Help RSS API Feed Maltego Contact                        

Domain > whereareyoumyfriendff.com

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Reports

http://blog.appriver.com/2016/02/teslacrypt-contin...    
https://otx.alienvault.com/pulse/56cf14f567db8c063...    

Files that talk to whereareyoumyfriendff.com

MD5A/V
9b58d21adf30d90b86a177a9a1bda549
ecaae598fe841eec967fd07591799953
eb2c4310aced7e2234210b63ccbc1eb2
13f7b5c74978eef34e9f283261fbf5a2[HEUR.JS.Trojan.b] [JS/Obfus.S1] [Win32.Trojan.Raas.Auto]
3f1b642e5c979182f8a13a00d8c70619
dddf055acdf59f895fccbfcc0ba3f20b
e0926b70edd34b68a84de64417bfa639
71edc074685e4e2863f01f45f272ae45
6957040abc94138a40db43bda7ff77bd[Troj.Downloader.Script!c] [HEUR.JS.Trojan.b] [JS/Obfus.S1]
8cb676f1cf40e8470569b06fa6e9e1d6
8c1d09d317a92bcb8ea2441b7971d8ae
a3246bb06ebeaf25ac6c9701bace657e
fbf585d92b4dccaac25db7bb247e9fa7
c41e8fe3f790ffdeff15812dc3de9026
9a2e0ad621d7470f58ff7cefbc716a62
41f80bfd64f3ac1e026024404945bb0a[JS/Dwnldr-NED] [JS/Downldr.DB3!Eldorado] [HEUR.JS.Trojan.b] [JS/Obfus.S1] [Win32.Trojan.Raas.Auto]
2153718aa3c4aa5f64f883676e6787d2
fe5c3604557506678b7c9c9bc4d01022
535d499aa78d53553f2c6b6e20fd96f0
79f77f707faac633979661635be624ca

Whois

PropertyValue
Email yankele@whereareyoumyfriendff.com
NameServer DNS2.BLABLAGREETING.WS
Created 2016-02-19 00:00:00
Changed 2016-02-19 00:00:00
Expires 2017-02-19 00:00:00
Registrar WEB COMMERCE COMMUNI