api.spaces.hightail.com
CSC Corporate Domains, Inc.
Domain Information
The domain api.spaces.hightail.com registered by CSC Corporate Domains, Inc. was initially registered in July of 2003 through CSC CORPORATE DOMAINS, INC.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Portland, Oregon within the United States. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrant:
CSC Corporate Domains, Inc.
Registrar:
CSC CORPORATE DOMAINS, INC.
Server location:
Oregon, United States (US)
Create date:
Friday, July 18, 2003
Expires date:
Tuesday, July 18, 2017
Updated date:
Tuesday, February 25, 2014
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US
Scanner detections:
Malware distribution (100% detected)
Scan engine
Details
Detections
K7 AntiVirus
Trojan
100.00%
Trend Micro House Call
Suspicious_GEN.F47V0303
100.00%
VIPRE Antivirus
Trojan.Win32.Generic
100.00%
Avira AntiVirus
TR/Black.Gen2
100.00%
Microsoft Security Essentials
VirTool:Win32/Obfuscator.XZ
100.00%
G Data
Win64.Application.Agent.FV7MCZ
100.00%
ESET NOD32
Win64/HackTool.Crack.B potentially unsafe application
100.00%
McAfee
RDN/Generic PUP.z!fg
100.00%
IKARUS anti.virus
HackTool.crack
100.00%
Fortinet FortiGate
Riskware/Crack
100.00%
Baidu Antivirus
Hacktool.Win64.Crack
100.00%
The domain api.spaces.hightail.com has been seen to resolve to the following 4 IP addresses.
ec2-54-187-114-27.us-west-2.compute.amazonaws.com
August 25, 2016
ec2-52-43-50-30.us-west-2.compute.amazonaws.com
August 25, 2016
ec2-52-33-9-230.us-west-2.compute.amazonaws.com
August 25, 2016
ec2-52-27-92-237.us-west-2.compute.amazonaws.com
August 25, 2016
File downloads found at URLs served by api.spaces.hightail.com.
URL:
http://api.spaces.hightail.com/
Title:
“spaces-api Server”
Network:
Amazon Web Services (AWS), running an EC2 instance
SSL certificate subject:
CN=*.spaces.hightail.com, OU=Domain Control Validated
SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."