Help RSS API Feed Maltego Contact                        

Domain > gk-w-mail.srvs.usps.gov

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to gk-w-mail.srvs.usps.gov

MD5A/V
9aa81fa022c0b159758efa1bda4f9be1[HW32.CDB.A20b] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dthd] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Win32.Backdoor.Hlux.Hwcu] [Trojan.Crypt3] [W32/Kryptik.BD!tr] [Crypt3.OHL] [Backdoor.Win32.Hlux.Ac]
1cc0cfa5485d814b67ace50cb0a5b100[HW32.CDB.E978] [Kryptik.CDQY] [UnclassifiedMalware] [Trojan.Packed.26527] [Backdoor:Win32/Kelihos] [W32/Trojan.KUPJ-3598] [Heur.Trojan.Hlux] [Win32.SuspectCrc] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GKU]
37b9070bfbc74ee584b01de29d129911[HW32.CDB.Ec9a] [Heur.Trojan.Hlux]
d38a3646d932d062528aea48d2122315
4be57c95dd1e77ba6b00af63f6c5d79a[BackDoor.Slym.1498] [BDS/Kelihos.F.5092] [Win32.PSWTroj.Tepfer.hd.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [Backdoor.Win32.Kelihos] [W32/Kelihos.JI!tr]
4db0e2318885466883cc47fb4c11b695[FakeSecTool-FCX!4DB0E2318885] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1] [W32/Kelihos.DE!tr]
0dd56a0b8ea7bedb57cebf9aacdac40f[Malware.Packer.HGX1] [Heuristic.BehavesLike.Win32.Suspicious-BAY.G] [W32/Kryptik.AXUE!tr]
03e452e4771eb7bfef9f331b259e3f40[HW32.CDB.1d3e] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dsfd] [Backdoor.Hlux!SjVJGb/HMIs] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13011] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.MalPacked] [W32/Trojan.RSYC-6534] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.AgM] [Win32.Backdoor.Hlux.Glo] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC]
129893be541a5853da63c69a90dc7fa6[HW32.CDB.6488] [Packed.Win32.Katusha.3!O] [Trojan.Win32.Slym.cxvgrz] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dtmi] [TrojWare.Win32.Kryptik.CBCJ] [BackDoor.Slym.13011] [VirTool:Win32/Obfuscator.WT] [Trojan/Win32.MalPacked] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.CBLX]
a480649c0695ca403c2650c2f5ec4796[HW32.CDB.6149] [Packed.Win32.Katusha.1!O] [Trojan.FakeAV] [Kryptik.CCFN] [Win32/Kelihos.QbYCJQ] [Backdoor.Win32.Hlux.dqiv] [Backdoor.Hlux!zx6Z3QU4CJg] [Backdoor.Win32.Hlux.DUHE] [Trojan.Packed.26581] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos.F] [W32/Trojan.TGXU-8116] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Win32.Backdoor.Hlux.Lmai] [Trojan.Crypt_s] [W32/Hlux.BWUN!tr.bdr] [Crypt_s.GNC] [Trojan.Win32.Kryptik.bCBCJ]
18e1ec2d3092fa3be2c970ce91ef31a0[HW32.CDB.4548] [RDN/q2z-art6.s_318383!a] [Trojan.Win32.Slym.cxaqmr] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dnxw] [BackDoor.Slym.13348] [Mal/FakeAV-UF] [Trojan[Backdoor]/Win32.Hlux] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CASL] [W32/Hlux.BWUN!tr.bdr] [Trojan.Win32.Kryptik.CASL] [Win32/Trojan.337]

DNS Resolutions

DateIP Address
2014-07-2356.0.83.11 (ClassC)

Subdomains

DateDomainIP
uspscmgeus01.usps.gov2025-03-2220.232.67.254
dns141.usps.gov2025-06-0956.0.141.25
eagnmnbcexsldns1.usps.gov2025-03-1956.0.141.25
dns082.usps.gov2025-06-0956.0.82.25
ibcalcea.usps.gov2015-02-0123.74.9.182
postcalcea.usps.gov2025-01-03152.195.33.23
dbservicesea.usps.gov2024-10-04152.195.33.23
ibservicesea.usps.gov2024-12-22152.195.33.23
dbcalc.usps.gov2014-03-1123.74.9.233
ircalc.usps.gov2014-10-1590.84.60.50
postcalc.usps.gov2014-03-29198.47.108.19
pe.usps.gov2014-03-1765.172.31.24
liteblue.usps.gov2024-12-23152.195.33.23
www.liteblue.usps.gov2024-12-15152.195.12.130
blueearth.usps.gov2024-12-15152.195.33.23
www.blueearth.usps.gov2024-12-24152.195.12.130
dbcalcsm.usps.gov2024-12-18152.195.33.23
postcalcsm.usps.gov2025-01-05152.195.33.23
dbservicessm.usps.gov2024-09-10152.195.33.23
ibservicessm.usps.gov2024-10-14152.195.33.23
image.go.usps.gov2024-12-2523.55.167.19
ibservices.usps.gov2024-10-29152.195.33.23
gk-c-mail.srvs.usps.gov2014-05-2256.0.142.11
gk-w-mail.srvs.usps.gov2014-07-2356.0.83.11
ext-ereassign-cat.usps.gov2025-04-28184.31.201.85
www.usps.gov2024-12-15152.195.33.23
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information