Help RSS API Feed Maltego Contact                        

Domain > mailplug.co.kr

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to mailplug.co.kr

MD5A/V
3223f61af50aa26a1c3bb96fe1779011[HW32.CDB.D56b] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux.Win32.9065] [Trojan.Win32.Kryptik.czfnsp] [Trojan.FakeAV] [Kryptik.CCQY] [Backdoor.Win32.Hlux.dueu] [Backdoor.Hlux!DdFHfWii/ns] [UnclassifiedMalware] [TR/Kryptik.oenzk] [Backdoor:Win32/Kelihos] [Trojan/Win32.FakeAV] [Heur.Trojan.Hlux] [Backdoor.Win32.Hlux.cri] [Trojan.Crypt3] [W32/Kryptik.CBOM!tr] [Crypt3.ORV] [Backdoor.Win32.Hlux.Acmu] [Win32/Trojan.7bf]
315325f544912a68464bf38e3edf6371[HW32.CDB.9e5e] [Backdoor/W32.Hlux.829456.H] [Packed.Win32.Katusha.3!O] [Backdoor.Hlux.r3] [Backdoor.Hlux!aauIqdu764w] [Trojan.FakeAV] [Kryptik.CDQY] [Backdoor.Win32.Hlux.dqyy] [Win32.Backdoor.Hlux.Lhdb] [UnclassifiedMalware] [Trojan.Packed.26581] [Win32.Hack.Hlux.dq.(kcloud)] [Backdoor:Win32/Kelihos.F] [Backdoor.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BWUN!tr] [Crypt_s.GNC] [Backdoor.Win32.Hlux.aZvR] [Win32/Trojan.337]
4211b2d7121c11d5f032e6620030a384[HW32.CDB.Cd7e] [Packed.Win32.Katusha.3!O] [Hlux.ZY] [VirTool:Win32/Obfuscator.WT]
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]

Whois

PropertyValue
NameLinuxwares Inc
Email domain@mailplug.co.kr
Address Daechi-dong Gangnam-gu, Seoul, 891-25 Bosung Bldg. 8F
Zip Code 135840
NameServer ns2.mailplug.com
Created 2000-12-05 00:00:00
Changed 2014-12-03 00:00:00
Expires 2024-12-05 00:00:00
Registrar LINUXWARES

DNS Resolutions

DateIP Address
2013-10-18121.156.118.183 (ClassC)
2013-12-20222.122.219.121 (ClassC)
2014-03-08125.141.205.84 (ClassC)
2014-03-16180.210.34.45 (ClassC)
2025-08-11121.156.118.122 (ClassC)

Port 80

Subdomains

DateDomainIP
m130.mailplug.co.kr2025-05-17121.156.118.130
m190.mailplug.co.kr2025-07-02121.156.118.90
mfwd21.mailplug.co.kr2024-08-2714.49.38.75
mfwd22.mailplug.co.kr2025-07-1314.49.38.179
NS2.MAILPLUG.CO.KR2025-05-02223.26.214.22
mfwd23.mailplug.co.kr2025-05-07211.253.28.95
mfwd24.mailplug.co.kr2024-07-22211.253.28.172
ma115.mailplug.co.kr2025-05-12222.122.219.115
w175.mailplug.co.kr2025-05-15121.156.118.175
m196.mailplug.co.kr2025-07-05121.156.118.96
www.mailplug.co.kr2025-06-30121.156.118.122
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information