Help RSS API Feed Maltego Contact                        

Domain > le-clainche.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://malware-traffic-analysis.net/2016/01/04/ind...    
https://otx.alienvault.com/pulse/5684588967db8c057...    
https://otx.alienvault.com/pulse/568855fb67db8c057...    
https://otx.alienvault.com/pulse/568af8f24637f2624...    
https://twitter.com/Techhelplistcom/status/6822872...    
https://www.hybrid-analysis.com/sample/18525e8fb7c...    

Files that talk to le-clainche.com

MD5A/V
1981a30e8c01ff87a759b163cb243ed1[Artemis!1981A30E8C01] [BackDoor.IRC.NgrBot.42] [BehavesLike.Win32.PWSZbot.fh] [Backdoor.Kasidet.cb] [TR/Crypt.ZPACK.210370] [W32/Kryptik.EKHJ!tr] [Ransom:Win32/Crowti.A] [Trojan/Win32.Upbot] [Win32.Trojan.Inject.Auto] [Crypt5.AAKS]
e86daca8abdaf5915d5b93283b62e954[BehavesLike.Win32.PWSZbot.fc]
eac3832f2d57139695ca29e01509c088[Ransom.CryptoWall] [Trojan.Cryptodef.Win32.2319] [Troj.Ad.Cryptowall!c] [Ransom_.8F9ACDB4] [Win32.Trojan.WisdomEyes.16070401.9500.9900] [Ransom_.8F9ACDB4] [BC.Win.Packer.Troll-14] [Trojan-Ransom.Win32.Cryptodef.acdr] [Trojan.Win32.DownLoader18.dznaxv] [Trojan.DownLoader18.39796] [virus.win32.sality.am] [BehavesLike.Virut.dc] [W32/Trojan.CKGA-3018] [TR/AD.Cryptowall.Y.83] [Trojan[Ransom]/Win32.Cryptodef] [Ransom:Win32/Crowti.A] [Trojan/Win32.Crowti.R175754] [RDN/Suspicious.bfr] [BScope.Malware-Cryptor.Trash] [Trojan.Cryptodef!] [Ransom.Win32.Crowti] [W32/Kryptik.EJXP!tr] [Crypt5.ZLU] [Trj/GdSda.A]

Whois

PropertyValue
Email fke8z5vhojmajs72pfep@b.o-w-o.info
NameServer NS103.OVH.NET
Created 2013-01-05 00:00:00
Changed 2014-12-25 00:00:00
Expires 2017-01-05 00:00:00
Registrar OVH