Help RSS API Feed Maltego Contact                        

Domain > exchangelabs.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to exchangelabs.com

MD5A/V
038a21f4f89d526f853bba2a18b81708[Worm.Win32.Ngrbot.afvw] [Win32.HLLW.Autoruner2.1926] [TR/Crypt.Xpack.77749]
20837cfed9fcc3df5a3e414c18eff646[Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBCJ]
4c83c209b92c70bd0cff8a6036589670[HW32.CDB.E5ca] [Trojan.Win32.Kryptik.cwscgd] [Kryptik.CCFN] [UnclassifiedMalware] [Trojan.Packed.26527] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [Crypt_s.GKU] [Trojan.Win32.Kryptik.BWUN] [Win32/Trojan.337]
8889d486a91b3448e8b429ef99a536d0[HW32.CDB.1cb9] [Trojan.Win32.Kryptik.cwzoai] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnla] [Backdoor.Hlux!yM05ScK42o0] [Trojan.Packed.26544] [Mal/FakeAV-UF] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [Backdoor.Win32.Kelihos] [W32/Hlux.DNLA!tr.bdr] [Crypt_s.GMK] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]
db5b440f6419090cd9567f3b33fd3ced[Malware.Packer.HGX1] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
981a83b3f0d4a74b0b38becda7c8cb9c[Artemis!981A83B3F0D4] [Trojan.Win32.Crypt.cxd] [W32/Yakes.FHJN!tr] [Win32/Cryptor]

Whois

PropertyValue
Email domains@microsoft.com
NameServer NS1A.O365FILTERING.COM
Created 2005-10-09 00:00:00
Changed 2015-03-24 00:00:00
Expires 2015-10-09 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2025-07-1665.55.94.87 (ClassC)

Subdomains

DateDomainIP
provisioning.exchangelabs.com2024-11-2952.96.229.242
615834450.mail.exchangelabs.com2014-07-13207.46.163.247
1093147560.mail.exchangelabs.com2024-08-0652.101.194.0
1637324190.mail.exchangelabs.com2014-06-18213.199.154.23
52253601.mail.exchangelabs.com2015-01-29207.46.163.170
1737923552.mail.exchangelabs.com2024-05-1852.101.68.0
1089914972.mail.exchangelabs.com2015-01-29207.46.163.170
1851571482.mail.exchangelabs.com2014-08-01207.46.163.170
539873592.mail.exchangelabs.com2025-02-2852.101.42.10
1642076374.mail.exchangelabs.com2014-05-30207.46.163.138
211619107.mail.exchangelabs.com2013-05-1665.55.88.22
2089224977.mail.exchangelabs.com2024-09-1152.101.41.4
640425009.mail.exchangelabs.com2015-01-29207.46.163.170
1092176239.mail.exchangelabs.com2014-07-13207.46.163.215
793737669.mail.exchangelabs.com2025-01-1352.101.11.3
imap.mail.exchangelabs.com2024-10-1152.101.8.46
m.exchangelabs.com2024-10-1152.96.165.18
imap-ap.exchangelabs.com2023-08-3152.98.38.82
pop-ap.exchangelabs.com2024-10-1152.98.94.194
smtp-ap.exchangelabs.com2024-05-1452.98.38.82
pod51000ip.exchangelabs.com2024-10-1152.96.38.82
pod51002ip.exchangelabs.com2024-10-1152.98.229.194
smtp.exchangelabs.com2024-11-1552.96.8.130
autodiscover.exchangelabs.com2024-08-0952.96.166.40
imap-eu.exchangelabs.com2023-09-2952.98.230.34
pop-eu.exchangelabs.com2024-10-11157.56.250.38
smtp-eu.exchangelabs.com2024-08-0952.98.229.242
www.exchangelabs.com2025-05-2265.55.94.89
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information