Help RSS API Feed Maltego Contact                        

Domain > golemerix.com

This indicator is referenced in AlienVault OTX pulse ""

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://blog.trendmicro.com/trendlabs-security-inte...    
https://otx.alienvault.com/pulse/559721bbb45ff5769...    
https://otx.alienvault.com/pulse/5620542267db8c47d...    

Files that talk to golemerix.com

MD5A/V
9531195cee21242f509b95e739233a72[HW32.Packed.66E7] [Suspicious.Cloud.5] [Trojan.Win32.CryptoLocker.270336[h]]
c633f148803b279895cbdb5cb4aacfcc[HW32.Packed.66E7] [Trojan.Win32.CryptoLocker.270336[h]]
3aaf4e1cde892b8a60d4647cd9cee2f8[Trojan.CryptoLocker] [Trojan.Graftor.D261A2] [W32/S-b685389d!Eldorado] [Suspicious.Cloud.5] [Trojan-Ransom.Win32.Rack.ba] [Trojan.Encoder.1244] [BehavesLike.Win32.Downloader.dh] [W32/S-b685389d!Eldorado] [Trojan/Rack.ag] [Ransom:Win32/Teerac.A] [Trojan/Win32.Cryptolocker] [W32/Filecoder.DI!tr]
2918d24800e32a86471135a412feb4b4[HW32.Packed.D0E0]
b2ac409a0acc2af1ce6ab8462b2980b6
e7ad129659de776d6d8f1e9aef6ae914[HW32.Packed.7533] [Suspicious.Cloud.5]
229b83411aa0a4e934e3701c0e548a45[HW32.Packed.7533] [Suspicious.Cloud.5]
ee66f4441f3c70769e64f6044c69fc64

Whois

PropertyValue
Email contact@privacyprotect.org
NameServer NS2.REG.RU
Created 2015-06-30 00:00:00
Changed 2015-07-02 00:00:00
Expires 2016-06-30 00:00:00
Registrar REGISTRAR OF DOMAIN