Help RSS API Feed Maltego Contact                        

Domain > avancarvisual.com.br

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://ransomwaretracker.abuse.ch/blocklist/    
http://ransomwaretracker.abuse.ch/feeds/csv/    
https://otx.alienvault.com/pulse/56d9d25baef921042...    
https://otx.alienvault.com/pulse/56e85de34637f24cb...    
https://otx.alienvault.com/pulse/56f02c1967db8c5ce...    
http://ransomwaretracker.abuse.ch/blocklist/    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    
https://ransomwaretracker.abuse.ch/tracker/online/    

Files that talk to avancarvisual.com.br

MD5A/V
d9d3e970db96723e61ed3c2122f9b147
5dfba41d1bf87598629163d4afceacea[Trojan.Ransom.CryptoWall] [Ransom.FileLocker] [Trojan.Filecoder!3R7ktIfsqQE] [W32/Ransom.IH] [Trojan.Cryptodefense] [Win32/Filecoder.CO] [TROJ_CRYPWALL.DL] [Trojan-Ransom.Win32.Cryptodef.cmw] [Trojan.Win32.Encoder.dywdca] [Trojan.Win32.CryptoWall.250888[h]] [Trojan.Encoder.514] [TROJ_CRYPWALL.DL] [BehavesLike.Win32.Dropper.dm] [Mal/Ransom-DK] [W32/Ransom.SRKM-2123] [W32/Kryptik.EFSG!tr] [Ransom:Win32/Crowti!rfn] [Trojan/Win32.Teslacrypt] [Win32.Trojan.Crypt.Tbjf] [Trojan.Win32.Crypt] [Zbot.AJZG]
8e08c754fd0c21aa2cbb110be2b98d2b
a368a3de30e9bb37e58686367355face
d173d8c49e1295fa7ec9b746e228507b
d89ce25dac8b44a3423fc1c3ccc64867
c064f1939f709f3e8e608f3c3b280e0d[Ransome.Crowti.OB4] [Ransom.CryptoWall] [Win32.Malware!Drop] [Win32.Trojan.Filecoder.h] [W32/S-db7790a2!Eldorado] [Trojan.Cryptodefense] [Win32/Filecoder.CryptoWall.D] [Ransom_HPCRYPTESLA.SM2] [Packed.Win32.Tpyn] [Trojan.Win32.Encoder.dytusk] [Trojan.Encoder.514] [Tool.Patcher.Win32.14244] [BehavesLike.Win32.PWSZbot.dm] [Mal/Ransom-DK] [W32/S-db7790a2!Eldorado] [Variant.Symmi.bop] [TR/AD.Crowti.Y.580] [Ransom:Win32/Crowti!rfn] [Win32.Malware!Drop] [Trojan.Win32.Filecoder] [W32/Kryptik.EFKT!tr] [Zbot.AJTF]
164108adf5e699cb8274537bda571942[W32.Clodbe8.Trojan.5cc9] [Ransom.Teerac.A4] [Ransom.CryptoWall] [Trojan/Filecoder.co] [Win32.Trojan.Kryptik.qw] [W32/S-da90e288!Eldorado] [Win32/Filecoder.CryptoWall.D] [Ransom_HPCRYPTESLA.SM2] [Packed.Win32.Tpyn] [Trojan.Win32.Encoder.dyvbtv] [Trojan.Win32.Z.Filecoder.234505.H[h]] [Packer.W32.Tpyn!c] [Mal/Ransom-DK] [UnclassifiedMalware] [Trojan.Encoder.514] [Trojan.Filecoder.Win32.1430] [BehavesLike.Win32.RansomCWall.dm] [W32/S-da90e288!Eldorado] [TR/Crypt.Xpack.323711] [Ransom:Win32/Crowti!rfn] [Trojan/Win32.Ransom.N1939543372] [RansomCWall-FBJ!164108ADF5E6] [Win32.Trojan.Filecoder.Dwtd] [Trojan.Filecoder!lz5tWd4r5j4] [Trojan.Win32.Filecoder] [W32/Kryptik.EFKT!tr] [Zbot.AJUY]

Whois

PropertyValue
Email mail-abuse@cert.br