Help RSS API Feed Maltego Contact                        

Domain > mail.cryptsoft.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to mail.cryptsoft.com

MD5A/V
649657cadcaa364649e9b6c4069ff490[W32.MyDoom.M.Worm] [Worm/W32.Mydoom.28864] [Email-Worm.Win32.Mydoom!O] [W32.Mydoom.M] [W32/Mydoom.o@MM] [Worm.Mydoom] [W32/Mydoom.m] [I-Worm.Mydoom!qBn5HU3v+Lw] [W32/Mydoom.O@mm] [W32.Mydoom.M@mm] [MyDoom.PI] [Win32/Mydoom.O] [Worm.Mydoom-27] [Email-Worm.Win32.Mydoom.m] [Trojan.Win32.Mydoom.dfadqm] [PE:Worm.Mail.Mydoom.dh!1074753035] [Worm.Win32.Mydoom.R] [Win32.HLLM.MyDoom.54464] [Worm.Mydoom.Win32.1032] [BehavesLike.Win32.Mydoom.mc] [W32/MyDoom-O] [W32/Mydoom.LVDB-0128] [Worm/Sramota.bef] [Worm/Mydoom.O.1] [Worm[Email]/Win32.Mydoom] [Worm.Mydoom.m.(kcloud)] [Worm:Win32/Mydoom.O@mm] [I-Worm.Win32.Mydoom.28864.A[h]] [Win32/Mydoom.worm.49344.B] [W32/Mydoom.N.worm] [I-Worm.Mydoom.AX] [Win32/Mydoom.R] [Trojan.Win32.Mydoom.m] [Email-Worm.Win32.Mydoom] [W32/Mydoom.M!dam] [I-Worm/Mydoom.O] [Worm.W]
3789d79f5902ff27e26b6be3af754b31[W32.MyDoom.M.Worm] [Worm/W32.Mydoom.28864] [Email-Worm.Win32.Mydoom!O] [W32.Mydoom.M] [Worm.Mydoom] [Worm.MyDoom] [Worm.Mydoom.Win32.1032] [W32/Mydoom.m] [Trojan.Win32.Mydoom.dfadqm] [W32/Mydoom.O@mm] [W32.Mydoom.M@mm] [Win32/Mydoom.R] [Worm.Mydoom-27] [Email-Worm.Win32.Mydoom.m] [I-Worm.Mydoom!qBn5HU3v+Lw] [I-Worm.Win32.Mydoom.28864.A[h]] [PE:Worm.Mydoom!1.6579[F1]] [W32/MyDoom-O] [Worm.Win32.Mydoom.R] [Win32.HLLM.MyDoom.54464] [BehavesLike.Win32.Mydoom.mc] [W32/Mydoom.LVDB-0128] [Worm/Sramota.bef] [WORM/Mydoom.O.1] [Worm[Email]/Win32.Mydoom] [Worm.Mydoom.m.(kcloud)] [Worm:Win32/Mydoom.O@mm] [Win32/Mydoom.worm.49344.B] [Win32/Mydoom.O] [W32/Mydoom.o@MM] [W32/Mydoom.N.worm] [I-Worm.Mydoom.AX] [Trojan.Win32.Mydoom.m] [Email-Worm.Win32.Mydoom] [W32/Mydoom.M!dam] [I-Worm/Mydoom.O] [Worm.Win32.Mydoom.dd] [Win32/Worm.374]

DNS Resolutions

DateIP Address
2013-06-01173.194.66.121 (ClassC)
2013-06-02173.194.67.121 (ClassC)
2014-12-1074.125.28.121 (ClassC)
2018-04-06216.58.208.211 (ClassC)
2018-04-07216.58.212.243 (ClassC)
2018-04-08216.58.217.83 (ClassC)
2018-04-08216.58.218.243 (ClassC)
2019-07-05172.217.15.83 (ClassC)
2019-07-06172.217.164.179 (ClassC)
2019-07-06172.217.22.211 (ClassC)
2019-07-06172.217.17.243 (ClassC)
2019-07-06172.217.7.211 (ClassC)
2019-07-14172.217.18.115 (ClassC)
2019-07-24172.217.11.19 (ClassC)
2019-07-26172.217.15.115 (ClassC)
2019-07-26172.217.12.147 (ClassC)
2019-07-29173.194.219.121 (ClassC)
2019-07-29172.217.10.83 (ClassC)
2019-08-02172.217.17.51 (ClassC)
2019-08-07216.58.208.115 (ClassC)
2019-08-0974.125.133.121 (ClassC)
2019-08-27172.217.197.121 (ClassC)
2019-08-2974.125.143.121 (ClassC)
2019-09-28172.217.169.19 (ClassC)
2020-03-14216.58.209.19 (ClassC)
2020-03-29172.217.16.19 (ClassC)
2020-04-06173.194.76.121 (ClassC)
2020-06-11216.58.212.147 (ClassC)
2021-03-04172.217.160.83 (ClassC)
2022-11-03142.250.73.211 (ClassC)
2024-04-02142.250.107.121 (ClassC)
2024-04-0574.125.198.121 (ClassC)
2024-04-10142.251.162.121 (ClassC)
2024-04-1074.125.199.121 (ClassC)
2024-04-1074.125.141.121 (ClassC)
2024-05-0164.233.169.121 (ClassC)
2024-07-13142.251.33.115 (ClassC)
2024-09-04142.250.217.83 (ClassC)
2024-09-17172.217.14.211 (ClassC)
2025-04-15142.251.215.243 (ClassC)
2025-07-10142.250.73.115 (ClassC)
2025-10-05142.250.217.115 (ClassC)
2025-11-08142.250.73.147 (ClassC)
2025-12-02142.251.33.83 (ClassC)
2026-01-08142.251.34.211 (ClassC)

Port 80

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information