Help RSS API Feed Maltego Contact                        

Domain > mx-van.mail.am0.yahoodns.net

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to mx-van.mail.am0.yahoodns.net

MD5A/V
3220ab9b63a767c299000ea9d9e3a056[HW32.CDB.1b0b] [Packed.Win32.Katusha.1!O] [Backdoor.Hlux!u8SUOkHyYnA] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.RbUfAWB] [Backdoor.Win32.Hlux.dpoo] [Trojan.Win32.Hlux.cxxuzn] [TrojWare.Win32.Kryptik.CAUP] [BackDoor.Slym.12819] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Backdoor.Hlux] [Win32/Kryptik.CAXO] [Win32.Backdoor.Hlux.Lgjg] [Trojan.Crypt_s] [W32/Kryptik.CAXO!tr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CAXO]
1929530a1f2d6d48a87aac928220e460[HW32.CDB.4199] [Backdoor.Hlux.r3] [Trojan.Win32.Hlux.cwwgjj] [Kryptik.CCFN] [Backdoor.Win32.Hlux.crc] [Backdoor.Hlux!GJ0f5FTmyog] [UnclassifiedMalware] [BackDoor.Slym.14056] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Trojan:Win32/Sisron] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GJB] [Trojan.Win32.Kryptik.BZWV] [Win32/Trojan.e55]
1be1d71fb76a46afa15fc4ee16ac1d11[HW32.CDB.39c9] [Backdoor.Hlux.r3] [RDN/q2z-art6.s_318383!a] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnzz] [Backdoor.Hlux!eaxFLDBT/AM] [Mal/FakeAV-UF] [BackDoor.Slym.13348] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[Backdoor]/Win32.Hlux] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Trojan.Win32.Kryptik.CASL]
42fd2a6bbf5d8d0deb9b3276d0133446[HW32.CDB.6318] [W32/Worm-AAEH.g!42FD2A6BBF5D] [WS.Reputation.1] [Vobfus.QXUL] [Mal/VB-ALW] [Worm.Win32.VB.NG] [Win32.HLLW.Autoruner2.12741] [Worm/Vobfus.agcvt] [WORM_VOBFUS.SMPD] [Worm:Win32/Vobfus] [Trojan/Win32.Jorik] [TScope.Trojan.VB] [PE:Malware.XPACK-HIE/Heur!1.9C48] [Worm.Win32.Vobfus] [Inject2.ABLK] [Trojan.Win32.Injector.BCCY] [Win32/Worm.2ea]
30faa031b0c6122bc91cff8996474b4a[HW32.CDB.E594] [Trojan.Inject2]

Whois

PropertyValue
Email domainadmin@yahoo-inc.com
NameServer NS2.YAHOO.COM
Created 2009-01-20 00:00:00
Changed 2014-12-20 00:00:00
Expires 2016-01-20 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2014-07-0598.139.171.244 (ClassC)
2015-05-2798.139.171.244 (ClassC)
2025-06-1767.195.204.85 (ClassC)
2025-06-2567.195.228.89 (ClassC)

Subdomains

DateDomainIP
mta5.am0.yahoodns.net2014-03-2466.196.118.36
mta6.am0.yahoodns.net2013-04-3074.6.136.244
mta7.am0.yahoodns.net2014-03-2466.196.118.33
mx2.sbcglobal.am0.yahoodns.net2014-05-3098.136.217.192
mx-van.mail.am0.yahoodns.net2014-07-0598.139.171.244
mx-rogers.mail.am0.yahoodns.net2014-03-2498.139.214.154
mx-bt.mail.am0.yahoodns.net2013-05-16212.82.111.207
mx-eu.mail.am0.yahoodns.net2014-03-24188.125.69.79
any-pop-secure-legacy.mail.am0.yahoodns.net2014-09-16188.125.69.44
mx-biz.mail.am0.yahoodns.net2014-03-2498.139.171.245
smtp.mail.us.am0.yahoodns.net2015-05-1463.250.193.228
star.smtp.mail.eu.am0.yahoodns.net2013-10-28188.125.68.56
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information