delf.AIUH] [Backdoor*Win32/Bezigate.B]
b096b4a471ed3f0b7fb8ea77bb1ca6c0
213b8c5b02ac81b5eba47b8d86dafda9

Whois

PropertyValue
NameNetwork OperationsZZZ, ChangeIP
Email noc@changeip.com
Address 1200 Brickell Avenue
Zip Code 33131
City Miami
State FL
Country US
Phone +1.8007913367
Fax +1.7862246593
NameServer NS3.CHANGEIP.ORG
Created 2005-05-28 02:00:00
Changed 2013-04-23 02:00:00
Expires 2015-05-28 00:00:00
Registrar NETWORK SOLUTIONS, L

DNS Resolutions

DateIP Address
2013-04-01202.65.220.64 (ClassC)
2014-04-27192.241.149.43 (ClassC)
2014-12-14188.226.194.251 (ClassC)
2020-09-2246.101.26.41 (ClassC)
2021-02-25170.178.190.213 (ClassC)
2025-07-12204.16.169.54 (ClassC)

Subdomains

DateDomainIP
ns2.g20.dynssl.com2025-07-03204.16.169.54
ipv4.g20.dynssl.com2025-06-13204.16.169.54
ohx4joa9thiok7.g20.dynssl.com2025-06-28204.16.169.54
owa.g20.dynssl.com2025-07-12204.16.169.54
auth.g20.dynssl.com2025-06-26204.16.169.54
vpn.g20.dynssl.com2025-06-27204.16.169.54
voip.g20.dynssl.com2025-07-07204.16.169.54
autodiscover.g20.dynssl.com2025-06-25204.16.169.54
internet.g20.dynssl.com2025-07-03204.16.169.54
linux.g20.dynssl.com2025-06-26204.16.169.54
dmz.g20.dynssl.com2025-06-29204.16.169.54
dsgsfg061.dynssl.com2025-06-25209.190.19.20
trusdrcbegfchop1.dynssl.com2025-06-2834.152.9.193
tghgndfg262.dynssl.com2025-07-10173.45.112.197
s03-secure-03loginx2.dynssl.com2025-04-283.133.142.202
7fe583624a03d516.dynssl.com2025-07-0462.68.100.112
64f6.7fe583624a03d516.dynssl.com2025-06-29204.16.169.53
grehdfhgh399.dynssl.com2025-07-08173.45.112.197
chrbyvrtgyusrchepqoc3a.dynssl.com2025-06-2834.152.9.193
secure-02logindnsx3a.dynssl.com2025-07-0552.14.219.223
asdwsda.dynssl.com2025-07-03204.16.169.54
spacea.dynssl.com2015-03-06103.243.24.26
halia.dynssl.com2025-07-09122.10.88.26
kola.dynssl.com2025-06-2762.210.114.108
veryfing02b.dynssl.com2025-07-0337.0.10.21
www.veryfing02b.dynssl.com2025-07-0237.0.10.21
8ef11726565cc05b.dynssl.com2025-06-2962.68.100.112
6014.8ef11726565cc05b.dynssl.com2014-01-31209.208.4.53
ec.dynssl.com2025-06-2395.211.172.143
appletec.dynssl.com2025-07-08122.10.88.26
loginwebmailnic.dynssl.com2025-07-05204.16.169.54
dpmc.dynssl.com2014-11-1687.106.50.15
id.dpmc.dynssl.com2025-06-23204.16.169.54
forum.dpmc.dynssl.com2019-09-06153.154.68.166
cdn.dpmc.dynssl.com2025-06-29204.16.169.54
info.dpmc.dynssl.com2019-09-19153.154.68.166
help.dpmc.dynssl.com2025-06-27204.16.169.54
http.dpmc.dynssl.com2019-09-06153.154.68.166
cvs.dpmc.dynssl.com2019-09-05153.154.68.166
development.dpmc.dynssl.com2019-09-18153.154.68.166
www.dpmc.dynssl.com2013-10-2458.64.153.157
dns1.www.dpmc.dynssl.com2019-09-18153.154.68.166
ipv4.www.dpmc.dynssl.com2019-09-06153.154.68.166
database.www.dpmc.dynssl.com2025-06-26204.16.169.54
administration.www.dpmc.dynssl.com2019-09-19153.154.68.166
corp.www.dpmc.dynssl.com2019-09-05153.154.68.166
dns.www.dpmc.dynssl.com2025-06-28204.16.169.54
crs.www.dpmc.dynssl.com2025-06-27204.16.169.54
devtest.www.dpmc.dynssl.com2019-09-06153.154.68.166
citrix.dpmc.dynssl.com2025-07-10204.16.169.54
svc.dynssl.com2019-07-29153.155.242.73
ftp0.svc.dynssl.com2025-06-27204.16.169.54
f5.svc.dynssl.com2025-06-27204.16.169.54
intra.svc.dynssl.com2019-09-18153.154.68.166
id.svc.dynssl.com2019-09-06153.154.68.166
squid.svc.dynssl.com2019-09-19153.154.68.166
stage.svc.dynssl.com2019-09-18153.154.68.166
database.svc.dynssl.com2021-12-06170.178.190.213
firewall.svc.dynssl.com2019-09-06153.154.68.166
mysql.svc.dynssl.com2019-09-06153.154.68.166
forum.svc.dynssl.com2019-09-20153.154.68.166
en.svc.dynssl.com2025-07-11204.16.169.54
admin.svc.dynssl.com2019-09-05153.154.68.166
ap.svc.dynssl.com2019-09-05153.154.68.166
ftp.svc.dynssl.com2018-05-25153.148.31.181
f5.ftp.svc.dynssl.com2025-06-28204.16.169.54
db.ftp.svc.dynssl.com2025-06-26204.16.169.54
id.ftp.svc.dynssl.com2019-09-06153.154.68.166
manage.ftp.svc.dynssl.com2019-09-18153.154.68.166
home.ftp.svc.dynssl.com2019-09-19153.154.68.166
database.ftp.svc.dynssl.com2019-09-20153.154.68.166
auth.ftp.svc.dynssl.com2019-09-20153.154.68.166
helpdesk.ftp.svc.dynssl.com2025-07-01204.16.169.54
www-m.ftp.svc.dynssl.com2019-09-07153.154.68.166
en.ftp.svc.dynssl.com2025-06-26204.16.169.54
main.ftp.svc.dynssl.com2019-09-19153.154.68.166
help.ftp.svc.dynssl.com2025-06-28204.16.169.54
ntp.ftp.svc.dynssl.com2019-09-20153.154.68.166
fileserver.ftp.svc.dynssl.com2025-07-03204.16.169.54
apps.ftp.svc.dynssl.com2025-06-27204.16.169.54
alerts.ftp.svc.dynssl.com2025-07-02204.16.169.54
development.ftp.svc.dynssl.com2025-06-28204.16.169.54
autodiscover.svc.dynssl.com2019-09-05153.154.68.166
dns.svc.dynssl.com2025-07-06204.16.169.54
apps.svc.dynssl.com2025-07-05204.16.169.54
alerts.svc.dynssl.com2025-06-28204.16.169.54
git.svc.dynssl.com2019-09-20153.154.68.166
devtest.svc.dynssl.com2025-06-27204.16.169.54
dns1.www.svc.dynssl.com2019-09-20153.154.68.166
beta.www.svc.dynssl.com2021-12-05170.178.190.213
database.www.svc.dynssl.com2025-07-11204.16.169.54
wiki.www.svc.dynssl.com2019-09-19153.154.68.166
m.www.svc.dynssl.com2019-09-18153.154.68.166
forum.www.svc.dynssl.com2025-07-12204.16.169.54
administration.www.svc.dynssl.com2025-07-03204.16.169.54
demo.www.svc.dynssl.com2025-06-27204.16.169.54
shop.www.svc.dynssl.com2019-09-19153.154.68.166
erp.www.svc.dynssl.com2025-06-28204.16.169.54
backup.www.svc.dynssl.com2025-06-28204.16.169.54
ads.www.svc.dynssl.com2025-06-19204.16.169.54
images.www.svc.dynssl.com2025-06-27204.16.169.54
cms.www.svc.dynssl.com2025-06-28204.16.169.54
apps.www.svc.dynssl.com2025-06-29204.16.169.54
alerts.www.svc.dynssl.com2025-06-24204.16.169.54
cvs.www.svc.dynssl.com2019-09-19153.154.68.166
chat.www.svc.dynssl.com2025-06-29204.16.169.54
citrix.svc.dynssl.com2025-07-12204.16.169.54
servtreyusecsgr3xc.dynssl.com2025-06-2834.152.9.193
hretchseuserchrl2d.dynssl.com2025-06-0234.152.9.193
tverd.dynssl.com2025-07-0262.210.114.108
philioffice.dynssl.com2015-02-02162.251.123.43
www.activepage.dynssl.com2015-05-19188.226.194.251
corp.refre.dynssl.com2025-06-2967.215.255.139
citrix.refre.dynssl.com2025-06-3067.215.255.139
linux.refre.dynssl.com2025-06-2867.215.255.139
authscet-coinbase.dynssl.com2022-11-3024.199.88.243
dataupdate.dynssl.com2013-10-1858.64.153.157
ns2.dataupdate.dynssl.com2019-09-06153.154.68.166
ns3.dataupdate.dynssl.com2019-09-06153.154.68.166
owa.dataupdate.dynssl.com2019-09-06153.154.68.166
home.dataupdate.dynssl.com2024-02-23153.237.50.201
mailgate.dataupdate.dynssl.com2019-09-18153.154.68.166
internal.dataupdate.dynssl.com2025-01-02118.11.213.130
forum.dataupdate.dynssl.com2019-09-06153.154.68.166
en.dataupdate.dynssl.com2019-09-06153.154.68.166
administration.dataupdate.dynssl.com2024-02-23153.237.50.201
eshop.dataupdate.dynssl.com2024-02-12153.237.50.201
fileserver.dataupdate.dynssl.com2024-11-18153.234.67.222
direct.dataupdate.dynssl.com2024-02-23153.237.50.201
internet.dataupdate.dynssl.com2024-02-24153.237.50.201
development.dataupdate.dynssl.com2019-09-18153.154.68.166
aptest.dataupdate.dynssl.com2024-02-23153.237.50.201
host.dataupdate.dynssl.com2019-09-06153.154.68.166
www.dataupdate.dynssl.com2013-10-2158.64.153.157
ipv6.www.dataupdate.dynssl.com2019-09-20153.154.68.166
owa.www.dataupdate.dynssl.com2019-09-06153.154.68.166
download.www.dataupdate.dynssl.com2019-09-06153.154.68.166
home.www.dataupdate.dynssl.com2024-02-23153.237.50.201
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information