Help RSS API Feed Maltego Contact                        

Domain > exch028.serverdata.net

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to exch028.serverdata.net

MD5A/V
4db0e2318885466883cc47fb4c11b695[FakeSecTool-FCX!4DB0E2318885] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1] [W32/Kelihos.DE!tr]
3223f61af50aa26a1c3bb96fe1779011[HW32.CDB.D56b] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux.Win32.9065] [Trojan.Win32.Kryptik.czfnsp] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.dueu] [Backdoor.Hlux!DdFHfWii/ns] [UnclassifiedMalware] [TR/Kryptik.oenzk] [Backdoor:Win32/Kelihos] [Trojan/Win32.FakeAV] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.cri] [Trojan.Crypt3] [W32/Kryptik.CBOM!tr] [Crypt3.ORV] [Backdoor.Win32.Hlux.Acmu] [Win32/Trojan.7bf]
3ff79e59f23983931c7f8b78ff705df1[HW32.CDB.6c99] [Kryptik.CCFN] [Win32/Kelihos.SeNdHLB] [Backdoor.Win32.Hlux.dlkp] [Backdoor.Hlux!oUNizOsy5vo] [TrojWare.Win32.Kryptik.CASU] [Trojan.Packed.26544] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.At] [Trojan-Downloader.Win32.Waledac] [W32/Hlux.AGWI!tr] [Win32/Trojan.337]
427481f8e79f0ee33385c9da2fe00111[HW32.CDB.16f0] [Backdoor.Hlux!hl4OBD+jyQw] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djqf] [Trojan.Win32.Hlux.cxbctj] [TrojWare.Win32.Kryptik.BZOO] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHE] [Trojan.Win32.Kryptik.BZIX]
24a034d09222c5370365c4cdadde0f65[HW32.CDB.Da0d] [Packed.Win32.Katusha.3!O] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ] [Win32/Trojan.0de]
df902d85a5aebee35007be327e9f54d2[HW32.CDB.7c9b] [Malware.Packer.FFS] [Mal/FakeAV-UF] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Symmi]
4b93f892d9249b70508ee222e37ee1c6[HW32.CDB.E823] [TrojanPSW.Tepfer.r3] [Trojan.Win32.Kryptik.cxbvtz] [WS.Reputation.1] [Kryptik.CCFN] [Trojan-PSW.Win32.Tepfer.txbj] [Trojan.PWS.Tepfer!TcJrQOwJyhs] [Mal/FakeAV-UF] [BackDoor.Slym.13348] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[PSW]/Win32.Tepfer] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Win32.Kryptik.CAUP] [Trojan.Crypt_s] [W32/Tepfer.CAUP!tr.pws] [Crypt_s.GMK]
2db060643b02ebffce2e3957e0b47311[Packed.Win32.Katusha.3!O] [Backdoor.Hlux!w7qQeHPCTX8] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dsut] [BackDoor.Slym.13011] [Trojan[Backdoor]/Win32.Hlux] [VirTool:Win32/Obfuscator.WT] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Trojan.Crypt_s] [W32/Kryptik.DJH!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.ABwI] [Win32/Trojan.337]
70c82520cbc8bacd1515d7e2650b19a1[HW32.CDB.43cf] [Packed.Win32.Katusha.1!O] [Backdoor.Hlux!SzVtl6MNJ18] [Trojan.FakeAV] [Kryptik.CDQY] [Win32/Kelihos.JRJKMf] [Backdoor.Win32.Hlux.dqja] [Win32.Backdoor.Hlux.Aheu] [TrojWare.Win32.Kryptik.CAUP] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.WVTP-0899] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.bCBCJ]
914c63052f0694efe5c231d14c135d36[HW32.CDB.D6a5] [TrojanPSW.Tepfer.r3] [Trojan.PWS.Tepfer!8N7nPFhLHXs] [WS.Reputation.1] [Kryptik.CCFN] [Trojan-PSW.Win32.Tepfer.twri] [Trojan.Win32.Kryptik.cxajaq] [Mal/FakeAV-UF] [UnclassifiedMalware] [Trojan.Packed.26544] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[PSW]/Win32.Tepfer] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Tepfer.CASL!tr.pws] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
fe734b28009c7dd5389f64d72722bb21

Whois

PropertyValue
NamePERFECT PRIVACY, LLC
Email a35nc5kx8h7@networksolutionsprivateregistration.com
Address 12808 Gran Bay Parkway West
Zip Code 32258
City Jacksonville
State FL
Country US
Phone +1.5707088780
NameServer NS3.SERVERDATA.NET
Created 2009-03-13 17:51:50
Changed 2015-01-29 00:46:19
Expires 2020-06-09 00:00:00
Registrar NETWORK SOLUTIONS, L

DNS Resolutions

DateIP Address
2025-08-0964.78.32.177 (ClassC)
2025-11-0164.78.48.113 (ClassC)

Subdomains

DateDomainIP
exch500.serverdata.net2025-04-2964.78.27.217
site2.smtp.exch500.serverdata.net2014-06-18205.217.20.189
mx1.site2.smtp.exch500.serverdata.net2025-08-26185.64.213.57
smtp20.serverdata.net2025-05-31206.225.164.100
exch030.serverdata.net2025-05-0664.78.32.49
west.smtp.exch030.serverdata.net2014-03-24199.193.204.99
exch040.serverdata.net2025-08-0964.78.49.9
exch080.serverdata.net2025-05-0664.78.34.65
east.smtp.exch080.serverdata.net2014-06-16199.193.200.102
west.smtp.exch080.serverdata.net2025-10-23199.193.204.102
exch580.serverdata.net2025-05-1164.78.40.50
west.exch090.serverdata.net2025-10-30199.193.205.202
webagent-pop8-1.serverdata.net2025-10-30104.18.40.234
exch021.serverdata.net2025-05-1264.78.33.49
east.smtp.exch021.serverdata.net2014-03-24206.225.164.208
west.smtp.exch021.serverdata.net2014-05-2264.78.22.108
out.exch021.serverdata.net2024-11-2564.78.24.60
exch031.serverdata.net2025-06-0164.78.48.129
west.smtp.exch031.serverdata.net2014-06-05199.193.204.100
exch081.serverdata.net2025-08-0964.78.33.225
out.east.exch081.serverdata.net2025-05-06162.216.194.107
out.west.exch081.serverdata.net2024-11-26199.193.204.183
exch091.serverdata.net2024-11-26199.193.207.99
west-2fa.exch091.serverdata.net2025-10-30199.193.207.107
west.exch091.serverdata.net2025-10-30199.193.207.99
m.west.exch091.serverdata.net2025-10-31199.193.207.99
out.exch091.serverdata.net2025-02-03199.193.207.119
smtp.mx.exch091.serverdata.net2025-10-22199.193.206.123
west.smtp.mx.exch091.serverdata.net2025-10-29199.193.206.123
p1-analytics-use1.serverdata.net2025-05-2544.199.78.14
exch022.serverdata.net2025-05-0664.78.48.33
east.exch022.serverdata.net2025-10-3064.78.48.33
exch032.serverdata.net2025-06-0264.78.48.145
west.smtp.exch032.serverdata.net2014-05-31199.193.204.105
exch082.serverdata.net2024-12-2964.78.48.177
exch092.serverdata.net2025-08-09199.193.207.160
west-2fa.exch092.serverdata.net2025-10-30199.193.207.170
west.exch092.serverdata.net2025-10-30199.193.207.162
m.west.exch092.serverdata.net2025-10-30199.193.207.162
out.exch092.serverdata.net2024-11-26199.193.207.190
west.smtp.mx.exch092.serverdata.net2025-10-29199.193.206.103
NS2.SERVERDATA.NET2025-10-2564.78.34.44
exch023.serverdata.net2025-05-1664.78.48.2
east.smtp.exch023.serverdata.net2014-04-25206.225.165.104
exch083.serverdata.net2025-08-0964.78.34.2
NS3.SERVERDATA.NET2025-10-24162.244.196.236
exch024.serverdata.net2025-05-1464.78.48.17
west.smtp.exch024.serverdata.net2014-03-2364.78.56.112
out.east.exch084.serverdata.net2024-11-0464.78.25.85
exch025.serverdata.net2025-08-0964.78.32.129
mx1.smtp.exch025.serverdata.net2014-07-05208.65.144.3
east.smtp.exch025.serverdata.net2014-05-31206.225.164.181
exch026.serverdata.net2025-05-1664.78.48.81
mx1.smtp.exch026.serverdata.net2014-12-11208.65.144.3
mx2.smtp.exch026.serverdata.net2015-05-27208.65.145.2
west.smtp.exch026.serverdata.net2014-05-2964.78.56.114
exch027.serverdata.net2025-05-1664.78.48.97
exch028.serverdata.net2025-08-0964.78.32.177
east.smtp.exch028.serverdata.net2013-12-04199.193.200.97
exch029.serverdata.net2024-07-1464.78.33.241
smtp.exch029.serverdata.net2025-08-11199.193.200.98
mx1.smtp.exch029.serverdata.net2014-06-17208.65.145.3
west.smtp.exch029.serverdata.net2014-04-0764.78.52.41
out.exch029.serverdata.net2024-09-1864.78.33.251
elevate-api.serverdata.net2019-09-2313.77.206.180
tst3.qa.support-uk.serverdata.net2025-10-30147.154.38.185
elevateoutlookaddin.serverdata.net2025-05-10199.193.205.28
tst3.qa.support.serverdata.net2025-10-30147.154.38.185
www.serverdata.net2025-05-21159.203.105.91
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information