Help RSS API Feed Maltego Contact                        

Domain > 1and1.fr

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to 1and1.fr

MD5A/V
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
3fb83eaf2a665f71ac2065f5f6956d50[HW32.CDB.5da2] [Packed.Win32.Katusha.1!O] [Trojan.Win32.Hlux.cynagk] [Trojan.FakeAV] [Kryptik.CDQY] [Win32/Kelihos.GeEUUIB] [Backdoor.Win32.Hlux.dqkq] [Backdoor.Hlux!m6CCC6SKjdo] [Win32.Backdoor.Hlux.Lose] [Backdoor.Win32.Hlux.DUHE] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.aDM]
803fdad60a108f80a0e664405cc2e176[HW32.CDB.37af] [Trojan.Packed.18626] [Heuristic.BehavesLike.Win32.ModifiedUPX.C] [Suspicious] [W32/Injector.ABXY!tr]
8889d486a91b3448e8b429ef99a536d0[HW32.CDB.1cb9] [Trojan.Win32.Kryptik.cwzoai] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnla] [Backdoor.Hlux!yM05ScK42o0] [Trojan.Packed.26544] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.DNLA!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
4e099aeb28dd222817b9e105b768b590[W32.MyDoom.M.Worm] [Worm/W32.Mydoom.28864] [Email-Worm.Win32.Mydoom!O] [W32.Mydoom.M] [Worm.Mydoom] [W32/Mydoom.m] [Trojan.Win32.Mydoom.dfadqm] [W32/Mydoom.O@mm] [W32.Mydoom.M@mm] [MyDoom.PI] [Win32/Mydoom.O] [Worm.Mydoom-27] [Email-Worm.Win32.Mydoom.m] [I-Worm.Mydoom!qBn5HU3v+Lw] [I-Worm.Win32.Mydoom.28864.A[h]] [PE:Worm.Mail.Mydoom.dh!1074753035] [Worm.Win32.Mydoom.R] [Win32.HLLM.MyDoom.54464] [Worm.Mydoom.Win32.1032] [BehavesLike.Win32.Mydoom.mc] [W32/MyDoom-O] [W32/Mydoom.LVDB-0128] [Worm/Sramota.bef] [Worm/Mydoom.O.1] [Worm[Email]/Win32.Mydoom] [Worm.Mydoom.m.(kcloud)] [Worm:Win32/Mydoom.O@mm] [Win32/Mydoom.worm.49344.B] [W32/Mydoom.o@MM] [W32/Mydoom.N.worm] [I-Worm.Mydoom.AX] [Win32/Mydoom.R] [Trojan.Win32.Mydoom.m] [Email-Worm.Win32.Mydoom] [W32/Mydoom.M!dam] [I-Worm/Mydoom.O] [Worm.W]
1623be5a046aa215162665c5067332e0[HW32.CDB.Db63] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [Trojan-PSW.Win32.Tepfer.tybm] [Trojan.PWS.Tepfer!sA6n+JUlMF8] [UnclassifiedMalware] [Trojan.Packed.26581] [Backdoor:Win32/Kelihos.F] [W32/Trojan.YSDP-3009] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Trojan.Win32.InfoStealer.aRBP]
2db060643b02ebffce2e3957e0b47311[Packed.Win32.Katusha.3!O] [Backdoor.Hlux!w7qQeHPCTX8] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dsut] [BackDoor.Slym.13011] [Trojan[Backdoor]/Win32.Hlux] [VirTool:Win32/Obfuscator.WT] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Trojan.Crypt_s] [W32/Kryptik.DJH!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.ABwI] [Win32/Trojan.337]
1901abd8b609265bd44d7f6bc57d4790[W32.MyDoom.M.Worm] [Worm/W32.Mydoom.28864] [Email-Worm.Win32.Mydoom!O] [W32.Mydoom.M] [Worm.Mydoom] [W32/Mydoom.m] [Trojan.Win32.Mydoom.dfadqm] [W32/Mydoom.O@mm] [W32.Mydoom.M@mm] [MyDoom.PI] [Win32/Mydoom.O] [Worm.Mydoom-27] [Email-Worm.Win32.Mydoom.m] [I-Worm.Mydoom!qBn5HU3v+Lw] [PE:Worm.Mail.Mydoom.dh!1074753035] [Worm.Win32.Mydoom.R] [Win32.HLLM.MyDoom.54464] [Worm.Mydoom.Win32.1032] [BehavesLike.Win32.Mydoom.mc] [W32/MyDoom-O] [W32/Mydoom.LVDB-0128] [Worm/Sramota.bef] [Worm/Mydoom.O.1] [Worm[Email]/Win32.Mydoom] [Worm.Mydoom.m.(kcloud)] [Worm:Win32/Mydoom.O@mm] [I-Worm.Win32.Mydoom.28864.A[h]] [Win32/Mydoom.worm.49344.B] [W32/Mydoom.o@MM] [W32/Mydoom.N.worm] [I-Worm.Mydoom.R] [Win32/Mydoom.R] [Trojan.Win32.Mydoom.m] [Email-Worm.Win32.Mydoom] [W32/Mydoom.M!dam] [I-Worm/Mydoom.O] [Worm.Wi]
20837cfed9fcc3df5a3e414c18eff646[Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
d6a71b4d3098eab4dddab30fddbaef35[FakeSecTool-FCX!D6A71B4D3098] [Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]
281bba52133b42b0041a72e8baf03600[HW32.CDB.Eca9] [Backdoor.Hlux.r3] [Backdoor.Hlux!xA6rCWjNVLE] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dmfd] [Trojan.Win32.Kryptik.cxbhpv] [Trojan.Packed.26544] [Heuristic.LooksLike.Win32.Suspicious.E] [Mal/FakeAV-UF] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [W32/Trojan.KRFJ-3745] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GME] [Trojan.Win32.Kryptik.CASL]
1be60218ec1ca6af2ce794dfb624b3b0[W32.MyDoom.M.Worm] [Win32/Mydoom.O] [Worm/W32.Mydoom.28864] [Email-Worm.Win32.Mydoom!O] [W32.Mydoom.M] [Worm.Mydoom] [Worm.MyDoom] [W32/Mydoom.m] [I-Worm.Mydoom!qBn5HU3v+Lw] [W32/Mydoom.O@mm] [W32.Mydoom.M@mm] [Win32/Mydoom.R] [Worm.Mydoom-27] [Email-Worm.Win32.Mydoom.m] [Trojan.Win32.Mydoom.dlnpqi] [I-Worm.Win32.Mydoom.28864.A[h]] [W32/MyDoom-O] [Worm.Win32.Mydoom.R] [Win32.HLLM.MyDoom.54464] [Worm.Mydoom.Win32.17] [BehavesLike.Win32.Mydoom.mc] [W32/Mydoom.LVDB-0128] [Worm/Sramota.avf] [WORM/Mydoom.O.1] [Worm[Email]/Win32.Mydoom] [Worm:Win32/Mydoom.O@mm] [W32.W.Mydoom.m!c] [Win32/Mydoom.worm.49344.B] [W32/Mydoom.o@MM] [W32/Mydoom.N.worm] [I-Worm.Mydoom.AX] [Trojan.Win32.Mydoom.m] [Email-Worm.Win32.Mydoom] [W32/Mydoom.M!dam] [I-Worm/Mydoom.O] [Worm.Win32.Mydoom.dd] [Worm.Win32.Mydoom.B]
aab2879c1f3242d0ae2c2105206c3b98[W32.eHeur.Malware10] [Win32.Mydoom.M@mm] [Email-Worm.Win32.Mydoom!O] [W32/Mydoom.bb@MM] [Worm.MyDoom] [Worm.Mydoom.Win32.433] [W32/Mydoom.O@MM] [WORM_MYDOOM.TOMB00000002] [Win32.Worm-Email.Mydoom.a] [W32/Mydoom.O@mm] [Win32/Mydoom.R] [WORM_MYDOOM.TOMB00000002] [Win.Worm.Mydoom-6] [Win32.Mydoom.M@mm] [Email-Worm.Win32.Mydoom.m] [Win32.Mydoom.M@mm] [Trojan.Win32.Mydoom.ekbf] [Win32.Mydoom.M@mm] [W32/MyDoom-O] [Worm.Win32.Mydoom.R] [Win32.Mydoom.M@mm] [Win32.HLLM.MyDoom.54464] [trojan.win32.vb.np] [BehavesLike.Win32.Mydoom.km] [W32/Mydoom.O@mm] [I-Worm/MyDoom.m] [Worm[Email]/Win32.Mydoom] [Win32.Mydoom.EE61DB] [W32.W.Mydoom.l3y8] [Worm:Win32/Mydoom.CD@mm] [Worm/Win32.MyDoom.R2057] [Win32.Mydoom.M@mm] [OScope.Worm.115] [I-Worm.Mydoom.AX] [Trojan.Win32.Mydoom.m] [Email-Worm.Win32.Mydoom] [W32/MyDoom.M@mm] [I-Worm/Mydoom.O] [W32/Mydoom.N.worm] [malic]
7abb1e7e80e0f342f0452ae91375fce3
20bd1f381d356fc45ce98163b15dd4b0[W32.MyDoom.M.Worm] [Worm/W32.Mydoom.28864] [Email-Worm.Win32.Mydoom!O] [W32.Mydoom.M] [W32/Mydoom.o@MM] [Worm.Mydoom] [W32/Mydoom.m] [I-Worm.Mydoom!qBn5HU3v+Lw] [W32/Mydoom.LVDB-0128] [W32.Mydoom.M@mm] [MyDoom.PI] [Win32/Mydoom.O] [Worm.Mydoom-27] [Email-Worm.Win32.Mydoom.m] [Trojan.Win32.Mydoom.dfadqm] [Trojan.Win32.Mydoom.m] [Worm.Win32.Mydoom.R] [Win32.HLLM.MyDoom.54464] [Worm.Mydoom.Win32.1032] [BehavesLike.Win32.Mydoom.mc] [W32/MyDoom-O] [W32/Mydoom.O@mm] [Worm/Sramota.bef] [Worm/Mydoom.O.1] [Worm[Email]/Win32.Mydoom] [Worm.Mydoom.m.(kcloud)] [Worm:Win32/Mydoom.O@mm] [I-Worm.Win32.Mydoom.28864.A] [Win32/Mydoom.worm.49344.B] [I-Worm.Mydoom.AX] [Win32/Mydoom.R] [PE:Worm.Mail.Mydoom.dh!1074753035] [Email-Worm.Win32.Mydoom] [W32/Mydoom.M!dam] [I-Worm/Mydoom.O] [Worm.Win32.Mydoom.B]
84b96b96f60284a21addb1b2873d6aaa[HW32.Packed.2DF6] [PWSZbot-FAKN!84B96B96F602] [Trojan.VBKrypt!BmfU93nmWQo] [Trojan.Win32.VBKrypt.jbj] [Trojan.Win32.VBKrypt.drcjlh] [Trojan.Emotet.78] [BehavesLike.Win32.Autorun.tc] [W32/PWS.MUCP-6526] [Trojan/VBKrypt.jhft] [Trojan/Win32.VBKrypt] [Trojan:Win32/Dynamer!ac] [Trojan/Win32.ZBot] [Trj/Chgt.O] [Trojan.Win32.Injector] [W32/Tinba.BJ!tr] [Crypt_vb.GSI]
2ee9b110cd784d6bcdf663c9249ebee4[Artemis!2EE9B110CD78] [Ransom.JobCrypter] [Trojan.Ransomcrypt.AC] [TROJ_FORUCON.BMC] [Trojan-Ransom.Win32.Blocker.ibjo] [Trojan.Win32.A.Blocker.301568.C[h]] [TROJ_FORUCON.BMC] [Artemis!Trojan] [TR/FileCoder.301568.1] [Ransom:MSIL/Nojocrypt.A] [Trojan/Win32.Filelocker] [Trj/CI.A] [Trojan.MSIL.Filecoder] [W32/Blocker.A!tr] [Luhe.Fiha.A]
0469e23cd3186130ca096a8b69d709af[Malicious_Behavior.VEX.88]
c4582b543aaff7f5c4c298d332e9db4c[Trojan.DownLoader19.29261]
a02aff753dffb13ad034ca67aed985d8[W32.FileCoderA.Trojan] [TrojanRansom.Blocker.r4] [RDN/Ransom] [Ransom.JobCrypter] [Trojan.Blocker.Win32.33408] [Trojan.Blocker!9oXOdHdhVwo] [Trojan.Ransomcrypt.AC] [MSIL/Filecoder.JobCrypter.A] [TROJ_FORUCON.BMC] [Trojan.Win32.DownLoader19.eahoqy] [Troj.Forucon.Bmc!c] [TrojWare.Win32.Filecoder.AA] [Trojan.DownLoader19.22028] [Win32.Malware!Drop] [TROJ_FORUCON.BMC] [RDN/Ransom] [Trojan.Blocker.bjd] [TR/FileCoder.476672] [Trojan[Ransom]/Win32.Blocker] [Ransom:MSIL/Nojocrypt.A] [Trojan.Win32.A.Blocker.476672.C[h]] [Win-Trojan/MDA.630F094C] [Win32.Malware!Drop] [Trojan.SuspectCRC] [Malicious_Behavior.VEX.88] [FileCryptor.GVG] [Trj/CryptoWall.C]

Whois

PropertyValue
Email hostmaster@1and1.fr
NameServer ns-1and1.ui-dns.biz
Created 2004-01-14 00:00:00
Changed 2011-06-27 00:00:00
Registrar 1&1 Internet AG

DNS Resolutions

DateIP Address
2014-06-23212.227.116.98 (ClassC)
2024-02-20217.160.86.7 (ClassC)
2025-07-19217.160.86.49 (ClassC)
2025-08-06217.160.86.51 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
mx00.1and1.fr2013-05-16212.227.17.175
mx01.1and1.fr2014-12-17212.227.15.150
ns11.1and1.fr2025-06-23217.160.82.40
ns61.1and1.fr2025-08-06217.160.80.32
NS12.1AND1.FR2025-07-27217.160.83.39
NS62.1AND1.FR2018-09-06217.160.81.170
slv2.1and1.fr2025-07-25185.132.34.250
SLV2.1AND1.FR2025-07-31217.160.82.250
siteweb.1and1.fr2025-06-19217.160.86.49
mywebsite.1and1.fr2025-06-10217.160.86.51
listlocalcheck.1and1.fr2021-02-28217.160.86.147
mywebsiteperso.1and1.fr2025-07-22217.160.86.49
auth.smtp.1and1.fr2025-07-24212.227.15.184
faq.1and1.fr2025-07-19213.165.66.5
www.faq.1and1.fr2025-07-29213.165.66.5
commander.1and1.fr2025-06-19217.160.86.49
digital-success.1and1.fr2025-06-10217.160.86.21
readynet.1and1.fr2024-12-28217.160.86.51
telechargement.1and1.fr2025-07-23217.160.86.59
www.1and1.fr2014-02-1423.4.50.59
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information