fileshare7530.depositfiles.com

SONGUL CORPORATION

Domain Information

The domain fileshare7530.depositfiles.com registered by SONGUL CORPORATION was initially registered in November of 2005 through EURODNS S.A. Currently this domain has been known to host various forms of malware. The hosted servers are located in Steinsel, Luxembourg within Luxembourg which resides on the RIPE Network Coordination Centre network.
Registrar:
EURODNS S.A

Server location:
Luxembourg, Luxembourg (LU)

Create date:
Saturday, November 5, 2005

Expires date:
Sunday, November 5, 2017

Updated date:
Monday, July 28, 2014

ASN:
AS5577 ROOT root SA,LU

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

K7 AntiVirus
Trojan
100.00%

F-Prot
W32/Dropper.AOLR
100.00%

avast!
Win32:Rootkit-gen [Rtk]
100.00%

Rising Antivirus
PE:Trojan.Agent!6.566
100.00%

The domain fileshare7530.depositfiles.com has been seen to resolve to the following 6 IP addresses.

ip-static-94-242-236-73.server.lu
July 6, 2016

ip-static-94-242-236-57.as5577.net
July 6, 2016

ip-static-94-242-236-49.as5577.net
July 6, 2016

ip-static-94-242-227-187.as5577.net
July 6, 2016

ip-static-94-242-227-151.as5577.net
July 6, 2016

ip-static-94-242-227-139.as5577.net
July 6, 2016

File downloads found at URLs served by fileshare7530.depositfiles.com.

The following 4 files have been seen to comunicate with fileshare7530.depositfiles.com in live environments.

URL:
http://fileshare7530.depositfiles.com/

Title:
“DepositFiles”

Description:
“DepositFiles provides you with a legitimate technical solution, which enables you to upload, store, access and download text, software, scripts, images, sounds, videos, animations and any other materials in form of one or several electronic fil...”

Web server:
nginx