Help
RSS
API
Feed
Maltego
Contact
Domain > www.fortheloveofgodthisisavirus.com
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
DNS Resolutions
Date
IP Address
2022-05-11
13.249.80.7
(
ClassC
)
2025-11-25
3.169.173.107
(
ClassC
)
Port 80
HTTP/1.1 301 Moved PermanentlyServer: CloudFrontDate: Tue, 25 Nov 2025 06:32:04 GMTContent-Type: text/htmlContent-Length: 167Connection: keep-aliveLocation: https://www.fortheloveofgodthisisavirus.com/X-Cache: Redirect from cloudfrontVia: 1.1 30f0e61c1580551568da5e96c38c9796.cloudfront.net (CloudFront)X-Amz-Cf-Pop: HIO52-P4X-Amz-Cf-Id: or3uc5TNrjoOzsMxVHOnA6fQmsVThOzW5CGlQd6ccywsk1n2mxKTFg html>head>title>301 Moved Permanently/title>/head>body>center>h1>301 Moved Permanently/h1>/center>hr>center>CloudFront/center>/body>/html>
Port 443
HTTP/1.1 200 OKContent-Type: text/htmlContent-Length: 4546Connection: keep-aliveDate: Tue, 25 Nov 2025 06:32:05 GMTLast-Modified: Sun, 17 Oct 2021 01:11:13 GMTETag: 2fb47bc3df528fff76812629f32a88e2Accept-Ranges: bytesServer: AmazonS3X-Cache: Miss from cloudfrontVia: 1.1 7ad3d6571deff4c3c83d7e4476fcc6d0.cloudfront.net (CloudFront)X-Amz-Cf-Pop: HIO52-P4X-Amz-Cf-Id: ryTSYBvlp8id7cyIro1S3kPNizdGiQcwO1M2fnviW5vyv6qowX95Zg !DOCTYPE html>!-- saved from url(0029)https://pranx.com/fake-virus/ -->html langen>head>meta http-equivContent-Type contenttext/html; charsetUTF-8> meta http-equivX-UA-Compatible contentIEedge> title>Youre a Moron!/title> meta nameviewport contentwidthdevice-width, initial-scale1> link relcanonical hrefhttps://fortheloveofgodthisisavirus.com/> link relstylesheet href./style.css> /head>body>img src./background.jpg altbckgound classbg>div classcontent> div classheadline> KryptoTr0n 2.7 /div> div classsidebar> img src./fake-virus.png altfake computer virus classlock> h3>Hurry! br>Your files will be permanently deleted in:/h3> div classwraptimer>span idtimer>59:59/span>/div> script> window.onload function () { var minute 59; var sec 59; setInterval(function () { document.getElementById(timer).innerHTML minute + : + sec; sec--; if (sec 00) { minute--; sec 60; if (minute 0) { minute 59; } } }, 1000); }; /script> img src./fake-virus-prank.png altonline computer virus prank classsale> h3>Please read the instructions/h3> /div> div classmaincont> h1>Nice one, stupid! Your files have been encrypted!/h1> div classdescription> h2>What Happened To This Computer?/h2> p>strong>All your personal data, photos, videos, work files, including your operating system have been encrypted and can be accessed again if you pay a ransome. You cant access anything on this machine but this screen./strong>/p> p>You have strong>one hour/strong> to pay the prize, otherwise you will no longer be able to decrypt them. Powering off or restarting your computer will also destroy your files. /p> h2>What Can You Do?/h2> p>You might be looking for a way to recover your files but dont waste your time. We use an unbreakable encryption so nobody can restore your files without a decryption key. /p> p>You can purchase your key using one of the payment methods listed below. You will get a code to paste in the input field and click strong>Decrypt/strong>. After this you should be restored in a couple of minutes./p> h2>Is This Legal?/h2> p>Someone who has access to this computer has recently installed one of our free applications and agreed for the files to be encrypted by accepting the terms and conditions. This procedure is absolutely legal, we are a certified and awarded company specialized in computer viruses and digital identity theft. We will send you an invoice for your payment./p> h2>How Do You Pay?/h2> p>We offer many payment methods to make the transaction smooth and easy to make you a satisfied but not a returning customer: /p> ol type1> li>Send strong>$399 + Tax/strong> worth of strong>Monopoly Money/strong> to this address: br> oʇɐʇodƃuᴉʞɔnɟǝʇnlosqɐnoʎ /li> li>Send the fee with strong>PayPrick/strong>: br> gimme_money@you-suck-at-computers.com/li> li>We now accept strong>kidneys/strong>! br>Call now to request kidney transplant: +1 804 TAKE MY KIDNEY/li> /ol> h2>Still Having Trouble/h2> p>You shouldnt be worried, your files are safe and you dont need to pay anything. br>This isnt real. But you should consider hanging your head in shame. :) /p> p>strong>Stop clicking random shit on the internet for fuck sake!/strong>/p> /div> div classpayment> div classsteps> Send $399 strong>⇒/strong> Get a key strong>⇒/strong> Paste your key below strong>⇒/strong> Click Decrypt /div> div classinput> Your key: span idinputmezo>img src./cursor.gif altcursor>/span> span iddecrypt>Decrypt/span> /div> div classmethods> img src./fake-hacked-computer.png altfake hacked computer> img src./files-encrypted-prank.png altfiles encrypted online prank> img src./pay-with-kidneys.png altpay with your kidney> /div> /div> /div> /div> div idsupport> span>Having troubles paying?br>Im here to help./span> img src./support.png altsupport online> /div>/div> /body>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]