Help
RSS
API
Feed
Maltego
Contact
Domain > mail.ghru.de
×
Welcome!
Right click nodes and scroll the mouse to navigate the graph.
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
Files that talk to mail.ghru.de
MD5
A/V
d425f80140b2fbc1e1641bbffc2607c1
7c1f000df977b92e484117421a9bd228
[
W32.MyDoomLB.Worm
] [
W32.Mydoom.L
] [
Artemis!7C1F000DF977
] [
Trojan.Spammer
] [
Worm.Mydoom.Win32.3
] [
Worm.MyDoom
] [
W32/Mydoom(2).N@MM
] [
I-Worm.Mydoom.CR
] [
W32/Mydoom.M@mm
] [
W32.Mydoom.L@mm
] [
Win32/Mydoom.Q
] [
Worm.Mydoom.I
] [
Email-Worm.Win32.Mydoom.l
] [
Trojan.Win32.Mydoom.cuyllc
] [
Worm.Win32.Mydoom.l
] [
W32/MyDoom-N
] [
Worm.Win32.Mydoom.Q
] [
Win32.HLLM.MyDoom.33808
] [
BehavesLike.Win32.Mydoom.mc
] [
W32/Mydoom.CJDZ-5239
] [
I-Worm/Zhelatin.abt
] [
WORM/Mydoom.L.1
] [
Worm[Email]/Win32.Mydoom
] [
Worm.Mydoom.l.(kcloud)
] [
Worm:Win32/Mydoom.L@mm
] [
I-Worm.Win32.Mydoom.22020[h]
] [
Win32/Mydoom.worm.22020.H
] [
Win32/Mydoom.N
] [
Worm.Mydoom
] [
Trojan.Win32.Mydoom.Q
] [
I-Worm.Mydoom.Q
] [
Email-Worm.Win32.Mydoom
] [
W32/MyDoom.M@mm
] [
I-Worm/Mydoom.N
] [
W32/Mydoom.DN.worm
]
5b06981df60a6b5a704ea7864ea7cc2f
8523d3a3689040902953d6f4b9327558
8aed502427321fd9f331b8a1abb0514c
f5d035fdb08104680fdb755faa7021a7
1a10d664efe1a38083890a4db7a34e89
5eaf975cee2ac9e3bd7626dff9d2d3f0
07abee6b6c7e9979579831e10952b5df
[
W32.MyDoomLB.Worm
] [
Worm/W32.Mydoom.22020
] [
Email-Worm.Win32.Mydoom!O
] [
W32.Mydoom.L
] [
Worm.Mydoom
] [
Trojan.Spammer
] [
Worm.Mydoom.Win32.3
] [
Worm.MyDoom
] [
Trojan/Mydoom.q
] [
Win32.Worm-Email.Mydoom.a
] [
W32/Mydoom.M@mm
] [
W32.Mydoom.L@mm
] [
Win32/Mydoom.Q
] [
Win.Worm.Mydoom-5
] [
Email-Worm.Win32.Mydoom.l
] [
Trojan.Win32.Mydoom.cuyllc
] [
I-Worm.Win32.Mydoom.22020[h]
] [
W32/MyDoom-N
] [
Worm.Win32.Mydoom.Q
] [
Win32.HLLM.MyDoom.33808
] [
worm.win32.mydoom.l@mm
] [
BehavesLike.Win32.Mydoom.mc
] [
W32/Mydoom.CJDZ-5239
] [
I-Worm/Zhelatin.sq
] [
WORM/Mydoom.L.1
] [
Worm[Email]/Win32.Mydoom
] [
Worm.Mydoom.l.(kcloud)
] [
W32/Mydoom.n@MM
] [
Worm.Mydoom
] [
I-Worm.Mydoom.Q
] [
Email-Worm.Win32.Mydoom
] [
W32/MyDoom.M@mm
] [
I-Worm/Mydoom.N
] [
W32/Mydoom.DN.worm
] [
Worm.Win32.Mydoom.A
]
489620bc8e0f20f7eb6147af8799342d
ae3fd855545ae4c4cca39dfd9afdd6b0
c8f91414f272b0dabf35516bcd9600c7
6385f6f0cdd8638ab7acc474c4553882
Whois
Property
Value
Email
webmaster@brilla.de
NameServer
ns2.hans.hosteurope.de
Changed
2016-01-23 20:11:29
DNS Resolutions
Date
IP Address
0000-00-00
212.37.51.5
(
ClassC
)
2025-01-24
159.69.72.180
(
ClassC
)
Port 80
HTTP/1.1 200 OKContent-Type: text/htmlLast-Modified: Sun, 24 Nov 2019 12:49:44 GMTAccept-Ranges: bytesETag: 8f48aea5c5a2d51:0Server: Microsoft-IIS/10.0X-Powered-By: ASP.NETDate: Wed, 07 Feb 2024 19:34 html>head>meta http-equivrefresh content0; URLhttps://webmail.ghru.de>/head>/html>
Port 443
HTTP/1.1 200 OKCache-Control: no-cachePragma: no-cacheContent-Type: text/htmlContent-Encoding: identityServer: Microsoft-IIS/10.0X-AspNet-Version: 4.0.30319X-Powered-By: ASP.NETStrict-Transport-Securi !DOCTYPE html>html xmlnshttp://www.w3.org/1999/xhtml langen xml:langen>head>title>MailEnable Mail Services/title>style>html, body {margin:0;padding:0;width:100%;min-height:100%;background:linear-gradient(to bottom,#FAFAFA, #CDCDCD);background:-moz-linear-gradient(top, #FAFAFA, #CDCDCD);background:-ms-linear-gradient(top, #FAFAFA, #CDCDCD);background:-o-linear-gradient(top, #FAFAFA, #CDCDCD);background:-webkit-linear-gradient(top, #FAFAFA, #CDCDCD);background:-webkit-gradient(linear, 0% 0%, 0% 100%, from(#FAFAFA), to(#CDCDCD));filter:progid:DXImageTransform.Microsoft.gradient(startColorstr#FAFAFA, endColorstr#CDCDCD, GradientType0);_background:#CDCDCD;background-attachment:fixed;}.services_shell {font-family:Segoe UI,Segoe UI Web Regular,Segoe UI Symbol,Helvetica Neue, Arial,sans-serif;font-size:14px;color:#555;text-shadow: 1px 1px 0px rgba(255,255,255,0.6);-webkit-text-shadow:1px 1px 0px rgba(255,255,255,0.6);-moz-text-shadow:1px 1px 0px rgba(255,255,255,0.6);width:960px;margin:0 auto 50px auto;}.services_item {float:left;width:460px;margin:0 20px 40px 0;}/style>/head>body>div classservices_shell>h1>MailEnable Services/h1>hr/>div classservices_item>h2>WebMail Client/h2>Web Mail allows access to your mailbox via desktop and mobile web browsers.br/>a hrefhttps://www.mailenable.com?KeywordWebMail>More../a>/div>div classservices_item>h2>Web Administration Portal/h2>Web Administration allows you to create and manage mailboxes via desktop and mobile web browsers.br/>a hrefhttps://www.mailenable.com?KeywordWebAdmin>More../a>/div>div classservices_item>h2>Exchange ActiveSync/h2>MailEnables ActiveSync implementation provides a href/Microsoft-Server-ActiveSync>ActiveSync/a> support to mobile devices (any device that supports the Microsoft ActiveSync protocol.br/>a hrefhttps://www.mailenable.com?KeywordActiveSync>More../a>/div>div classservices_item>h2>Mobile Calendaring (CalDAV)/h2>MailEnables CalDAV implementation allows computers and mobile devices to remotely access their mailbox calendar.br/>Specifically, mailbox owne
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]