Help RSS API Feed Maltego Contact                        

Domain > lunaizemlya.ru

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to lunaizemlya.ru

MD5A/V
dc6951c2f9208a07132040dbcd192b07
6be7f678c6f052210762e8d8aec64fb7[TR/Crypt.ZPACK.59002] [Trojan/Win32.MDA]
0fdefbd7db0a21ab76ca0f5c7b19a876[SCRIPT.Virus] [BehavesLike.JS.Downloader.zv]
d21b1c1b674eaa09b06fe3e4dd8546d6
9e64164f8228448d871ce8d29e54aa62[Trojan.Script.Heuristic-js.iacgm] [Troj/Dloadr-DYS] [BehavesLike.JS.Exploit.xv] [TrojanDownloader:JS/Ursnif]
cd41428d697c3d687465e0e041397b89[JS:Trojan.JS.Downloader.AO] [JS:Trojan.JS.Downloader.AO] [Trojan-Downloader.JS.Small.pu] [JS:Trojan.JS.Downloader.AO] [BehavesLike.JS.ExploitBlacole.xv] [Troj/Dloadr-DYS] [JS:Trojan.JS.Downloader.AO] [TrojanDownloader:JS/Ursnif] [JS:Trojan.JS.Downloader.AO] [JS:Trojan.JS.Downloader.AO]
3a9284a7b5224491653715faf0b3c044[JS:Trojan.JS.Downloader.AO] [JS:Trojan.JS.Downloader.AO] [Trojan-Downloader.JS.Small.pu] [JS:Trojan.JS.Downloader.AO] [JS:Trojan.JS.Downloader.AO] [JS:Trojan.JS.Downloader.AO] [JS.DownLoader.449] [BehavesLike.JS.ExploitBlacole.xv] [JS:Trojan.JS.Downloader.AO] [JS:Trojan.JS.Downloader.AO]
db1e3e513f0366d2195de2c370717558
0f0f586f54482c7ff7b49375778e845e[JS/Nemucod.AA!tr.dldr]
29d49228232d0fde42dab5c802be7778
259f2a9f96f92a63162f417946a571d8
72d0b3d6ebf5e5812d5853f9caaea8e6[Troj/JSDldr-BW] [BehavesLike.JS.Exploit.zv] [Script.Trojan-Downloader.Nemucod.O] [JS/Nemucod.AA!tr.dldr]
ef7fb96c67b6e597677d956b26c9f311[Troj/JSDldr-BW] [Script.Trojan-Downloader.Nemucod.O] [JS/Nemucod.AA!tr.dldr]
dfbdda9e5007cfeb73f00c4c63862015
88e995276585bf5852ecf2521715f6a6[JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS/TrojanDownloader.Nemucod.AA] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [BehavesLike.JS.Exploit.zm] [Troj/JSDldr-BW] [JS/Nemucod.AA!tr.dldr] [JS/Nemucod.h] [JS:Trojan.Script.CPM]
47de5830ee657d3f7cd639d54726d554[JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS/TrojanDownloader.Nemucod.AA] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [BehavesLike.JS.Exploit.zv] [Troj/JSDldr-BW] [JS:Trojan.Script.CPM] [JS/Nemucod.h] [JS/Nemucod.AA!tr.dldr]
91fea51660211540b4aa5baeb4ff99ea[JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS_NEMUCOD.SM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS:Trojan.Script.CPM] [JS_NEMUCOD.SM] [BehavesLike.JS.ExploitBlacole.zv] [Troj/JSDldr-BW] [JS:Trojan.Script.CPM] [JS/Nemucod.h] [JS/Nemucod.AA!tr.dldr]
f9ee8a071715ce27d5fd8695ae4fc48f
255b06b26454845d46790c5f99a9a47d
b320e56609f5a5e2f2e3542f26ea48cf[PE:Malware.RDM.46!5.34[F1]]

DNS Resolutions

DateIP Address
2015-12-26176.31.62.77 (ClassC)
2016-03-17176.31.62.78 (ClassC)
2016-04-20151.80.78.61 (ClassC)
2016-12-0987.98.254.64 (ClassC)
2026-02-18104.42.225.122 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information