Help
RSS
API
Feed
Maltego
Contact
Domain > mail.mcquay.com.cn
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
Files that talk to mail.mcquay.com.cn
MD5
A/V
14bfd82cc98684fb9c3e91971d2490b1
[
HW32.CDB.Eb32
] [
Packed.Win32.Katusha.3!O
] [
WS.Reputation.1
] [
Kryptik.CDQY
] [
UnclassifiedMalware
] [
BackDoor.Slym.13873
] [
Win32.Troj.Undef.(kcloud)
] [
Backdoor:Win32/Kelihos.F
] [
Trojan/Win32.Tepfer
] [
Heur.Trojan.Hlux
] [
Trojan.Win32.Kryptik.CBCJ
] [
Trojan.Crypt_s
] [
W32/Kryptik.BD!tr
] [
Crypt_s.GNC
]
DNS Resolutions
Date
IP Address
2014-06-18
210.75.20.10
(
ClassC
)
2025-01-29
113.10.158.209
(
ClassC
)
Port 80
HTTP/1.1 307 Temporary RedirectServer: nginxDate: Wed, 29 Jan 2025 07:45:57 GMTContent-Type: text/htmlContent-Length: 164Connection: keep-aliveLocation: https://mail.mcquay.com.cn/ html>head>title>307 Temporary Redirect/title>/head>body>center>h1>307 Temporary Redirect/h1>/center>hr>center>nginx/center>/body>/html>
Port 443
HTTP/1.1 200 OKServer: nginxDate: Wed, 29 Jan 2025 07:45:58 GMTContent-Type: text/html; charsetUTF-8Transfer-Encoding: chunkedConnection: keep-aliveVary: Accept-Encoding html>head>style typetext/css>.jsstat{display:none;}/style>/head>body>!-- 此句放在最前面,原因是js加载是阻塞页面的,这样确保客户看到整个页面的时候这个js一定已经加载完毕 -->script typetext/javascript>window.location.href http://mail.mcquay.com.cn/mail/;/script>/body>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]