Help RSS API Feed Maltego Contact                        

Domain > heizhuangym.com

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://ransomwaretracker.abuse.ch/blocklist/    
http://ransomwaretracker.abuse.ch/feeds/csv/    
https://otx.alienvault.com/pulse/56d9d25baef921042...    
https://otx.alienvault.com/pulse/56e85de34637f24cb...    
https://otx.alienvault.com/pulse/56f02c1967db8c5ce...    
http://ransomwaretracker.abuse.ch/blocklist/    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    
https://ransomwaretracker.abuse.ch/tracker/online/    

Files that talk to heizhuangym.com

MD5A/V
19abd8bcd698dcdbcfe2637af16e95bf
6f743516ba4236433b1e98fd6b677e5d[Trojan.Ransom.TeslaCrypt] [Ransom.TeslaCrypt] [Win32/Filecoder.TeslaCrypt.I] [Trojan.AVKill.60113] [BehavesLike.Downloader.dc] [TR/Crypt.ZPACK.230554]
40707cdcd4220213b9ef2545043d6c99[W32.RansomBitmanAB.Trojan] [Trojan/W32.TeslaCrypt.397312] [Ransomware.Teslacrypt.A5] [Ransom.TeslaCrypt] [Trojan.TeslaCrypt.Win32.26] [Trojan.Win32.AVKill.eanowu] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.I] [Ransom_CRYPTESLA.YUYAIH] [Trojan-Banker.Win32.Shifu.cxf] [Trojan.PWS.Shifu!] [Troj.Banker.W32.Shifu!c] [Win32.Trojan-banker.Shifu.Palk] [Mal/Ransom-EK] [TrojWare.Win32.Ransom.TeslaCrypt.~O] [Trojan.AVKill.60094] [Ransom_CRYPTESLA.YUYAIH] [BehavesLike.Win32.Backdoor.fm] [Trojan.Banker.Shifu.hd] [TR/Crypt.ZPACK.230282] [Trojan[Banker]/Win32.Shifu] [Ransom:Win32/Tescrypt!rfn] [Trojan/Win32.Teslacrypt] [Ransomware-FFD!40707CDCD422] [Trojan-Ransom.Locky] [W32/Kryptik.EPFR!tr] [FileCryptor.HPZ]

Whois

PropertyValue
NameServer NS2-DOMAIN-EXPIRED.MYHOSTADMIN.NET
Created 2015-03-15 00:00:00
Changed 2016-03-15 00:00:00
Expires 2016-03-15 00:00:00
Registrar WEST263 INTERNATIONA