Help RSS API Feed Maltego Contact                        

Domain > toysfortheneedyandaid.org

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://ransomwaretracker.abuse.ch/feeds/csv/    
https://otx.alienvault.com/pulse/56a9585a4637f2355...    
https://otx.alienvault.com/pulse/56d9d25baef921042...    
https://otx.alienvault.com/pulse/56e85de34637f24cb...    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    
https://ransomwaretracker.abuse.ch/tracker/online/    
https://www.virustotal.com/en/file/90188b82f6a2187...    

Files that talk to toysfortheneedyandaid.org

MD5A/V
8cb4f8d9b8a36a06036888c9c37968c0
36774b47b6874a013efa81948cb9c454[JS:Trojan.JS.Downloader.BX] [JS/Nemucod.bq] [JS:Trojan.JS.Downloader.BX] [JS:Trojan.JS.Downloader.BX] [JS_CRYPLOD.YYSJO] [Trojan.Script.Nemucod.dzmpqx] [JS:Trojan.JS.Downloader.BX] [JS:Trojan.JS.Downloader.BX] [JS_CRYPLOD.YYSJO] [JS/DwnLdr-NBQ] [TrojanDownloader:JS/Swabfex] [JS:Trojan.JS.Downloader.BX] [JS/Kryptik.AZH] [JS/Kryptik.AZH!tr] [js.url.downloader.c]
1447ba25e6548a395fc308b82f8d80bd[Trojan/Win32.Teslacrypt]
f9e96a5f05be17360abf1956161900d7[JS/Downldr.CZ1!Eldorado] [Troj/JSDldr-DK] [JS/Downldr.CZ1!Eldorado] [JS/Kryptik.AZG!tr] [js.url.downloader.c]
9c7086c19492eff8d7e58f2d448406fb
23a45cb6d6156d4510d40f013b2098d5[Artemis!23A45CB6D615] [Trojan.Encoder.3639] [BehavesLike.Win32.BadFile.hc] [Mal/Ransom-EC] [Trojan/Win32.Teslacrypt] [Win32.Trojan.Bp-dropperv.Bzmy]
578b49c2a7e1540a318afd90e93f1007[Artemis!578B49C2A7E1] [Uds.Dangerousobject.Multi!c] [Artemis] [Mal/Ransom-EC] [Trojan/Win32.Teslacrypt]
dec0d94cf85d16af97d0d911f3fdc46a[JS/Downldr.CZ1!Eldorado] [Troj/JSDldr-DK] [JS/Downldr.CZ1!Eldorado] [TrojanDownloader:JS/Swabfex.L] [HEUR.JS.Trojan.a] [JS/Kryptik.AZG!tr] [js.url.downloader.c]
36d2d4cf0854f0217d743b1e9b7d3827
b1010190dd0dd6391cfab21a9f2e61a9[JS/Downldr.CZ1!Eldorado] [JS.Downloader] [JS/Downldr.CZ1!Eldorado] [Troj.Downloader.Script!c] [Trojan-Downloader.JS.Swabfex] [JS/Kryptik.AZG!tr]
e26da112945fd67513d3b695bfacd526
c9c1cda037a083858449f1249ada04ce[VBS/Psyme] [Win32.Trojan.Raas.Auto]
d75f8cd8af3c82d868be00a885918bc7[Ransom.TeslaCrypt] [Trojan.Razy.D174C] [Trojan.Encoder.3616] [BehavesLike.Win32.Downloader.fh] [Trj/GdSda.A]
818f2d4c731c58b4f9c31acbd4c3d5c2[Ransom.TeslaCrypt] [Trojan/Win32.Teslacrypt] [Win32.Trojan.Bp-dropperv.Bzmy]
735c75f840ba2e20eae53fad6482e355[Ransom.TeslaCrypt] [Uds.Dangerousobject.Multi!c] [Trojan.PWS.Shifu!] [Suspicious.Cloud.2] [Trojan-Banker.Win32.Shifu.acq] [Trojan.Encoder.3663] [BehavesLike.Win32.Swizzor.hc] [TR/Crypt.Xpack.439354] [Trojan[Banker]/Win32.Shifu] [Ransom:Win32/Tescrypt!rfn] [Trojan.Win32.Injector] [W32/CRFM!tr] [Inject3.ZGA] [Win32/Trojan.44f]
690f6707128855d85a106a6fa112f344

DNS Resolutions

DateIP Address
2015-04-01162.255.119.254 (ClassC)
2016-01-2797.107.141.123 (ClassC)
2025-12-1565.183.182.14 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information