The domain storage-eu-11.sharefile.com registered by ShareFile was initially registered in June of 2001 through REGISTER.COM, INC.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the EU (Ireland) region datacenter.
Registrar:
REGISTER.COM, INC.
Server location:
Dublin City, Ireland (IE)
Create date:
Sunday, June 24, 2001
Expires date:
Monday, June 24, 2019
Updated date:
Friday, March 13, 2015
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Malware distribution (55% detected)
Scan engine
Details
Detections
Emsisoft Anti-Malware
Trojan.GenericKD.2929048, Gen:Variant.Strictor.96804, Gen:Variant.MSILPerseus.17898, Win32.Sality, Trojan.GenericKD.2853279
55.56%
Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen, HEUR/QVM17.0.Malware.Gen, Win32/Trojan.fd9, HEUR/QVM03.0.Malware.Gen
44.44%
McAfee
Artemis!3F67CFF91FDB, Trojan.Artemis!BA34F24B1113, Virus.W32/Swisyn.ag, RDN/Generic Downloader.x
44.44%
ESET NOD32
MSIL/TrojanDownloader.Agent.BJL trojan, Win32/Sality.NBA virus
44.44%
Kaspersky
UDS:DangerousObject.Multi.Generic, HEUR:Trojan-Downloader.Win32.Generic, HEUR:Trojan.Win32.Generic
33.33%
MicroWorld eScan
Trojan.GenericKD.2929048, Gen:Variant.MSILPerseus.17898, Trojan.GenericKD.2853279
33.33%
Bitdefender
Trojan.GenericKD.2929048, Gen:Variant.MSILPerseus.17898, Trojan.GenericKD.2853279
33.33%
F-Secure
Trojan.GenericKD.2929048, Gen:Variant.MSILPerseus.17898, Trojan.GenericKD.2853279
33.33%
VIPRE Antivirus
Trojan.Win32.Generic, Threat.4721115
33.33%
Arcabit
Trojan.Generic.D2CB198, Trojan.MSILPerseus.D45EA, Trojan.Generic.D2B899F
33.33%
G Data
Trojan.GenericKD.2929048, Gen:Variant.MSILPerseus.17898, Trojan.GenericKD.2853279
33.33%
Dr.Web
Trojan.DownLoader19.11671, Win32.Sector.30, Trojan.DownLoader17.58518
33.33%
nProtect
Trojan.GenericKD.2929048, Trojan.GenericKD.2853279
22.22%
Rising Antivirus
PE:Malware.Generic(Thunder)!1.A1C4 [F], PE:Malware.Generic/QRS!1.9E2D [F]
22.22%
Lavasoft Ad-Aware
Trojan.GenericKD.2929048, Gen:Variant.MSILPerseus.17898
22.22%
The domain storage-eu-11.sharefile.com has been seen to resolve to the following IP address.
ec2-54-77-236-144.eu-west-1.compute.amazonaws.com
December 25, 2015
File downloads found at URLs served by storage-eu-11.sharefile.com.
URL:
http://storage-eu-11.sharefile.com/
Title:
“ShareFile Storage Server”
Network:
Amazon Web Services (AWS), running an EC2 instance
SSL certificate subject:
CN=*.sharefile.com, OU=ShareFile, O="ShareFile, LLC", L=Raleigh, S=NC, C=US
SSL certificate issuer:
CN=DigiCert SHA2 Secure Server CA, O=DigiCert Inc, C=US
Web server:
Microsoft-IIS/7.5