Help RSS API Feed Maltego Contact                        

Domain > gmsend.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to gmsend.com

MD5A/V
3d79b35a81f544862ae5a347831857c6[HW32.CDB.Eb76] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CCFN] [Backdoor.Win32.Hlux.dtjw] [UnclassifiedMalware] [BackDoor.Slym.13011] [Backdoor:Win32/Kelihos] [Heur.Trojan.Hlux] [Win32/Kryptik.CBNK] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GPC] [Backdoor.Win32.Hlux.Ae] [Win32/Trojan.337]

Whois

PropertyValue
NameServer ROB.NS.CLOUDFLARE.COM
Created 2009-06-09 00:00:00
Changed 2015-04-20 00:00:00
Expires 2015-06-09 00:00:00
Registrar GODADDY.COM, LLC

DNS Resolutions

DateIP Address
2012-08-2267.209.231.33 (ClassC)
2012-11-0667.209.229.34 (ClassC)
2013-10-2167.209.229.33 (ClassC)
2013-11-07141.101.117.218 (ClassC)
2014-01-31141.101.116.218 (ClassC)
2014-07-19104.28.1.32 (ClassC)
2015-01-21104.28.0.32 (ClassC)
2016-03-17178.79.172.190 (ClassC)
2016-06-15184.168.221.46 (ClassC)
2016-12-24104.27.191.49 (ClassC)
2017-02-13104.27.190.49 (ClassC)
2025-07-14172.67.143.80 (ClassC)
2025-08-05104.21.87.127 (ClassC)

Port 443

Subdomains

DateDomainIP
is.ss11.gmsend.com2013-12-31141.101.117.218
is.ss12.gmsend.com2013-12-25141.101.117.218
pr.ss14.gmsend.com2014-01-31141.101.117.218
is.ss14.gmsend.com2013-12-21141.101.117.218
is.ss15.gmsend.com2013-12-21141.101.117.218
pr.ss5.gmsend.com2014-01-29141.101.117.218
is.ss5.gmsend.com2013-12-24141.101.117.218
ss8.gmsend.com2014-07-0667.209.231.33
is.ss8.gmsend.com2013-12-21141.101.117.218
is.ss9.gmsend.com2013-12-25141.101.117.218
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information