Help RSS API Feed Maltego Contact                        

Domain > filesassociate.net

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://paper.seebug.org/papers/APT/APT_CyberCrimin...    
https://github.com/kbandla/APTnotes/blob/master/20...    

Files that talk to filesassociate.net

MD5A/V
13f1942cf4425e619d7bea210ab4de71[TR/Rogue.8468447]
b8938f993b996255d122880c60a41931
a92fbbbe559398a0e5880e562da5b8d5[WIN.Worm.Brontok] [W32/Chir.B]
39baec1a0fb2137158192bbca5511734
75946cf747a4cf4d3bd86462d5452252[TR/Rogue.8468447.4]
5bf4fc14ae332b2724951adee5b71b04[TR/Rogue.8468446.8]
8a8d8f16be495ece4e4171541c316201[TR/Rogue.8468446.9]
30c67399c176f16ad9dcde54e5a80bb3[W32.Clodfe0.Trojan.f3c5] [Trojan-Spy.Win32.KeyLogger!O] [Artemis!30C67399C176] [Downloader] [HangOver.A] [TSPY_KEYLOGGER.R] [Trojan-Spy.Win32.KeyLogger.acqh] [UnclassifiedMalware] [Trojan.DownLoader7.4662] [Trojan-Spy.Win32.KeyLogger] [TrojanSpy.KeyLogger.cxqz] [W32/Trojan.HCGZ-2776] [Trojan/Win32.KeyLogger] [TrojanSpy.KeyLogger] [W32/KeyLogger.ACQH!tr] [Win32/Trojan.Downloader.478]
b537d550196076ba73228c229eaae9b2[WIN.Worm.Brontok] [W32/Chir.B] [Win32/Chir.I@mm] [Virus*Win32/Chir.B@mm]
4105413179aef5e91ae74850f5e070a3
5e9e003a1c5a887901694a0956cfdd55[RDN/Downloader.a!og]
b5d3a2d5938330f59177ff5572f16a34
138dd3787a2db1726c1a08a62ab23795
f3e884b2e0d0d95476b7937d32eb0ba2[Trojan-Spy.Win32.KeyLogger!O] [Artemis!F3E884B2E0D0] [Trojan.Win32.KeyLogger.brqtyt] [HangOver.A] [Trojan-Spy.Win32.KeyLogger.acqh] [Trojan.DownLoader6.50269] [TR/Rogue.8468447.9] [TrojanSpy.KeyLogger.cxvi] [Win32.Troj.KeyLogger.ac.(kcloud)] [W32/Trojan.RUAR-8941] [Spyware/Win32.KeyLogger] [Trj/Spyeye.L] [Trojan-Spy.Win32.KeyLogger] [W32/KeyLogger.ACQH!tr]
7a6901b8b2d5c69a196cbc9ab7a1cd00
c5ececb9d2f5cddef006389682174ac7[TR/Rogue.8468447]
09364fddb2353e557ddd8b395132ecf7[TR/Rogue.8468446]
4b13e9f764c7aa12d11ceedc1bf7cd52[Win32/Sality] [W32/Sality.AT] [Virus*Win32/Sality.AT]
b1321d9b683b880aaa7b6317a4eee07c[TR/SPY.KeyLogger.baa] [RDN/Downloader.a!oi]
dd2ee34826396fec597dd0bc30f4a0d5[TR/Rogue.8468446.15]

Whois

PropertyValue
Email FILESASSOCIATE.NET@domainsbyproxy.com
NameServer PDNS04.DOMAINCONTROL.COM
Created 2013-09-09 00:00:00
Changed 2013-10-10 00:00:00
Expires 2016-09-09 00:00:00
Registrar GODADDY.COM, LLC