Help RSS API Feed Maltego Contact                        

Domain > postescanada.ca

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to postescanada.ca

MD5A/V
69105950b2bb95843dea5937bea0e8f0[HW32.CDB.5919] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
db5b440f6419090cd9567f3b33fd3ced[Malware.Packer.HGX1] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
5ee74c52944265c5a84f878040e02331[HW32.CDB.27c8] [Trojan.Win32.Hlux.cxadam] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dlza] [Backdoor.Hlux!t6Evi7JomQk] [TrojWare.Win32.Kryptik.CASU] [BackDoor.Slym.13362] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [Mal/FakeAV-UF] [Trojan[Backdoor]/Win32.Hlux] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.AHTW] [Win32/Kryptik.CASL] [Win32.Backdoor.Hlux.Tbjb] [Backdoor.Win32.Kelihos] [W32/Hlux.CASL!tr.bdr]
25cf73e0b67cf888331dfb7d5e7a1276[HW32.CDB.9123] [Backdoor.Hlux.r3] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dmxm] [Backdoor.Hlux!H8o7dSngIrQ] [Mal/FakeAV-UF] [UnclassifiedMalware] [BackDoor.Slym.13348] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt3] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL]
61b408e2de1c4996c3708f1f46913d60[HW32.CDB.C1b5] [Trojan.Kryptik!QyFpAm9uzfY] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djft] [Trojan.Win32.S.PSW-Tepfer.835600.AI] [UnclassifiedMalware] [BackDoor.Slym.14044] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Trojan/Win32.Tepfer] [W32/Trojan.AJYO-7526] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt3.HUF] [Trojan.Win32.Kryptik.BZIX]
3209b25b5988bb055d56e1b1e6382e40[HW32.CDB.53d8] [Kryptik.CCFN] [Trojan-PSW.Win32.Tepfer.twjg] [Mal/FakeAV-UF] [TrojWare.Win32.Kryptik.CASU] [Trojan.Packed.26544] [Trojan[PSW]/Win32.Tepfer] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [W32/Trojan.ELDJ-0755] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GPK] [Trojan.Win32.InfoStealer.As]
30faa031b0c6122bc91cff8996474b4a[HW32.CDB.E594] [Trojan.Inject2]
427481f8e79f0ee33385c9da2fe00111[HW32.CDB.16f0] [Backdoor.Hlux!hl4OBD+jyQw] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djqf] [Trojan.Win32.Hlux.cxbctj] [TrojWare.Win32.Kryptik.BZOO] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GHE] [Trojan.Win32.Kryptik.BZIX]
a480649c0695ca403c2650c2f5ec4796[HW32.CDB.6149] [Packed.Win32.Katusha.1!O] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.QbYCJQ] [Backdoor.Win32.Hlux.dqiv] [Backdoor.Hlux!zx6Z3QU4CJg] [Backdoor.Win32.Hlux.DUHE] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [W32/Trojan.TGXU-8116] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.Backdoor.Hlux.Lmai] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.bCBCJ]
fe734b28009c7dd5389f64d72722bb21
56bbeac9d1a70afb8bb8b80ec1387750[HW32.CDB.39f5] [Backdoor.Hlux.r3] [Trojan.Win32.Hlux.cxcewe] [Kryptik.CCFN] [Backdoor.Win32.Hlux.djcw] [Backdoor.Hlux!yo75di6Nrfc] [TrojWare.Win32.Kryptik.BLUU] [BackDoor.Slym.14044] [TR/Kryptik.oeons] [Mal/Kelihos-A] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GGV] [Trojan.Win32.Kryptik.BZDO] [Win32/Trojan.fec]

Whois

PropertyValue
NameCanada Post Corporation
Email [email protected]
NameServer a13-67.akam.net
Created 2000-10-01 00:00:00
Changed 2015-04-07 00:00:00
Expires 2016-02-21 00:00:00
Registrar Internic.ca Inc.

DNS Resolutions

DateIP Address
2013-06-01198.34.224.65 (ClassC)
2014-07-0223.43.120.189 (ClassC)
2015-02-2623.194.168.189 (ClassC)
2015-03-0523.9.210.205 (ClassC)
2015-03-0523.61.72.189 (ClassC)
2015-03-0823.201.86.205 (ClassC)
2015-03-0823.214.174.22 (ClassC)
2015-03-1123.212.194.198 (ClassC)
2015-03-1223.197.168.189 (ClassC)
2015-03-1492.123.98.219 (ClassC)
2015-04-19172.226.214.180 (ClassC)
2015-05-1823.207.6.178 (ClassC)
2023-08-2523.74.137.138 (ClassC)
2024-06-1723.37.218.140 (ClassC)
2024-07-2723.48.176.217 (ClassC)
2024-07-3023.64.102.129 (ClassC)
2024-12-2023.198.153.62 (ClassC)
2025-01-12184.24.194.100 (ClassC)
2025-02-11184.26.226.89 (ClassC)
2025-03-1523.37.218.178 (ClassC)
2025-04-282.19.138.47 (ClassC)
2025-08-2988.221.159.42 (ClassC)

Subdomains

DateDomainIP
prd10.postescanada.ca2023-08-2623.74.137.138
stg10.postescanada.ca2023-08-2623.49.2.33
prd11.postescanada.ca2023-08-2523.223.189.28
stg11.postescanada.ca2023-08-2623.49.2.33
stg12.postescanada.ca2023-08-2623.49.2.33
stg13.postescanada.ca2023-08-2623.49.2.33
stg14.postescanada.ca2023-08-2623.49.2.33
cal.postescanada.ca2025-02-11198.33.104.23
stats.postescanada.ca2014-08-1266.235.138.198
documents.postescanada.ca2024-08-0518.161.6.43
canadapost.postescanada.ca2025-06-08216.13.152.34
autodiscover.canadapost.postescanada.ca2024-03-1652.96.113.168
www.postescanada.ca2023-08-2623.214.106.56
origin-www.postescanada.ca2025-05-16198.33.104.23
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information