Help RSS API Feed Maltego Contact                        

Domain > hzs11.cnzz.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to hzs11.cnzz.com

MD5A/V
bb2a4b95111a2321350f8fb2e5c4686c[W32.Clod76c.Trojan.fd9b] [Artemis!BB2A4B95111A] [HKTL_CLICKER] [Riskware.FlowSpirit!] [Trojan.DownLoader8.21721] [Win32.Heur.KVMF26.hy.(kcloud)] [Win32/FlowSpirit] [Win32/Trojan.Adware.37e] [Heur.Suspicious] [Trojan/Win32.Clicker]
c4affbf8369b8bbd2066becb7f287c38[BackDoor-EXZ] [Trojan.Win32.Wecod.aozp] [Packed:W32/PeCan.A] [Heuristic.BehavesLike.Win32.Suspicious-PKR.G] [Backdoor:Win32/Blohi.B] [MAS.Trojan.VB.01728] [Backdoor.Win32.Zegost]
645d60825b362448151387d060593635[W32.Clod9e1.Trojan.1d9a] [Trojan.Win32.DownLoader10.cqvkbc] [WS.Reputation.1] [HKTL_CLICKER] [Trojan.Win32.S.Clicker.649728] [UnclassifiedMalware] [Trojan.DownLoader10.26566] [SPR/Surfairy.A] [Trj/CI.A] [Trojan.SuspectCRC] [Malware_fam.NB] [Hacktool.Win32.RiskTool.77] [Win32/DH{DyAiJQ}]
de9d855c48d0801c2820d6b39ce3fb6a[W32.Clod6b9.Trojan.0a6b] [Artemis!DE9D855C48D0] [Heur.Suspicious] [Trojan/Win32.Clicker] [Win32/FlowSpirit] [W32/FlowSpirit]
1f519484a9ad5a51d42e0f57f4e314e0[Trojan.Win32.FlowSpirit.dgozjr] [W32/Trojan.BPXW-9284] [UnclassifiedMalware] [Trojan.DownLoader11.37669] [Backdoor.PePatch.Win32.48939] [TR/Rogue.640512.1] [Trojan/Win32.Clicker] [Trojan.Rogue] [Riskware/FlowSpirit] [Hacktool.Win32.FlowSpirit.H]
7366655d3a75d068061ed2985bfee017[W32.Clodfd9.Trojan.48b4] [Artemis!7366655D3A75] [Trojan.Win32.Parite.bdaxcz] [Heur.Suspicious] [Trojan.DownLoader9.16155] [Trojan/Win32.Clicker] [Win32/FlowSpirit] [Win32/Trojan.Adware.37e]
df25136f833b5883d4f3ada2c44d22be[W32.WasamalaX.Trojan] [Trojan-Dropper.Win32.Injector!O] [Trojan.Orsam.A5] [Trojan-FBJW!DF25136F833B] [Trojan.Downloader] [Trojan.Llac.Win32.38707] [Trojan/BlackHole] [Trojan.Win32.KillProc.bfqtoc] [TrojanDownloader.D] [Win32/EXEEmbedded.HORAMQD] [Trojan-Dropper.Win32.Injector.hxbu] [Trojan.DR.Injector!zKTZDrN6uAg] [Trojan.KillProc.21800] [TR/Graftor.65786] [TrojanDropper.Injector.bmmj] [Trojan[Dropper]/Win32.Injector] [Win32.Troj.Injector.HX.(kcloud)] [Dropper/Win32.Injector] [TrojanDropper.Injector] [Adware.Win32.Dropper.aab] [Trojan.Crypt] [Trojan.Win32.Injector.ajgv] [Win32/Trojan.e6]
2b7809c589a059c4bb04b8f582f267e7

Whois

PropertyValue
Email dnsadmin@hk.alibaba-inc.com
NameServer NS4.ALIYUN.COM
Created 2000-04-13 00:00:00
Changed 2013-01-08 00:00:00
Expires 2018-04-13 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2013-04-2242.121.149.32 (ClassC)
2014-05-2942.156.140.26 (ClassC)
2014-12-1242.156.140.84 (ClassC)
2019-12-10203.119.128.195 (ClassC)
2024-05-31223.109.148.174 (ClassC)
2024-10-2836.156.202.74 (ClassC)
2025-04-1536.156.202.70 (ClassC)
2025-07-16223.109.148.175 (ClassC)
2025-07-20223.109.148.140 (ClassC)
2025-08-05223.109.148.173 (ClassC)

Port 80

Subdomains

DateDomainIP
s100.cnzz.com2014-05-1742.120.219.6
s110.cnzz.com2023-12-11122.225.212.183
s10.cnzz.com2023-12-12122.225.212.183
hqs10.cnzz.com2024-12-11223.109.148.173
zs10.cnzz.com2025-04-1336.156.202.70
hzs10.cnzz.com2014-06-1742.156.140.25
v10.cnzz.com2024-06-21220.185.168.234
z10.cnzz.com2017-03-28106.11.145.5
s120.cnzz.com2019-12-12101.89.124.234
s20.cnzz.com2014-05-1042.120.219.6
gzs20.cnzz.com2014-05-1042.156.140.20
hzs20.cnzz.com2025-06-09223.109.148.140
s130.cnzz.com2024-03-04150.138.252.188
s30.cnzz.com2023-12-04122.225.212.183
s140.cnzz.com2020-03-16101.89.124.234
s40.cnzz.com2023-07-1858.216.15.119
s50.cnzz.com2023-07-1658.216.15.250
s60.cnzz.com2013-11-1842.156.140.11
s70.cnzz.com2023-07-2258.216.15.250
s80.cnzz.com2023-07-1958.216.15.119
s90.cnzz.com2023-12-03122.225.212.183
s101.cnzz.com2023-12-03122.225.212.183
s111.cnzz.com2023-12-03122.225.212.183
q11.cnzz.com2025-04-1136.156.202.74
s11.cnzz.com2014-06-2742.120.219.6
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information