Help RSS API Feed Maltego Contact                        

Domain > qip.ru

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to qip.ru

MD5A/V
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
9aa81fa022c0b159758efa1bda4f9be1[HW32.CDB.A20b] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dthd] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Win32.Backdoor.Hlux.Hwcu] [Trojan.Crypt3] [W32/Kryptik.BD!tr] [Crypt3.OHL] [Backdoor.Win32.Hlux.Ac]
833009a54c295a72ad64ab0941f482fe[Suspicious.Cloud.5] [Kryptik.CCFN] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [TR/Crypt.EPACK.9220] [Heuristic.BehavesLike.Win32.Suspicious-BAY.K] [Mal/FakeAV-UF] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GIF] [Trojan.Win32.Kryptik.BZOO]
b36385662ebdaf40bc3d28f90b6a4751[Spyware.Zbot.USBV] [Trojan] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Foreign]
c17c487f120d173057d60b37b69af463
1623be5a046aa215162665c5067332e0[HW32.CDB.Db63] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [Trojan-PSW.Win32.Tepfer.tybm] [Trojan.PWS.Tepfer!sA6n+JUlMF8] [UnclassifiedMalware] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [W32/Trojan.YSDP-3009] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Trojan.Win32.InfoStealer.aRBP]
3223f61af50aa26a1c3bb96fe1779011[HW32.CDB.D56b] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux.Win32.9065] [Trojan.Win32.Kryptik.czfnsp] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.dueu] [Backdoor.Hlux!DdFHfWii/ns] [UnclassifiedMalware] [TR/Kryptik.oenzk] [Backdoor:Win32/Kelihos] [Trojan/Win32.FakeAV] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.cri] [Trojan.Crypt3] [W32/Kryptik.CBOM!tr] [Crypt3.ORV] [Backdoor.Win32.Hlux.Acmu] [Win32/Trojan.7bf]
14bfd82cc98684fb9c3e91971d2490b1[HW32.CDB.Eb32] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Win32.Kryptik.CBCJ] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC]
17124a0c3ffde1fd0de7168990278c06[HW32.CDB.439f] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.DNNY-5917] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
350f0dcda52b7421f76777461a14f249[Trojan/Win32.Zbot] [Trojan-Spy.Zbot]
20837cfed9fcc3df5a3e414c18eff646[Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
0d42b2efd88f95f4d5af60b548d7290a[FraudTool.Security] [W32/Tepfer.MQ!tr] [Win32/Cryptor]
1ca8bda50d98c89332d39dbaf3aac976[HW32.CDB.29c0] [Packed.Win32.Katusha.3!O] [Trojan.Win32.Kryptik.cxmkag] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC]
d6a71b4d3098eab4dddab30fddbaef35[FakeSecTool-FCX!D6A71B4D3098] [Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
292ad75fbab2288a453c7f7db162eed0[HW32.CDB.A2b5] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux!xuwpKhCjMA8] [WS.Reputation.1] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqzg] [UnclassifiedMalware] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.HATR-5126] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.Aj] [Win32/Trojan.112]
ba38f7c52eafa83a4f368b6c6ae17b51[HW32.CDB.Fc1e] [Trojan.Crypt.Delf.B] [Trojan.Crypt.Delf.B] [Win32.TrojanDownloader.Banload.9] [Trojan/Downloader.Dadobra.afm] [Trojan.DL.Dadobra!IpHFYA2R3x0] [W32/Downldr2.CCCJ] [Downloader] [DLoader.NAVE] [TROJ_DLOADER.MCS] [Trojan.Packed-4] [Trojan-Downloader.Win32.Dadobra.afm] [Trojan.Crypt.Delf.B] [Trojan.Win32.Dadobra.ugej] [Win32.Trojan-downloader.Dadobra.Pfjc] [Trojan.Crypt.Delf.B] [Heur.Packed.Unknown] [Trojan.Crypt.Delf.B] [Trojan.DownLoader.63243] [TR/Crypt.Delf.B.93] [TROJ_DLOADER.MCS] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [Trojan[Downloader]/Win32.Dadobra] [Win32.TrojDownloader.Dadobra.a.(kcloud)] [Trojan.Win32.A.Downloader.73728.AKS] [Trojan.Crypt.Delf.B] [Win-Trojan/Xema.variant] [TrojanDownloader] [Trojan.Win32.Dadobra.ADO] [PE:Trojan.Win32.Undef.dva!1075123518] [Trojan-Downloader.Win32.Banload] [Dloader.X!tr] [Downloader.Banload.UEP] [Trj/Dadobra.QW] [Win32/Trojan]
b20a97424bcc7c72cc5aeb087dea5d89[Trojan/W32.Badur.8949760] [Artemis!B20A97424BCC] [Trojan.Win32.Leprum.duefiu] [Artemis] [W32/Trojan.HRZC-8284] [TR/Leprum.8949760.2] [Trojan/Win32.Badur] [Trojan:Win32/Dynamer!ac] [ASD.Reputation] [Trj/Chgt.O] [Virus.Win32.Leprum] [W32/Leprum.B] [Delfi.OC] [Virus.Win32.Leprum.B]
cbd57189a998c6f3e8741a9101b29483[W32.Clod184.Trojan.a08a] [Trojan-Spy/W32.Banker.523264] [PWS-Banker] [Trojan/Packed.Themida.c] [W32/Trojan2.TSU] [Downloader] [Win32/Tnega.HOJ] [WORM_SDBOT.GAY] [Packed.Win32.Black.a] [Trojan.Win32.Banker.mgie] [Trojan.Win32.A.Black.523264] [Packed.Win32..Black.~A] [Trojan.Packed.650] [TR/Spy.Banker.gzn] [WORM_SDBOT.GAY] [Heuristic.LooksLike.Win32.EPO.C] [Mal/Behav-285] [Win32.Troj.Banker.(kcloud)] [VirTool:Win32/Obfuscator.XX] [Backdoor/Win32.Ciadoor] [W32/Trojan.QGQQ-1838] [Trj/Thed.A] [Backdoor.Win32.IRCBot] [W32/Packed.2D18!tr] [Win32/Themida] [Trojan.Win32.Black.Awg] [Win32/Trojan.b50]
6797c066d9e0eb3a4d4919db176860fe[HW32.CDB.A3f8] [Trojan-Banker.Win32.Banker!O] [TrojanBanker.Banker.lkg] [Malware.Packer] [Trojan.Win32.Banker.nusn] [W32/Trojan2.FFKY] [Trojan-Banker.Win32.Banker.lkg] [Packed/XPack] [Trojan.Win32.A.Banker.3916321] [Trojan.PWS.Banker.22201] [Heuristic.LooksLike.Win32.Suspicious.N] [Mal/EncPk-DM] [Backdoor/Hupigon.aaqz] [TrojanDownloader:Win32/Banload.ZY] [Win32/MalPackedB.suspicious] [TrojanBanker.Banker] [Trj/Banker.FWD] [PE:Virus.Mian007!1.9AEA] [Trojan.Crypt.NSPM] [Malware_fam.gw] [PSW.Banker4.ABVM] [Trojan.Win32.Banker.ahGg]
333def0dfdba55d936f987c7c6279f48[W32.Clodd7a.Trojan.6f66] [Trojan-Spy/W32.Banker.521728] [TrojanBanker.Banker.nwx] [PWS-Banker] [Trojan/Spy.Banker.xes] [Trojan.Win32.Banker.tnhd] [Infostealer.Bancos] [Trojan-Banker.Win32.Banker.nwx] [Packed/PECompact] [Trojan.PWS.Banker.based] [Heuristic.LooksLike.Win32.Suspicious.C!87] [Mal/DelpBanc-A] [TrojanSpy.Banker.fgz] [Win32.Troj.Banker.(kcloud)] [TrojanSpy:Win32/Bancos.DV] [Win-Trojan/Banker.521728.M] [W32/Trojan-juke-based!Maximus] [TrojanBanker.Banker] [Trj/CI.A] [Trojan-Spy.Win32.Banker.aww] [Malware_fam.gw] [Trojan.Win32.Banker.AW] [Win32/Trojan.f8e]

DNS Resolutions

DateIP Address
2010-06-12195.68.160.249 (ClassC)
2010-08-17195.68.160.27 (ClassC)
2010-10-30195.239.111.122 (ClassC)
2010-10-30195.68.160.229 (ClassC)
2010-11-10195.239.111.142 (ClassC)
2010-11-21195.239.111.141 (ClassC)
2010-12-12208.88.227.169 (ClassC)
2012-06-27195.68.160.117 (ClassC)
2012-10-27195.68.160.105 (ClassC)
2012-11-0683.229.209.144 (ClassC)
2013-02-17195.68.160.175 (ClassC)
2013-04-1983.229.209.165 (ClassC)
2013-05-1583.229.209.156 (ClassC)
2013-05-16195.239.111.119 (ClassC)
2013-06-23195.68.160.114 (ClassC)
2013-07-15195.239.111.98 (ClassC)
2013-09-10195.239.242.60 (ClassC)
2013-10-19195.239.111.97 (ClassC)
2013-10-19195.239.111.75 (ClassC)
2013-10-19195.239.111.119 (ClassC)
2014-03-1180.68.249.61 (ClassC)
2014-04-25195.239.111.97 (ClassC)
2014-06-18195.239.111.75 (ClassC)
2014-06-24195.16.127.186 (ClassC)
2014-06-24195.239.111.33 (ClassC)
2014-06-28195.16.127.140 (ClassC)
2014-06-29195.16.127.165 (ClassC)
2014-07-27195.16.127.144 (ClassC)
2014-09-20195.239.111.239 (ClassC)
2014-12-11195.239.111.76 (ClassC)
2014-12-17195.16.127.181 (ClassC)
2018-09-01195.16.127.101 (ClassC)
2018-09-01195.16.127.150 (ClassC)
2018-09-015.188.42.231 (ClassC)
2018-09-13217.65.7.67 (ClassC)
2019-08-1891.234.98.100 (ClassC)
2021-07-2931.172.128.36 (ClassC)
2025-08-1191.236.136.105 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
weball.qip.ru2014-09-15195.239.111.122
ip.qip.ru2015-01-15195.16.127.102
smtp.qip.ru2013-06-2162.141.94.173
r.qip.ru2014-06-27195.68.160.114
pass.qip.ru2014-06-19195.239.111.98
referats.qip.ru2014-03-1183.229.209.186
lstats.qip.ru2014-06-19195.68.160.249
5ballov.qip.ru2018-09-03104.24.122.231
mx.qip.ru2013-05-1662.141.94.154
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information