t6tpdw-dm2305.files.1drv.com

Microsoft Corporation

Domain Information

The domain t6tpdw-dm2305.files.1drv.com registered by Microsoft Corporation was initially registered in August of 2013 through MARKMONITOR INC.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Redmond, Washington within the United States which resides on the Microsoft Corporation network.
Registrar:
MARKMONITOR INC.

Server location:
Washington, United States (US)

Create date:
Monday, August 5, 2013

Expires date:
Friday, August 5, 2016

Updated date:
Sunday, July 5, 2015

ASN:
AS8075 MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation,US

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Bkav FE
HW32.Packed
100.00%

MicroWorld eScan
Gen:Variant.Symmi.56028
100.00%

Quick Heal
(Suspicious) - DNAScan
100.00%

SUPERAntiSpyware
Trojan.Agent/Gen-Banload
100.00%

Arcabit
Trojan.Symmi.DDADC
100.00%

ESET NOD32
Win32/TrojanDownloader.Banload.WML (variant)
100.00%

Kaspersky
HEUR:Trojan.Win32.Generic
100.00%

Bitdefender
Gen:Variant.Symmi.56028
100.00%

Lavasoft Ad-Aware
Gen:Variant.Symmi.56028
100.00%

Emsisoft Anti-Malware
Gen:Variant.Symmi.56028
100.00%

F-Secure
Gen:Variant.Symmi.56028
100.00%

Sophos
Mal/Generic-S
100.00%

Avira AntiVirus
TR/Crypt.Xpack.279728
100.00%

G Data
Gen:Variant.Symmi.56028
100.00%

Vba32 AntiVirus
Trojan.Svchost.5505
100.00%

The domain t6tpdw-dm2305.files.1drv.com has been seen to resolve to the following IP address.

a-0011.a-msedge.net
October 13, 2015

File downloads found at URLs served by t6tpdw-dm2305.files.1drv.com.

17 / 68    (Malware)

The following 100 files have been seen to comunicate with t6tpdw-dm2305.files.1drv.com in live environments.

 
Latest 20 of 113 files

URL:
http://t6tpdw-dm2305.files.1drv.com/

SSL certificate subject:
CN=storage.live.com, OU=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=WA, C=US

SSL certificate issuer:
CN=Microsoft IT SSL SHA2, OU=Microsoft IT, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Web server:
Microsoft-IIS/8.5