storage-eu-5.sharefile.com

ShareFile

Domain Information

The domain storage-eu-5.sharefile.com registered by ShareFile was initially registered in June of 2001 through REGISTER.COM, INC.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Dublin, Dublin City within Ireland. The domain uses the Amazon Web Services (AWS) cloud computing platform from the EU (Ireland) region datacenter.
Registrar:
REGISTER.COM, INC.

Server location:
Dublin City, Ireland (IE)

Create date:
Sunday, June 24, 2001

Expires date:
Monday, June 24, 2019

Updated date:
Friday, March 13, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Malware distribution  (78% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/TrojanDownloader.Delf.BNZ trojan, Win32/Kryptik.EHBB trojan, MSIL/TrojanDownloader.Banload.GC trojan, Win32/TrojanDownloader.Banload.WYL trojan
88.89%

Kaspersky
UDS:DangerousObject.Multi.Generic, Trojan-Banker.Win32.Banbra, Trojan.Win32.Yakes, HEUR:Trojan.Win32.Generic
44.44%

Emsisoft Anti-Malware
Gen:Variant.Strictor.99853, Trojan.GenericKD.2905722, Trojan.GenericKD.2909611, Gen:Variant.Zusy.172368
44.44%

Qihoo 360 Security
QVM18.1.Malware.Gen, HEUR/QVM03.0.Malware.Gen, HEUR/QVM10.1.Malware.Gen, HEUR/QVM11.1.Malware.Gen
44.44%

avast!
MSIL:Banker-FL [Trj], Win32:Malware-gen, Win32:Dropper-gen [Drp]
44.44%

Microsoft Security Essentials
TrojanDownloader:Win32/Banload!rfn, Threat.Undefined
33.33%

Baidu Antivirus
Trojan.MSIL.Banload, Adware.Win32.iBryte, Trojan.Win32.Banload
33.33%

Norman
Trojan.GenericKD.2909611, Gen:Variant.Zusy.179612, Trojan.GenericKD.3074352
33.33%

MicroWorld eScan
Gen:Variant.Strictor.99853, Trojan.GenericKD.2905722
22.22%

Bitdefender
Gen:Variant.Strictor.99853, Trojan.GenericKD.2905722
22.22%

Lavasoft Ad-Aware
Gen:Variant.Strictor.99853, Trojan.GenericKD.2905722
22.22%

F-Secure
Gen:Variant.Strictor.99853, Trojan.GenericKD.2905722
22.22%

Arcabit
Trojan.Strictor.D1860D, Trojan.Generic.D2C567A
22.22%

G Data
Gen:Variant.Strictor.99853, Trojan.GenericKD.2905722
22.22%

McAfee
RDN/Generic.bfr, Trojan.Artemis!121A120DAE01
22.22%

The domain storage-eu-5.sharefile.com has been seen to resolve to the following IP address.

ec2-54-72-85-15.eu-west-1.compute.amazonaws.com
January 27, 2016

File downloads found at URLs served by storage-eu-5.sharefile.com.

10 / 68    (Malware)

2 / 68      (PUP)

2 / 68      (Malware)

URL:
http://storage-eu-5.sharefile.com/

Title:
“ShareFile Storage Server”

Network:
Amazon Web Services (AWS), running an EC2 instance

SSL certificate subject:
CN=*.sharefile.com, OU=ShareFile, O="ShareFile, LLC", L=Raleigh, S=NC, C=US

SSL certificate issuer:
CN=DigiCert SHA2 Secure Server CA, O=DigiCert Inc, C=US

Web server:
Microsoft-IIS/7.5