Help RSS API Feed Maltego Contact                        

Domain > curlmyip.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://researchcenter.paloaltonetworks.com/2015/11...    
https://otx.alienvault.com/pulse/563ca90f67db8c7a1...    

Files that talk to curlmyip.com

MD5A/V
ea2d03fe41db2ff3e5b29c1a08c84217[TR/Crypt.ZPACK.125365] [TrojanRansom.Crowti.A4] [Win32/Kryptik.CWZM] [W32/Kryptik.CXBS!tr] [Crypt3.BXSF] [Trojan.Win32.Crypt] [Ransom*Win32/Crowti.A*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
1de86948dd9570631ecdefe9b5996847[TR/Crypt.Xpack.138415] [Win32/Tnega.cKUZYdD] [Win32/Kryptik.DAVX] [W32/Kryptik.CWSU!tr] [Crypt3.BWMP] [Trojan.Win32.Crypt] [Ransom-FWE!1DE86948DD95] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-Z] [Trojan.Asprox.B]
829cd977ecb35878443c0cbb2dd2af35[TR/Crypt.Xpack.139927] [Win32/Tnega.UDAVCWB] [TrojanRansom.Crowti.A4] [Win32/Kryptik.CWTY] [W32/Kryptik.CXBS!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWF!829CD977ECB3] [Ransom*Win32/Crowti.A*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
5e79c6c2ce384ce40b680586d0c98a32[TR/Crypt.Xpack.139709] [Win32/Tnega.IBAaLb] [Trojan.Betabot.3] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!5E79C6C2CE38] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
d38c175edab5b364fe19699932a79331[TR/Crypt.Xpack.90303] [Win32/Tnega.JbVcXI] [Win32/Kryptik.CZAI] [W32/Kryptik.CXRU!tr] [Crypt3.BZQV] [Trojan.Win32.Crypt] [Ransom*Win32/Crowti] [Mal/Wonton-AN]
1013486c1a4c4b60de39fe804c1c6bba[TR/Crypt.Xpack.139709] [Win32/Tnega.IBAaLb] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!1013486C1A4C] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
9f683591b7b156f44c902776a0d75f03[TR/Crypt.Xpack.139709] [Win32/Tnega.IBAaLb] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!9F683591B7B1] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
b57261e61e1593d2db3e4ee8d5a67a22[TR/Crypt.Xpack.139927] [Win32/Tnega.UDAVCWB] [TrojanRansom.Crowti.A4] [Win32/Kryptik.CWTY] [W32/Kryptik.CXBS!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWF!B57261E61E15] [Ransom*Win32/Crowti.A*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
fc7ce2f21e8366b9c671241a3cf5195c[TR/Crypt.Xpack.138415] [Win32/Tnega.cKUZYdD] [Win32/Kryptik.DAVX] [W32/Kryptik.CWSU!tr] [Crypt3.BWMP] [Trojan.Win32.Crypt] [Ransom-FWE!FC7CE2F21E83] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-Z] [Trojan.Asprox.B]
a27a377c673b0d9cf709cc413924037c[TR/Crypt.ZPACK.125052] [TrojanRansom.Crowti.A4] [Trojan.Encoder.514] [Win32/Kryptik.CWWK] [W32/Kryptik.CXFI!tr] [Crypt3.BXBZ] [Trojan.Crypt] [Ransom*Win32/Crowti.A*Trojan*Win32/Fleercivet.D] [Infostealer.Limitail]
e6b37becbc6fae7e58db75e9b2a66934[TR/Crypt.Xpack.75480] [W32/Kryptik.CXRU!tr] [Crypt3.BZQV] [Trojan.Win32.Crypt] [Trojan-Ransom.Win32.Foreign.lmkk] [Ransom*Win32/Crowti.A] [Mal/Wonton-AN]
8a50a392b230b67e6e5e0f7002bdbff0[TR/Crypt.Xpack.138415] [Win32/Tnega.cKUZYdD] [Trojan.DownLoad3.35619] [Win32/Kryptik.DAVX] [W32/Kryptik.CWSU!tr] [Crypt3.BWMP] [Trojan.Win32.Crypt] [Ransom-FWE!8A50A392B230] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-Z] [Trojan.Asprox.B]
bed8dbc8379dd8294e74582a82544676[TR/Crypt.Xpack.139709] [Win32/Tnega.IBAaLb] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!BED8DBC8379D] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
ca51840439d19e70001c4e8038b7c102[TR/Crypt.Xpack.139709] [Win32/Tnega.IBAaLb] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!CA51840439D1] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
f6ce84c87e4b438380a58d64291cd085[TR/Crypt.ZPACK.125365] [TrojanRansom.Crowti.A4] [Trojan.Packed.18626] [Win32/Kryptik.CWZM] [W32/Kryptik.CXBS!tr] [Crypt3.BXSF] [Trojan.Win32.Crypt] [Ransom*Win32/Crowti.A*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
ed526538cfac7e20609543542bc87c50[TR/Crypt.Xpack.140093] [Win32/Tnega.dHROTLB] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!ED526538CFAC] [Ransom*Win32/Crowti.A*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
a746353639462342a94f006041e0dfcf[TR/Crypt.ZPACK.71793] [W32/Kryptik.CXRB!tr] [Crypt3.BZOM] [Trojan.Win32.Crypt] [Trojan-Ransom.Win32.Foreign.lmjn] [Ransom-FWP!A74635363946] [Trojan*Win32/Fleercivet] [Mal/Wonton-AN]
197e8d1fe190e96373a35ccaa9d03f45[TR/Crypt.ZPACK.90020] [Win32/Crowti.SSIHdY] [TrojanRansom.Crowti.D4] [Win32/Kryptik.CYJO] [W32/Kryptik.CXUN!tr] [Crypt3.CAEA] [Trojan.Win32.Crypt] [Trojan-Ransom.Win32.Foreign.lmtg] [Ransom-FWP!197E8D1FE190] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN]
3a7725cdc51fcaed2ea79816c9508be8[TR/Crypt.Xpack.139709] [Win32/Tnega.IBAaLb] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!3A7725CDC51F] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]
3a123f4ffa8e3444d5046ef87f9b3fcc[TR/Crypt.Xpack.139709] [Win32/Tnega.IBAaLb] [Win32/Kryptik.CWSU] [W32/Kryptik.CWSU!tr] [Win32/Cryptor] [Trojan.Win32.Crypt] [Ransom-FWG!3A123F4FFA8E] [Ransom*Win32/Crowti*Trojan*Win32/Fleercivet.D] [Mal/Wonton-AN] [Trojan.Asprox.B]

Whois

PropertyValue
Email SUPPORT@NAMECHEAP.COM
NameServer DNS2.STABLETRANSIT.COM
Created 2011-01-12 00:00:00
Changed 2015-01-01 00:00:00
Expires 2020-01-12 00:00:00
Registrar ENOM, INC.

DNS Resolutions

DateIP Address
2015-03-08184.106.112.172 (ClassC)
2020-01-13198.54.117.199 (ClassC)
2020-01-13198.54.117.200 (ClassC)
2020-01-13198.54.117.197 (ClassC)
2020-01-13198.54.117.198 (ClassC)
2025-12-15184.106.112.172 (ClassC)
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information