Help RSS API Feed Maltego Contact                        

Domain > ryazan.ru

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to ryazan.ru

MD5A/V
2c05ffe297116df3062faac792c44c91[HW32.CDB.B4b9] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Win32/Trojan.0de]
17124a0c3ffde1fd0de7168990278c06[HW32.CDB.439f] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [W32/Trojan.DNNY-5917] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
0d42b2efd88f95f4d5af60b548d7290a[FraudTool.Security] [W32/Tepfer.MQ!tr] [Win32/Cryptor]
dde053529fc90359815908c8ee1def65[FakeSecTool-FCX!DDE053529FC9] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]
d6a71b4d3098eab4dddab30fddbaef35[FakeSecTool-FCX!D6A71B4D3098] [Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
0dd56a0b8ea7bedb57cebf9aacdac40f[Malware.Packer.HGX1] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [W32/Kryptik.AXUE!tr]
3223f61af50aa26a1c3bb96fe1779011[HW32.CDB.D56b] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux.Win32.9065] [Trojan.Win32.Kryptik.czfnsp] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.dueu] [Backdoor.Hlux!DdFHfWii/ns] [UnclassifiedMalware] [TR/Kryptik.oenzk] [Backdoor:Win32/Kelihos] [Trojan/Win32.FakeAV] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.cri] [Trojan.Crypt3] [W32/Kryptik.CBOM!tr] [Crypt3.ORV] [Backdoor.Win32.Hlux.Acmu] [Win32/Trojan.7bf]
fe734b28009c7dd5389f64d72722bb21
315325f544912a68464bf38e3edf6371[HW32.CDB.9e5e] [Backdoor/W32.Hlux.829456.H] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux!aauIqdu764w] [Trojan.FakeAV] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqyy] [Win32.Backdoor.Hlux.Lhdb] [UnclassifiedMalware] [Trojan.Packed.26581] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.aZvR] [Win32/Trojan.337]

DNS Resolutions

DateIP Address
2013-09-2181.176.228.4 (ClassC)
2013-11-3089.188.104.7 (ClassC)
2013-12-0785.249.112.11 (ClassC)
2014-06-09212.26.224.87 (ClassC)
2026-02-03212.26.224.65 (ClassC)

Subdomains

DateDomainIP
relay1.ryazan.ru2014-06-18212.26.224.70
gorod.ryazan.ru2013-10-1989.188.104.7
forum.gorod.ryazan.ru2015-06-0889.188.104.7
www.auto.gorod.ryazan.ru2015-06-2989.188.104.7
www.gorod.ryazan.ru2013-09-2689.188.104.7
ai.ryazan.ru2025-11-15185.42.228.118
roek.ryazan.ru2026-02-03188.120.239.80
1c.roek.ryazan.ru2025-01-29109.94.177.12
www.1c.roek.ryazan.ru2025-06-02109.94.177.12
lk-old.roek.ryazan.ru2025-05-27212.109.218.253
lk-api.roek.ryazan.ru2026-02-03212.109.218.253
lk.roek.ryazan.ru2025-01-29178.176.228.52
www.lk.roek.ryazan.ru2024-11-26178.176.228.52
gl.roek.ryazan.ru2025-07-31109.94.177.12
www.gl.roek.ryazan.ru2025-09-08109.94.177.12
mail.roek.ryazan.ru2025-11-11109.94.177.12
zabbix.roek.ryazan.ru2024-11-23109.94.177.12
www.zabbix.roek.ryazan.ru2025-08-03109.94.177.12
mail.ryazan.ru2025-07-12212.26.224.87
email.ryazan.ru2015-04-10212.26.224.66
icecream.ryazan.ru2026-02-0380.72.112.11
inforum.ryazan.ru2013-05-16212.26.227.97
mail.inforum.ryazan.ru2013-05-16212.26.227.99
info.ryazan.ru2025-05-27212.26.234.50
gorfo.ryazan.ru2025-01-11212.26.252.140
rosno.ryazan.ru2025-07-12212.26.234.0
tkpo.ryazan.ru2026-02-03212.26.245.206
gabbro.ryazan.ru2026-02-03212.26.224.87
kip.ryazan.ru2025-07-2280.72.112.9
ikp.ryazan.ru2025-05-27212.26.252.77
sar.ryazan.ru2025-05-2380.72.112.4
mir.ryazan.ru2014-06-1893.153.211.34
uks.ryazan.ru2026-02-03212.26.226.161
vnims.ryazan.ru2025-01-0578.31.75.151
technos.ryazan.ru2025-05-2480.72.112.11
ztlit.ryazan.ru2025-06-1292.39.137.110
m-kontakt.ryazan.ru2025-09-2291.142.86.15
consultant.ryazan.ru2026-02-03212.26.226.53
mikhailov.ryazan.ru2025-02-20212.26.235.16
urozhay.ryazan.ru2026-02-03212.26.229.110
spray.ryazan.ru2026-02-03176.212.175.85
gorgaz.ryazan.ru2025-05-09176.118.219.120
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information