Help RSS API Feed Maltego Contact                        

Domain > primasentrausaha.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

https://blogs.sophos.com/2016/01/06/the-current-st...    

Files that talk to primasentrausaha.com

MD5A/V
a1425da461babbf6e60368f19f6d5f7c
721708e86afab9bc80c00981f6b0a564[Trojan.Kovter] [Trojan.AVKill.60640] [BehavesLike.Win32.PWSZbot.dc] [Mal/Behav-116] [Trojan.Graftor.D432EA] [W32/TeslaCrypt.I!tr] [Ransom_r.S]
3c0b884e2e14f1e0d3172f362769a32a[Ransomware-FHE!3C0B884E2E14] [Trojan.SelfDelete] [Win32.Trojan.WisdomEyes.151026.9950.9999] [BehavesLike.Win32.Autorun.fh]
c4322fb65e4275fa258193aa2ec0450b[Win32.Trojan.Filelocker.Swak]
b25dea987aab929ffa60ac9c50bcf9c0[Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Win32.AVKill.ebbyxx] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_CRYPTESLA.YUYAJY] [Trojan-Ransom.Win32.Bitman.tuh] [Uds.Dangerousobject.Multi!c] [Mal/Ransom-EM] [Ransom_CRYPTESLA.YUYAJY] [BehavesLike.Win32.Downloader.fh] [TR/Crypt.Xpack.426272] [Ransom:Win32/Tescrypt.R] [RDN/Ransomware-FHE] [Trj/TeslaCrypt.A] [Trojan.Win32.Filecoder] [FileCryptor.IWG]
6a220cd5bee00f03ede29a21b7c387f5[W32.KrypserLTV.Trojan] [Ransom.Teslacrypt.OD4] [Ransomware-FHE!6A220CD5BEE0] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Cryptolocker.N] [Ransom_CRYPTESLA.USVNC21] [Trojan-Ransom.Win32.Bitman.tyu] [Trojan.Win32.AVKill.ebbssz] [Troj/Ransom-CON] [Trojan.AVKill.60650] [Ransom_CRYPTESLA.USVNC21] [Ransomware-FHE!6A220CD5BEE0] [Trojan.Bitman.xb] [TR/Crypt.Xpack.425746] [Ransom:Win32/Tescrypt.R] [Troj.Ransom.Atb!c] [Trojan.Ransom.TeslaCrypt] [Trojan.Win32.Injector.CUYA] [Win32.Trojan.Filelocker.Wofy] [Trojan-Ransom.TeslaCrypt4] [W32/CUYA.CON!tr]
70490bacac6788d363e8835269eec643[Trojan/W32.Ransom.372736.B] [Ransomware-FHE!70490BACAC67] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9993] [Win32/Filecoder.TeslaCrypt.K] [TROJ_FRS.0NA003CO16] [Mal/Ransom-EM] [Trojan.AVKill.60660] [TROJ_FRS.0NA003CO16] [Ransom:Win32/Tescrypt.R] [Trojan.Midie.D2105] [Trj/GdSda.A] [Trojan-Ransom.TeslaCrypt4] [FileCryptor.IWB] [Win32/Trojan.640]
e0de7f084225e309356327fd92caceb9
41794429d51566e602188c9f47582a0b[Trojan/W32.TeslaCrypt.372736] [Ransom.Teslacrypt.OD4] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SM2] [Trojan.Win32.Yakes.pjpl] [Trojan.Win32.AVKill.ebbsfu] [Mal/Ransom-EG] [Trojan.AVKill.60640] [RDN/Ransomware-FHE] [W32/Trojan.LQRR-1514] [Trojan.Yakes.ilz] [TR/Crypt.Xpack.425953] [Ransom:Win32/Tescrypt] [Trojan.Symmi.DF347] [RDN/Ransomware-FHE] [Trojan.Yakes] [Win32.Trojan.Yakes.Pavp] [Trojan.Yakes!RJpPgelM4YU] [Trojan.Win32.Filecoder] [FileCryptor.ITJ]
60efc6fb2b14ebaf349f8052072b25c2[Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9996] [Win32/Filecoder.TeslaCrypt.K] [Trojan.AVKill.60644] [TR/Crypt.Xpack.425685] [Trojan/Win32.Teslacrypt] [Trj/TeslaCrypt.A]
668364fcf9c5449680c0d4be77785f1d[HW32.Packed.73AA] [Trojan.Bedep] [Troj.W32.Yakes] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Win32/Filecoder.TeslaCrypt.K] [Trojan.AVKill.60677] [Trojan/Win32.FakeMS] [W32/Kryptik.EQBM!tr]
511c045ddb2cbea5ff4165bd96d4821c[W32.KrypserLTAA.Trojan] [Ransomware-FHE!511C045DDB2C] [Ransom.TeslaCrypt] [Trojan.Filecoder.Win32.2156] [Uds.Dangerousobject.Multi!c] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SM2] [Trojan-Ransom.Win32.Bitman.uao] [Trojan.Win32.AVKill.ebbyxx] [Mal/Ransom-EM] [Trojan.AVKill.60668] [Ransomware-FHE!511C045DDB2C] [TR/Crypt.Xpack.426272] [Ransom:Win32/Tescrypt.R] [Trj/TeslaCrypt.A] [Win32.Trojan.Filelocker.Srng] [Trojan.Win32.Filecoder] [W32/Kryptik.ESFA!tr] [FileCryptor.IWG]

Whois

PropertyValue
Email HOSTMASTER@ORION.NET.ID
NameServer B.HOSTING.ORION.NET.ID
Created 2011-02-10 00:00:00
Changed 2016-02-10 00:00:00
Expires 2017-02-10 00:00:00
Registrar ENOM, INC.

DNS Resolutions

DateIP Address
2020-02-11198.54.117.197 (ClassC)
2020-02-11198.54.117.198 (ClassC)
2020-02-11198.54.117.199 (ClassC)
2020-02-11198.54.117.200 (ClassC)
2022-03-17203.84.156.154 (ClassC)
2023-12-03203.84.158.74 (ClassC)
2025-06-05203.175.9.73 (ClassC)

Port 80

Port 443

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information