Help RSS API Feed Maltego Contact                        

Domain > yahoo.com.cn

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to yahoo.com.cn

MD5A/V
b34430b8e494c41f86c5aa47b002a212[Crypt2.AZDS]
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
9aa81fa022c0b159758efa1bda4f9be1[HW32.CDB.A20b] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dthd] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Win32.Backdoor.Hlux.Hwcu] [Trojan.Crypt3] [W32/Kryptik.BD!tr] [Crypt3.OHL] [Backdoor.Win32.Hlux.Ac]
210b6e761b4cb7d71e862606c0f28846[Artemis!210B6E761B4C] [HB_Pushdo-1] [Trojan.Win32.Jorik.Cutwail.prs] [Win32.Troj.Undef.(kcloud)] [TrojanDownloader:Win32/Cutwail.BS] [Dropper/Win32.Vidro] [W32/Pushdo.YOY!tr] [SHeur4.BNRB]
3fb83eaf2a665f71ac2065f5f6956d50[HW32.CDB.5da2] [Packed.Win32.Katusha.1!O] [Trojan.Win32.Hlux.cynagk] [Trojan.FakeAV] [Kryptik.CDQY] [Win32/Kelihos.GeEUUIB] [Backdoor.Win32.Hlux.dqkq] [Backdoor.Hlux!m6CCC6SKjdo] [Win32.Backdoor.Hlux.Lose] [Backdoor.Win32.Hlux.DUHE] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.aDM]
db5b440f6419090cd9567f3b33fd3ced[Malware.Packer.HGX1] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
a472f9d1a78fa6cb3eb6896d9c319726[TrojanDownloader.Cutwail.bs] [Backdoor.Bot] [Riskware] [Trojan.Win32.Pushdo.btelgd] [WS.Reputation.1] [BKDR_PUSHDO.FC] [Backdoor.Win32.Pushdo.qgz] [Backdoor.Pushdo!+jNmAzmKgNc] [UnclassifiedMalware] [BackDoor.Bulknet.893] [Win32.HeurC.KVMH004.a.(kcloud)] [TrojanDownloader:Win32/Cutwail.BS] [Backdoor/Win32.Pushdo] [W32/Backdoor.RMSR-3833] [Trojan.CryptHWZ] [W32/Pushdo.QGZ!tr.bdr] [Crypt.CHWZ] [Trj/Pushdo.L]
833009a54c295a72ad64ab0941f482fe[Suspicious.Cloud.5] [Kryptik.CCFN] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [TR/Crypt.EPACK.9220] [Heuristic.BehavesLike.Win32.Suspicious-BAY.K] [Mal/FakeAV-UF] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GIF] [Trojan.Win32.Kryptik.BZOO]
b36385662ebdaf40bc3d28f90b6a4751[Spyware.Zbot.USBV] [Trojan] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Foreign]
e617a69e7185cd299d75c87c401e0fda[SHeur4.BKZA] [TrojanDownloader*Win32/Cutwail.BS]
3220ab9b63a767c299000ea9d9e3a056[HW32.CDB.1b0b] [Packed.Win32.Katusha.1!O] [Backdoor.Hlux!u8SUOkHyYnA] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.RbUfAWB] [Backdoor.Win32.Hlux.dpoo] [Trojan.Win32.Hlux.cxxuzn] [TrojWare.Win32.Kryptik.CAUP] [BackDoor.Slym.12819] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Backdoor.Hlux] [Win32/Kryptik.CAXO] [Win32.Backdoor.Hlux.Lgjg] [Trojan.Crypt_s] [W32/Kryptik.CAXO!tr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CAXO]
3a44da011fc699a6afc6cc7d07131dd6[HW32.CDB.14e7] [Trojan.Win32.Kryptik.cxajdj] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CAHC] [Trojan.Packed.26527] [Trojan:Win32/Dynamer!ac] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Backdoor.Win32.Kelihos] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GKZ]
c7bf064346fafe4fc55b43abcfe96b00[HW32.CDB.E6f3] [Backdoor.Kelihos.r3] [Backdoor.Hlux!zUFIktBYK3s] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djfw] [Trojan.Win32.S.PSW-Tepfer.835600.AM] [UnclassifiedMalware] [BackDoor.Slym.14049] [Mal/Kelihos-A] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [W32/Trojan.QQUO-1304] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUC] [Trojan.Win32.Kryptik.BZIX]
a0b0bde17bb93f2af14fcc3771aef4f3
5e6ffe3abdc1caa35ee40b0a1908bf4c[Win32/Tnega.XfYFUAD] [BackDoor.Bulknet.967] [Win32/Injector.AIRV] [W32/Injector.AHLB!tr] [Trojan-Downloader.Win32.Karagany] [Trojan.Crypt.NKN] [PWS-Zbot-FAQD!5E6FFE3ABDC1] [TrojanDownloader*Win32/Cutwail.BS] [winpe/Kryptik.CBZD] [TROJ_FIDOBOT.SM0] [Trojan.Buzus]
865130fb2c0bd46bbd3ce1ec94c82284[HW32.CDB.48a5] [Backdoor.Win32.Hlux.crc] [Crypt_s.GHF]
180ca5d4cc13a8e8aee4156b2ee389c5
274256a090dcd9ee3a406cf95cd18d47[HW32.CDB.398d] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dpru] [Backdoor.Hlux!RvRbcitOmAk] [TrojWare.Win32.Kryptik.CAUP] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CAXO] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CAXO]
10bee7d058939df8b24f744bd6acaea6[HW32.CDB.93b6] [Backdoor.Hlux.r3] [Trojan.Win32.Kryptik.cxassb] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dogs] [Backdoor.Hlux!BGj2uJw2dM0] [Mal/FakeAV-UF] [UnclassifiedMalware] [Trojan.Packed.26544] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.DOGS!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CAUP] [Win32/Trojan.337]
17c3b162c4f71c7aef83c9e7644b6752

Whois

PropertyValue
Organization Yahoo! Inc.
Email domainadmin@yahoo-inc.com
NameServer ns3.yahoo.com
Created 1998-06-04 00:00:00
Expires 2016-06-04 00:00:00

DNS Resolutions

DateIP Address
2013-05-16202.165.102.205 (ClassC)
2014-04-0968.180.206.184 (ClassC)
2014-07-0298.139.102.145 (ClassC)
2014-07-0598.139.102.145 (ClassC)
2014-07-0868.180.206.184 (ClassC)
2014-07-2374.6.50.150 (ClassC)
2014-07-2377.238.184.150 (ClassC)
2014-07-2374.6.50.150 (ClassC)
2014-07-24188.125.73.108 (ClassC)
2014-07-2998.137.236.150 (ClassC)
2014-09-0898.137.236.150 (ClassC)
2014-09-08188.125.73.108 (ClassC)
2014-09-0877.238.184.150 (ClassC)
2015-04-13-
2019-09-0798.136.103.23 (ClassC)
2020-12-3074.6.136.150 (ClassC)
2023-08-26212.82.100.150 (ClassC)
2023-09-2913.49.212.207 (ClassC)
2023-10-1918.136.37.69 (ClassC)
2023-12-2113.251.69.97 (ClassC)
2024-01-3134.225.127.72 (ClassC)
2024-02-0654.161.105.65 (ClassC)
2024-02-1944.228.206.170 (ClassC)
2024-03-1034.213.101.254 (ClassC)
2025-07-2976.223.84.192 (ClassC)
2025-08-0613.248.158.7 (ClassC)

Subdomains

DateDomainIP
mail.yahoo.com.cn2014-07-21188.125.73.108
smtp.mail.yahoo.com.cn2025-07-1767.195.12.42
www.yahoo.com.cn2014-10-17188.125.73.108
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information