Help API Feed Maltego Contact                        

Malware > 6fd20e06fce1156b1d93e97f6ab3f64b

Is this malicious?

Reports

https://totalhash.com/analysis/c86346d2b8f81f80ffb...    
https://www.virustotal.com/file/36ef68eabffadf5de4...    
MD56fd20e06fce1156b1d93e97f6ab3f64b
SHA1c86346d2b8f81f80ffbd5bf264d156bb0da82cb1
FilenameRift.exe
IPs[109.74.195.149]
IPs[204.11.56.45]
IPs[70.36.100.242]
IPs[70.36.100.243]
IPs[70.36.100.244]
IPs[208.110.80.34]
IPs[208.110.80.35]
IPs[208.110.80.36]
IPs[74.222.4.12]
IPs[74.222.4.13]
Domains   [black.nightphantom.com]
[angel.eveningquest.com]
[cheburash.com]
[ns2.romanspamer.com]
[n1.romanspamer.com]
IP Addresses   [109.74.195.149]
[204.11.56.45]
[70.36.100.242]
[70.36.100.243]
[70.36.100.244]
[208.110.80.34]
[208.110.80.35]
[208.110.80.36]
[74.222.4.12]
[74.222.4.13]
Antivirus[Artemis!6FD20E06FCE1]
[BackDoor.Bulknet.511]
[Mal/EncPk-AAG]
[Packed.Generic.338]
[Packed.Win32.Katusha]
[Packed.Win32.Katusha.o]
[Posible_Worm32]
[SHeur3.CHCP]
[Trojan*Win32/Piptea.J]








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information