POTENTIALLY SUSPICIOUS DOMAIN: LINKS INDIRECTLY or DIRECTLY TO POTENTIALLY MALICIOUS DOMAINS OR FILES:
1.0)
anno-domini.com/
https://www.virustotal.com/de/url/7478dde97bec4314913af2ff1de3370a32d49606ed6eb91fcd9d369d71c5242d/analysis/1424366862/
https://www.virustotal.com/de/file/645a13d0f94e6324f78a2e951d1abe7be516df1a7630804ddf7b542162b46474/analysis/1424366856/
---> REDIRECTS TO:
1.1)
www.wirsingenfuerjesus.de/projekte/anno-domini
https://www.virustotal.com/de/url/b7901038cec0a8f6291c882b0872c63df0c0143bf1ab88a4c66e285cead4d3c9/analysis/1424367816/
https://www.virustotal.com/de/file/645a13d0f94e6324f78a2e951d1abe7be516df1a7630804ddf7b542162b46474/analysis/1424366856/
----> REDIRECTS TO:
1.2)
www.wirsingenfuerjesus.de/projekte/anno-domini/
https://www.virustotal.com/de/url/36bad30964e6c72e1713b4a909d3724b0c1a6844eb10f00005eefedbc9476c4c/analysis/1424367940/
https://www.virustotal.com/de/file/645a13d0f94e6324f78a2e951d1abe7be516df1a7630804ddf7b542162b46474/analysis/1424366856/
1.3)
www.wirsingenfuerjesus.de/
https://www.virustotal.com/de/url/495aead83e93cfbc7117d76ff5b3780189a11d2e0689b34b9754251294218bd7/analysis/
https://www.virustotal.com/de/file/4be765b68413177f0f1d06d4c7bde2a2f2f960c1a140d419889f719f2c19c5da/analysis/
— wirsingenfuerjesus.de LINKS & FILES FOUND FROM FOLLOWING DOMAINS/URLs: (BY CRAWLING)
2.0)
DOMAIN: TransWorldCompany
www.twr.org/
https://www.virustotal.com/de/url/51747dc169bceb3c03fded6adc54cff9ce2f96f6b01826215e60a395f00d17d3/analysis/1424380872/
DOMAIN LINKS TO:
t.co/
quttera.com/detailed_report/www.twr.org
https://www.virustotal.com/de/url/cb15989186bb4165016e992a987c204971ce987451331518f076f3319e23aec6/analysis/
SUSPICIOUS PDF-FILE:
2.1)
www.twr.org/files/912/2012_11_pl-NA.pdf
https://www.virustotal.com/de/url/e74a4e746188c32be9e20c1c4bd65a5c5b5c14cc6baec65e4199a4e46dd4b2c1/analysis/1424374055/
https://www.virustotal.com/de/file/bf411de0730550aa4cadd6dab724a792c9d0b61c3dfc913b1d615afa4661e554/analysis/1424374016/
PLS ANALYSIS: Malicious
https://www.hybrid-analysis.com/sample/bf411de0730550aa4cadd6dab724a792c9d0b61c3dfc913b1d615afa4661e554?environmentId=1
QUOTE: «Contacts Random Domain Names» (IS NOT RANDOM, AS THEY EXIST)
2.2)
s2.symcb.com/
https://www.virustotal.com/de/url/acc706f6053f1666ffb341879401bb8d89a08666c5787face584c6d7e676dd14/analysis/1424384962/
31/4:
https://www.virustotal.com/de/file/2acab1228e8935d5dfdd1756b8a19698b6c8b786c90f87993ce9799a67a96e4e/analysis/
#spamlink_t.co
ADDITIONAL INFORMATION(s):
https://wepawet.iseclab.org/view.php?hash=f281502ae59e6779a76732225531b352&t=1424367268&type=js
https://urlquery.net/report.php?id=1424376099732