Help RSS API Feed Maltego Contact                        

Domain > dop.premiocastelloacaja.com

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://researchcenter.paloaltonetworks.com/2016/10...    
https://isc.sans.edu/forums/diary/Searching for ma...    

Files that talk to dop.premiocastelloacaja.com

MD5A/V
4447e2e0dcfa90605dacc52323cfc08a
77591519f9b316670447fcf949075581
5037134dd98167174861235f699da47c
41481c0a3180b63bbff7ca4e754cd5f7[ransom.win32.tescrypt.d] [Win32.Trojan.WisdomEyes.16070401.9500.9962] [W32/S-e2e07e9d!Eldorado] [Trojan.Win32.Xpack.ehasme] [Worm.Win32.Ngrbot.BHQ] [BehavesLike.Win32.PWSZbot.dh] [W32/S-e2e07e9d!Eldorado] [TR/Crypt.Xpack.qguzo] [VirTool:Win32/CeeInject.GF] [Trojan/Win32.Upbot.N2125033555] [Win32.Trojan.Kryptik.Ozsa] [Trojan.Win32.Crypt] [Trj/GdSda.A] [Win32/Trojan.e6d]
3df277f03513a4e0cefbf764b4ed33ad

Whois

PropertyValue
Email renatoptt@me.com
NameServer NS2.REGISTER.IT
Created 2012-05-15 00:00:00
Changed 2016-05-16 00:00:00
Expires 2017-05-15 00:00:00
Registrar REGISTER.IT SPA

DNS Resolutions

DateIP Address
2025-04-20104.21.32.1 (ClassC)
2025-08-05104.21.96.1 (ClassC)

Port 80

Port 443

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information