Download
Community
knowledgeBase
» c.backup-trips.work
Overview
Analysis
IPs Addresses (3)
Downloads (1)
Network (2)
c.backup-trips.work
Domain Information
Server location:
Oregon, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Root domain:
backup-trips.work
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.ANDREYBA (M)
100.00%
IPs Addresses
The domain c.backup-trips.work has been seen to resolve to the following 3 IP addresses.
52.27.128.59
ec2-52-27-128-59.us-west-2.compute.amazonaws.com
April 20, 2016
52.27.128.56
ec2-52-27-128-56.us-west-2.compute.amazonaws.com
April 20, 2016
52.27.128.62
ec2-52-27-128-62.us-west-2.compute.amazonaws.com
April 20, 2016
Downloads
File downloads found at URLs served by c.backup-trips.work.
1 / 68 (PUP)
http://c.backup-trips.work/hp/?q=n9hCWm2A94EkqNPRJLtbrwxiNaBVYbxZqYrf24ZdXJfdqwsnd4JwNKk6hJEBTagGRl62H/7GHfHBiwTSMQAsJRBslmhDSNg3CY0Vzh520sMOvlDKV623aIRMz2NLdxgVtFWEGUpxBw/LaIRNN4nzGuBoDdi3xxPPZpFxPDIWeHtDGDNY/Od9iOkVPsR/.../ndony XzttWQ9qgnM53p4yD8LxQahpdeQx9R9QbtPVBkZwMV7XcNFwBQdt0DbdBv7obi8UdqASehVGtFFQhCCvNIYq3uaOhummn FVxPXmtgEjFSu1C15qaiOqD2xhKBeXO&external_id=1437407819302554451
(dorian la velocidad del vacio 2013.exe)
Network Communications
The following 2 files have been seen to comunicate with c.backup-trips.work in live environments.
TCP »
52.27.128.56
:80
updating.exe
TCP »
52.27.128.59
:80
download.exe
TCP »
52.27.128.62
:80
updating.exe
X