Help RSS API Feed Maltego Contact                        

Domain > mx1.cityholding.com.gslb.pphosted.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to mx1.cityholding.com.gslb.pphosted.com

MD5A/V
4b93f892d9249b70508ee222e37ee1c6[HW32.CDB.E823] [TrojanPSW.Tepfer.r3] [Trojan.Win32.Kryptik.cxbvtz] [WS.Reputation.1] [Kryptik.CCFN] [Trojan-PSW.Win32.Tepfer.txbj] [Trojan.PWS.Tepfer!TcJrQOwJyhs] [Mal/FakeAV-UF] [BackDoor.Slym.13348] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan[PSW]/Win32.Tepfer] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Win32.Kryptik.CAUP] [Trojan.Crypt_s] [W32/Tepfer.CAUP!tr.pws] [Crypt_s.GMK]
56b02dc8b8072c1f787058a56eae64f0[HW32.CDB.9b1c] [Backdoor.Hlux.r3] [Trojan.Win32.Hlux.cwhrmp] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djkd] [Mal/Kelihos-A] [TrojWare.Win32.Kryptik.BZOO] [Trojan.DownLoad3.28912] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHE] [Trojan.Win32.Kryptik.BZIX] [Win32/Trojan.ef7]
d6a71b4d3098eab4dddab30fddbaef35[FakeSecTool-FCX!D6A71B4D3098] [Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]

Whois

PropertyValue
Email dns@proofpoint.com
NameServer NS3.PROOFPOINT.COM
Created 2007-07-11 00:00:00
Changed 2014-05-19 00:00:00
Expires 2016-07-11 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2025-07-0267.231.144.39 (ClassC)
2025-11-2867.231.152.39 (ClassC)

Subdomains

DateDomainIP
mx1.power-one.com.gslb.pphosted.com2013-11-0667.231.144.8
mx1.ttifloorcare.com.gslb.pphosted.com2014-04-2567.231.152.64
mx1.cityholding.com.gslb.pphosted.com2025-07-0267.231.144.39
mx1.dealertrack.com.gslb.pphosted.com2014-03-2467.231.144.69
mx1.oceanbank.com.gslb.pphosted.com2014-04-2567.231.144.74
mx2.efirstbank.com.gslb.pphosted.com2013-12-0267.231.144.11
mx1.subzero.com.gslb.pphosted.com2014-05-3067.231.152.75
mx1.clickbooq.com.gslb.pphosted.com2014-07-0167.231.144.19
mx1.pattersoncompanies.com.gslb.pphosted.com2014-05-2967.231.144.14
mx2.pattersoncompanies.com.gslb.pphosted.com2014-07-0467.231.152.14
mx1.bobstores.com.gslb.pphosted.com2014-04-2567.231.152.54
mx1.saintfrancis.com.gslb.pphosted.com2013-04-1867.231.144.67
mx1.kslresorts.com.gslb.pphosted.com2013-05-1667.231.144.84
mx2.genfast.com.gslb.pphosted.com2014-05-3067.231.152.3
mx1.teleflex.com.gslb.pphosted.com2013-12-0467.231.144.29
mx1.tjx.com.gslb.pphosted.com2013-04-1867.231.152.22
mx1.la-z-boy.com.gslb.pphosted.com2013-11-1167.231.152.55
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information