Help RSS API Feed Maltego Contact                        

Domain > surusegitimmerkezi.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://ransomwaretracker.abuse.ch/feeds/csv/    
https://otx.alienvault.com/pulse/56affb4c4637f2355...    
https://otx.alienvault.com/pulse/56b2251167db8c168...    
https://otx.alienvault.com/pulse/56d9d25baef921042...    
https://otx.alienvault.com/pulse/56e85de34637f24cb...    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    
https://blogs.sophos.com/2016/01/06/the-current-st...    
https://ransomwaretracker.abuse.ch/tracker/online/    
https://techhelplist.com/spam-list/1039-money-tran...    
https://www.virustotal.com/en/file/a5a5b9e1e629a37...    

Files that talk to surusegitimmerkezi.com

MD5A/V
2c17ca4c2e05ef0551d7618a243466f6[BehavesLike.Win32.AdwareNaviPromo.fh]
4b3a65c38e75d95843a9c165961ad34c[BehavesLike.Win32.Dropper.dh]
201203d5caa58c3378a75a11c0f45b3e
4c3a6b40a7dbdc977f68c149278561c0[Troj.Downloader.Script!c] [VBS/Psyme] [JS/TrojanDownloader.Nemucod.DQ] [JS_CRYPLOD.YYSJR] [VBS.Downloader.877[h]] [JS_CRYPLOD.YYSJR] [Win32.Trojan.Raas.Auto]
ca05942d7d363c62caba7fe0c66e7770
1680835ab6998271127b9d172cf1c691[Suspicious.Cloud.2] [Trojan/Win32.Teslacrypt]
2b8238af766a56adbd80791bc1db61c5
6c12cd05a7e4e0bd165afdd1859d2201[Artemis!6C12CD05A7E4] [Ransom.TeslaCrypt] [Worm.Ngrbot!uuWa+q9Hpeo] [Suspicious.Cloud.2] [TROJ_FORUCON.BMC] [Worm.Win32.Ngrbot.aycf] [Worm.Win32.A.Ngrbot.357376.D[h]] [Trojan.Inject1.56622] [TROJ_FORUCON.BMC] [BehavesLike.Win32.MysticCompressor.fh] [W32/Trojan.EXSG-0534] [TR/Crypt.ZPACK.192291] [Worm/Win32.Ngrbot] [Trojan.Zusy.D2C118] [Trojan/Win32.Upbot] [VirTool:Win32/CeeInject.GF] [Win32.Worm.Ngrbot.Wopu] [Trojan.Win32.Crypt] [W32/Ngrbot.AYCF!worm] [Crypt_r.AWG] [Adware.Win32.iBryte.EMIU]
6e9a65951344a5b2dc36be82d2b2a926[BehavesLike.JS.Downloader.xv]
68915163576d45b6c3c40dec12715e68
69abd60550fa916b31f626fc89157ad1
6d2415a6257352f383d3c9cee7f38f6d[TR/Crypt.ZPACK.192317] [Win32/Kryptik.EMIU] [Trojan.Cryptlock.N!g2] [W32/Kryptik.EMIU!tr] [Ransom*Win32/Tescrypt.A] [Ransom.TeslaCrypt] [Trojan.Win32.Crypt] [Worm.Win32.Ngrbot.aycf] [TROJ_FORUCON.BMC] [Trojan.Inject1.56622]
6e17df4b6fa3112ea4111779dee48f00[TR/Crypt.ZPACK.192328] [Win32/Kryptik.EMIU] [Crypt5.AFRJ] [Trojan.Cryptlock.N!g2] [W32/Kryptik.EMIU!tr] [Trojan.Injector] [Trojan.Win32.Crypt] [Trojan-Ransom.Win32.Bitman.hgt] [TROJ_FORUCON.BMC] [Trojan.Packed.29794]
60f4fbc0a58f146e8fd6d90b8d57c271[Trojan-FHTW!60F4FBC0A58F] [Ransom.TeslaCrypt] [Troj.Ransom.W32.Bitman!c] [Trojan.Bitman!] [Trojan.Cryptlock.N!g2] [Ransom_CRYPTESLA.YUYAHF] [Trojan-Ransom.Win32.Bitman.hoy] [Trojan.Win32.ZPACK.eaamur] [Mal/Wonton-CB] [TrojWare.Win32.Kryptik.~IA] [Trojan.Packed.29794] [Ransom_CRYPTESLA.YUYAHF] [Trojan-FHTW!60F4FBC0A58F] [TR/Crypt.ZPACK.192803] [Trojan[Ransom]/Win32.Bitman] [VirTool:Win32/CeeInject.GF] [Trojan.Barys.DC817] [Trojan/Win32.Teslacrypt] [Trj/CI.A] [Win32.Trojan.Bitman.Wpjo] [Trojan.Win32.Crypt] [W32/Kryptik.EMNJ!tr] [Adware.Win32.iBryte.EMNJ] [Win32/Trojan.61e]
78d8fadc8ddd5f17dcac4411f145c92b[Trojan/W32.Bitman.503808] [Ransom.TeslaCrypt] [Trojan.Bitman!] [Trojan.Cryptlock.N!g1] [Ransom_CRYPTESLA.YUYAHF] [Trojan-Ransom.Win32.Bitman.hpi] [Trojan.Win32.Encoder.eaapjs] [Win32.Trojan.Bp-dropperv.Bzmy] [Trojan.Encoder.3719] [Ransom_CRYPTESLA.YUYAHF] [BehavesLike.Win32.PWSZbot.gc] [Mal/Ransom-EC] [W32/Trojan.KJVF-2469] [TR/Crypt.Xpack.441786] [Trojan[Ransom]/Win32.Bitman] [Ransom:Win32/Tescrypt.E] [Uds.Dangerousobject.Multi!c] [Trojan/Win32.Teslacrypt] [Trojan.Win32.Injector] [W32/Injector.CRMO!tr] [FileCryptor.GQH] [Win32/Trojan.22e]
2cb89bb158fb2ea8b103cb8f1f4744d1[Trojan/W32.Bitman.503808] [Ransom.TeslaCrypt] [Trojan.Bitman!] [Trojan.Cryptlock.N!g1] [Ransom_CRYPTESLA.SMJ3] [Trojan-Ransom.Win32.Bitman.hpi] [Trojan.Win32.Encoder.eaapjs] [Win32.Trojan.Bitman.Huqa] [Trojan.Encoder.3719] [BehavesLike.Win32.PWSZbot.gc] [Mal/Ransom-EC] [W32/Trojan.KJVF-2469] [TR/Crypt.Xpack.441786] [Trojan[Ransom]/Win32.Bitman] [Ransom:Win32/Tescrypt.E] [Troj.Ransom.W32.Bitman!c] [Trojan/Win32.Teslacrypt] [Trojan.Win32.Injector] [W32/Bitman.HPI!tr] [FileCryptor.GQH]
48471c25da611c4a50ede7e7408240f4[Ransom.TeslaCrypt] [Trojan.Filecoder!QbEkELy1kAk] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.I] [Ransom_CRYPTESLA.YUYAHF] [Trojan.Win32.Encoder.eabfdk] [Uds.Dangerousobject.Multi!c] [Mal/Ransom-EC] [Trojan.Encoder.3743] [Ransom_CRYPTESLA.YUYAHF] [BehavesLike.Win32.PWSZbot.gc] [TR/AD.TeslaCrypt.Y.170] [W32/Filecoder_TeslaCrypt.EC!tr] [Trojan/Win32.Teslacrypt] [Ransom:Win32/Tescrypt!rfn] [Win32.Trojan.Bp-dropperv.Bzmy] [Trojan.Win32.Filecoder] [FileCryptor.GQK] [Trojan.Win32.TeslaCrypt.I]
d72d491c7bb8c37f057c2bb6c681b3bf[Ransom.TeslaCrypt] [Trojan.Filecoder.Win32.1890] [Trojan.Filecoder!QbEkELy1kAk] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.I] [Ransom_CRYPTESLA.YUYAHF] [Trojan-Banker.Win32.Shifu.ahd] [Trojan.Win32.Encoder.eabfdk] [Mal/Ransom-EC] [Trojan.Encoder.3743] [Ransom_CRYPTESLA.YUYAHF] [TR/AD.TeslaCrypt.Y.170] [W32/Shifu.AHD!tr] [Trojan.Cripack.1] [Trojan/Win32.Teslacrypt] [Ransom:Win32/Tescrypt!rfn] [Trj/TeslaCrypt.A] [Trojan.Win32.Filecoder] [FileCryptor.GQK]
25028c688e8ecffa042ac04fe4e6e7fc[RDN/Ransom] [TR/Crypt.ZPACK.192271] [Trojan.Cap162416.uxsb] [Win32/Kryptik.EMIU] [Crypt5.AFRX] [Trojan.Cryptolocker.N] [W32/Kryptik.EMIU!tr] [Ransom*Win32/Tescrypt.E] [Trojan.Injector] [Trojan.Win32.Crypt] [Trojan.Kryptik.Win32.860052] [Trojan-Ransom.Win32.Bitman.hdj] [W32/Dorkbot-LG] [Trojan.Packed.29794]
1766e9c85e0c2c833fb1fb5a8cdb10b9[Trojan.Inject1.56622] [W32/Dorkbot-LG] [Worm.Win32.Ngrbot.aycf] [Trojan.Win32.Crypt] [Ransom.TeslaCrypt] [Ransom*Win32/Tescrypt!rfn] [Trojan.Cryptlock.N!g2] [Crypt_r.AWG] [Win32/Kryptik.EMIU] [TR/Crypt.ZPACK.192263] [BackDoor-FDCF!1766E9C85E0C]

Whois

PropertyValue
Email sanalburs@gmail.com
NameServer NS2.NATROHOST.COM
Created 2015-03-23 00:00:00
Changed 2015-03-23 00:00:00
Expires 2017-03-23 00:00:00
Registrar NICS TELEKOMUNIKASYO