| Date | Domain | IP | CC | ASN | Autonomous System Name | Click Md5 for VirusTotal Report |
|---|---|---|---|---|---|---|
| 2013-05-22 | e7.x9.filmwit.com/down/orx/73183.exe?IFoxInstall-y-c20311734 3-nsi-s-run-x.exe |
184.82.197.5 | US | 21788 | NOC - Network Operations Center Inc. | 913501ca73386a1451c8ead93725133d |
| 2013-05-22 | www.dycrg.com/xdow/juik/4604.exe | 64.120.186.204 | US | 21788 | NOC - Network Operations Center Inc. | 21011ed73d4bf79064cc6e3e0c8a11b0 |
| 2013-05-22 | mozilla-firefox.todownload.com/get/file/id/843152/index.html <br/>?gclid=cokywj3hxbmcfyd9ogodedaaiq&&&s;%2F ;=tjtr8hmm-s8wheovhptc&<br%2F&>8w&&&t;%2F;=1369870234& &&ext;%2F;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 2cbbe8db8fde59ac1d7ae174c459b7d4 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm <br/><br/>l?lp=adwords&&tg=ca&&s=k-pwqe26uwoyn86 cqk<br/>bhqg&&t=1378602114&&<br/&&>&&ext=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 8819195d341971233f83d2aa5abf5924 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960?lp=adword s&&tg=ca&&s=k-pwqe26uwoyn86cqkbhqg&& |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 17a8f60a9a535ca274e3be8c11e1d695 |
| 2013-05-22 | x1.zhuti.com/down/2013/5/08-xp/wmhsrl.exe | 222.187.220.166 | CN | 4134 | CHINANET-BACKBONE No.31,Jin-rong Street | 6875d202731cecce9f413a0ea18b1a16 |
| 2013-05-22 | 46.254.16.170/7.exe | 46.254.16.170 | RU | 42244 | ESERVER Hosting Operator eServer.ru Ltd. | e77bdc0a1e6b88b7770e75eae5621a66 |
| 2013-05-22 | neirong.fuzhicheng.com/d7/xiazai/setup_3619.exe | 218.93.202.115 | CN | 4134 | CHINANET-BACKBONE No.31,Jin-rong Street | 2fc230aff13e902261bf7cec77dc761c |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960?lp=adword <%2F;br%2F>%2F;s&&&&tg%2F;=ca&&&&s%2F;=k-pwqe26uwoyn86cq kbhqg&&&&<%2F;br%2F>%2F;t=1378602114&&&&ext%2F;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | bb2e23f7442779790eba1ce8304125c7 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960?lp=adword <%2F;br%2F>%2F;s&tg%2F;=ca&s%2F;=k-pwqe26uwoyn86cqkbhqg& lt%2F;br%2F>%2F;t=1378602114&ext%2F;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 3d6fdf13a76972f042d0ad691487c28c |
| 2013-05-22 | dl01.faadmr.com/n/3.0.6/6689133/Tor.exe | 165.254.42.106 | US | 2914 | NTT-COMMUNICATIONS-2914 - NTT America, Inc. | 81f5925674e7ac82e39131d21323309c |
| 2013-05-22 | ryhxibac.us/userid1.exe | 176.103.238.127 | CZ | 196957 | CITKH-AS Center of Information Technologies Kharkiv Online | 4e088eaf4dc105809d30db2ae4aac352 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm <br/>l?lp=adwords&&tg;=ca&&s=k-pwqe26uwoyn86cq kbhqg&&t;=1378602114&<br%2F&>&&ext;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | df3be79ab5956ea26b2b1bb945d97f1b |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm &/;lt/;br/&/;gt/;l?lp=adwords&&tg;%2F;=ca&&s;% 2F;=k-pwqe26uwoyn86cqkbhqg&&t;%2F;=13786&<%2F;br%2F&>% 2F;02114&&ext;%2F;=. |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 698a13c82915c41d45d92ed73f7a4c82 |
| 2013-05-22 | dls2.atlofi.ru/output/ql5ewhafbu5dreneteuewf8ftu9edvjhrhvmq0 zpdunofw3d3d/02/c1/4b/2a/audio/kravts_-_vspominat_zaycev_net .exe |
37.220.34.23 | NL | 58073 | YISP-AS Rens Ariens trading as _Your Internet Service Provider_ | 961b3eba647e72487ac0e8d49de594ca |
| 2013-05-22 | utilityport.net/templates/atomic/images/prorate.exe | 66.147.244.85 | US | 46606 | BLUEHOST-AS-2 - Bluehost Inc. | 0d11271380995487a36d10fdcff3abbb |
| 2013-05-22 | google-talk.todownload.com/get/file/id/710928/index.html?gcl <%2F;br%2F>%2F;id=ckyxrp7rplucfa3ktaodbdmamq&%2F;s=dr phnklcsrleex1-r8lcmq<%2F;br%2F>%2F;t%2F;=1377542109&% 2F;ext=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 2dd90b0e2ee4778c79e5a16a5247da37 |
| 2013-05-22 | dx.uzzf.com/JDeleter.exe | 61.187.251.230 | CN | 4134 | CHINANET-BACKBONE No.31,Jin-rong Street | 048056c36dbe8b56eca9ff19b7add787 |
| 2013-05-22 | winzip.todownload.com/get/file/id/846984/index.html?lp=adwor ds&&%2F;gcl<%2F;br%2F>%2F;id=cl-jiiduobucffbdmgodxqqab a&&%2F;s=dncg6j-h1olxtcjnooxjpa&a;<%2F;br%2F>%2F;mp%2F ;t=1377439771&&%2F;e |
23.21.242.54 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 3b601543435d77608ebd7fefc86a5d42 |
| 2013-05-22 | google-talk.todownload.com/get/file/id/710928/index.html?gcl id=ckyxrp7rplucfa3ktaodbdmamqs%2F;=drphnklcsrleex1-r8lcmq&am p%2F;t%2F;=1377542109ext%2F;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | bdbc81700380fc5a8bd4d522f843361c |
| 2013-05-22 | dx7.52z.com/CFweiai.exe | 61.187.182.21 | CN | 4134 | CHINANET-BACKBONE No.31,Jin-rong Street | 5aea7fef9749adf5c537759454552ba8 |
| 2013-05-22 | wt8.52z.com/xtss.exe | 221.203.3.212 | CN | 4837 | CHINA169-BACKBONE CNCGROUP China169 Backbone | cf8249abb2e8d70d451c95461dd15d13 |
| 2013-05-22 | leo-soft.com/email_extractor/EmailPredator_demo.exe | 174.120.151.62 | US | 21844 | THEPLANET-AS - ThePlanet.com Internet Services, Inc. | 043bdb5cf706f50172244b3a284e986a |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm <br/><br/>l?lp=adwords&&tg=ca&&s=k-pwqe26uwoyn86 cqk<br/>bhqg&&t=1378602114&&ext=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 71e7876dc160befc04869d51600ba4a2 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm <br/><br/>l?lp=adwords&tg;=c a&s;=k-pwqe26uwoyn8<br/>6cqkbhqg&t;=13 786<br/&g |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 032ce7e5633fe85558f9f1c56eb8dc37 |
| 2013-05-22 | www.nimblefingers.com/program_ww/typing_data_setup.exe | 174.122.31.3 | US | 21844 | THEPLANET-AS - ThePlanet.com Internet Services, Inc. | cdb993357a1b4af16121cbd10081e10a |
| 2013-05-22 | mozilla-firefox.todownload.com/get/file/id/820283?gclid=cmir tl7a8becfqed7qod5eoaug&&s=pdg0tnpikg7alx59jdujqg&&t=13530871 26&&ext=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | bbf4c6bf4da1b0bf45721f6740883447 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm &/;lt/;br/&/;gt/;l?lp=adwords&&&&tg;=ca&&&&s;=k-pwqe 26uwoyn86cqkbhqg&&&&t;=13786<%2F;br%2F>%2F;02114&&&&&e xt;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | a366ca081b591ced4b76cc35287648a6 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm &lt;br/&gt;l?lp=adwords&&tg;=ca& &s;=k-pwqe26uwoyn86cqkbhqg&&t;=1378602114&&a mp;<br/&& |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 24c63688bc069496e9540af5895a92c8 |
| 2013-05-22 | cool-edit-pro.soft32.com/get/file/id/810822?rel=center&s;=zC XJ_e1dsa0id5umhJquTw&t;=1368066747&ext;=.exe |
184.51.200.88 | US | 20940 | AKAMAI-ASN1 Akamai International B.V. | 668409d4d4f96d8b47be5266411ec8bd |
| 2013-05-22 | pic.rmzt.com/2012/12/14/jyzdw.exe | 222.187.220.166 | CN | 4134 | CHINANET-BACKBONE No.31,Jin-rong Street | 00f3825405946894c41014b398cb8a2b |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm &lt;br/&gt;l?lp=adwords&tg;=ca&s;=k-pwqe26uw oyn86cqkbhqg&t;=1378602114<br/>&am;p;ext;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | cde78c604bbfd126513ae1e810c8396a |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960?lp=adword s&&tg;=ca&&s;=k-pwqe26uwoyn86cqkbhqg&&t;=1378602114&&ext;=.e xe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 57571d453355c34e17a8b199b8a2c9f9 |
| 2013-05-22 | dls1.busibe.ru/output/brkzhvdcqgkigqweaqkaa0mfgeikcbkycqiaaw ecdakyfqabml5sbalq/00/13/47/6d/setup/setup_lvk.exe |
37.220.34.234 | NL | 58073 | YISP-AS Rens Ariens trading as _Your Internet Service Provider_ | c8346c79e16bc080e23f4d26f761484a |
| 2013-05-22 | uj.pe.filmwit.com/down/gp/68910.exe | 184.82.197.5 | US | 21788 | NOC - Network Operations Center Inc. | 913501ca73386a1451c8ead93725133d |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm </;br/>/;l?lp=adwords&tg%2F;=ca&s=k-pwqe26uwoyn86cqkbhqg &t%2F;=1378602114<%2F;br%2F>%2F;&e%2F;xt=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | f55240faaff9368514b5ffd4e160bec6 |
| 2013-05-22 | dls3.atlofi.ru/output/jjcqln7ly4ctio2kgovklphlg4gqu5yjinucjy ibu42a2q3d3d/02/c1/47/e4/audio/bi-2_-_molitva_saundtrek_ost_ k_filmu_metro_xmusic_me.exe |
37.220.34.23 | NL | 58073 | YISP-AS Rens Ariens trading as _Your Internet Service Provider_ | 631eaa97a45a3e3a14bfb869f74deb68 |
| 2013-05-22 | vzlloading1.com/04170513/RybnoeBot.exe | 88.198.20.189 | DE | 24940 | HETZNER-AS Hetzner Online AG RZ | 9d572c53cf51d7db77c6e1ab33d0875c |
| 2013-05-22 | google-talk.todownload.com/get/file/id/710928/index.html?gcl id=cob1wdfiorucfwbktaodc14aog&&&&s%2F;=egzqofesfb_lrbk4bxajl g&&&&t%2F;=1377464114&&&&ext%2F;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 7837b7bf1bc7fa26e36143ff6a66089a |
| 2013-05-22 | dx3.haote.com/CBox_NoAD.exe | 61.187.182.21 | CN | 4134 | CHINANET-BACKBONE No.31,Jin-rong Street | 6e9d60cf66c093d88b11ea3c446c9f2e |
| 2013-05-22 | wt7.52z.com/bbaidpf.exe | 221.203.3.214 | CN | 4837 | CHINA169-BACKBONE CNCGROUP China169 Backbone | 200ae6688fd8125a9b09046265d8ade0 |
| 2013-05-22 | historyviewer.net/hvsetup.exe | 74.91.25.227 | US | 33387 | DATASHACK - DataShack, LC | 3a65e7bc5d51377fdf76fa1918ee842d |
| 2013-05-22 | dx4.52z.com/yinpinj_Ty.exe | 61.187.182.21 | CN | 4134 | CHINANET-BACKBONE No.31,Jin-rong Street | 5a4b336c9673e9e0fd8bb10e70b3b487 |
| 2013-05-22 | wt7.52z.com/utoii.exe | 221.203.3.214 | CN | 4837 | CHINA169-BACKBONE CNCGROUP China169 Backbone | 40431698a46134970fa0d58b25d4bf4d |
| 2013-05-22 | home.comcast.net/~jshimes/pictures.scr | 216.87.188.9 | US | 30217 | DESYNC - Desync Networks | 3dd5a656f892d438c18ad8b6c75f620b |
| 2013-05-22 | eliteip.co.kr/EUIMSetup.exe | 121.131.131.242 | KR | 4766 | KIXS-AS-KR Korea Telecom | 7791408079494487f3e6e90340c7eb0a |
| 2013-05-22 | www.dycrg.com/xdow/juik/4604.exe | 64.120.186.204 | US | 21788 | NOC - Network Operations Center Inc. | 7db0154302ce49939a9ef9e24f2311a0 |
| 2013-05-22 | mozilla-firefox.todownload.com/get/file/id/820283?gclid=cjtg yqsr-7ecfce8kgodywsala&&&s=dbg5piqwqxeknwj-g3hj0q&&&t=135341 8053&&&ext=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 3a4a0a969020fc4a3c150810a10054f9 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm <br/>l?lp=adwords&tg;=ca&s;=k-pwqe26uwoyn86cqkbhqg&t;= 13786& 02114&ext;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 8c0963efd2bf8625542f5f7f6bcef9b1 |
| 2013-05-22 | google-earth.xtremedownload.com/get/file/id/802960/index.htm <br/>l?lp=adwords&&&&&&&&tg;=ca&&&&&&&&s;=k-pw qe26uwoyn86cqkbhqg&&&&&&&&t;=13786<br%2F>02114&&&&&&&& &&ext;=.exe |
54.225.232.227 | US | 14618 | AMAZON-AES - Amazon.com, Inc. | 18b23c5957dad4f515f570a8cb3251cb |