Help RSS API Feed Maltego Contact                        

Domain > citromail.hu

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to citromail.hu

MD5A/V
7b34d19bfbc7f1b735f825de01b281f8
abe19665682ad3e10ba09471775c150b[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E]
4211b2d7121c11d5f032e6620030a384[HW32.CDB.Cd7e] [Packed.Win32.Katusha.3!O] [Hlux.ZY] [VirTool:Win32/Obfuscator.WT]
3a44da011fc699a6afc6cc7d07131dd6[HW32.CDB.14e7] [Trojan.Win32.Kryptik.cxajdj] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CAHC] [Trojan.Packed.26527] [Trojan:Win32/Dynamer!ac] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Backdoor.Win32.Kelihos] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GKZ]
651f650dfb3e715927cee5103e68e0c7[HW32.CDB.F91a] [Packed.Win32.Katusha.1!O] [Kryptik.CCQY] [Backdoor.Win32.Hlux.cri] [Win32.Malware!Drop] [Artemis!651F650DFB3E] [Backdoor:Win32/Kelihos.F] [W32/Hlux.CBWM!tr.bdr] [Crypt_s.GQG] [Backdoor.Win32.Hlux.AB]
e6d960bf587f5cb1497520fe716f1fb4[Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [PE:Malware.XPACK/RDM!5.1]
8889d486a91b3448e8b429ef99a536d0[HW32.CDB.1cb9] [Trojan.Win32.Kryptik.cwzoai] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnla] [Backdoor.Hlux!yM05ScK42o0] [Trojan.Packed.26544] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.DNLA!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
2748ea7375275e992ebde4575fe7c1a6[HW32.CDB.90bf] [Backdoor.Hlux.r3] [Backdoor.Hlux!wF4QLfqeA5I] [Kryptik.CCFN] [Backdoor.Win32.Hlux.crc] [Trojan.Win32.Hlux.cwzkvh] [TrojWare.Win32.Kryptik.BZOO] [BackDoor.Slym.14056] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GID] [Trojan.Win32.Kryptik.BZOO]
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]
16af6e3a391c3ebcf11d967dab4768df[HW32.CDB.7e15] [Packed.Win32.Katusha.3!O] [Kryptik.CCFN] [TrojWare.Win32.Kryptik.CBCJ] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [W32/Kryptik.CBIM!tr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.BWUN]
17124a0c3ffde1fd0de7168990278c06[HW32.CDB.439f] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.DNNY-5917] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
47e649bde7c0d7262d3333d4036954b1[HW32.CDB.854d] [Backdoor.Hlux.r3] [Trojan.Win32.Kryptik.cxchjm] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dlqp] [Backdoor.Hlux!j6RuLW3VWhk] [Trojan.Win32.S.PSW-Tepfer.829456.BB] [UnclassifiedMalware] [Trojan.Packed.26558] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[Backdoor]/Win32.Hlux] [Trojan/Win32.Tepfer] [W32/Trojan.TIAQ-7840] [Heur.Trojan.Hlux] [Backdoor.Win32.Kelihos] [Crypt3.LHH] [Trojan.Win32.Kryptik.CASU] [Win32/Trojan.337]
41530fef2d18802b83fe7d7a74dbbc3a[HW32.CDB.Cd5f] [Trojan.Bicololo.r3] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [W32/Trojan.TTOL-6481] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
038a21f4f89d526f853bba2a18b81708[Worm.Win32.Ngrbot.afvw] [Win32.HLLW.Autoruner2.1926] [TR/Crypt.Xpack.77749]
798f86b524476a3b6400dce112100001[HW32.CDB.A711] [Backdoor.Hlux.r3] [Backdoor.Hlux!ujVaEK/VdNQ] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djiy] [Trojan.Win32.Hlux.cxbcre] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHE] [Trojan.Win32.Kryptik.BZIX]

DNS Resolutions

DateIP Address
2013-11-2491.83.45.19 (ClassC)
2014-05-2377.111.91.25 (ClassC)
2014-06-2391.83.45.1 (ClassC)
2015-01-2191.83.45.26 (ClassC)
2019-10-0877.111.91.25 (ClassC)
2021-11-1299.84.238.194 (ClassC)
2021-11-1299.84.238.172 (ClassC)
2021-11-1299.84.238.175 (ClassC)
2021-11-1652.222.158.99 (ClassC)
2021-11-1952.84.121.5 (ClassC)
2021-11-1952.84.121.7 (ClassC)
2021-11-1999.84.191.101 (ClassC)
2021-11-1952.84.121.48 (ClassC)
2021-11-2054.192.58.79 (ClassC)
2021-11-2054.192.58.129 (ClassC)
2021-11-2054.192.58.61 (ClassC)
2021-11-2599.84.105.37 (ClassC)
2021-11-26143.204.98.4 (ClassC)
2021-11-3065.8.164.54 (ClassC)
2021-12-1713.226.9.19 (ClassC)
2021-12-1713.226.9.10 (ClassC)
2021-12-2613.33.46.120 (ClassC)
2022-01-0765.8.56.78 (ClassC)
2022-01-0765.8.56.88 (ClassC)
2022-01-1813.225.63.45 (ClassC)
2022-01-3013.227.39.118 (ClassC)
2022-01-3013.227.39.6 (ClassC)
2022-02-0254.230.162.118 (ClassC)
2022-03-1013.226.17.82 (ClassC)
2022-03-1013.226.17.87 (ClassC)
2023-08-13161.35.220.214 (ClassC)
2024-05-07167.71.40.43 (ClassC)
2026-01-22167.99.248.199 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
server30.citromail.hu2013-12-0291.83.45.30
server27.citromail.hu2014-06-1691.83.45.27
server28.citromail.hu2025-11-2491.83.45.28
server29.citromail.hu2014-05-2391.83.45.29
app.citromail.hu2024-06-0981.7.169.246
www.citromail.hu2025-11-23167.99.248.199
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information