Help RSS API Feed Maltego Contact                        

Domain > ec-messenger.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to ec-messenger.com

MD5A/V
4c83c209b92c70bd0cff8a6036589670[HW32.CDB.E5ca] [Trojan.Win32.Kryptik.cwscgd] [Kryptik.CCFN] [UnclassifiedMalware] [Trojan.Packed.26527] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [Crypt_s.GKU] [Trojan.Win32.Kryptik.BWUN] [Win32/Trojan.337]
61b408e2de1c4996c3708f1f46913d60[HW32.CDB.C1b5] [Trojan.Kryptik!QyFpAm9uzfY] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djft] [Trojan.Win32.S.PSW-Tepfer.835600.AI] [UnclassifiedMalware] [BackDoor.Slym.14044] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Trojan/Win32.Tepfer] [W32/Trojan.AJYO-7526] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUF] [Trojan.Win32.Kryptik.BZIX]
e4fce69c0e2f36d514460974b8becdfa[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Yakes] [W32/Kelihos.BCEB!tr]
4211b2d7121c11d5f032e6620030a384[HW32.CDB.Cd7e] [Packed.Win32.Katusha.3!O] [Hlux.ZY] [VirTool:Win32/Obfuscator.WT]
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]
3d79b35a81f544862ae5a347831857c6[HW32.CDB.Eb76] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dtjw] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GPC] [Backdoor.Win32.Hlux.Ae] [Win32/Trojan.337]
14b43203abd10b893244fc8ac8d5f531[HW32.CDB.F55f] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Win32/Trojan.0de]
20837cfed9fcc3df5a3e414c18eff646[Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
1ca8bda50d98c89332d39dbaf3aac976[HW32.CDB.29c0] [Packed.Win32.Katusha.3!O] [Trojan.Win32.Kryptik.cxmkag] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC]

Whois

PropertyValue
Email hostmaster@ecircle.com
NameServer NS2.ECIRCLE.DE
Created 2001-06-25 00:00:00
Changed 2014-06-26 00:00:00
Expires 2015-06-25 00:00:00
Registrar PSI-USA, INC. DBA DO

DNS Resolutions

DateIP Address
2014-10-30195.140.186.102 (ClassC)
2026-01-2191.192.43.150 (ClassC)

Port 80

Subdomains

DateDomainIP
mx00.muc.ec-messenger.com2025-09-12195.140.186.220
mx50.muc.ec-messenger.com2014-04-2591.192.43.200
mx01.muc.ec-messenger.com2025-09-13195.140.186.221
mx51.muc.ec-messenger.com2014-06-1691.192.43.201
mx02.muc.ec-messenger.com2025-10-27195.140.186.222
mx03.muc.ec-messenger.com2025-03-01195.140.186.223
mx55.muc.ec-messenger.com2014-06-1891.192.43.205
incisive-research.ec-messenger.com2025-03-30195.140.186.100
www.ec-messenger.com2025-11-0891.192.43.150
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information