update.raidcall.com

Chang You Rui Ke

Domain Information

The domain update.raidcall.com registered by Chang You Rui Ke was initially registered in September of 2009 through XIN NET TECHNOLOGY CORPORATION. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrar:
XIN NET TECHNOLOGY CORPORATION

Server location:
Oregon, United States (US)

Create date:
Wednesday, September 16, 2009

Expires date:
Friday, September 16, 2016

Updated date:
Wednesday, June 10, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

The domain update.raidcall.com has been seen to resolve to the following 10 IP addresses.

5.153.27.98-static.reverse.softlayer.com
November 13, 2015

75.126.156.66-static.reverse.softlayer.com
August 14, 2015

108.168.201.242-static.reverse.softlayer.com
August 14, 2015

ec2-54-186-8-207.us-west-2.compute.amazonaws.com
April 20, 2014

ec2-54-186-112-252.us-west-2.compute.amazonaws.com
April 20, 2014

ec2-54-186-65-91.us-west-2.compute.amazonaws.com
April 20, 2014

75.126.20.67-static.reverse.softlayer.com
December 25, 2013

173.192.186.9-static.reverse.softlayer.com
December 25, 2013

108.168.142.10-static.reverse.softlayer.com
December 25, 2013

108.168.142.9-static.reverse.softlayer.com
December 25, 2013

File downloads found at URLs served by update.raidcall.com.

15 / 68    (Infected)
http://update.raidcall.com/.../raidcall_7.3.6.exe  (aaf6be5ef3bcb64b26c69ad210fde4c4)

1 / 68      (inconclusive)
http://update.raidcall.com/.../raidcall_v7.3.6.exe  (189a111981af1f304df409ba54dbcf40)

0 / 68
http://update.raidcall.com/.../raidcall_7.3.6.exe  (155965cefc72f0c7fec5ecb1e6eb44cd)

2 / 68      (inconclusive)
http://update.raidcall.com/.../raidcall_v7.3.6.exe  (58fe4871bed19e324c60e537ffa7828f)

0 / 68

1 / 68
http://update.raidcall.com/.../raidcall_v7.3.6.exe  (725ae4fc1d462a89cc939601c5f137e0)

0 / 68

1 / 68
http://update.raidcall.com/.../raidcall_7.3.6.exe  (a0b6bbd6ccd89a50a4e16c24bb7585d6)

0 / 68
http://update.raidcall.com/.../raidcall_v7.3.6.exe  (5aa177f4358cd9dac052cd6d5b4564b0)

0 / 68
http://update.raidcall.com/.../raidcall_v7.3.6.exe  (f02c1836ce3c6e9fce260557a5a3ca83)

0 / 68

1 / 68
http://update.raidcall.com/.../raidcall_7.3.6.exe  (cb61645ea7f18c90e647911d767407ad)

1 / 68
http://update.raidcall.com/.../raidcall_7.3.6.exe  (b3186bba264eae15c146cd2a04ae7b97)

0 / 68
http://update.raidcall.com/.../raidcall_7.3.4.exe  (5839c3cdcf9f1a6d877fe133228822b0)

1 / 68
http://update.raidcall.com/.../raidcall.exe  (de4f21ab78d7eaa70878a014a44911b5)

0 / 68
http://update.raidcall.com/.../raidcall_7.3.4.exe  (e047ff030903d8ee37535728e0b685e0)

0 / 68
http://update.raidcall.com/.../raidcall_7.3.4.exe  (ced06fd49ab560be0c106ee4d749a496)

0 / 68
http://update.raidcall.com/.../raidcall_en.exe  (64a066321e805ce76d4072074a3337ee)

0 / 68
http://update.raidcall.com/.../raidcall.exe  (64bc5083e32fde16b86a138ff122b69e)

1 / 68      (PUP)

1 / 68      (PUP)
http://update.raidcall.com/.../raidcall.exe  (0ce25152a877f5053ef9702f26e380bd)

0 / 68
http://update.raidcall.com/.../raidcall.exe  (748ce60c96e4200d8a6b4788c066a544)

1 / 68      (PUP)
http://update.raidcall.com/.../raidcall.exe  (07e3c4590bc9b3b40169cb16e33ced0a)

The following 7 files have been seen to comunicate with update.raidcall.com in live environments.

URL:
http://update.raidcall.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx