Help RSS API Feed Maltego Contact                        

Domain > myredhour.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

https://blogs.sophos.com/2016/01/06/the-current-st...    

Files that talk to myredhour.com

MD5A/V
53e88d6960457dcfe040f29a03a6a189[JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS/TrojanDownloader.Nemucod.JM] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [Troj/JSDldr-FM] [UnclassifiedMalware] [JS:Trojan.JS.Downloader.DK] [JS/Dldr.Nemucod.44706] [JS:Trojan.JS.Downloader.DK] [Js.Troj.Js!c] [JS/Obfus.S3] [JS:Trojan.JS.Downloader.DK] [JS/Nemucod.cs] [Js.Trojan.Raas.Auto] [Trojan-Downloader.Script.TeslaCrypt] [trojan.js.downloader.1]
da0f7d8264f9d09c130e4d99b9a78242[HEUR.JS.Trojan.b] [JS/Obfus.S3] [Js.Trojan.Raas.Auto] [trojan.js.downloader.1]
d5ccbd039541f169f49dd3a23a7fd4d3[HEUR.JS.Trojan.b] [JS/Obfus.S3] [trojan.js.downloader.1]
115d25c2e6fa20623f1a02f0c4fa6368[Js.Trojan.Raas.Auto] [HEUR.JS.Trojan.b] [JS/Obfus.S3] [trojan.js.downloader.1]
1875729453f986a8df0d8a04ada44658[HEUR.JS.Trojan.b] [JS/Obfus.S3] [trojan.js.downloader.1]
9efadd79cdd4379eef0f7012288d620a[JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS/TrojanDownloader.Nemucod.JM] [JS_NEMUCOD.YYKG] [JS:Trojan.JS.Downloader.DK] [Troj/JSDldr-FM] [UnclassifiedMalware] [JS:Trojan.JS.Downloader.DK] [JS_NEMUCOD.YYKG] [JS/Dldr.Nemucod.IU.12] [JS:Trojan.JS.Downloader.DK] [Js.Troj.Js!c] [JS/Obfus.S3] [JS:Trojan.JS.Downloader.DK] [JS/Nemucod.cs] [Js.Trojan.Raas.Auto] [Trojan-Downloader.Script.Locky] [trojan.js.downloader.1]
11ce8ec6af72645475127ae0ffea3ffa[HW32.Packed.6189] [Trojan.SelfDelete] [Suspicious.Cloud.5] [Ransom_CRYPTESLA.USVNC14] [Trojan.Encoder.4154] [Ransom_CRYPTESLA.USVNC14] [BehavesLike.Win32.PWSZbot.fc] [TR/AD.Tescrypt.M.52] [Ransom:Win32/Tescrypt.D] [Artemis!11CE8EC6AF72] [Win32.Trojan.Raas.Auto] [W32/Kryptik.ERAJ!tr] [Crypt_r.BJU]
db838efb6b606b290dfe66e7c9d84847[HEUR.JS.Trojan.b] [trojan.js.downloader.1]
372efaf50144c9b41ee9001a0b4b7524[HW32.Packed.F2FD] [Ransom.TeslaCrypt] [W32/Teslacrypt.SEUE-0963] [Ransom_CRYPTESLA.YUYAJI] [Trojan.AVKill.60515] [Ransom_CRYPTESLA.YUYAJI] [W32/Teslacrypt.BW] [TR/FileCoder.Y.754467] [Win32/Filecoder.TeslaCrypt.K] [Trojan.Win32.Filecoder] [W32/Kryptik.ERAJ!tr] [FileCryptor.IMU]
193b5bd1075e97201221a7593e723c24[HW32.Packed.F3BE] [Ransomware-FGW!193B5BD1075E] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Win32.AVKill.eazfkg] [Ransom:Win32/Locky!rfn] [Trojan/Win32.Teslacrypt] [W32/Kryptik.ERAJ!tr] [Crypt_r.BLG]
8f51ae44d6beea97a6a0048947cd4afd[Trojan.Ransom.TeslaCrypt] [Ransom.TeslaCrypt] [Win32.Malware!Drop] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Win32.AVKill.eazfyq] [W32/Teslacrypt.BV] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.I] [Ransom_CRYPTESLA.CBQ163E] [Trojan-Ransom.Win32.Bitman.ryr] [Trojan.Bitman!] [Trojan.Win32.Z.Teslacrypt.347639.B[h]] [Mal/Ransom-EG] [Trojan.AVKill.60499] [Trojan.TeslaCrypt.Win32.72] [Ransom_CRYPTESLA.CBQ163E] [Ransomware-FGN!8F51AE44D6BE] [W32/Teslacrypt.LTOS-6469] [nbg] [TR/Crypt.Xpack.431629] [Ransom:Win32/Tescrypt.D] [Uds.Dangerousobject.Multi!c] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!8F51AE44D6BE] [Win32.Malware!Drop] [Win32.Trojan.Crypt.Eddx] [Trojan.Win32.Filecoder] [W32/Bitman.EG!tr] [Crypt_r.BLH] [Trojan.Win32.TeslaCrypt.I] [Win32/Trojan.46f]
359de220c003a546008471a33d5bfe8b[Ransomware-FGN!359DE220C003] [Trojan.SelfDelete] [Suspicious.Cloud.7.L] [Ransom_CRYPTESLA.YUYAJI] [Win32.Malware!Drop] [Ransom_CRYPTESLA.YUYAJI] [BehavesLike.Win32.Downloader.gh] [TR/Crypt.Xpack.432146] [Win32.Malware!Drop] [Win32/Filecoder.TeslaCrypt.K] [Trojan.Win32.Injector]
a85974f34f84150f0b43cc5acae93b2a[Ransom.Teslacrypt.OL4] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SM2] [Trojan-Ransom.Win32.Bitman.rze] [Trojan.Win32.AVKill.eazaac] [Troj.Ransom.W32.Bitman!c] [UnclassifiedMalware] [Trojan.AVKill.60513] [Ransomware-FGN!A85974F34F84] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt.H] [Trojan.TeslaCrypt.12] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!A85974F34F84] [Hoax.Bitman] [Trj/TeslaCrypt.A] [Win32.Trojan.Bitman.Lmkn] [Trojan.Win32.Filecoder] [W32/Kryptik.EQMA!tr] [FileCryptor.IMZ]
ac05ed14366f588f67d00009b3e4a8fe[W32.Clod6f8.Trojan.f7bc] [Ransom.Teslacrypt.OL4] [Ransomware-FGN!AC05ED14366F] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SM2] [Trojan-Ransom.Win32.Bitman.rzc] [Trojan.Win32.AVKill.eazaac] [Win32.Trojan.Bitman.Lman] [Trojan.AVKill.60513] [BehavesLike.Win32.PWSZbot.gh] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt.H] [Trojan.TeslaCrypt.12] [Trojan/Win32.Teslacrypt] [Trj/TeslaCrypt.A] [Trojan.Win32.Filecoder] [Malicious_Behavior.VEX.96] [FileCryptor.IMZ]
86a1459464acb4b0c0a9d333e46f4e08[Ransom.Teslacrypt.OL4] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_CRYPTESLA.YUYAJI] [Trojan-Ransom.Win32.Bitman.rzj] [Trojan.Win32.AVKill.eazaac] [Trojan.Win32.Z.Teslacrypt.420799[h]] [UnclassifiedMalware] [Trojan.AVKill.60513] [Ransom_CRYPTESLA.YUYAJI] [Ransomware-FGN!86A1459464AC] [W32/Ransom.RXKL-4732] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!86A1459464AC] [Hoax.Bitman] [Trj/TeslaCrypt.A] [Win32.Trojan.Bitman.Ebqn] [Trojan.Win32.Filecoder] [Malicious_Behavior.VEX.96] [FileCryptor.IMZ]
b5e0cd69237abd0d3637253649b35405[Ransom.TeslaCrypt] [Trojan.Win32.AVKill.eazaac] [Trojan.Cryptolocker.N] [Ransom_CRYPTESLA.YUYAJI] [Trojan-Ransom.Win32.Bitman.rzg] [Win32.Trojan.Filelocker.Phpw] [Trojan.AVKill.60513] [Ransom_CRYPTESLA.YUYAJI] [BehavesLike.Win32.AAEH.gh] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Trojan.TeslaCrypt.12] [Ransom:Win32/Tescrypt.H] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!B5E0CD69237A] [Win32/Filecoder.TeslaCrypt.K] [Trojan.Win32.Filecoder] [W32/Kryptik.EQMA!tr] [FileCryptor.IMZ] [Trj/TeslaCrypt.A]
80dc3c416941c3d8955fd132d29d2500[Ransomware-FGN!80DC3C416941] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Win32.AVKill.eazaac] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SMJ9] [Trojan-Ransom.Win32.Bitman.rzh] [Trojan.AVKill.60513] [Trojan.Injector.Win32.368055] [Ransomware-FGN!80DC3C416941] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt.H] [Trojan/Win32.Teslacrypt] [Trj/TeslaCrypt.A] [Win32.Trojan.Crypt.Eank] [Trojan.Win32.Filecoder] [W32/Kryptik.EQMA!tr] [FileCryptor.IMZ]

Whois

PropertyValue
Email till@berlinproof.de
NameServer SHADES09.RZONE.DE
Created 2015-06-15 00:00:00
Changed 2015-06-15 00:00:00
Expires 2016-06-15 00:00:00
Registrar CRONON AG