pastebin.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain pastebin.com is registered by proxy through ENOM, INC. and was originally registered in September of 2002. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
ENOM, INC.

Server location:
Arizona, United States (US)

Create date:
Tuesday, September 03, 2002

Expires date:
Saturday, September 03, 2016

Updated date:
Tuesday, August 04, 2015

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

The domain pastebin.com has been seen to resolve to the following 7 IP addresses.

November 12, 2015

November 12, 2015

(CloudFlare)
April 11, 2014

April 11, 2014

April 11, 2014

April 11, 2014

April 11, 2014

File downloads found at URLs served by pastebin.com.

0 / 68
http://pastebin.com/.../bDU5q0j5  (halfcraft_-_mechanics_(part_1).txt)

0 / 68
http://pastebin.com/.../EfFWd3GR  (more_swords_with_only_one_command_block!.txt)

0 / 68
http://pastebin.com/.../00vHC5Li  (laughing's_ahri_1.0.lua;)

0 / 68

0 / 68

0 / 68
http://pastebin.com/.../q1MRvbmh  (muses_--_page_#1.txt)

0 / 68

0 / 68
http://pastebin.com/download.php?i=d1bGSScJ  (project_memories_&_reborn_pwn3d.txt)

0 / 68
http://pastebin.com/download.php?i=GKYqKSgi  (tornstats.com_spy_database_2.5.txt)

0 / 68

0 / 68
http://pastebin.com/download.php?i=sCt4dWKi  (robloxplayerbeta.exe_exploit_lvl_2_-).txt)

1 / 68
http://pastebin.com/.../pastebin-v1.1.exe  (608672723ed45e3b6da36e5136719b60)

The following 4 files have been seen to comunicate with pastebin.com in live environments.

URL:
http://pastebin.com/

Google Analytics:
UA-58643

Title:
“Pastebin.com - #1 paste tool since 2002!”

Description:
“Pastebin.com is the number one paste tool since 2002. Pastebin is a website where you can store text online for a set period of time.”

SSL certificate subject:
CN=ssl323856.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (PHP/5.5.5)

Facebook:
Likes:  18,112
Shares:  19,283
Comments:  3,187

Statistics above are for the previous month of November 2016.