Help RSS API Feed Maltego Contact                        

Domain > o2.com

More information on this domain is in AlienVault OTX

Is this malicious?

Reports

http://blog.dynamoo.com/2016/01/malware-spam-gompe...    
https://otx.alienvault.com/pulse/56a1a38c4637f201b...    

Files that talk to o2.com

MD5A/V
970a7ea91d4845a5c13d26b6fa4664a0[HW32.CDB.95aa] [PWSZbot-FBOS!970A7EA91D48] [Trojan.Crypt.NKN] [TROJ_FORUCON.BMC] [Trojan.Win32.Inject.nnuq] [TR/Dropper.VB.7310] [Virus.Win32.Heur.p] [SHeur4.BWOZ]
4211b2d7121c11d5f032e6620030a384[HW32.CDB.Cd7e] [Packed.Win32.Katusha.3!O] [Hlux.ZY] [VirTool:Win32/Obfuscator.WT]
c7bf064346fafe4fc55b43abcfe96b00[HW32.CDB.E6f3] [Backdoor.Kelihos.r3] [Backdoor.Hlux!zUFIktBYK3s] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djfw] [Trojan.Win32.S.PSW-Tepfer.835600.AM] [UnclassifiedMalware] [BackDoor.Slym.14049] [Mal/Kelihos-A] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [W32/Trojan.QQUO-1304] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUC] [Trojan.Win32.Kryptik.BZIX]
165f5084043893cc35334b568d0f6ec0[HW32.CDB.73df] [Packed.Win32.Katusha.3!O] [Win32.Malware!Drop] [Backdoor.Hlux!tc7SLh6zR0c] [WS.Reputation.1] [Kryptik.CCFN] [UnclassifiedMalware] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Backdoor.Win32.Kelihos] [W32/Kryptik.BD!tr] [Crypt_s.GPC] [Backdoor.Win32.Hlux.aBgj] [Win32/Trojan.337]
2c05ffe297116df3062faac792c44c91[HW32.CDB.B4b9] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Win32/Trojan.0de]
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]
3223f61af50aa26a1c3bb96fe1779011[HW32.CDB.D56b] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux.Win32.9065] [Trojan.Win32.Kryptik.czfnsp] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.dueu] [Backdoor.Hlux!DdFHfWii/ns] [UnclassifiedMalware] [TR/Kryptik.oenzk] [Backdoor:Win32/Kelihos] [Trojan/Win32.FakeAV] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.cri] [Trojan.Crypt3] [W32/Kryptik.CBOM!tr] [Crypt3.ORV] [Backdoor.Win32.Hlux.Acmu] [Win32/Trojan.7bf]
17124a0c3ffde1fd0de7168990278c06[HW32.CDB.439f] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.DNNY-5917] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
0d42b2efd88f95f4d5af60b548d7290a[FraudTool.Security] [W32/Tepfer.MQ!tr] [Win32/Cryptor]
d6a71b4d3098eab4dddab30fddbaef35[FakeSecTool-FCX!D6A71B4D3098] [Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
292ad75fbab2288a453c7f7db162eed0[HW32.CDB.A2b5] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux!xuwpKhCjMA8] [WS.Reputation.1] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqzg] [UnclassifiedMalware] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.HATR-5126] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.Aj] [Win32/Trojan.112]
2ecde55cc501d71803f0c57d668fa546[HW32.CDB.7c65] [WS.Reputation.1] [Kryptik.CCFN] [Trojan-PSW.Win32.Tepfer.txcq] [Trojan.PWS.Tepfer!kS2SkVA+79E] [TrojWare.Win32.Kryptik.CAUP] [Trojan.Packed.26581] [Mal/FakeAV-UF] [Trojan[PSW]/Win32.Tepfer] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.Trojan-qqpass.Qqrob.Hvtt] [Trojan-Downloader.Win32.Waledac] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CAUP]
fe734b28009c7dd5389f64d72722bb21
7abb1e7e80e0f342f0452ae91375fce3
2c2371e95bb5d87ccd5d19a114492f70[HW32.CDB.18af] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Backdoor.Win32.Kelihos] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ] [Win32/Trojan.0de]

Whois

PropertyValue
NameServer DNS1.02.NET
Created 1995-07-30 00:00:00
Changed 2011-10-10 00:00:00
Expires 2015-07-29 00:00:00
Registrar TUCOWS DOMAINS INC.

DNS Resolutions

DateIP Address
2014-06-0583.231.179.17 (ClassC)
2014-07-02158.230.101.36 (ClassC)
2023-08-2651.104.149.90 (ClassC)
2025-03-1320.108.196.33 (ClassC)
2025-06-2120.162.150.90 (ClassC)

Port 80

Subdomains

DateDomainIP
rag-nord.o2.com2025-05-27158.230.203.164
de.o2.com2013-04-1862.138.241.193
vertriebspartner.de.o2.com2025-06-02217.111.103.185
www.vertriebspartner.de.o2.com2025-03-15217.111.103.185
prod.agent-cockpit.de.o2.com2024-08-203.124.18.136
e2e.agent-cockpit.de.o2.com2023-08-3152.57.181.104
mail.explore.o2.com2025-05-09158.230.203.204
sk.o2.com2025-05-26160.218.168.20
ip-91.191.68.5.sk.o2.com2025-05-1691.191.68.5
mobile.sk.o2.com2025-05-18160.218.168.20
m.sk.o2.com2025-06-01160.218.168.20
www.sk.o2.com2025-05-09160.218.168.20
www.o2.com2025-03-1320.108.196.33
mail2.cz.o2.com2014-06-18194.228.2.123
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information