Help RSS API Feed Maltego Contact                        

Domain > mail.ghru.de

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to mail.ghru.de

MD5A/V
d425f80140b2fbc1e1641bbffc2607c1
7c1f000df977b92e484117421a9bd228[W32.MyDoomLB.Worm] [W32.Mydoom.L] [Artemis!7C1F000DF977] [Trojan.Spammer] [Worm.Mydoom.Win32.3] [Worm.MyDoom] [W32/Mydoom(2).N@MM] [I-Worm.Mydoom.CR] [W32/Mydoom.M@mm] [W32.Mydoom.L@mm] [Win32/Mydoom.Q] [Worm.Mydoom.I] [Email-Worm.Win32.Mydoom.l] [Trojan.Win32.Mydoom.cuyllc] [Worm.Win32.Mydoom.l] [W32/MyDoom-N] [Worm.Win32.Mydoom.Q] [Win32.HLLM.MyDoom.33808] [BehavesLike.Win32.Mydoom.mc] [W32/Mydoom.CJDZ-5239] [I-Worm/Zhelatin.abt] [WORM/Mydoom.L.1] [Worm[Email]/Win32.Mydoom] [Worm.Mydoom.l.(kcloud)] [Worm:Win32/Mydoom.L@mm] [I-Worm.Win32.Mydoom.22020[h]] [Win32/Mydoom.worm.22020.H] [Win32/Mydoom.N] [Worm.Mydoom] [Trojan.Win32.Mydoom.Q] [I-Worm.Mydoom.Q] [Email-Worm.Win32.Mydoom] [W32/MyDoom.M@mm] [I-Worm/Mydoom.N] [W32/Mydoom.DN.worm]
5b06981df60a6b5a704ea7864ea7cc2f
8523d3a3689040902953d6f4b9327558
8aed502427321fd9f331b8a1abb0514c
f5d035fdb08104680fdb755faa7021a7
1a10d664efe1a38083890a4db7a34e89
5eaf975cee2ac9e3bd7626dff9d2d3f0
07abee6b6c7e9979579831e10952b5df[W32.MyDoomLB.Worm] [Worm/W32.Mydoom.22020] [Email-Worm.Win32.Mydoom!O] [W32.Mydoom.L] [Worm.Mydoom] [Trojan.Spammer] [Worm.Mydoom.Win32.3] [Worm.MyDoom] [Trojan/Mydoom.q] [Win32.Worm-Email.Mydoom.a] [W32/Mydoom.M@mm] [W32.Mydoom.L@mm] [Win32/Mydoom.Q] [Win.Worm.Mydoom-5] [Email-Worm.Win32.Mydoom.l] [Trojan.Win32.Mydoom.cuyllc] [I-Worm.Win32.Mydoom.22020[h]] [W32/MyDoom-N] [Worm.Win32.Mydoom.Q] [Win32.HLLM.MyDoom.33808] [worm.win32.mydoom.l@mm] [BehavesLike.Win32.Mydoom.mc] [W32/Mydoom.CJDZ-5239] [I-Worm/Zhelatin.sq] [WORM/Mydoom.L.1] [Worm[Email]/Win32.Mydoom] [Worm.Mydoom.l.(kcloud)] [W32/Mydoom.n@MM] [Worm.Mydoom] [I-Worm.Mydoom.Q] [Email-Worm.Win32.Mydoom] [W32/MyDoom.M@mm] [I-Worm/Mydoom.N] [W32/Mydoom.DN.worm] [Worm.Win32.Mydoom.A]
489620bc8e0f20f7eb6147af8799342d
ae3fd855545ae4c4cca39dfd9afdd6b0
c8f91414f272b0dabf35516bcd9600c7
6385f6f0cdd8638ab7acc474c4553882

Whois

PropertyValue
Email webmaster@brilla.de
NameServer ns2.hans.hosteurope.de
Changed 2016-01-23 20:11:29

DNS Resolutions

DateIP Address
0000-00-00212.37.51.5 (ClassC)
2026-02-02159.69.72.180 (ClassC)

Port 80

Port 443

View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information