Help RSS API Feed Maltego Contact                        

Domain > email.it

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to email.it

MD5A/V
abe19665682ad3e10ba09471775c150b[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E]
3fb83eaf2a665f71ac2065f5f6956d50[HW32.CDB.5da2] [Packed.Win32.Katusha.1!O] [Trojan.Win32.Hlux.cynagk] [Trojan.FakeAV] [Kryptik.CDQY] [Win32/Kelihos.GeEUUIB] [Backdoor.Win32.Hlux.dqkq] [Backdoor.Hlux!m6CCC6SKjdo] [Win32.Backdoor.Hlux.Lose] [Backdoor.Win32.Hlux.DUHE] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.aDM]
8e0c45d714cfb9ec425923a8167305d6
414f356c91a64e1ea6279cbe9fa09bd9
e6d960bf587f5cb1497520fe716f1fb4[Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [PE:Malware.XPACK/RDM!5.1]
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]
639dd203d5ceeee335bccca69d4e8050[HW32.CDB.9a0b] [Backdoor.Hlux.r3] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djdi] [Backdoor.Hlux!dcOGw3a4azY] [Mal/Kelihos-A] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHF] [Trojan.Win32.Kryptik.BZIX]
4a110bd7cb835d71df2345ad50c25b23[HW32.CDB.9f50] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [UnclassifiedMalware] [BackDoor.Slym.13873] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ] [Win32/Trojan.0de]
dde053529fc90359815908c8ee1def65[FakeSecTool-FCX!DDE053529FC9] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
2f31abe28513c5fd9f9bdfb6269bfba0[HW32.CDB.1fed] [Trojan.VB.r3] [W32/Worm-AAEH.sh!2F31ABE28513] [WS.Reputation.1] [Trojan.Win32.VBKrypt.urjg] [Trojan.VBKrypt!0Vwhu4av/rY] [Worm.Win32.VB.NG] [Win32.HLLW.Autoruner2.12869] [TR/VBKrypt.urjys] [Mal/VB-ALW] [Trojan/Win32.VBKrypt] [Worm:Win32/Vobfus] [TScope.Trojan.VB] [Trj/CI.A] [PE:Malware.XPACK-HIE/Heur!1.9C48] [Trojan.Inject2] [W32/VBKrypt.BCTT!tr] [Inject2.AAWX] [Trojan.Win32.Injector.BCTT]
0d42b2efd88f95f4d5af60b548d7290a[FraudTool.Security] [W32/Tepfer.MQ!tr] [Win32/Cryptor]
14a2291e48bd02b528d0c018fee03e86[HW32.CDB.A3eb] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [Trojan.Packed.26581] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.XULT-7356] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.CBCJ!tr] [Crypt_s.GNC]
281bba52133b42b0041a72e8baf03600[HW32.CDB.Eca9] [Backdoor.Hlux.r3] [Backdoor.Hlux!xA6rCWjNVLE] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dmfd] [Trojan.Win32.Kryptik.cxbhpv] [Trojan.Packed.26544] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/FakeAV-UF] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.KRFJ-3745] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GME] [Trojan.Win32.Kryptik.CASL]
0d4fa9360c4139d1a33a6203f510f886[HW32.CDB.07a1] [Packed.Win32.Katusha.1!O] [Trojan.Win32.Hlux.cymqun] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.cri] [Backdoor.Hlux!tlFvhPzYgZ0] [Win32.Backdoor.Hlux.Glz] [Backdoor.Win32.Hlux.DUHE] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Trojan.Crypt] [W32/Hlux.CCCY!tr.bdr] [Crypt_s.GRA] [Backdoor.Win32.Hlux.aNkU]

Whois

PropertyValue
Organization Email.it srl
NameServer ns2.email.it
Created 1997-08-07 00:00:00
Changed 2014-08-08 00:48:36
Expires 2015-07-23 00:00:00
Registrar Vipnet.it s.r.l.

DNS Resolutions

DateIP Address
2012-06-20212.97.34.43 (ClassC)
2013-07-05212.97.34.53 (ClassC)
2013-11-19212.97.34.49 (ClassC)
2013-12-02212.97.34.7 (ClassC)
2013-12-11212.97.34.88 (ClassC)
2013-12-11212.97.34.58 (ClassC)
2015-05-19-
2023-08-13161.35.220.214 (ClassC)
2024-04-22167.71.40.43 (ClassC)
2026-01-15167.99.248.199 (ClassC)

Subdomains

DateDomainIP
NS2.EMAIL.IT2025-08-11109.168.113.251
dns2.email.it2025-05-29109.168.113.251
blog.email.it2025-03-2877.93.251.225
helpdesk.email.it2025-06-2577.93.251.197
app.email.it2024-06-2181.7.169.246
emailbusiness.email.it2025-01-1977.93.251.225
www.email.it2025-10-23167.99.248.199
mx.email.it2014-07-08212.97.34.36
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information