Help RSS API Feed Maltego Contact                        

Domain > gogirlhairextensions.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://blog.dynamoo.com/2016/02/malware-spam-int24...    
https://otx.alienvault.com/pulse/56bd152b67db8c71b...    

Files that talk to gogirlhairextensions.com

MD5A/V
a7f6e52be0825567acd49a08b8fdc566[HEUR.VBA.Trojan.d] [heur.macro.download.cc]
b544a30a689540927820d72e47bdcd2c[HEUR.VBA.Trojan.d] [heur.macro.download.cc]
d085cc92e555e26700d80a32bdc7f664[HEUR.VBA.Trojan.d] [heur.macro.download.cc]
0f5fabb2c7d489cdd4097a6525436a8d[HEUR.VBA.Trojan.d] [heur.macro.download.cc]
e3af49e2f5ecd06e24a4ac3177970a5f[HEUR.VBA.Trojan.d] [O97M/Downloader] [heur.macro.download.cc]
190c3174552f669d4bd9efbec0daf1d6[HEUR.VBA.Trojan.d] [O97M/Downloader] [heur.macro.download.cc]
eb6dc75abdf6976dd2d13d269cab4f22[X2KM_DRIDEX.BYX] [Troj/DocDl-AZU] [X2KM_DRIDEX.BYX] [Trojan.FETK-6] [W2000M/Donoff.DB] [TrojanDownloader:O97M/Adnel] [HEUR.VBA.Trojan.d] [O97M/Downloader] [heur.macro.download.cc]
564032f002ce526ff3894b1262c65a1c[X2KM_DRIDEX.BYX] [Troj/DocDl-AZU] [X2KM_DRIDEX.BYX] [Trojan.RHMC-8] [X2000M/Dridex.ksl.15] [TrojanDownloader:O97M/Adnel] [HEUR.VBA.Trojan.d] [O97M/Downloader] [heur.macro.download.cc]
b25b3a93a9fa8bd3a54cf89b98559353
f945a8079b265ad996a4c60845b75a71[W97M.Downloader.AUC] [X2KM_DRIDEX.BYX] [W97M.Downloader.AUC] [W97M.Downloader.AUC] [W97M.Downloader.AUC] [W97M.DownLoader.879] [X2KM_DRIDEX.BYX] [Troj/DocDl-BBM] [Trojan.GSVX-1] [W2000M/Donoff.DB] [HEUR.VBA.Trojan.d] [TrojanDownloader:O97M/Adnel] [O97M/Downloader] [W97M.Downloader.AUC] [heur.macro.download.cc]
55b69d8082831cbf79b77cf0d5803607[X97M.Downloader.BG] [W97M.Downloader.AUC] [X97M.Dropper.UI] [W97M/Downloader.axk] [X97M.Downloader.BG] [W97M.Downloader] [X2KM_DRIDEX.BYX] [X97M.Downloader.BG] [Troj/DocDl-BBM] [Trojan-Downloader:W97M/Dridex.R] [W97M.DownLoader.879] [X2KM_DRIDEX.BYX] [Trojan.ZFCT-1] [W2000M/Donoff.DB] [TrojanDownloader:O97M/Adnel] [HEUR.VBA.Trojan.d] [W97M/Downloader] [X97M.Downloader.BG] [O97M/Downloader] [heur.macro.download.cc]

Whois

PropertyValue
Email kristy@gogirlhairextensions.com.au
NameServer NS8.FREEDOMSERVERS.COM.AU
Created 2007-07-22 00:00:00
Changed 2015-06-25 00:00:00
Expires 2016-07-22 00:00:00
Registrar TPP WHOLESALE PTY LT