Help RSS API Feed Maltego Contact                        

Domain > citimortgage.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to citimortgage.com

MD5A/V
3f4409b63a45aaa5c4225011a4b63096
3ec41c2e815dc353ed6d821825e9b6a8
3220ab9b63a767c299000ea9d9e3a056[HW32.CDB.1b0b] [Packed.Win32.Katusha.1!O] [Backdoor.Hlux!u8SUOkHyYnA] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.RbUfAWB] [Backdoor.Win32.Hlux.dpoo] [Trojan.Win32.Hlux.cxxuzn] [TrojWare.Win32.Kryptik.CAUP] [BackDoor.Slym.12819] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Backdoor.Hlux] [Win32/Kryptik.CAXO] [Win32.Backdoor.Hlux.Lgjg] [Trojan.Crypt_s] [W32/Kryptik.CAXO!tr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CAXO]
03e452e4771eb7bfef9f331b259e3f40[HW32.CDB.1d3e] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dsfd] [Backdoor.Hlux!SjVJGb/HMIs] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13011] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.MalPacked] [W32/Trojan.RSYC-6534] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.AgM] [Win32.Backdoor.Hlux.Glo] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC]

Whois

PropertyValue
NameDomain Administration
Organization CitiBank, N.A.
Email domain.admin@citi.com
Address Sort 1710
Zip Code 10043
City New York
State NY
Country US
Phone +1.7182480307
Fax +1.7188012650
NameServer ns5.citicorp.com
Created 1998-02-10 05:00:00
Changed 2015-01-04 07:08:15
Expires 2016-01-07 00:00:00
Registrar CSC CORPORATE DOMAIN

DNS Resolutions

DateIP Address
2025-05-24192.193.103.118 (ClassC)
2025-08-12192.193.218.222 (ClassC)

Port 80

Subdomains

DateDomainIP
www2.citimortgage.com2014-05-23192.193.218.215
uat2.www2.citimortgage.com2024-09-3023.6.105.199
uat3.www2.citimortgage.com2023-08-2523.6.105.199
uat4.www2.citimortgage.com2023-08-2523.195.238.4
uat5.www2.citimortgage.com2023-08-2523.195.238.4
b2b.citimortgage.com2024-12-0423.215.176.75
mail4.email.citimortgage.com2021-02-28216.250.51.119
images.go.citimortgage.com2014-08-2067.135.105.128
www2-uat.citimortgage.com2024-02-16104.112.189.100
correspondent-uat.citimortgage.com2023-08-2523.6.105.199
www-uat.citimortgage.com2025-01-0795.101.161.207
www.citimortgage.com2024-11-2195.101.160.163
uat2.www.citimortgage.com2024-10-2223.6.105.199
uat3.www.citimortgage.com2025-05-0423.6.105.199
uat4.www.citimortgage.com2023-08-2523.195.238.4
uat5.www.citimortgage.com2023-08-2523.6.105.199
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information