Help RSS API Feed Maltego Contact                        

Domain > aerosfera.ru

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://vxvault.net/URL_List.php    

Files that talk to aerosfera.ru

MD5A/V
8f2ff89b0eebc9b65cc2d11a9b1fdf7f
cb6c6e5179fc7c241a16cee2cd19f694
a67f8a9d74886b295db30cc78b692d4b
c1bc265feb03716986b53e6c8194c7ce
68836011df935e511524f47dc607af56[HEUR.VBA.Trojan.d] [Macro.Trojan.Dropperd.Auto] [VBS/Jenxcus.A] [virus.office.obfuscated.1]
6541822e3c7a0243103aa10bf0b5b8f8
0384990debfa06cf6e3ce57c19980401
07446949a2e23085cd0f59c814a19887
eea0d286acfeb34d9456660611634a17[W97M.Downloader.DWE] [O97M.Downloader.FV] [Downloader-FBHW!20DEC26343C6] [W97M.Downloader.DWE] [PP97M/Downloader] [W97M.Downloader] [W2KM_LOCKY.MV] [W97M.Downloader.DWE] [Troj/DocDl-DWZ] [W97M.Downloader.DWE] [W97M.DownLoader.1099] [W2KM_LOCKY.MV] [TrojanDownloader:O97M/Donoff] [W97M.Downloader.DWE] [W97M/Downloader] [W97M.Downloader.DWE] [W97M.Downloader.DWE] [Macro.Trojan.Dropperd.Auto] [W97M/Downloader] [VBS/Jenxcus.A] [virus.office.obfuscated.1]
0406acf9f350e647e78df16b738c8f03[JS.Swabfex.MQ] [JS/Nemucod.CG] [JS.Downloader] [Trojan-Downloader.JS.Cryptoload.abf] [Trojan.Script.Heuristic-js.iacgm] [JS/Dwnldr-NQH] [JS/Nemucod.jt] [JS/Nemucod.CG] [TrojanDownloader:JS/Nemucod.FJ] [JS/Obfus.S82] [JS/Nemucod.jt] [JS/TrojanDownloader.Nemucod.AJP] [Js.Trojan.Raas.Auto] [Trojan.JS.Reverser] [JS/Nemucod.AJP!tr.dldr] [trojan.js.downloader.2]

DNS Resolutions

DateIP Address
2015-08-17195.208.1.141 (ClassC)
2018-11-26195.208.1.109 (ClassC)
2019-09-05178.210.92.160 (ClassC)
2024-04-2131.177.76.32 (ClassC)
2024-04-2131.177.80.32 (ClassC)
2025-08-06195.24.68.5 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



пїЅ Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information