Help RSS API Feed Maltego Contact                        

Domain > cobaltgroup.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to cobaltgroup.com

MD5A/V
b36385662ebdaf40bc3d28f90b6a4751[Spyware.Zbot.USBV] [Trojan] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Foreign]
1929530a1f2d6d48a87aac928220e460[HW32.CDB.4199] [Backdoor.Hlux.r3] [Trojan.Win32.Hlux.cwwgjj] [Kryptik.CCFN] [Backdoor.Win32.Hlux.crc] [Backdoor.Hlux!GJ0f5FTmyog] [UnclassifiedMalware] [BackDoor.Slym.14056] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Trojan:Win32/Sisron] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GJB] [Trojan.Win32.Kryptik.BZWV] [Win32/Trojan.e55]
61b408e2de1c4996c3708f1f46913d60[HW32.CDB.C1b5] [Trojan.Kryptik!QyFpAm9uzfY] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djft] [Trojan.Win32.S.PSW-Tepfer.835600.AI] [UnclassifiedMalware] [BackDoor.Slym.14044] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Trojan/Win32.Tepfer] [W32/Trojan.AJYO-7526] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUF] [Trojan.Win32.Kryptik.BZIX]
0dd56a0b8ea7bedb57cebf9aacdac40f[Malware.Packer.HGX1] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [W32/Kryptik.AXUE!tr]
797df4f92d18573ae98db61d4f8b0c89[HW32.CDB.F65c] [Packed.Win32.Katusha.3!O] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.dtsc] [Trojan.Win32.Hlux.cxnmks] [TrojWare.Win32.Kryptik.CBNK] [BackDoor.Slym.13011] [TR/Kryptik.oenzk] [Trojan[Backdoor]/Win32.Hlux] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.FakeAV] [W32/Trojan.IECY-1005] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Backdoor.Win32.Hlux.cri] [W32/Hlux.CBNK!tr.bdr] [Crypt_s.GPJ]
fe734b28009c7dd5389f64d72722bb21
e4fce69c0e2f36d514460974b8becdfa[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Yakes] [W32/Kelihos.BCEB!tr]

Whois

PropertyValue
Email domain-admin@cobaltgroup.com
NameServer AUS1.AKAM.NET
Created 1995-04-17 00:00:00
Changed 2015-03-17 00:00:00
Expires 2016-04-18 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2014-05-29216.241.219.65 (ClassC)
2025-08-03107.21.209.38 (ClassC)

Port 80

Subdomains

DateDomainIP
NS1.COBALTGROUP.COM2025-05-13216.231.224.13
NS2.COBALTGROUP.COM2025-08-01216.231.224.12
traffic.prod.cobaltgroup.com2024-08-0499.84.238.136
images.cobaltgroup.com2013-11-2564.145.86.9
dt.cobaltgroup.com2024-10-2052.52.169.84
www.cobaltgroup.com2025-08-01107.21.209.38
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information