Help RSS API Feed Maltego Contact                        

Domain > surrogacyandadoption.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://ransomwaretracker.abuse.ch/feeds/csv/    
https://otx.alienvault.com/pulse/56e85de34637f24cb...    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    

Files that talk to surrogacyandadoption.com

MD5A/V
ebfc25d6bb8b9a940760fee534d245fd[HW32.Packed.F3F8] [Ransom.TeslaCrypt]
d4dbed1d467089a4048e8fffc169d2ee[HW32.Packed.7899]
e026007cc3dc456bff6577e42dcf017b[HW32.Packed.5079] [Ransom.TeslaCrypt]
a56e2674190af5e65e7835693957c760
32798c41814a6a7d2a779fcf7f9931ce
3631b45b2870c1ad753d85e7013933b8
196dbc6b8ffa2c80a29765c66c2f2d4c[TR/Crypt.ZPACK.230682] [Trojan.Mikey.D7E6C] [Uds.Dangerousobject.Multi!c] [Win32/Filecoder.TeslaCrypt.I] [W32/Filecoder_TeslaCrypt.I!tr]
afc41d00e17a31a31c71cb59d8bd1bec[HW32.Packed.7702] [Ransom.TeslaCrypt] [Trojan-Banker.Win32.Shifu.dmy] [Troj.Banker.W32.Shifu!c] [Trojan.Encoder.4022] [Artemis] [Mal/Ransom-EC] [Artemis!AFC41D00E17A]
3a5e900f33d3d04568633882e42b08ce
1c6391df45519425b0b14401f07708e6[HW32.Packed.189E]
acc92f8af4528a240762478e1943d98a
86d7ba0c17bee08f2245f5f320f7513a
438440c64864e51792cf0b04641a90ba[Trojan.SelfDel] [BehavesLike.Win32.PWSZbot.gc] [W32/Kryptik.EPRI!tr] [Trojan.Mikey.D7F0B] [Win32.Trojan.Bp-ransomware.Ejqz]
c0f8c498456197663e2f230c2bbad6f0[HW32.Packed.5A68] [Trojan.Kelihos] [Trojan-Ransom.Win32.Bitman.lfe] [Troj.W32.Hrup] [Mal/Ransom-EC] [Trojan.AVKill.60145] [TR/Crypt.ZPACK.231054] [W32/Bitman.EC!tr] [Ransom:Win32/Tescrypt.A] [Trojan/Win32.Ransom] [Trj/RansomCrypt.H] [Win32.Trojan.Bp-ransomware.Ejqz] [Inject3.ACSI]
ea7d9f62e3d92d2d63b171dc013e8da4
9ce01dfbf25dfea778e57d8274675d6f
3b7af1e08dd1576098598c301d3ecd52[W32.LenstopaLTAR.Trojan] [Ransomware-FFK!3B7AF1E08DD1] [Ransom.TeslaCrypt] [Trojan.Win32.Encoder.easuyc] [Win32/Filecoder.TeslaCrypt.I] [Ransom_CRYPTESLA.YUYAIP] [Win.Trojan.Ransom-4627] [Trojan-Ransom.Win32.Bitman.lne] [Mal/Wonton-CB] [Trojan.Encoder.4022] [Trojan.Crypmod.Win32.256] [Ransom_CRYPTESLA.YUYAIP] [BehavesLike.Win32.PWSZbot.fh] [W32/Ransom.ZFOV-4968] [Trojan.Bitman.lb] [TR/Crypt.Xpack.414210] [Trojan[Ransom]/Win32.Bitman] [Ransom:Win32/Tescrypt] [Trojan/Win32.Teslacrypt] [Trj/CryptoWall.C] [Win32.Trojan.Bitman.Llrm] [Trojan.Win32.Filecoder] [W32/Kryptik.EPQR!tr] [FileCryptor.HUV]
176100b82d9b225cacfa27a4675cc0fd
59cd9a688eddff21cbc9dc31b4f77b35[RDN/Ransom] [Trojan.Kovter] [Win32.Trojan.WisdomEyes.151026.9950.9998] [Trojan.Win32.Encoder.ebfuin] [UnclassifiedMalware] [Trojan.Encoder.4022] [BehavesLike.Win32.PWSZbot.dh] [Ransom:Win32/Tescrypt.K] [Trojan.Zusy.D2CDA8] [SScope.TrojanRansom.Filecoder] [Trj/GdSda.A] [Trojan.Win32.Filecoder] [W32/Filecoder_TeslaCrypt.I!tr]
dc56ff2ad208373e7894272128dcfd13[HW32.Packed.1F13] [Ransomware.Teslacrypt.A5] [Trojan.Cryptolocker.N] [Ransom_CRYPTESLA.SMJ7] [Trojan-Banker.Win32.Shifu.dhp] [Trojan.Win32.AVKill.eaoytu] [Win32.Trojan.Filelocker.Wstq] [Trojan.AVKill.60131] [Trojan.Shifu.Win32.108] [RDN/PWS-Banker] [Mal/Ransom-EC] [W32/Trojan.XGFK-7165] [Trojan.Banker.Shifu.ig] [TR/TeslaCrypt.A.22] [Trojan[Banker]/Win32.Shifu] [Troj.Banker.W32.Shifu!c] [Ransom:Win32/Tescrypt.H] [RDN/PWS-Banker] [Trojan.PWS.Shifu!] [Trojan.Win32.Crypt] [Malicious_Behavior.VEX.99] [Crypt5.ALNX]

Whois

PropertyValue
NameServer NS3.HOSTLAND.RU
Created 2015-10-05 00:00:00
Changed 2016-02-11 00:00:00
Expires 2017-10-05 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2015-10-06184.168.221.36 (ClassC)
2016-02-26185.26.122.59 (ClassC)
2018-07-0664.22.111.219 (ClassC)
2019-09-07109.73.238.245 (ClassC)
2020-05-0735.209.43.160 (ClassC)
2022-10-2034.98.99.30 (ClassC)
2023-12-033.19.116.195 (ClassC)
2023-12-1254.209.32.212 (ClassC)
2023-12-1352.71.57.184 (ClassC)
2024-02-193.94.41.167 (ClassC)
2024-06-173.130.204.160 (ClassC)
2024-06-2318.119.154.66 (ClassC)
2024-07-053.140.13.188 (ClassC)
2024-08-023.18.7.81 (ClassC)
2024-08-2554.161.222.85 (ClassC)
2024-09-133.130.253.23 (ClassC)
2024-09-2634.205.242.146 (ClassC)
2024-10-0652.86.6.113 (ClassC)
2024-10-2252.44.33.141 (ClassC)
2024-10-2744.213.140.181 (ClassC)
2025-01-0554.205.192.227 (ClassC)
2025-01-1223.23.66.93 (ClassC)
2025-01-2154.85.129.208 (ClassC)
2025-03-1754.205.0.78 (ClassC)
2025-03-243.218.211.55 (ClassC)
2025-04-0752.205.213.233 (ClassC)
2025-04-1944.205.92.141 (ClassC)
2025-04-293.214.18.45 (ClassC)
2025-05-0852.44.252.51 (ClassC)
2025-05-1852.2.128.121 (ClassC)
2025-06-0254.237.116.149 (ClassC)

Port 443

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information