api.spaces.hightail.com

CSC Corporate Domains, Inc.

Domain Information

The domain api.spaces.hightail.com registered by CSC Corporate Domains, Inc. was initially registered in July of 2003 through CSC CORPORATE DOMAINS, INC.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Portland, Oregon within the United States. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrar:
CSC CORPORATE DOMAINS, INC.

Server location:
Oregon, United States (US)

Create date:
Friday, July 18, 2003

Expires date:
Tuesday, July 18, 2017

Updated date:
Tuesday, February 25, 2014

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

K7 AntiVirus
Trojan
100.00%

Trend Micro House Call
Suspicious_GEN.F47V0303
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Avira AntiVirus
TR/Black.Gen2
100.00%

Microsoft Security Essentials
VirTool:Win32/Obfuscator.XZ
100.00%

G Data
Win64.Application.Agent.FV7MCZ
100.00%

ESET NOD32
Win64/HackTool.Crack.B potentially unsafe application
100.00%

McAfee
RDN/Generic PUP.z!fg
100.00%

IKARUS anti.virus
HackTool.crack
100.00%

Fortinet FortiGate
Riskware/Crack
100.00%

AVG
Win32/Blacked
100.00%

Baidu Antivirus
Hacktool.Win64.Crack
100.00%

The domain api.spaces.hightail.com has been seen to resolve to the following 4 IP addresses.

ec2-54-187-114-27.us-west-2.compute.amazonaws.com
August 25, 2016

ec2-52-43-50-30.us-west-2.compute.amazonaws.com
August 25, 2016

ec2-52-33-9-230.us-west-2.compute.amazonaws.com
August 25, 2016

ec2-52-27-92-237.us-west-2.compute.amazonaws.com
August 25, 2016

File downloads found at URLs served by api.spaces.hightail.com.

URL:
http://api.spaces.hightail.com/

Title:
“spaces-api Server”

Network:
Amazon Web Services (AWS), running an EC2 instance

SSL certificate subject:
CN=*.spaces.hightail.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."