Help RSS API Feed Maltego Contact                        

Domain > cnzz.mmstat.com

Welcome! Right click nodes and scroll the mouse to navigate the graph.
More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as MALICIOUS

Files that talk to cnzz.mmstat.com

MD5A/V
f8102c521e706cc33be47ecca54a0b18[Suspici.AB01381A] [Win32.Malware]
1fa326b509f5e51ca10d71b3e2fbd7e1[Artemis!1FA326B509F5] [WS.Reputation.1] [DLOADER.Trojan] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Win32/Trojan.Downloader.475]
2687be0203a10309a33fb4b0bb5022eb[Artemis!2687BE0203A1] [Adware.Downware.2950] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O]
4c85d8998eeb343261f88a7c943ae4c4
4ae4e154df5df80ebf7baaf8e115ae56[HW32.CDB.49b4] [WS.Reputation.1] [TrojWare.Win32.FlowSpirit.H] [Trojan.DownLoader10.29061] [TR/Zusy.57368.3] [Win32.Heur.KVMF39.hy.(kcloud)] [Trojan/Win32.Clicker] [Win32.Trojan.Falsesign.Pgwy]
85b25059df5981ea867f17dfd30a0790[W32.AcLuC.PE] [Win32.Almanahe.D] [Virus/W32.Alman.B] [Virus.Win32.Almanahe.2!O] [W32.Almanahe.B] [W32/Almanahe.c] [Win32.Alman.B] [W32/Alman.C] [W32.Almanahe.B!inf] [Alman.D] [Win32/Almanahe.F!x386] [PE_CORELINK.C-1] [Win32:Alman] [W32.Alman-2] [Virus.Win32.Alman.b] [Virus.Win32.Alman.xyevp] [Virus.Win32.Magister.a] [Virus.Win32.Alman.A] [Win32.Alman.1] [W32/Alman.BB] [W32/Alman-C] [Win32/Almana.c] [Virus/Win32.Alman.b] [Worm.DLan.c.79872] [Virus:Win32/Almanahe.B] [Win32/Alman.C] [Virus.Win32.Alman.B] [Virus.Win32.Alman.$NAB] [Win32/Alman.NAB] [PE:Worm.Magistr.g!497223] [Virus.Win32.Alman] [W32/Alman.DB] [Win32/Alman] [W32/Almanahe.C] [Virus.Win32.Alman.C]
b21b4af6bc067657534a7551026e57d7[Heuristic.BehavesLike.Win32.Suspicious-BAY.K]
18d5e0c3e53e927b0eedbcb258ec1431[HW32.CDB.5746] [Artemis!18D5E0C3E53E] [WS.Reputation.1] [TrojWare.Win32.Injector.jm2] [Trojan.Click2.35671] [Adware/Rogue.683817.7] [Heuristic.LooksLike.Win32.Suspicious.C] [Win32.Troj.Undef.(kcloud)] [Trj/CI.A] [AdWare.SuspectCRC] [SHeur4.BUNC] [Win32/Virus.Adware.89c]
64aef8226ad0e18df4a5b7d0e1cbb4c7
43984d62f7836b46bcb231a389463295[Artemis!43984D62F783] [Win32.Adware.Adpush.3295] [Trojan.DownLoader11.12010] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Backdoor.Win32.Hupigon]
b373e3c3013f96b5fde63c8de0f2c5e3
a38ada0acb8a3da811e243b13e0d1251
c50251163264adffc7ec90a4b1d35067[TrojanDownloader.Dapato.r5] [Artemis!C50251163264] [Trojan.Downloader.Dapato] [Downloader.Dapato.Win32.5044] [Trojan.ADH.2] [TROJ_GE.E6F1AD8E] [Trojan-Downloader.Win32.Dapato.ser] [Adware.Shopper.352] [TROJ_GE.E52F2583] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Win32.TrojDownloader.Dapato.s.(kcloud)] [TrojanDownloader.Dapato] [Trj/CI.A] [Win32.Adware.Malplayer.Auto] [Win32.SuspectCrc] [W32/Dapato.SER!tr.dldr] [Trojan.Win32.Dapato.AD]
bd570498742706ea2de2b6ad835af892[RDN/Downloader.a!pj] [PUP.Optional.Meinv] [WS.Reputation.1] [Trojan.NSIS.StartPage.eg] [Troj/StartP-HV] [Heuristic.BehavesLike.Win32.Suspicious-PKR.K] [Trojan.Win32.StartPage.ATrH] [NSIS/TrojanDownloader.Grinidou.C] [Trojan.NSIS] [W32/StartPage.NY!tr] [Trj/CI.A]
07c115461f195d2872cb61d3820e4072[Artemis!07C115461F19] [PUP.Optional.Meinv] [WS.Reputation.1] [Startpage.ITJD] [Trojan.Win32.A.Downloader.1085470] [UnclassifiedMalware] [TR/Dldr.Hicrazyk.A.4] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Troj/StartP-HV] [TrojanDownloader:Win32/Hicrazyk.A] [Trj/CI.A] [NSIS/TrojanDownloader.Grinidou.B] [PE:Trojan.Crypt!6.191F] [not-a-virus:Downloader.NSIS] [W32/StartPage.NY!tr] [SHeur4.ALHH] [Trojan.NSIS.Grinidou.B] [Win32/Trojan.Downloader.ca5]
bb2a4b95111a2321350f8fb2e5c4686c[W32.Clod76c.Trojan.fd9b] [Artemis!BB2A4B95111A] [HKTL_CLICKER] [Riskware.FlowSpirit!] [Trojan.DownLoader8.21721] [Win32.Heur.KVMF26.hy.(kcloud)] [Win32/FlowSpirit] [Win32/Trojan.Adware.37e] [Heur.Suspicious] [Trojan/Win32.Clicker]
96f15d84286c2f7d4b9b29932a867466[Artemis!96F15D84286C] [DLOADER.Trojan] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S]
0c4b83d9baeb335600f9890b03a6b4e6[HW32.CDB.5cef] [Artemis!0C4B83D9BAEB] [WS.Reputation.1] [TrojWare.Win32.Injector.jm2] [Trojan.Click2.35671] [Adware/Rogue.683817.4] [Heuristic.LooksLike.Win32.Suspicious.C] [Win32.Troj.Undef.(kcloud)] [W32/Trojan.EGOI-7762] [AdWare.SuspectCRC] [SHeur4.BUND] [Trj/CI.A]
827830841da37e7eb69518925976c4db
89b2a2610c0ffaa9c508a110f8477642[W32.WasamalaX.Trojan] [Trojan-Dropper.Win32.Injector!O] [Trojan-FBJW!89B2A2610C0F] [Trojan.Downloader] [Trojan.Win32.KillProc.bfqtoc] [Trojan-Dropper.Win32.Injector.hxbu] [Trojan.DR.Injector!Mc8RzOmk1XU] [Dropper.A.Injector.992768.D] [Trojan.KillProc.21800] [TR/Rogue.KDZ.6932.325] [TrojanDropper.Injector.bmmj] [Trojan[Dropper]/Win32.Injector] [Dropper/Win32.Injector] [TrojanDropper.Injector] [Trojan.Win32.Injector.ajF] [PE:Trojan.Flg!1.66BE] [Trojan.Crypt] [Win32/Trojan.Dropper.11a]

Whois

PropertyValue
Email dnsadmin@hk.alibaba-inc.com
NameServer NS4.ALIYUN.COM
Created 2007-12-25 00:00:00
Changed 2013-11-23 00:00:00
Expires 2015-12-25 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2013-10-1942.121.149.45 (ClassC)
2013-10-1942.121.149.43 (ClassC)
2013-10-1942.121.149.41 (ClassC)
2013-10-1942.121.149.44 (ClassC)
2013-10-1942.121.149.42 (ClassC)
2013-11-0742.121.149.45 (ClassC)
2013-11-1642.121.149.43 (ClassC)
2014-01-0242.121.149.44 (ClassC)
2014-03-0442.121.149.41 (ClassC)
2014-03-18110.75.190.245 (ClassC)
2014-03-2942.121.149.42 (ClassC)
2014-04-0242.120.219.171 (ClassC)
2014-07-1742.120.219.171 (ClassC)
2015-11-13140.205.248.86 (ClassC)
2015-11-13140.205.32.90 (ClassC)
2015-11-13140.205.174.1 (ClassC)
2015-11-15140.205.96.1 (ClassC)
2015-11-15140.205.153.72 (ClassC)
2015-11-15140.205.172.49 (ClassC)
2015-11-15140.205.99.5 (ClassC)
2015-11-16140.205.96.3 (ClassC)
2015-11-16140.205.99.1 (ClassC)
2016-07-06140.205.33.215 (ClassC)
2016-07-07140.205.35.57 (ClassC)
2019-03-11106.11.78.1 (ClassC)
2019-03-13106.11.248.141 (ClassC)
2019-03-14106.11.250.81 (ClassC)
2019-04-12106.11.176.5 (ClassC)
2019-04-18140.205.94.22 (ClassC)
2019-05-05106.11.94.57 (ClassC)
2019-05-13106.11.94.30 (ClassC)
2019-05-14198.11.189.12 (ClassC)
2019-06-08106.11.249.207 (ClassC)
2019-06-08106.11.62.113 (ClassC)
2019-06-20106.11.94.2 (ClassC)
2019-06-25106.11.92.23 (ClassC)
2019-06-30106.11.78.3 (ClassC)
2019-08-07106.11.249.202 (ClassC)
2019-08-10106.11.251.76 (ClassC)
2019-08-10140.205.164.1 (ClassC)
2019-08-11106.11.251.19 (ClassC)
2019-08-12106.11.250.206 (ClassC)
2019-08-15106.11.250.218 (ClassC)
2019-08-23140.205.62.9 (ClassC)
2019-09-05106.11.251.20 (ClassC)
2019-12-22106.11.251.77 (ClassC)
2020-09-30205.204.101.182 (ClassC)
2020-11-30198.11.136.24 (ClassC)
2020-12-1147.88.68.21 (ClassC)
2020-12-24140.205.33.11 (ClassC)
2021-02-17198.11.132.221 (ClassC)
2021-09-20140.205.198.193 (ClassC)
2021-09-21140.205.198.162 (ClassC)
2021-11-1759.82.40.142 (ClassC)
2021-12-2859.82.40.79 (ClassC)
2022-01-0259.82.34.216 (ClassC)
2022-01-0359.82.34.236 (ClassC)
2022-01-0359.82.34.217 (ClassC)
2022-01-0459.82.34.234 (ClassC)
2022-04-2747.246.136.160 (ClassC)
2024-09-1059.82.33.224 (ClassC)
2024-12-2759.82.33.226 (ClassC)
2025-03-16140.205.151.7 (ClassC)
2025-03-26140.205.151.4 (ClassC)
2025-04-1759.82.33.227 (ClassC)
2025-04-2559.82.33.225 (ClassC)
2025-05-19140.205.151.6 (ClassC)

Subdomains

DateDomainIP
gxb1.mmstat.com2025-05-1447.246.136.160
gdsns1.mmstat.com2025-01-02140.205.122.66
yt1.mmstat.com2024-08-2859.82.34.216
gm-v4.mmstat.com2025-03-1659.82.33.226
yt-v4.mmstat.com2025-04-1459.82.34.217
hd-v6.mmstat.com2025-03-05140.205.151.6
log-v6.mmstat.com2024-08-0959.82.33.224
gm-v6.mmstat.com2025-03-05140.205.151.7
wgo-v6.mmstat.com2024-10-0559.82.33.224
yt-v6.mmstat.com2024-10-1059.82.34.216
aligtr057.mmstat.com2019-10-2247.246.21.227
aligtr058.mmstat.com2023-12-0661.170.80.190
ga.mmstat.com2025-03-3059.82.34.217
gxb.mmstat.com2025-05-1447.246.136.160
ac.mmstat.com2024-12-1159.82.33.225
hd.mmstat.com2024-09-1759.82.34.217
ae.mmstat.com2025-03-1947.246.110.44
de.mmstat.com2025-03-3047.246.146.27
me.mmstat.com2024-10-0559.82.33.224
log.mmstat.com2014-07-21140.205.96.1
sg.mmstat.com2025-05-1447.246.174.56
gj.mmstat.com2014-11-16205.204.96.45
sg-intl.mmstat.com2025-04-1047.246.174.56
gm.mmstat.com2014-03-2942.156.186.3
d-gm.mmstat.com2025-04-1159.82.34.217
s-gm.mmstat.com2024-12-1959.82.33.227
wgm.mmstat.com2024-07-0459.82.33.227
cdn.mmstat.com2014-10-28180.149.155.111
go.mmstat.com2024-09-3059.82.33.226
lego.mmstat.com2025-04-06180.163.147.214
wgo.mmstat.com2024-10-1459.82.33.226
log.gds.mmstat.com2025-04-1359.82.34.216
yts.mmstat.com2025-04-0659.82.34.236
ws.mmstat.com2025-03-2459.82.34.236
yt.mmstat.com2019-10-11106.11.62.72
ju.mmstat.com2024-06-1159.82.33.224
hz.mmstat.com2014-11-16205.204.116.40
cnzz.mmstat.com2014-07-1742.120.219.171
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information