Help RSS API Feed Maltego Contact                        

Domain > down.3lsoft.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to down.3lsoft.com

MD5A/V
f8102c521e706cc33be47ecca54a0b18[Suspici.AB01381A] [Win32.Malware]
2687be0203a10309a33fb4b0bb5022eb[Artemis!2687BE0203A1] [Adware.Downware.2950] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O]
43984d62f7836b46bcb231a389463295[Artemis!43984D62F783] [Win32.Adware.Adpush.3295] [Trojan.DownLoader11.12010] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Backdoor.Win32.Hupigon]
a38ada0acb8a3da811e243b13e0d1251
827830841da37e7eb69518925976c4db
30f6662f60bd84ea67a2625ae2a2d6f5[Win32.Adware.Adpush.Yqdv] [Win32.Malware]
58105e1d56ae55096ff612e0de7b9cd6[Artemis!58105E1D56AE] [WS.Reputation.1] [Trojan.DownLoader11.12010] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Win32.Adware.Adpush.Jbae] [Backdoor.Win32.Hupigon]
1c340182b273e8901b590136f177eb06[Artemis!1C340182B273] [Worm/Win32.Qvod]
44ffb23dab50b7ec11a23da4b2124fe8[Artemis!44FFB23DAB50] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Win32.Malware]
26d1d23b001761c191b2de963d3e4f13[Artemis!26D1D23B0017] [Trojan-Downloader] [Trojan] [W32/Downldr2.IJOH] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [W32/Downloader.VMPG-4139]
03654063d64b7ad8694a312e319685e3
f67d0d43702998b8b94197d2f847f5f4[Artemis!F67D0D437029] [Win32.Malware!Drop] [Win32.Adware.Adpush.Rsot] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [VIRUS_UNKNOWN] [Backdoor.Win32.Hupigon]
7e88ff17a61e8726ad2c08b7a74b983e[Artemis!7E88FF17A61E] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Backdoor.Win32.Hupigon]
8356439f7e28c3465830e1b6ecc1f931
8805d173e1ad1d1dbc0fd95078409584[Artemis!8805D173E1AD] [Adware.Downware.2950] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Win32.Adware.Malplayer.Odur] [Win32.Malware]
44b327017c98c0fe84450a479533639a[Artemis!44B327017C98] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Backdoor.Win32.Hupigon]
a5da657eef0d81a7f10603c82185e0f6[Artemis!A5DA657EEF0D] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [Win32.Adware.Adpush.Krlr]
f689296c1ff90812e9e15bde17bd4359[Artemis!F689296C1FF9] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [VIRUS_UNKNOWN] [Win32.Adware.Adpush.4359] [Backdoor.Win32.Hupigon]
4ef9f3030cdf077cde22463c5e66f5a7[WS.Reputation.1] [Trojan.DownLoader11.12010] [Win32.Adware.Adspread.Jvls] [Backdoor.Win32.Hupigon]
cb5d711c86e956b41047ff7910e8247e[Artemis!CB5D711C86E9] [Heuristic.BehavesLike.Win32.Suspicious-PKR.O] [VIRUS_UNKNOWN] [Backdoor.Win32.Hupigon]

Whois

PropertyValue
Email lisongsir@gmail.com
NameServer F1G1NS2.DNSPOD.NET
Created 2012-01-12 00:00:00
Changed 2014-01-22 00:00:00
Expires 2017-01-12 00:00:00
Registrar ENAME TECHNOLOGY CO.

DNS Resolutions

DateIP Address
0000-00-00119.147.138.177 (ClassC)
2013-04-01222.187.222.249 (ClassC)
2013-04-01122.225.106.102 (ClassC)
2013-04-01121.63.160.40 (ClassC)
2013-04-01218.65.30.118 (ClassC)
2013-04-01115.230.125.87 (ClassC)
2013-04-0161.191.188.28 (ClassC)
2013-04-01122.225.106.105 (ClassC)
2013-04-0160.173.12.122 (ClassC)
2013-04-01122.225.106.99 (ClassC)
2013-04-01221.204.240.14 (ClassC)
2013-04-01122.225.106.100 (ClassC)
2013-04-01122.228.64.13 (ClassC)
2013-04-01122.225.106.106 (ClassC)
2013-04-0161.191.190.126 (ClassC)
2013-04-01122.225.106.110 (ClassC)
2013-04-01218.65.134.3 (ClassC)
2013-04-0661.183.41.230 (ClassC)
2013-04-07218.25.208.201 (ClassC)
2013-04-07218.25.208.207 (ClassC)
2013-05-23122.225.106.98 (ClassC)
2013-05-2461.191.190.207 (ClassC)
2013-06-27122.226.161.188 (ClassC)
2013-07-2861.183.41.251 (ClassC)
2013-07-30122.226.161.181 (ClassC)
2013-08-04122.226.161.186 (ClassC)
2013-09-13122.225.106.98 (ClassC)
2013-09-1361.183.41.253 (ClassC)
2013-09-1461.191.190.207 (ClassC)
2013-09-1461.183.35.30 (ClassC)
2013-09-14122.226.161.183 (ClassC)
2013-09-15122.226.161.189 (ClassC)
2013-09-1561.183.41.251 (ClassC)
2013-09-15122.226.161.179 (ClassC)
2013-09-16122.226.161.184 (ClassC)
2013-09-16122.226.161.186 (ClassC)
2013-09-19122.225.106.104 (ClassC)
2013-09-2461.191.190.209 (ClassC)
2013-09-2761.183.35.29 (ClassC)
2013-09-2761.183.41.252 (ClassC)
2013-09-3061.183.35.28 (ClassC)
2013-10-09122.226.161.188 (ClassC)
2013-10-09121.63.179.184 (ClassC)
2013-10-11122.226.161.180 (ClassC)
2013-10-11122.226.161.181 (ClassC)
2013-10-11122.226.161.182 (ClassC)
2013-10-12122.225.106.101 (ClassC)
2013-10-1461.191.190.15 (ClassC)
2013-10-17121.63.179.182 (ClassC)
2013-10-18218.92.227.252 (ClassC)
2013-10-1860.191.144.87 (ClassC)
2013-10-2260.191.144.83 (ClassC)
2013-10-2260.191.144.90 (ClassC)
2013-10-2260.191.144.84 (ClassC)
2013-10-22121.63.179.183 (ClassC)
2013-10-23121.63.160.41 (ClassC)
2013-10-2460.191.144.89 (ClassC)
2013-10-28121.63.179.185 (ClassC)
2013-11-14121.63.179.186 (ClassC)
2013-11-1460.191.144.88 (ClassC)
2013-11-1561.191.188.26 (ClassC)
2013-11-2361.191.188.42 (ClassC)
2013-12-0560.191.144.82 (ClassC)
2013-12-25221.234.42.190 (ClassC)
2013-12-2658.51.95.157 (ClassC)
2014-01-01116.10.190.62 (ClassC)
2014-01-03222.243.110.166 (ClassC)
2014-01-04183.61.133.46 (ClassC)
2014-01-1061.153.56.172 (ClassC)
2014-03-10122.226.161.184 (ClassC)
2014-03-10209.170.78.108 (ClassC)
2014-04-24125.78.240.189 (ClassC)
2014-05-03222.84.167.30 (ClassC)
2014-05-0938.125.163.139 (ClassC)
2014-05-17209.170.78.73 (ClassC)
2014-05-1738.125.163.141 (ClassC)
2014-05-1761.154.102.212 (ClassC)
2014-05-17209.170.78.77 (ClassC)
2014-06-02209.170.78.72 (ClassC)
2014-06-0361.153.56.139 (ClassC)
2014-06-038.37.231.21 (ClassC)
2014-06-0361.153.56.140 (ClassC)
2014-06-068.37.231.19 (ClassC)
2014-06-11203.130.61.17 (ClassC)
2014-06-1161.153.56.172 (ClassC)
2014-06-16203.130.61.16 (ClassC)
2014-06-268.37.231.20 (ClassC)
2014-06-268.37.231.22 (ClassC)
2014-07-07115.231.84.89 (ClassC)
2014-07-17203.130.61.21 (ClassC)
2014-07-23198.47.104.149 (ClassC)
2014-07-28198.47.104.130 (ClassC)
2014-08-09116.55.236.37 (ClassC)
2014-08-26182.92.22.32 (ClassC)
2014-08-27115.28.112.30 (ClassC)
2014-08-27223.6.249.106 (ClassC)
2019-08-28115.28.105.76 (ClassC)
2025-05-13115.29.200.128 (ClassC)

Subdomains

DateDomainIP
ud5.3lsoft.com2014-03-27222.243.110.166
tj5.3lsoft.com2014-05-17112.124.68.251
ud6.3lsoft.com2024-09-28138.113.207.62
xiazai.3lsoft.com2014-10-13213.242.77.68
down.3lsoft.com2014-01-01116.10.190.62
products.3lsoft.com2014-04-29116.10.190.62
confignew.3lsoft.com2014-10-20115.29.98.159
www.3lsoft.com2025-05-08121.43.67.197
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information