Download
Community
knowledgeBase
» a.guide-model.work
Overview
Analysis
IPs Addresses (3)
Downloads (3)
Network (2)
a.guide-model.work
Domain Information
Server location:
Oregon, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Root domain:
guide-model.work
Analysis
Scanner detections:
Malware distribution (100% detected)
Scan engine
Details
Detections
Reason Heuristics
Threat.Win.Reputation.IMP
100.00%
IPs Addresses
The domain a.guide-model.work has been seen to resolve to the following 3 IP addresses.
52.27.128.62
ec2-52-27-128-62.us-west-2.compute.amazonaws.com
April 21, 2016
52.27.128.59
ec2-52-27-128-59.us-west-2.compute.amazonaws.com
April 21, 2016
52.27.128.56
ec2-52-27-128-56.us-west-2.compute.amazonaws.com
April 21, 2016
Downloads
File downloads found at URLs served by a.guide-model.work.
1 / 68 (Malware)
http://a.guide-model.work/hp/?q=7HFigM/TO1WC456789M6VGmfCSzC o1548U5Hg1WOFiqCG9ioVOmrez9d2MtYlIXUY6EZJcaOpzyXpb56zcY18N4g8N/xZLZuLXyFsdOY4NrMSaJ3 wE/.../jM887QP7up3e4BjCnrNIvXCwVhFE288WJ47jDfCTieJzRoi3ZL4LrBo7BHSs88mx57ZLoaKMU22zh0qhO00tiWj0QfrD0snRs3LknbjCyfe
(download.exe)
1 / 68 (Malware)
http://a.guide-model.work/hp/?q=5/.../5FGGaL34A8ewFG863UHquTMcfIXJ8IresjDUAMuJ13RmZcTt0aRMl8D0VbAdkjobKZdoN3aVcS0O6sveB3zH TnFTcPYdROEtKJD7V40fdMqC3 G1ajNevpP6lStdPsu76JcRftm8czD05xXjVYc
(download.exe)
1 / 68 (Malware)
http://a.guide-model.work/hp/?q=EQr3Hf6U8e0g56789/OPqo6t2kTl8QrVtSAx0HSIxm01G9sZCQpVAUkxCnIh3eN6lEspaWFLV8xfpbwO4ElpEiuHtPyqsbBBO07pOEjvutJWRdN3OcQP5xtWqOfu2jurMvbIF7tpda3zFKjdV9Qm/Dgggit1Ngat2OqIMUrHu/.../Mtdu7lR X614mE
(download.exe)
Network Communications
The following 2 files have been seen to comunicate with a.guide-model.work in live environments.
TCP »
52.27.128.56
:80
updating.exe
TCP »
52.27.128.59
:80
download.exe
TCP »
52.27.128.62
:80
updating.exe
X