Cerber Distribution Site :: citointechnologiesalefor.top

Host Information

Cerber Distribution Site:citointechnologiesalefor.top
Threat:Distribution Site
Malware:Cerber
URL:http://citointechnologiesalefor.top/search.php
Host Status:offline
Blacklist check:Spamhaus DBL:LISTED
 SURBL:LISTED
Domain Registar:Eranet International Limited
Nameserver(s):a.dnspod.com
 b.dnspod.com
Firstseen (UTC):2017-03-15 08:47:06
Lastseen (UTC):never

Associated IP addresses

The table below shows all ip addresses (e.g. A records) associated with this Cerber Distribution Site. In case the host is a domain name, the table also shows a history of previous A records if there are any.

Active (?This row indicates whether the domain name's A record is currently pointing to an IP address or whether the record is historic (e.g. because the A record has been moved to a different IP address).

yes = Active A record
no = Historical record
)
Firstseen (UTC)Lastseen (UTC)IP addressHostnameSBLAS numberAS nameCountry
yes2017-04-05 12:29:512017-04-23 01:06:4852.37.58.18ec2-52-37-58-18.us-west-2.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- United States (US)
no2017-03-15 08:47:062017-03-22 01:01:43104.199.9.203203.9.199.104.bc.googleusercontent.comNot listedAS15169GOOGLE - Google Inc., US- United States (US)
no2017-03-27 01:04:282017-03-28 01:11:3735.166.163.174ec2-35-166-163-174.us-west-2.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- United States (US)
no2017-03-26 16:03:162017-03-26 22:10:3247.88.159.57Not listedAS45102CNNIC-ALIBABA-CN-NET-AP Alibaba (China) [...]- Canada (CA)
no2017-03-25 01:03:412017-03-26 16:00:1654.145.185.110ec2-54-145-185-110.compute-1.amazonaws.comNot listedAS14618AMAZON-AES - Amazon.com, Inc., US- United States (US)
no2017-03-30 01:15:052017-04-05 12:26:2554.149.101.37ec2-54-149-101-37.us-west-2.compute.amazonaws.comNot listedAS16509AMAZON-02 - Amazon.com, Inc., US- United States (US)
no2017-03-23 01:04:55never69.90.132.93ip-69-90-132-93.chunkhost.comNot listedAS13768PEER1 - Peer 1 Network (USA) Inc., US- United States (US)
no2017-03-24 01:02:55never82.199.134.150Not listedAS201011NETZBETRIEB-GMBH, DE- Germany (DE)

# IPs found: 8 (max. 25)

Dropped files

Latest 100 files (malware samples) dropped by this distribution site.

Firstseen (UTC)MD5 hashFilesizeVTSignature
2017-04-06 01:03:443fd62420ea3bd13fa0582f4d4fd0324c549'289 bytesn/an/a
2017-04-05 12:29:50efa92b62513715a4abf2950abdb6928d274'089 bytesn/an/a
2017-04-04 01:08:380829afb5c233c404d02f352741562f0f272'041 bytesn/an/a
2017-04-03 01:05:224a7d3f7fae86468254edf0715b4d401f346'281 bytesn/an/a
2017-04-02 01:05:0434c9de80f04ad0e3a1c39671da0f35bc348'776 bytesn/an/a
2017-04-01 01:23:46707a22be98e765e600da498eff9219ec272'553 bytesn/an/a
2017-03-31 01:12:368498cdbbafc263b82eb606b204820a2c260'265 bytesn/an/a
2017-03-30 01:14:46abee6b5f5d69cb32634819e7bd1111c7280'233 bytesn/an/a
2017-03-28 01:10:576f96f2bef58234b59a54ac33df9b4dc4300'066 bytesn/an/a
2017-03-27 01:04:18a44359fd3bcf0e2448e6ee3aca540653334'706 bytesn/an/a
2017-03-26 22:10:22925624d2a4f0f2824807415f3a825aca373'161 bytesn/an/a
2017-03-25 01:03:241a49e31ed77546dbf62f3cb73674c67f284'464 bytesn/an/a
2017-03-24 01:02:53941c8b9071bb248ef73029768112db78326'776 bytesn/an/a
2017-03-23 01:04:337c642da9b18f6ff962c9a7e2c91ae974285'897 bytesn/an/a
2017-03-22 01:00:14119920ab2ceef6474e07a89d1b63b723265'118 bytesn/an/a
2017-03-21 01:00:19157a07d3e4d4e4abc07048187b2477c8541'097 bytesn/an/a
2017-03-20 01:00:14f1a505ba4b0c079eeb065bd2250d0bd5268'173 bytesn/an/a
2017-03-19 01:04:4516d6358671507fe26dec539e2cee7afe416'425 bytesn/an/a
2017-03-18 01:02:577a748229ef7d10b09e05e33c1ff64d19264'905 bytesn/an/a
2017-03-17 01:02:5407a43459b94342086b173aee61b440f6287'433 bytesn/an/a
2017-03-16 01:03:181f0f8094660bb242cb5961b36c23f53c257'225 bytesn/an/a
2017-03-15 08:47:421f9ed26af69f54d2cbce556de24f9f87455'081 bytesn/an/a

Unique dropped files: 22