util.bitaminbox.com

TJ COOP

Domain Information

The domain util.bitaminbox.com registered by TJ COOP was initially registered in May of 2013 through DOTNAME KOREA CORP. Currently this domain has been known to host various forms of malware. The hosted servers are located in Seoul, Seoul-T'Ukpyolsi within Korea which resides on the Asia Pacific Network Information Centre network.
Registrar:
DOTNAME KOREA CORP

Server location:
Seoul-T'Ukpyolsi, Korea (KR)

Create date:
Tuesday, May 28, 2013

Expires date:
Saturday, May 28, 2016

Updated date:
Wednesday, April 29, 2015

ASN:
AS9318 HANARO-AS Hanaro Telecom Inc.,KR

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP (M)
100.00%

Rising Antivirus
PE:Trojan.Kryptik!1.A0EE[F1]
8.33%

AhnLab V3 Security
PUP/Win32.Downloader
8.33%

The domain util.bitaminbox.com has been seen to resolve to the following IP address.

December 7, 2015

File downloads found at URLs served by util.bitaminbox.com.

2 / 68      (PUP)

1 / 68      (Malware)
http://util.bitaminbox.com/marks/ssang/.../hamachi2_download.exe  (갤럭시s6 samsung_usb_driver_download.exe)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

2 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

URL:
http://util.bitaminbox.com/

Title:
“네이트”

Web server:
Apache