Help RSS API Feed Maltego Contact                        

Domain > sanacorp.de

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to sanacorp.de

MD5A/V
e21b3469b4fc1efddf76d8c89f1ebb2a[Malware.Packer.HGX1] [Heuristic.LooksLike.Win32.Suspicious.E] [W32/Kryptik.AXUE!tr]
b36385662ebdaf40bc3d28f90b6a4751[Spyware.Zbot.USBV] [Trojan] [BackDoor.SlymENT.1498] [Heuristic.LooksLike.Win32.Suspicious.E] [Trojan/Win32.Foreign]
860dd245cbecd656df047b97456d0ad0[HW32.CDB.9069] [Malware.Packer.FFS] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.AntiWare!1.9D9B] [W32/Kelihos.KK@mm]
2c05ffe297116df3062faac792c44c91[HW32.CDB.B4b9] [Packed.Win32.Katusha.3!O] [WS.Reputation.1] [Kryptik.CDQY] [UnclassifiedMalware] [BackDoor.Slym.13873] [Win32.Troj.Undef.(kcloud)] [Backdoor:Win32/Kelihos.F] [Trojan/Win32.Tepfer] [Heur.Trojan.Hlux] [Trojan.Crypt_s] [W32/Kryptik.BD!tr] [Crypt_s.GNC] [Win32/Trojan.0de]
d6a71b4d3098eab4dddab30fddbaef35[FakeSecTool-FCX!D6A71B4D3098] [Malware.Packer.FFS] [BackDoor.SlymENT.2075] [Heuristic.LooksLike.Win32.Suspicious.E] [PE:Malware.XPACK/RDM!5.1]

Whois

PropertyValue
Email hostmaster@united-domains.de
NameServer ns.udagdns.net
Changed 2015-05-18 06:43:19

DNS Resolutions

DateIP Address
2013-05-16195.145.164.71 (ClassC)
2013-12-1062.159.202.140 (ClassC)
2019-05-1062.159.202.140 (ClassC)
2019-11-04212.172.207.18 (ClassC)
2021-11-19207.54.72.48 (ClassC)
2021-11-19207.54.71.120 (ClassC)
2025-08-0318.193.2.74 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
mailgw1.sanacorp.de2013-05-16195.243.210.84
login.sanacorp.de2024-11-2452.28.82.231
api.login.sanacorp.de2024-08-2118.194.164.172
autodiscover.sanacorp.de2025-07-29212.172.207.38
connect.sanacorp.de2024-11-2535.157.49.6
www.sanacorp.de2024-12-0618.197.30.66
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information