Help RSS API Feed Maltego Contact                        

Domain > web.bacguarp.com

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://researchcenter.paloaltonetworks.com/2015/05...    
https://otx.alienvault.com/pulse/5544b973b45ff5392...    

Files that talk to web.bacguarp.com

MD5A/V
423eaeff2a4576365343e6dc35d22042[W32.Clodaef.Trojan.9488] [WS.Reputation.1] [BKDR_PLUGX.WLM] [Backdoor.Win32.Gulpix.tz] [Trojan.DownLoader9.7003] [BDS/Gulpix.tz] [Dropper/Plugx.290369] [Virus.Win32.Heur.l] [Backdoor.Gulpix] [Backdoor.Win32.Gulpix.Aqzu] [Backdoor.Win32.Gulpix] [W32/Gulpix.TZ!tr.bdr] [Trj/CI.A]

Whois

PropertyValue
Email wedgsdva@hotmail.com
NameServer NS2FWZ.NAME.COM
Created 2011-06-08 00:00:00
Changed 2014-05-12 00:00:00
Expires 2015-06-08 00:00:00
Registrar NAME.COM, INC.