Help RSS API Feed Maltego Contact                        

Domain > mxn.mxhichina.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to mxn.mxhichina.com

MD5A/V
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
4c83c209b92c70bd0cff8a6036589670[HW32.CDB.E5ca] [Trojan.Win32.Kryptik.cwscgd] [Kryptik.CCFN] [UnclassifiedMalware] [Trojan.Packed.26527] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [Crypt_s.GKU] [Trojan.Win32.Kryptik.BWUN] [Win32/Trojan.337]
315325f544912a68464bf38e3edf6371[HW32.CDB.9e5e] [Backdoor/W32.Hlux.829456.H] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux!aauIqdu764w] [Trojan.FakeAV] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqyy] [Win32.Backdoor.Hlux.Lhdb] [UnclassifiedMalware] [Trojan.Packed.26581] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.aZvR] [Win32/Trojan.337]
d38a3646d932d062528aea48d2122315
61b408e2de1c4996c3708f1f46913d60[HW32.CDB.C1b5] [Trojan.Kryptik!QyFpAm9uzfY] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djft] [Trojan.Win32.S.PSW-Tepfer.835600.AI] [UnclassifiedMalware] [BackDoor.Slym.14044] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Trojan/Win32.Tepfer] [W32/Trojan.AJYO-7526] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUF] [Trojan.Win32.Kryptik.BZIX]
dde053529fc90359815908c8ee1def65[FakeSecTool-FCX!DDE053529FC9] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
41530fef2d18802b83fe7d7a74dbbc3a[HW32.CDB.Cd5f] [Trojan.Bicololo.r3] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Heuristic.LooksLike.Win32.Suspicious.E] [Backdoor:Win32/Kelihos.F] [W32/Trojan.TTOL-6481] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
fe734b28009c7dd5389f64d72722bb21
e4fce69c0e2f36d514460974b8becdfa[Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Yakes] [W32/Kelihos.BCEB!tr]

DNS Resolutions

DateIP Address
2013-05-1642.121.103.105 (ClassC)
2014-07-1142.120.219.27 (ClassC)
2025-04-2947.246.137.47 (ClassC)
2025-05-1547.246.136.231 (ClassC)

Subdomains

DateDomainIP
ns1.mxhichina.com2024-12-02120.76.107.59
ns2.mxhichina.com2024-06-1547.118.199.221
pop3.mxhichina.com2025-04-2947.246.136.228
uspop3.mxhichina.com2024-09-2147.246.136.228
static.mxhichina.com2025-02-0447.246.136.233
mail.mxhichina.com2025-04-1947.246.136.233
email.mxhichina.com2025-03-0447.246.136.233
usmail.mxhichina.com2025-03-1547.246.136.233
mxn.mxhichina.com2013-05-1642.121.103.105
mailsso.mxhichina.com2022-03-07205.204.101.150
usmailsso.mxhichina.com2025-04-2947.246.137.46
ldap.mxhichina.com2024-11-1359.82.37.31
imap.mxhichina.com2025-03-1547.246.137.45
usimap.mxhichina.com2025-03-1547.246.136.228
mailhelp.mxhichina.com2025-04-2947.246.136.233
smtp.mxhichina.com2024-04-3047.246.64.74
ussmtp.mxhichina.com2024-04-1347.246.64.74
autodiscover.mxhichina.com2025-05-1342.120.219.127
mxus.mxhichina.com2025-02-2347.246.137.47
caldav.mxhichina.com2024-02-2159.82.44.105
mailhw.mxhichina.com2025-03-1547.246.137.46
mxw.mxhichina.com2025-05-1347.246.99.195
ex.mxhichina.com2025-05-1242.120.158.119
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information