Help
RSS
API
Feed
Maltego
Contact
Domain > poczta.korbank.pl
×
More information on this domain is in
AlienVault OTX
Is this malicious?
Yes
No
Files that talk to poczta.korbank.pl
MD5
A/V
651f650dfb3e715927cee5103e68e0c7
[
HW32.CDB.F91a
] [
Packed.Win32.Katusha.1!O
] [
Kryptik.CCQY
] [
Backdoor.Win32.Hlux.cri
] [
Win32.Malware!Drop
] [
Artemis!651F650DFB3E
] [
Backdoor:Win32/Kelihos.F
] [
W32/Hlux.CBWM!tr.bdr
] [
Crypt_s.GQG
] [
Backdoor.Win32.Hlux.AB
]
16af6e3a391c3ebcf11d967dab4768df
[
HW32.CDB.7e15
] [
Packed.Win32.Katusha.3!O
] [
Kryptik.CCFN
] [
TrojWare.Win32.Kryptik.CBCJ
] [
Trojan.Packed.26581
] [
Backdoor:Win32/Kelihos.F
] [
W32/Kryptik.CBIM!tr
] [
Crypt_s.GMK
] [
Trojan.Win32.Kryptik.BWUN
]
DNS Resolutions
Date
IP Address
2014-06-21
79.110.199.44
(
ClassC
)
Port 80
HTTP/1.1 301 Moved PermanentlyServer: nginx/1.24.0Date: Thu, 03 Oct 2024 04:26:28 GMTContent-Type: text/htmlContent-Length: 169Connection: keep-aliveLocation: https://poczta.korbank.pl/ html>head>title>301 Moved Permanently/title>/head>body>center>h1>301 Moved Permanently/h1>/center>hr>center>nginx/1.24.0/center>/body>/html>
Port 443
HTTP/1.1 200 OKServer: nginxDate: Thu, 03 Oct 2024 04:26:29 GMTContent-Type: text/html; charsetUTF-8Transfer-Encoding: chunkedConnection: keep-aliveX-Powered-By: PHP/8.1.28Set-Cookie: roundcube_sessid80qp5mcrv0dutfequqj7npbv7f; path/; secure; HttpOnlyExpires: Thu, 03 Oct 2024 04:26:29 GMTLast-Modified: Thu, 03 Oct 2024 04:26:29 GMTCache-Control: private, no-cache, no-store, must-revalidate, post-check0, pre-check0Pragma: no-cacheX-Frame-Options: sameoriginContent-Language: plStrict-Transport-Security: max-age31536000; includeSubDomains !DOCTYPE html>html langpl>head>meta http-equivcontent-type contenttext/html; charsetUTF-8>title>Poczta osiedlowa Korbank :: Witamy w Poczta osiedlowa Korbank/title> meta nameviewport contentwidthdevice-width, initial-scale1.0, shrink-to-fitno, maximum-scale1.0>meta nametheme-color content#f4f4f4>meta namemsapplication-navbutton-color content#f4f4f4> link relshortcut icon hrefskins/elastic/images/favicon.ico?s1716107237> link relstylesheet hrefskins/elastic/deps/bootstrap.min.css?s1716107245> link relstylesheet hrefskins/elastic/styles/styles.min.css?s1716107237> script> try { if (document.cookie.indexOf(colorModedark) > -1 || (document.cookie.indexOf(colorModelight) -1 && window.matchMedia((prefers-color-scheme: dark)).matches) ) { document.documentElement.className + dark-mode; } } catch (e) { } /script> link relstylesheet typetext/css hrefplugins/jqueryui/themes/elastic/jquery-ui.min.css?s1716107237>script srcprogram/js/jquery.min.js?s1716107242>/script>script srcprogram/js/common.min.js?s1716107237>/script>script srcprogram/js/app.min.js?s1716107237>/script>script srcprogram/js/jstz.min.js?s1716107242>/script>script>/* @licstart The following is the entire license notice for the JavaScript code in this page. Copyright (C) The Roundcube Dev Team The JavaScript code in this page is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version. The code is distributed WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU GPL for more details. @licend The above is the entire license notice for the JavaScript code in this page.*/var rcmail new rcube_webmail();rcmail.set_env({task:login,standard_windows:false,locale:pl_PL,devel_mode:null,rcversion:10607,cookie_domain:,cookie_path:/,cookie_secure:true,dark_mode_support:true,skin:elastic,blankpage:skins/elastic/watermark.html,refresh_interval:60,session_lifetime:600,action:,comm_path:/?_tasklogin,compose_extwin:false,date_format:yy-mm-dd,date_format_localized:RRRR-MM-DD,request_token:U4XBwodwOrnLFuvd5L1YrnT4dCpNjO0M});rcmail.add_label({loading:Ładowanie...,servererror:Błąd serwera!,connerror:Błąd połączenia (brak odpowiedzi serwera)!,requesttimedout:Upłynął limit czasu żądania,refreshing:Odświeżanie...,windowopenerror:Wyskakujące okno zostało zablokowane!,uploadingmany:Zapisywanie plików...,uploading:Zapisywanie pliku...,close:Zamknij,save:Zapisz,cancel:Anuluj,alerttitle:Uwaga,confirmationtitle:Czy jesteś pewien...,delete:Usuń,continue:Kontynuuj,ok:OK,back:Wstecz,errortitle:Wystąpił błąd!,options:Opcje,plaintoggle:Zwykły tekst,htmltoggle:HTML,previous:Poprzednia,next:Następna,select:Zaznacz,browse:Przeglądaj,choosefile:Wybierz plik...,choosefiles:Wybierz pliki...});rcmail.gui_container(loginfooter,login-footer);rcmail.gui_object(loginform, login-form);rcmail.gui_object(message, messagestack);/script>script srcplugins/jqueryui/js/jquery-ui.min.js?s1716107237>/script>script srcplugins/jqueryui/js/i18n/datepicker-pl.js?s1716107237>/script>/head>body classtask-login action-none> div idlayout> h1 classvoice>Poczta osiedlowa Korbank Zaloguj/h1>div idlayout-content classselected no-navbar rolemain> img srcskins/elastic/images/korbank_logo_login.png?s1641973150 idlogo altLogo> form idlogin-form namelogin-form methodpost classpropform action/?_tasklogin>input typehidden name_token valueU4XBwodwOrnLFuvd5L1YrnT4dCpNjO0M> input typehidden name_task valuelogin>input typehidden name_action valuelogin>input typehidden name_timezone idrcmlogintz value_default_>input typehidden name_url idrcmloginurl value>table>tbody>tr>td classtitle>label forrcmloginuser>Nazwa użytkownika/label>/td>td classinput>input name_user idrcmloginuser required size40 classform-control autocapitalizeoff value typetext>/td>/tr>tr>td classtitle>label forrcmloginpwd>Hasło/label>/td>td classinput>input name_pass idrcmloginpwd required size40 classform-control autocapitalizeoff autocompleteoff typepassword>/td>/tr>tr>td classtitle>label forrcmloginhost>Serwer/label>/td>td classinput>select name_host idrcmloginhost classcustom-select>option valuetls://poczta.korbank.pl>poczta.korbank.pl/option>option valuetls://biskupin.wroc.pl>biskupin.wroc.pl/option>option valuetls://ks.k.pl>ks.k.pl/option>option valuetls://rozanka.wroc.pl>rozanka.wroc.pl/option>option valuetls://osiedlowiec.k.pl>osiedlowiec.k.pl/option>option valuetls://bielany.k.pl>bielany.k.pl/option>/select>/td>/tr>/tbody>/table>p classformbuttons>button typesubmit idrcmloginsubmit classbutton mainaction submit>Zaloguj/button>/p> div idlogin-footer rolecontentinfo> Poczta osiedlowa Korbank /div> /form>/div>noscript> p classnoscriptwarning>Uwaga: Usługa wymaga Javascriptu! Aby z niej skorzystać proszę włączyć obsługę języka Javascript w ustawieniach przeglądarki./p>/noscript>/div>div idmessagestack>/div>script>$(function() {rcmail.init();});/script>script srcskins/elastic/deps/bootstrap.bundle.min.js?s1716107245>/script>script srcskins/elastic/ui.min.js?s1716107237>/script>/body>/html>
View on OTX
|
View on ThreatMiner
Please enable JavaScript to view the
comments powered by Disqus.
Data with thanks to
AlienVault OTX
,
VirusTotal
,
Malwr
and
others
. [
Sitemap
]