Help RSS API Feed Maltego Contact                        

Domain > citromail.hu

Welcome! Right click nodes and scroll the mouse to navigate the graph.
More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to citromail.hu

MD5A/V
7b34d19bfbc7f1b735f825de01b281f8
abe19665682ad3e10ba09471775c150b[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E]
4211b2d7121c11d5f032e6620030a384[HW32.CDB.Cd7e] [Packed.Win32.Katusha.3!O] [Hlux.ZY] [VirTool:Win32/Obfuscator.WT]
3a44da011fc699a6afc6cc7d07131dd6[HW32.CDB.14e7] [Trojan.Win32.Kryptik.cxajdj] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CAHC] [Trojan.Packed.26527] [Trojan:Win32/Dynamer!ac] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Backdoor.Win32.Kelihos] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GKZ]
651f650dfb3e715927cee5103e68e0c7[HW32.CDB.F91a] [Packed.Win32.Katusha.1!O] [Kryptik.CCQY] [Backdoor.Win32.Hlux.cri] [Win32.Malware!Drop] [Artemis!651F650DFB3E] [Backdoor:Win32/Kelihos.F] [W32/Hlux.CBWM!tr.bdr] [Crypt_s.GQG] [Backdoor.Win32.Hlux.AB]
e6d960bf587f5cb1497520fe716f1fb4[Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [PE:Malware.XPACK/RDM!5.1]
8889d486a91b3448e8b429ef99a536d0[HW32.CDB.1cb9] [Trojan.Win32.Kryptik.cwzoai] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnla] [Backdoor.Hlux!yM05ScK42o0] [Trojan.Packed.26544] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.DNLA!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
2748ea7375275e992ebde4575fe7c1a6[HW32.CDB.90bf] [Backdoor.Hlux.r3] [Backdoor.Hlux!wF4QLfqeA5I] [Kryptik.CCFN] [Backdoor.Win32.Hlux.crc] [Trojan.Win32.Hlux.cwzkvh] [TrojWare.Win32.Kryptik.BZOO] [BackDoor.Slym.14056] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GID] [Trojan.Win32.Kryptik.BZOO]
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]
16af6e3a391c3ebcf11d967dab4768df[HW32.CDB.7e15] [Packed.Win32.Katusha.3!O] [Kryptik.CCFN] [TrojWare.Win32.Kryptik.CBCJ] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [W32/Kryptik.CBIM!tr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.BWUN]
17124a0c3ffde1fd0de7168990278c06[HW32.CDB.439f] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.DNNY-5917] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
47e649bde7c0d7262d3333d4036954b1[HW32.CDB.854d] [Backdoor.Hlux.r3] [Trojan.Win32.Kryptik.cxchjm] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dlqp] [Backdoor.Hlux!j6RuLW3VWhk] [Trojan.Win32.S.PSW-Tepfer.829456.BB] [UnclassifiedMalware] [Trojan.Packed.26558] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[Backdoor]/Win32.Hlux] [Trojan/Win32.Tepfer] [W32/Trojan.TIAQ-7840] [Heur.Trojan.Hlux] [Backdoor.Win32.Kelihos] [Crypt3.LHH] [Trojan.Win32.Kryptik.CASU] [Win32/Trojan.337]
41530fef2d18802b83fe7d7a74dbbc3a[HW32.CDB.Cd5f] [Trojan.Bicololo.r3] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [W32/Trojan.TTOL-6481] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
038a21f4f89d526f853bba2a18b81708[Worm.Win32.Ngrbot.afvw] [Win32.HLLW.Autoruner2.1926] [TR/Crypt.Xpack.77749]
798f86b524476a3b6400dce112100001[HW32.CDB.A711] [Backdoor.Hlux.r3] [Backdoor.Hlux!ujVaEK/VdNQ] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djiy] [Trojan.Win32.Hlux.cxbcre] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHE] [Trojan.Win32.Kryptik.BZIX]

DNS Resolutions

DateIP Address
2013-11-2491.83.45.19 (ClassC)
2014-05-2377.111.91.25 (ClassC)
2014-06-2391.83.45.1 (ClassC)
2015-01-2191.83.45.26 (ClassC)
2015-11-18-
2021-04-1077.111.91.25 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
web10.citromail.hu2018-09-1891.83.45.10
server30.citromail.hu2013-12-0291.83.45.30
server101.citromail.hu2021-03-0491.83.45.101
server102.citromail.hu2021-03-0691.83.45.102
web-013.citromail.hu2019-12-0891.83.45.13
server106.citromail.hu2020-11-0491.83.45.106
server107.citromail.hu2020-11-0491.83.45.107
server27.citromail.hu2014-06-1691.83.45.27
server18.citromail.hu2020-04-1591.83.45.18
server28.citromail.hu2014-07-0691.83.45.28
server29.citromail.hu2014-05-2391.83.45.29
server99.citromail.hu2020-11-0491.83.45.99
auth.citromail.hu2020-11-0291.83.45.1
m.citromail.hu2019-12-1377.111.90.201
www.citromail.hu2021-04-0577.111.91.25
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information