Help RSS API Feed Maltego Contact                        

Domain > hetaitop.com

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://blog.dynamoo.com/2016/10/generic-email-phis...    

Files that talk to hetaitop.com

MD5A/V
b85684c813cecbc1b8ee40428d1d7149[JS.eIframeDownloader.1AA1] [JS/Locky.BD!Eldorado] [JS_NEMUCOD.SMAA9] [Trojan.Script.Heuristic-js.iacgm] [SCRIPT.Virus] [JS_NEMUCOD.SMAA9] [JS/Locky.BD!Eldorado]

Whois

PropertyValue
Email domain@idczh.com
NameServer F1G1NS2.DNSPOD.NET
Created 2016-08-02 00:00:00
Changed 2016-08-03 00:00:00
Expires 2017-08-02 00:00:00
Registrar SHANGHAI BEST ORAY I