Help RSS API Feed Maltego Contact                        

Domain > kel52.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://ransomwaretracker.abuse.ch/feeds/csv/    
https://otx.alienvault.com/pulse/56e85de34637f24cb...    
https://ransomwaretracker.abuse.ch/downloads/RW_UR...    

Files that talk to kel52.com

MD5A/V
53e88d6960457dcfe040f29a03a6a189[JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS/TrojanDownloader.Nemucod.JM] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [Troj/JSDldr-FM] [UnclassifiedMalware] [JS:Trojan.JS.Downloader.DK] [JS/Dldr.Nemucod.44706] [JS:Trojan.JS.Downloader.DK] [Js.Troj.Js!c] [JS/Obfus.S3] [JS:Trojan.JS.Downloader.DK] [JS/Nemucod.cs] [Js.Trojan.Raas.Auto] [Trojan-Downloader.Script.TeslaCrypt] [trojan.js.downloader.1]
da0f7d8264f9d09c130e4d99b9a78242[HEUR.JS.Trojan.b] [JS/Obfus.S3] [Js.Trojan.Raas.Auto] [trojan.js.downloader.1]
d5ccbd039541f169f49dd3a23a7fd4d3[HEUR.JS.Trojan.b] [JS/Obfus.S3] [trojan.js.downloader.1]
115d25c2e6fa20623f1a02f0c4fa6368[Js.Trojan.Raas.Auto] [HEUR.JS.Trojan.b] [JS/Obfus.S3] [trojan.js.downloader.1]
1875729453f986a8df0d8a04ada44658[HEUR.JS.Trojan.b] [JS/Obfus.S3] [trojan.js.downloader.1]
9efadd79cdd4379eef0f7012288d620a[JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS:Trojan.JS.Downloader.DK] [JS/TrojanDownloader.Nemucod.JM] [JS_NEMUCOD.YYKG] [JS:Trojan.JS.Downloader.DK] [Troj/JSDldr-FM] [UnclassifiedMalware] [JS:Trojan.JS.Downloader.DK] [JS_NEMUCOD.YYKG] [JS/Dldr.Nemucod.IU.12] [JS:Trojan.JS.Downloader.DK] [Js.Troj.Js!c] [JS/Obfus.S3] [JS:Trojan.JS.Downloader.DK] [JS/Nemucod.cs] [Js.Trojan.Raas.Auto] [Trojan-Downloader.Script.Locky] [trojan.js.downloader.1]
11ce8ec6af72645475127ae0ffea3ffa[HW32.Packed.6189] [Trojan.SelfDelete] [Suspicious.Cloud.5] [Ransom_CRYPTESLA.USVNC14] [Trojan.Encoder.4154] [Ransom_CRYPTESLA.USVNC14] [BehavesLike.Win32.PWSZbot.fc] [TR/AD.Tescrypt.M.52] [Ransom:Win32/Tescrypt.D] [Artemis!11CE8EC6AF72] [Win32.Trojan.Raas.Auto] [W32/Kryptik.ERAJ!tr] [Crypt_r.BJU]
db838efb6b606b290dfe66e7c9d84847[HEUR.JS.Trojan.b] [trojan.js.downloader.1]
372efaf50144c9b41ee9001a0b4b7524[HW32.Packed.F2FD] [Ransom.TeslaCrypt] [W32/Teslacrypt.SEUE-0963] [Ransom_CRYPTESLA.YUYAJI] [Trojan.AVKill.60515] [Ransom_CRYPTESLA.YUYAJI] [W32/Teslacrypt.BW] [TR/FileCoder.Y.754467] [Win32/Filecoder.TeslaCrypt.K] [Trojan.Win32.Filecoder] [W32/Kryptik.ERAJ!tr] [FileCryptor.IMU]
1dbbc1ef4fa9e081de8110a37097365a[HW32.Packed.E71C]
193b5bd1075e97201221a7593e723c24[HW32.Packed.F3BE] [Ransomware-FGW!193B5BD1075E] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Win32.AVKill.eazfkg] [Ransom:Win32/Locky!rfn] [Trojan/Win32.Teslacrypt] [W32/Kryptik.ERAJ!tr] [Crypt_r.BLG]
8f51ae44d6beea97a6a0048947cd4afd[Trojan.Ransom.TeslaCrypt] [Ransom.TeslaCrypt] [Win32.Malware!Drop] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Win32.AVKill.eazfyq] [W32/Teslacrypt.BV] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.I] [Ransom_CRYPTESLA.CBQ163E] [Trojan-Ransom.Win32.Bitman.ryr] [Trojan.Bitman!] [Trojan.Win32.Z.Teslacrypt.347639.B[h]] [Mal/Ransom-EG] [Trojan.AVKill.60499] [Trojan.TeslaCrypt.Win32.72] [Ransom_CRYPTESLA.CBQ163E] [Ransomware-FGN!8F51AE44D6BE] [W32/Teslacrypt.LTOS-6469] [nbg] [TR/Crypt.Xpack.431629] [Ransom:Win32/Tescrypt.D] [Uds.Dangerousobject.Multi!c] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!8F51AE44D6BE] [Win32.Malware!Drop] [Win32.Trojan.Crypt.Eddx] [Trojan.Win32.Filecoder] [W32/Bitman.EG!tr] [Crypt_r.BLH] [Trojan.Win32.TeslaCrypt.I] [Win32/Trojan.46f]
359de220c003a546008471a33d5bfe8b[Ransomware-FGN!359DE220C003] [Trojan.SelfDelete] [Suspicious.Cloud.7.L] [Ransom_CRYPTESLA.YUYAJI] [Win32.Malware!Drop] [Ransom_CRYPTESLA.YUYAJI] [BehavesLike.Win32.Downloader.gh] [TR/Crypt.Xpack.432146] [Win32.Malware!Drop] [Win32/Filecoder.TeslaCrypt.K] [Trojan.Win32.Injector]
a85974f34f84150f0b43cc5acae93b2a[Ransom.Teslacrypt.OL4] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SM2] [Trojan-Ransom.Win32.Bitman.rze] [Trojan.Win32.AVKill.eazaac] [Troj.Ransom.W32.Bitman!c] [UnclassifiedMalware] [Trojan.AVKill.60513] [Ransomware-FGN!A85974F34F84] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt.H] [Trojan.TeslaCrypt.12] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!A85974F34F84] [Hoax.Bitman] [Trj/TeslaCrypt.A] [Win32.Trojan.Bitman.Lmkn] [Trojan.Win32.Filecoder] [W32/Kryptik.EQMA!tr] [FileCryptor.IMZ]
ac05ed14366f588f67d00009b3e4a8fe[W32.Clod6f8.Trojan.f7bc] [Ransom.Teslacrypt.OL4] [Ransomware-FGN!AC05ED14366F] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SM2] [Trojan-Ransom.Win32.Bitman.rzc] [Trojan.Win32.AVKill.eazaac] [Win32.Trojan.Bitman.Lman] [Trojan.AVKill.60513] [BehavesLike.Win32.PWSZbot.gh] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt.H] [Trojan.TeslaCrypt.12] [Trojan/Win32.Teslacrypt] [Trj/TeslaCrypt.A] [Trojan.Win32.Filecoder] [Malicious_Behavior.VEX.96] [FileCryptor.IMZ]
86a1459464acb4b0c0a9d333e46f4e08[Ransom.Teslacrypt.OL4] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_CRYPTESLA.YUYAJI] [Trojan-Ransom.Win32.Bitman.rzj] [Trojan.Win32.AVKill.eazaac] [Trojan.Win32.Z.Teslacrypt.420799[h]] [UnclassifiedMalware] [Trojan.AVKill.60513] [Ransom_CRYPTESLA.YUYAJI] [Ransomware-FGN!86A1459464AC] [W32/Ransom.RXKL-4732] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!86A1459464AC] [Hoax.Bitman] [Trj/TeslaCrypt.A] [Win32.Trojan.Bitman.Ebqn] [Trojan.Win32.Filecoder] [Malicious_Behavior.VEX.96] [FileCryptor.IMZ]
b5e0cd69237abd0d3637253649b35405[Ransom.TeslaCrypt] [Trojan.Win32.AVKill.eazaac] [Trojan.Cryptolocker.N] [Ransom_CRYPTESLA.YUYAJI] [Trojan-Ransom.Win32.Bitman.rzg] [Win32.Trojan.Filelocker.Phpw] [Trojan.AVKill.60513] [Ransom_CRYPTESLA.YUYAJI] [BehavesLike.Win32.AAEH.gh] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Trojan.TeslaCrypt.12] [Ransom:Win32/Tescrypt.H] [Trojan/Win32.Teslacrypt] [Ransomware-FGN!B5E0CD69237A] [Win32/Filecoder.TeslaCrypt.K] [Trojan.Win32.Filecoder] [W32/Kryptik.EQMA!tr] [FileCryptor.IMZ] [Trj/TeslaCrypt.A]
80dc3c416941c3d8955fd132d29d2500[Ransomware-FGN!80DC3C416941] [Ransom.TeslaCrypt] [Win32.Trojan.WisdomEyes.151026.9950.9999] [Trojan.Win32.AVKill.eazaac] [Trojan.Cryptolocker.N] [Win32/Filecoder.TeslaCrypt.K] [Ransom_HPCRYPTESLA.SMJ9] [Trojan-Ransom.Win32.Bitman.rzh] [Trojan.AVKill.60513] [Trojan.Injector.Win32.368055] [Ransomware-FGN!80DC3C416941] [Trojan.Bitman.uf] [TR/Crypt.Xpack.432146] [Ransom:Win32/Tescrypt.H] [Trojan/Win32.Teslacrypt] [Trj/TeslaCrypt.A] [Win32.Trojan.Crypt.Eank] [Trojan.Win32.Filecoder] [W32/Kryptik.EQMA!tr] [FileCryptor.IMZ]

Whois

PropertyValue
NameServer NS-CA.1AND1-DNS.CA
Created 2014-09-21 00:00:00
Changed 2016-02-12 00:00:00
Expires 2016-09-21 00:00:00
Registrar 1&1 INTERNET SE

DNS Resolutions

DateIP Address
2019-04-13108.167.141.20 (ClassC)
2025-08-03192.195.77.147 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information