Help RSS API Feed Maltego Contact                        

Domain > onegiantstore.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://ransomwaretracker.abuse.ch/feeds/csv/    
https://otx.alienvault.com/pulse/56d9d25baef921042...    
https://otx.alienvault.com/pulse/56e85de34637f24cb...    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    
https://ransomwaretracker.abuse.ch/tracker/online/    

Files that talk to onegiantstore.com

MD5A/V
9213073f63c1542315acdad27c0b8b78
6ddeb9f7d1a1280673d8ce9275ae688d[Ransom-Tescrypt!6DDEB9F7D1A1] [BehavesLike.Win32.Downloader.fc]
61f05d9d65f657ccce4dda9b60a29dd0[HW32.Packed.59CD] [Ransom.TeslaCrypt] [BehavesLike.Win32.PWSZbot.fc] [Backdoor.W32.SdBot] [Ransom-Tescrypt!61F05D9D65F6] [W32/Kryptik.EPAA!tr] [Win32/Trojan.022]
dd59e9eedd0d74903209f6862ed83296
5ee1ad5c40d39e004db35504b7014d70
ec909178eee0008471b574d60f432add[HEUR.JS.Trojan.b] [TrojanDownloader:JS/Swabfex.H]
b039dedf3c19c46e39633f5f84fccf90[HEUR.JS.Trojan.b] [TrojanDownloader:JS/Swabfex.H]
5ef1fdd422951c153db8c39b87e84e5d[Ransomware-FFR!5EF1FDD42295] [BehavesLike.Win32.Xiquitir.fm]
7bc8e9eb9f3d874764d2658b546abb61[Ransomware-FFR!7BC8E9EB9F3D] [BehavesLike.Win32.Xiquitir.fm]
842224c07f7018c2bbf94ee84334e332[JS/Nemucod.cs] [JS.Teslader] [HEUR.JS.Trojan.b] [JS/TrojanDownloader.Nemucod.GU]
1091bcb4c7bffc414c987e4aed7b6837[HW32.Packed.4E82] [Suspicious.Cloud.5]
dfe1b322cca4012f8a2c1962b42e8f6f
bcc5125871fec6f9778fb7fede5f126f[HEUR.JS.Trojan.b] [TrojanDownloader:JS/Swabfex.H]
7f8dae0060427ee936bac95005dc3dab[JS.Teslader] [JS/TrojanDownloader.Nemucod.GU] [JS/Nemucod.FP!tr] [HEUR.JS.Trojan.b] [JS/Nemucod.cs] [Win32.Trojan.Raas.Auto]
f5ba022d3e40abcf6938d96f3bf59d6b[Trojan.Crypt.KR] [Artemis!F5BA022D3E40] [Ransom.TeslaCrypt] [Trojan.Crypt.KR] [Ransom_CRYPTESLA.SMA6] [Trojan-Ransom.Win32.Bitman.nmn] [Trojan.Crypt.KR] [Trojan.Crypt.KR] [Trojan.Encoder.4079] [Artemis] [TR/Crypt.ZPACK.232484] [Trojan.Crypt.KR] [Trojan.Crypt.KR] [Trj/RansomCrypt.E] [Crypt_r.BFH]
ff9ef9cb790f06355e6c52682da32182[Trojan.Crypt.KO] [Ransomware-FFR!FF9EF9CB790F] [Trojan.SelfDelete] [Trojan.Crypt.KO] [Trojan.Crypt.KO] [Trojan.Crypt.KO] [Ransom_CRYPTESLA.YUYAIT] [BehavesLike.Win32.Xiquitir.fm] [TR/Crypt.Xpack.419831] [Trojan.Crypt.KO]
96baaf0e34ba665066c3269eedcf92e9[BehavesLike.Win32.PWSZbot.dh]
befcc25077c14284fd5369d98b28e63a
7c0559186d57b359a3d6f95e603ef7e6

Whois

PropertyValue
NameServer NS78.DOMAINCONTROL.COM
Created 2010-07-09 00:00:00
Changed 2015-01-31 00:00:00
Expires 2016-07-09 00:00:00
Registrar GODADDY.COM, LLC