Help RSS API Feed Maltego Contact                        

Domain > www.pk39.com

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://download01.norman.no/documents/Themanyfaces...    

Files that talk to www.pk39.com

MD5A/V
521ad45c7152b2eef2d9e7f86c9c075a[Riskware] [Trojan] [Trojan/Redosdru.gl] [Trojan.Win32.Bjlog.incbk] [Backdoor.Trojan] [Win32/Tnega.VDD] [BKDR_ZEGOST.SMZZ] [Trojan.Spy-80656] [Trojan-PSW.Win32.Bjlog.zeq] [Trojan.Win32.A.PSW-Bjlog.200192] [TrojWare.Win32.Bjlog.ZEQ] [Heuristic.LooksLike.Win32.Suspicious.J!89] [Trojan/PSW.Bjlog.asd] [Win32.Troj.Redosdru.gl.(kcloud)] [TrojanDropper:Win32/Zegost.C] [Trojan/Win32.Bjlog] [SScope.Adware.Baidu.01015] [Win32/Redosdru.GL] [Trojan.Win32.FakeMS.yt] [Trojan-PWS.Win32.Bjlog] [W32/Rincux.AA!tr] [Bck/Gh0stRat.K]
3250cd40ec815fe7c93e981dc5ec9f7f
742d1ebded62730e2aeb88e469bf2436[W32.HfsIemusi.3991] [Trojan/Redosdru.ke] [Win32.Trojan.Redosdru.n] [W32/Trojan.SZNR-5526] [Backdoor.Trojan] [Win32/Redosdru.KE] [TROJ_SPNR.0CHH14] [Trojan.Win32.DownLoader1.ddtkxo] [Trojan.Win32.Z.Redosdru.290592[h]] [UnclassifiedMalware] [Trojan.DownLoader1.26310] [Trojan.Redosdru.Win32.3643] [TROJ_SPNR.0CHH14] [BehavesLike.Win32.Downloader.dc] [TR/Rogue.290592] [Backdoor:Win32/Zegost.B] [Trojan/Win32.Bjlog] [Artemis!742D1EBDED62] [Trojan.Win32.Redosdru.KE] [Trojan.Redosdru!aej/yjnBfNY] [Trojan.Win32.Redosdru] [Win32/DH{giU1Aw?}] [Trj/Chgt.A]

Whois

PropertyValue
Email 8814483@qq.com
NameServer NS14.XINCACHE.COM
Created 2009-01-14 00:00:00
Changed 2014-10-31 00:00:00
Expires 2016-01-14 00:00:00
Registrar XIN NET TECHNOLOGY C

DNS Resolutions

DateIP Address
2013-07-1758.221.58.153 (ClassC)
2013-08-1958.221.58.153 (ClassC)
2014-05-2761.147.107.90 (ClassC)
2016-03-31118.163.255.188 (ClassC)
2016-07-0961.216.5.105 (ClassC)
2019-12-0847.89.39.109 (ClassC)
2020-03-0415.164.83.206 (ClassC)
2024-10-1847.56.70.142 (ClassC)
2025-01-2647.243.57.214 (ClassC)
2025-02-14208.98.43.16 (ClassC)
2025-03-15208.98.40.205 (ClassC)
2025-04-22208.98.43.15 (ClassC)
2025-04-26208.98.43.11 (ClassC)
2025-05-04208.98.40.17 (ClassC)
2025-05-10208.98.40.18 (ClassC)
2025-05-16208.98.40.74 (ClassC)

Port 80

Subdomains

DateDomainIP
down.pk39.com2013-04-01202.105.55.66
ddos.pk39.com2013-08-18117.41.166.168
www.pk39.com2013-07-1758.221.58.153
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information