Server location:
Washington, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Malware distribution (67% detected)
Scan engine
Details
Detections
Norman
Gen:Variant.Adware.Symmi.59817, Gen:Trojan.Heur.RP.muW@aGiCtshi, Win32.Sality.OG
66.67%
Emsisoft Anti-Malware
Gen:Variant.Symmi.59817, Gen:Trojan.Heur.RP.muW@aGiCtshi, Win32.Sality.OG
50.00%
avast!
Win32:Kukacka, Win32:Malware-gen
50.00%
McAfee
Trojan.Artemis!EC68219F5184, Artemis!D7C996A994CD
50.00%
ESET NOD32
Win32/Sality.NAR virus, Win32/InstallCore.AFV potentially unwanted application
50.00%
Avira AntiVirus
W32/Ramnit.C, TR/Dropper.Gen
33.33%
Dr.Web
Win32.Sector.5
33.33%
Microsoft Security Essentials
Threat.Undefined
33.33%
VIPRE Antivirus
Threat.416209
33.33%
Kaspersky
Virus.Win32.Sality
33.33%
Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48 [F], PE:Malware.Generic/QRS!1.9E2D [F]
33.33%
Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen, QVM20.1.Malware.Gen
33.33%
Lavasoft Ad-Aware
Gen:Trojan.Heur.RP.muW@aGiCtshi
16.67%
F-Prot
W32/Sality.AK
16.67%
Clam AntiVirus
W32.Sality-65
16.67%
The domain www.bitstourhosting.com has been seen to resolve to the following 19 IP addresses.
server-52-85-131-183.iad53.r.cloudfront.net
April 13, 2016
server-52-85-131-167.iad53.r.cloudfront.net
April 13, 2016
server-52-85-131-158.iad53.r.cloudfront.net
April 13, 2016
server-52-85-131-56.iad53.r.cloudfront.net
April 13, 2016
server-52-85-131-234.iad53.r.cloudfront.net
April 13, 2016
server-52-85-131-229.iad53.r.cloudfront.net
April 13, 2016
server-52-85-131-220.iad53.r.cloudfront.net
April 13, 2016
server-52-85-131-192.iad53.r.cloudfront.net
April 13, 2016
server-54-192-195-200.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-177.iad53.r.cloudfront.net
February 28, 2016
server-54-192-195-35.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-149.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-145.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-142.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-128.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-55.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-224.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-170.iad53.r.cloudfront.net
February 27, 2016
server-54-192-195-156.iad53.r.cloudfront.net
February 27, 2016
File downloads found at URLs served by www.bitstourhosting.com.
The following 3 files have been seen to comunicate with www.bitstourhosting.com in live environments.