Help RSS API Feed Maltego Contact                        

Domain > ajax.aspnetcdn.com

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as not malicious

Reports

https://otx.alienvault.com/pulse/56e701034637f24cb...    
https://blogs.sophos.com/2016/01/06/the-current-st...    
https://www.virustotal.com/en/file/e12405096f83b30...    

Files that talk to ajax.aspnetcdn.com

MD5A/V
cdb473292c17161bcc52d79b886aeaf8
545e00a63f86bc926f12abeff4b6f55b[HW32.CDB.08f9] [Trojan.Dropper.WLW] [BackDoor-FBYQ!545E00A63F86] [Trojan.Win32.Simda.cwzntt] [WS.Reputation.1] [Simda.TGZ] [Win32/Simda.fGXWUID] [Backdoor.Win32.Simda.acni] [Backdoor.Simda!fVXCs6GH0vg] [Trojan.Rodricter.153] [TR/Drop.WLW] [Troj/Medfos-GA] [Trojan[Backdoor]/Win32.Simda] [Backdoor:Win32/Simda.AT] [Trojan/Win32.Simda] [Malware-Cryptor.ImgChk] [Win32/Simda.B] [PE:Malware.XPACK-LNR/Heur!1.5594] [Backdoor.Win32.Simda] [Simda.MF] [Trojan.Win32.Simda.B]
8496602e505914092cf8ed21b0fa1e36[PUP.Optional.OpenCandy] [Trojan.Win32.OpenCandy.cumlgz] [Adware.OpenCandy.3] [Win32/OpenCandy]
DD63B9136B7A6D048FE844FC2170D7B0
cbd6f6848a393bc158d7ec3a4783992e[Backdoor/W32.Bifrose.727040.B] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [Application/ScreenSpy]
9b5d63c008d706b2060db322992e7369
040eddf711916114da3a0260463ca1eb[W32.Pharoh.PE] [Virus/W32.Mabezat] [W32.Mabezat.B] [W32/Mabezat.a] [Trojan.FakeMS.ED] [Virus.Win32.Mazebat.rspj] [W32/Mabezat.A-1] [W32.Mabezat.B!inf] [Mabezat.B] [Win32/Mabezat.B] [PE_MABEZAT.B-2] [W32.Mabezat-1] [Worm.Win32.Mabezat.b] [Worm.Mabezat.C] [Win32.Mabezat.B] [Worm.Win32.Mabezat.b8] [Win32.HLLW.Tazebama] [Backdoor.PePatch.Win32.36590] [W32/Mabezat] [W32/Mabezat-B] [Win32/Mabezat.b] [Worm/Win32.Mabezat.b] [Win32.Mabezat.b.1038191] [Virus:Win32/Mabezat.B] [Win32/Mabezat] [Worm.Win32.Mabezat.A] [W32/Mabezat.C] [Win32/Mabezat.A] [PE:Win32.Mabezat.b!1331113] [Worm.Win32.Mabezat] [W32/Mabezat.B] [Virus.Win32.Mabezat.$b] [Virus.Win32.Mabezat.A]
91d2e7b6ba3e75cb04f4159f03e281dc
8a5422c7d2514d7ad0ed912593547009[W32/Behav-Heuristic-CorruptFile-EP] [Kryptik.STUB] [not-a-virus:RiskTool.Win32.PwDump.e] [Heur.Corrupt.PE] [Trojan.PWS.Stealer.13336] [TrojanSpy:MSIL/Golroted.B] [Trojan/Win32.Golroted]
599d9dddd040ee1f4b38574d98ffdc78[Simda.THQ] [Backdoor.Win32.Simda.acnl] [Trojan.Win32.Kryptik.CAMG] [PE:Malware.XPACK-LNR/Heur!1.5594]
b76e69ff5f46e5b2c588d0e7678e5e5e
7f594afe8f5ff84f97382880c321d62d
008d61c7e71f71815810ccacf54f4fc2
3912275669f578d91e93c683108d3e89
e22c61fcf2247d259f3f6433e307f39d[Trojan.Win32.OpenCandy.cumlgz] [Adware.OpenCandy.3] [Win32/OpenCandy]
638ac362923372c589252f41b53ce2f7
39b23767ab02ccd7834a5050c17b2fff[WebToolbar.Win32.RK!O]
8223ec1c2aa71503b431a0daabb23154
a33e9ab9be03cae562d38d97a2541e48[HW32.CDB.E1df] [Backdoor/W32.Simda.678912.B] [Artemis!A33E9AB9BE03] [Backdoor.Simda!rP468Poch/A] [Simda.THU] [Win32/Simda.MCUJZaC] [Backdoor.Win32.Simda.acrh] [Trojan.Win32.Simda.cxghsc] [Trojan.Rodricter.153] [Trojan[Backdoor]/Win32.Simda] [Win32.Hack.Simda.ac.(kcloud)] [Backdoor:Win32/Simda.AT] [Win32/Simda.B] [PE:Malware.XPACK-LNR/Heur!1.5594] [W32/Simda.ACRH!tr]
a26c54127b1ef67f329f720e1dc1a3e6[Packed.Win32.TDSS.1!O] [Simda.THQ] [Backdoor.Win32.Simda.acnm] [Trojan.Dropper.WMA] [Win32/Simda.B] [PE:Malware.XPACK-LNR/Heur!1.5594]

Whois

PropertyValue
Email domains@microsoft.com
NameServer NS2.MSFT.NET
Created 2010-10-12 00:00:00
Changed 2014-11-04 00:00:00
Expires 2015-10-12 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2013-04-0165.54.80.210 (ClassC)
2013-04-0165.54.81.45 (ClassC)
2013-04-0165.54.81.122 (ClassC)
2013-04-0165.54.80.203 (ClassC)
2013-04-0165.54.81.175 (ClassC)
2013-04-0165.54.81.161 (ClassC)
2013-04-0165.54.93.36 (ClassC)
2013-04-0165.54.81.189 (ClassC)
2013-04-0165.54.81.85 (ClassC)
2013-04-0165.54.80.208 (ClassC)
2013-04-0165.54.81.38 (ClassC)
2013-04-0165.54.81.112 (ClassC)
2013-04-0165.54.93.80 (ClassC)
2013-04-0165.54.81.4 (ClassC)
2013-04-0165.54.81.12 (ClassC)
2013-04-0665.54.81.162 (ClassC)
2013-04-2165.54.89.230 (ClassC)
2013-05-0265.54.81.66 (ClassC)
2013-05-02213.199.148.160 (ClassC)
2013-05-0465.54.80.209 (ClassC)
2013-05-1565.54.81.166 (ClassC)
2013-05-15213.199.148.163 (ClassC)
2013-05-1665.54.80.184 (ClassC)
2013-05-1765.54.93.22 (ClassC)
2013-05-1765.54.92.147 (ClassC)
2013-05-2065.54.93.16 (ClassC)
2013-05-2065.54.81.101 (ClassC)
2013-05-2065.54.93.46 (ClassC)
2013-05-20213.199.149.71 (ClassC)
2013-05-2065.54.93.145 (ClassC)
2013-05-2265.54.93.82 (ClassC)
2013-05-2465.54.80.204 (ClassC)
2013-05-26213.199.149.87 (ClassC)
2013-05-2765.54.89.235 (ClassC)
2013-05-2965.54.80.214 (ClassC)
2013-06-0365.54.80.182 (ClassC)
2013-06-05213.199.149.159 (ClassC)
2013-06-05213.199.149.19 (ClassC)
2013-06-0565.54.89.159 (ClassC)
2013-06-06213.199.148.134 (ClassC)
2013-06-0765.54.89.166 (ClassC)
2013-06-0765.54.89.216 (ClassC)
2013-06-09213.199.149.56 (ClassC)
2013-06-10213.199.149.117 (ClassC)
2013-06-1165.54.89.117 (ClassC)
2013-06-1565.54.81.172 (ClassC)
2013-06-1665.54.89.225 (ClassC)
2013-06-1765.54.80.202 (ClassC)
2013-06-1865.54.81.86 (ClassC)
2013-06-1965.54.89.212 (ClassC)
2013-07-0165.55.87.91 (ClassC)
2013-07-01213.199.149.252 (ClassC)
2013-07-0465.55.87.25 (ClassC)
2013-07-0865.54.89.155 (ClassC)
2013-07-0865.54.89.218 (ClassC)
2013-07-0965.54.89.157 (ClassC)
2013-07-1065.55.87.227 (ClassC)
2013-07-1065.55.87.149 (ClassC)
2013-07-1165.54.89.40 (ClassC)
2013-07-1165.54.89.5 (ClassC)
2013-07-19213.199.149.158 (ClassC)
2013-07-21213.199.148.243 (ClassC)
2013-07-23213.199.149.106 (ClassC)
2013-07-25213.199.148.150 (ClassC)
2013-07-25207.46.206.151 (ClassC)
2013-07-28207.46.206.24 (ClassC)
2013-07-29213.199.149.60 (ClassC)
2013-07-30213.199.149.29 (ClassC)
2013-07-31213.199.149.81 (ClassC)
2013-08-0865.54.89.172 (ClassC)
2013-08-13207.46.206.114 (ClassC)
2013-08-13207.46.206.28 (ClassC)
2013-08-1465.54.89.113 (ClassC)
2013-08-1465.55.87.177 (ClassC)
2013-08-1465.54.89.150 (ClassC)
2013-08-14213.199.149.241 (ClassC)
2013-08-15213.199.149.133 (ClassC)
2013-08-16213.199.148.142 (ClassC)
2013-08-16213.199.148.137 (ClassC)
2013-08-1765.54.89.134 (ClassC)
2013-08-1965.55.87.47 (ClassC)
2013-08-2465.55.87.182 (ClassC)
2013-08-2465.55.87.55 (ClassC)
2013-08-2465.55.87.214 (ClassC)
2013-08-2565.55.87.178 (ClassC)
2013-08-2565.55.87.223 (ClassC)
2013-08-2665.55.87.228 (ClassC)
2013-08-2765.55.87.213 (ClassC)
2013-08-2765.55.87.218 (ClassC)
2013-08-2965.55.87.224 (ClassC)
2013-09-0265.55.87.117 (ClassC)
2013-09-1365.55.87.215 (ClassC)
2013-09-1765.55.87.59 (ClassC)
2013-09-2365.55.87.74 (ClassC)
2013-09-2565.55.87.46 (ClassC)
2013-09-27207.46.206.163 (ClassC)
2013-09-28207.46.206.7 (ClassC)
2013-10-0465.54.89.126 (ClassC)
2013-10-07207.46.206.10 (ClassC)
2013-10-09207.46.206.45 (ClassC)
2013-10-10207.46.206.56 (ClassC)
2013-10-10207.46.206.136 (ClassC)
2013-10-11207.46.206.30 (ClassC)
2013-10-12207.46.206.18 (ClassC)
2013-10-13207.46.206.31 (ClassC)
2013-10-15207.46.206.153 (ClassC)
2013-10-17207.46.206.57 (ClassC)
2013-10-19207.46.206.53 (ClassC)
2013-10-21207.46.206.137 (ClassC)
2013-10-25207.46.206.140 (ClassC)
2013-10-27207.46.206.127 (ClassC)
2013-10-2965.54.89.40 (ClassC)
2013-11-04207.46.206.141 (ClassC)
2013-11-0665.55.87.34 (ClassC)
2013-11-10207.46.206.165 (ClassC)
2013-11-1165.55.87.21 (ClassC)
2013-11-1165.55.87.120 (ClassC)
2013-11-1465.55.87.212 (ClassC)
2013-11-1465.55.87.217 (ClassC)
2013-11-1465.54.89.218 (ClassC)
2013-11-1465.55.87.164 (ClassC)
2013-11-1665.55.87.216 (ClassC)
2013-11-1865.55.87.103 (ClassC)
2013-11-1865.55.87.183 (ClassC)
2013-11-1965.55.87.81 (ClassC)
2013-11-2065.55.87.128 (ClassC)
2013-11-2265.55.87.147 (ClassC)
2013-11-2565.54.89.79 (ClassC)
2013-11-2565.55.87.20 (ClassC)
2013-11-27207.46.206.177 (ClassC)
2013-11-27207.46.206.179 (ClassC)
2013-12-04207.46.206.154 (ClassC)
2013-12-05207.46.206.16 (ClassC)
2013-12-05207.46.206.32 (ClassC)
2013-12-08207.46.206.47 (ClassC)
2013-12-10207.46.206.70 (ClassC)
2013-12-10207.46.206.123 (ClassC)
2013-12-10207.46.206.102 (ClassC)
2013-12-10207.46.206.78 (ClassC)
2013-12-10207.46.206.39 (ClassC)
2014-01-1765.54.89.216 (ClassC)
2014-01-2665.54.89.63 (ClassC)
2014-01-2665.54.89.192 (ClassC)
2014-01-2965.54.89.225 (ClassC)
2014-02-0165.54.89.62 (ClassC)
2014-02-0765.54.89.244 (ClassC)
2014-02-0865.54.89.134 (ClassC)
2014-02-1465.55.87.176 (ClassC)
2014-03-0265.54.89.146 (ClassC)
2014-03-06207.46.206.109 (ClassC)
2014-03-1265.54.89.235 (ClassC)
2014-03-19207.46.206.105 (ClassC)
2014-03-2593.184.215.200 (ClassC)
2014-03-2593.184.215.201 (ClassC)
2014-05-1668.232.34.201 (ClassC)
2014-06-1968.232.34.200 (ClassC)
2014-06-2468.232.34.200 (ClassC)
2014-12-1093.184.215.200 (ClassC)
2017-09-08117.18.232.200 (ClassC)
2018-03-3093.184.221.200 (ClassC)
2018-04-17152.199.20.1 (ClassC)
2018-04-1893.184.221.201 (ClassC)
2018-11-0872.21.81.200 (ClassC)
2019-05-25152.199.19.160 (ClassC)
2019-10-20192.16.48.200 (ClassC)
2025-01-14152.199.4.33 (ClassC)
2025-01-24104.96.203.9 (ClassC)
2025-01-24184.25.119.145 (ClassC)
2025-02-0623.43.242.120 (ClassC)
2025-02-11104.98.118.171 (ClassC)
2025-02-2523.213.34.172 (ClassC)
2025-02-2672.247.182.80 (ClassC)
2025-03-0523.216.145.154 (ClassC)
2025-03-1123.39.46.25 (ClassC)
2025-03-1623.46.228.43 (ClassC)
2025-03-3023.206.171.43 (ClassC)
2025-04-0723.46.228.17 (ClassC)
2025-04-2223.216.147.33 (ClassC)
2025-04-28104.96.203.18 (ClassC)
2025-05-12104.96.203.48 (ClassC)
2025-06-0223.46.228.48 (ClassC)
2025-06-0523.206.171.49 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information