Help RSS API Feed Maltego Contact                        

Domain > iamthewinnerhere.com

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://blog.dynamoo.com/2015/12/malware-spam-unpai...    
https://otx.alienvault.com/pulse/5671dfff4637f2563...    
https://otx.alienvault.com/pulse/5671e2da4637f2563...    
https://otx.alienvault.com/pulse/567313664637f2563...    
https://techhelplist.com/spam-list/1009-unpaid-inv...    
https://techhelplist.com/spam-list/1014-required-y...    

Files that talk to iamthewinnerhere.com

MD5A/V
8f4bd99c810d517fb2d2b89280759862[Troj/DocDl-APR]
12e7137ef8344150a39dd730b29347b2[Troj/DocDl-APR]
98da9c46f50e9c0fe8b027e6e92c6ea4[Trojan.Script.Kryptik.dzcqji]
fe64e874af3ab255150edffab1697ed0[JS/Nemucod.al] [JS/Downldr.CZ1!Eldorado] [JS/Kryptik.AYQ] [Trojan.Script.Kryptik.dzcqji] [JS/DwnLdr-MZY] [JS/Downldr.CZ1!Eldorado] [HEUR.JS.Trojan] [TrojanDownloader:JS/Swabfex.E] [JS/Kryptik.AYO!tr]
bbd2c7dd293416db56bc2f0fd90489dc[Trojan.Script.Kryptik.dzcqji] [JS/Downldr.CZ1!Eldorado] [JS/Kryptik.AYQ] [JS/DwnLdr-MZY] [JS/Downldr.CZ1!Eldorado] [HEUR.JS.Trojan] [Win32.Outbreak] [JS/Kryptik.AYO!tr]
6db225a3211f5c83efb3d89c97c6841d[JS/Nemucod.al] [JS/Downldr.CZ1!Eldorado] [JS/DwnLdr-MZY] [JS/Downldr.CZ1!Eldorado] [TrojanDownloader:JS/Swabfex.E] [JS/Kryptik.AYQ]
8018ca69fe41a8f05d96b0d874f772a4[JS/Nemucod.al] [JS/Downldr.CZ1!Eldorado] [JS/Kryptik.AYQ] [JS_CRYPLOD.BSS] [Trojan.Script.Kryptik.dzcqji] [JS_CRYPLOD.BSS] [JS/DwnLdr-MZY] [JS/Downldr.CZ1!Eldorado] [TrojanDownloader:JS/Swabfex.E] [Trojan-Downloader.JS.TeslaCrypt] [JS/Kryptik.AYO!tr]
f3d1e5b217c0cb22863b389d03c266ab[JS/Nemucod.al] [HEUR.JS.Trojan] [Trojan.Script.Kryptik.dzcqji] [JS/Downldr.CZ1!Eldorado] [JS/Kryptik.AYQ] [JS/DwnLdr-MZY] [JS/Downldr.CZ1!Eldorado] [TrojanDownloader:JS/Swabfex.E] [Win32.Outbreak] [JS/Kryptik.AYO!tr]
83433a243d692b5e34655c83f7810246[JS/Downldr.CZ1!Eldorado] [JS/Downldr.CZ1!Eldorado] [JS/Kryptik.AYQ]
1d1f8432ef77acf2b226e54d1e0b205f[Trojan.Script.Kryptik.dzcqji] [JS/DwnLdr-MZY] [HEUR.JS.Trojan] [TrojanDownloader:JS/Swabfex.E] [JS/Nemucod.al] [JS/Kryptik.AYQ] [Trojan-Downloader.JS.TeslaCrypt] [JS/Kryptik.AYO!tr]
177ef2bc4a9d11c982e13d4cc8722dfb[JS/Downldr.CZ1!Eldorado] [JS/Kryptik.AYQ] [Trojan.Script.Kryptik.dzcqji] [JS/DwnLdr-MZY] [JS/Downldr.CZ1!Eldorado] [HEUR.JS.Trojan] [JS/Kryptik.AYO!tr]
36ecc500a63eeeae85d8090a027dca09
96479ef902439973814210914cac1c8c
b3579ff1c6cb478bc4b87ad29b09762c[JS/Nemucod.al] [JS/Kryptik.AYQ] [Trojan.Script.Kryptik.dzcqji] [JS/DwnLdr-MZY] [HEUR.JS.Trojan] [TrojanDownloader:JS/Swabfex.E] [JS/Kryptik.AYO!tr]
e4829b5caf52fd39fe28cd61f5f02b79[Trojan.Script.Kryptik.dzcqji] [JS/Kryptik.AYQ] [JS/DwnLdr-MZY] [HEUR.JS.Trojan] [JS/Kryptik.AYO!tr]
6062cf83aec72b9a4ff795746b444323[JS/Nemucod.al] [HEUR.JS.Trojan] [Trojan.Script.Kryptik.dzcqji] [JS/Kryptik.AYQ] [JS/DwnLdr-MZY] [TrojanDownloader:JS/Swabfex.E] [Win32.Outbreak] [JS/Kryptik.AYO!tr]
a86b295cb98ac92756eec4608d329597[JS:Trojan.JS.Downloader.BD] [JS/Nemucod.al] [JS:Trojan.JS.Downloader.BD] [JS:Trojan.JS.Downloader.BD] [Trojan.Script.Kryptik.dzcqji] [JS:Trojan.JS.Downloader.BD] [JS/DwnLdr-MZY] [JS:Trojan.JS.Downloader.BD] [JS:Trojan.JS.Downloader.BD] [TrojanDownloader:JS/Swabfex.E] [JS/Kryptik.AYQ] [Trojan-Downloader.JS.TeslaCrypt] [JS/Kryptik.AYO!tr]
4b81115208e2bc14829c5c91d0465a75[JS/Kryptik.AYQ] [Trojan.Script.Kryptik.dzcqji] [JS/DwnLdr-MZY] [HEUR.JS.Trojan] [JS/Kryptik.AYO!tr]
a943a9ac851831dc64aabb2fe3ad1da9[JS:Trojan.JS.Downloader.BD] [JS/Nemucod.al] [JS/Downldr.CZ1!Eldorado] [JS_CRYPLOD.XXZC] [JS:Trojan.JS.Downloader.BD] [JS:Trojan.JS.Downloader.BD] [Trojan.Script.Kryptik.dzcqji] [JS:Trojan.JS.Downloader.BD] [JS:Trojan.JS.Downloader.BD] [JS_CRYPLOD.XXZC] [JS/DwnLdr-MZY] [JS/Downldr.CZ1!Eldorado] [JS:Trojan.JS.Downloader.BD] [TrojanDownloader:JS/Swabfex.E] [JS/Kryptik.AYQ] [Trojan-Downloader.JS.TeslaCrypt] [JS/Kryptik.AYO!tr]
58957339c0a71d89f0a9ac6e88e401bc[JS/Kryptik.AYQ] [Trojan.Script.Kryptik.dzcqji] [JS/DwnLdr-MZY] [JS/Kryptik.AYO!tr] [HEUR.JS.Trojan]

Whois

PropertyValue
Email hakim@iamthewinnerhere.com
NameServer DNS2.SAYMYLANDGOODBYE.IN
Created 2015-12-16 00:00:00
Changed 2015-12-16 00:00:00
Expires 2016-12-16 00:00:00
Registrar WEB COMMERCE COMMUNI