Help RSS API Feed Maltego Contact                        

Domain > x.bidswitch.net

More information on this domain is in AlienVault OTX

Is this malicious?

Most users have voted this as not malicious

Files that talk to x.bidswitch.net

MD5A/V
4e8177209842471212715c5f7f2d8801
212c3a5c342e93f7398111083f37fd90
3ccce94d979e925d13b16f7f1b99cbe6[Type_VBS_Autorun] [VBS.Dunihi] [VBS_JENXCUS.NS] [VBS/Jenxcus-C] [UnclassifiedMalware] [VBS.Autoruner.161] [VBS/Clicker.nauzs] [Worm:VBS/Jenxcus.K] [Trojan.IEVC-3] [VBS/Autorun.BC.worm] [VBS/Kryptik.L]
f58fb6cfc42c049c1442d6ce54ea429d[W32/new-malware!Maximus] [TR/Graftor.2081254] [Trojan.Packed.194] [Win32/DH{fGSBEiV+ICMsgRNcV04}] [Trojan-Ransom.Win32.Blocker] [Artemis!F58FB6CFC42C] [Trojan.Packed!N6hauVnIyeg] [WS.Reputation.1] [Trojan.Win32.Graftor.czubpq] [Heuristic.LooksLike.Win32.Suspicious.J] [Win32/Trojan.fad]
1c5db9ff8dd5278091bac2978f46a0b6[W32.ATVC_OnsurotLTL.Trojan] [Trojan.Win32.Cidox.amkl] [Trojan.Win32.Heur.098] [PE:Malware.Obscure!1.9C59] [Trojan.DownLoad3.35002] [Trojan/Win32.MDA]
b30321ea3b1b97efcaf267cbc6f126a5[W32.Clod314.Trojan.aa20] [Trojan.Proxy.Sobit.F] [Trojan-Proxy/W32.Sobit.32560] [Dialer-RAS.di] [Trojan.Sobit.Win32.8] [Trojan/Proxy.Sobit.f] [Trojan.Win32.Sobit.dppi] [W32/Spyware-WebActiveClick-base] [Dialer.WSV] [Possible_Virus] [Trojan-Proxy.Win32.Sobit.f] [Trojan.PR.Sobit!LacnirW6IP4] [Trojan.Win32.Proxy.19968.W] [PE:Trojan.Proxy.Sobit.f!1073922148] [TrojWare.Win32.Small.BK0] [Trojan.Tibsem] [TR/Small.BK] [Dial/Tibsys-I] [TrojanProxy.Sobit.o] [Trojan[Proxy]/Win32.Sobit] [Win32.Troj.Sobit.f.(kcloud)] [TrojanProxy:Win32/Sobit.F] [Win-Trojan/Sobit.32560] [TrojanProxy.Sobit] [Trojan-Proxy.Win32.Sobit] [Malware_fam.gw] [Proxy.KZ] [Trojan.Win32.Sobit.Abf] [Win32/Trojan.ec5]
aff094c99c7a6f1196c5ec0ead6977a6
913cd934dcb28c192a879e3bf80193c1[Adware.iBryte.DK4] [Artemis!913CD934DCB2] [PUP.Optional.OptimumInstaller.A] [PUA.Downloader!] [W32/A-512ed8f8!Eldorado] [Application.Win32.IBryte.U] [Trojan.Packed.28561] [BehavesLike.Win32.PWSZbot.dh] [Adware/iBryte.bxoq] [Win32.Adware.Bp-installer.Jblm] [Hacktool.Win32.Downloader.AR] [Win32/Application.IM.d3a]
5989dc0d2666bb6425369bceb7f3810e[W32/Sefnit.C] [Trojan.MulDrop4.11744] [W32/Sefnit.ZOEY-4762]
f64dc3bce4b075db1db8f7d08b142a0d[PWSZbot-FABG!F64DC3BCE4B0] [Spyware.Zbot.ED] [WS.Reputation.1] [Win32/Poweliks.B] [Backdoor.Win32.PMax]
5de8c552d5aa79450f9aca23bee6c566[Trojan.Inject.HD] [Backdoor.Prosti.L] [Artemis!5DE8C552D5AA] [W32/Themida_Packed!Eldorado] [Backdoor.Trojan] [PUA.Packed.Themida-1] [Trojan.Win32.Scar.fuqm] [Sus/ComPack-M] [UnclassifiedMalware] [Win32.HLLW.Mistri.25] [Trojan.Backdoor.Prosti!IK] [Trojan/Scar.ch] [Backdoor:Win32/Prosti.L] [Trojan/Win32.Prosti] [Trojan.Backdoor.Prosti] [W32/Prosti.NDX] [Dropper.ErPack.AI]
e4d25b804a8c60f8128deac4fc36029c
8f78b1665fd080ffc149f0ec7ec694cb
56c3441eb39e5cf95045bda5174d3ba2[W32/Pate.a] [W32.Perite.A] [W32/Pate.A] [Virus.Win32.Parite.a] [Win32.Parite.A] [Win32/Parite.A] [W32/Parite.A] [W32.Pinfi] [W32/Pinfi.B] [Win32:Parite] [Win32_Parite_A] [W32.Parite.B] [Win32.Parite.1] [W32/Parite] [PE_PARITE.A] [Heuristic.LooksLike.Win32.SuspiciousPE.H!87] [W32/Parite-A] [Win32/Pinfi.B] [Win32/Parite.a] [Virus/Win32.Parite] [Virus.Win32.Sality!IK] [Virus:Win32/Parite.A] [Win32/Parite.B] [Win32.Parite.a] [Virus.Win32.Sality] [W32/Parite.fam] [Win32/Parite] [W32/Parite.F]
676e4b94f8067545d0090ed6351793b1[Worm.Win32.Fujack!O] [W32/Fujacks.ah] [Worm.AutoRun] [Trojan-Downloader.Win32.Small] [Trojan.Win32.Fujack.lwgy] [W32/SelfStarterInternetTrojan!M] [W32.Fubalca] [Smalltroj.BFXG] [Trojan.Small-1570] [Worm.Win32.Fujack.av] [Worm.Fujack!T8l/EwDWgE4] [Win32.WhBoy.AL] [Mal/Dropper-AB] [Trojan.DownLoader.20808] [Worm.MyInfect.az.106496] [Win-Trojan/Xema.variant] [Virus.Win32.Heur.l] [Worm.Fujack] [Worm.Win32.Fujack.AKnR] [PE:Worm.Win32.Autorun.fng!1075221508] [Trojan-PWS.Win32.OnLineGames] [W32/Fujack.AV] [Worm/Butileg.M] [Trj/CI.A] [Win32/Trojan.Downloader.332]
0106db8b1a382937be9d9e99155dc546[Trojan-PSW.Win32.Tepfer!O] [Backdoor.Kelihos.F5] [Kelihos.BKDR] [Trojan.Win32.Hlux.dimrpg] [Win32.Backdoor.Hlux.Kc] [BackDoor.Slym.14056] [Backdoor:Win32/Kelihos.F] [Backdoor/Win32.Kelihos] [SScope.Malware-Cryptor.Hlux] [Backdoor.Win32.Hlux.AHwG] [Backdoor.Win32.Kelihos] [W32/Kryptik.BJWM!tr]
155f5a30dab6d7cd09d1f85e59a99322[W32/Pate.a] [Virus/W32.Parite] [W32.Perite.A] [Virus.Win32.Parite.a] [W32/Pate.A] [Win32.Parite.A] [Win32/Parite.A] [W32/Parite.A] [Virus.Win32.Sality!IK] [W32/Pinfi.B] [Win32:Parite] [Win32_Parite_A] [W32.Parite.B] [Virus.Win32.Parite.~A] [Win32.Parite.1] [W32/Parite] [PE_PARITE.A] [Heuristic.LooksLike.Win32.SuspiciousPE.H!87] [W32/Parite-A] [Win32/Pinfi.B] [Win32/Parite.a] [Virus:Win32/Parite.A] [Win32/Parite.B] [Win32.Parite.a] [Virus.Win32.Sality] [W32/Parite.fam] [Win32/Parite]
3bddb9e58ae95480e816a972b7888786[Worm.Win32.Fujack!O] [W32/Fujacks.ah] [Worm.AutoRun] [Worm.Fujack!T8l/EwDWgE4] [W32/SelfStarterInternetTrojan!M] [W32.Fubalca] [Smalltroj.BFXG] [Trojan.Win32.Fujack.lwgy] [Mal/Dropper-AB] [Trojan.DownLoader.20808] [Trojan-Downloader.Win32.Small] [Worm.MyInfect.az.106496] [Win-Trojan/Xema.variant] [Worm.Fujack] [Trj/CI.A] [PE:Worm.Win32.Autorun.fng!1075221508] [Trojan-PWS.Win32.OnLineGames] [W32/Fujack.AV] [Worm/Butileg.M] [Worm.Win32.Fujack.AAw] [Virus.Win32.Viking.LF]
4db19c0167b126fb05326f829de9f453[W32.Clodbd2.Trojan.3721] [Dialer.RAS] [Trojan.Downloader.Small.UF] [Artemis!4DB19C0167B1] [Trojan/Proxy.Sobit.h] [Riskware.Win32.Tibs.utqa] [W32/Trojan.BEKI] [Adware.Sa] [DIALER_RAS] [Win32:Tibs-ACF] [Trojan-Proxy.Win32.Sobit.h] [Trojan.PR.Sobit!JuOpoicn1uc] [TrojWare.Win32.TrojanProxy.Sobit.h] [Trojan.DownLoader.589] [TR/Dldr.Small.UF] [TrojanProxy.Sobit.f] [Trojan[Proxy]/Win32.Sobit] [Win32.HeurC.KVM003.a.(kcloud)] [TrojanProxy:Win32/Sobit.H] [W32/Trojan.SYHQ-1690] [Win32/SillyDl.OX] [TrojanProxy.Sobit] [Trj/CI.A] [not-a-virus:Porn-Dialer.Win32.Tibs] [Malware_fam.gw] [Proxy.AMYY] [Trojan.Win32.Sobit.Akr]
d8062f01439148efce2b87248ea0f1f7

Whois

PropertyValue
NameMouzykantskii, Boris
Organization IPonWeb Ltd.
Email boris.muz@gmail.com
Address 15 Queens Rd
Zip Code CV1 3DE
City Coventry
State West Midlands
Country GB
Phone +44.1926853957
NameServer NS7.IPONWEB.NET
Created 2012-09-02 23:31:46
Changed 2015-04-16 16:42:20
Expires 2021-09-02 00:00:00
Registrar NETWORK SOLUTIONS, L

DNS Resolutions

DateIP Address
2013-08-185.9.12.209 (ClassC)
2013-09-1495.131.123.37 (ClassC)
2014-01-1723.251.130.195 (ClassC)
2014-03-2154.85.82.173 (ClassC)
2014-05-0195.131.123.50 (ClassC)
2014-06-0295.131.123.49 (ClassC)
2014-07-0123.251.136.174 (ClassC)
2014-07-1323.251.141.112 (ClassC)
2014-07-1423.251.137.255 (ClassC)
2014-11-1454.193.99.175 (ClassC)
2015-05-0554.193.99.175 (ClassC)
2015-05-2554.84.145.193 (ClassC)
2015-07-1054.193.24.118 (ClassC)
2015-07-1454.193.88.38 (ClassC)
2015-07-1554.84.148.104 (ClassC)
2016-11-0552.58.205.63 (ClassC)
2016-11-0552.58.230.40 (ClassC)
2019-06-0435.156.41.167 (ClassC)
2019-06-0452.29.50.90 (ClassC)
2019-07-0352.57.147.248 (ClassC)
2020-07-0518.195.187.61 (ClassC)
2020-07-0935.157.226.135 (ClassC)
2021-12-1818.184.229.61 (ClassC)
2022-06-113.72.114.165 (ClassC)
2022-10-163.127.179.193 (ClassC)
2022-11-2835.157.180.193 (ClassC)
2023-02-113.64.241.39 (ClassC)
2023-04-0418.194.170.163 (ClassC)
2023-05-0752.58.240.126 (ClassC)
2023-07-3018.192.109.4 (ClassC)
2023-08-1418.157.146.236 (ClassC)
2023-11-1018.184.81.93 (ClassC)
2023-11-2852.57.126.227 (ClassC)
2023-12-2552.59.171.198 (ClassC)
2024-01-133.68.7.12 (ClassC)
2024-05-0735.212.133.238 (ClassC)
2025-08-1235.212.160.220 (ClassC)

Subdomains

DateDomainIP
sb2.bidswitch.net2024-07-21204.246.191.88
aws-ca.bidswitch.net2025-05-0535.212.182.232
pool.grid-data.bidswitch.net2025-08-0435.212.203.54
pdc.bidswitch.net2025-07-0435.212.244.20
gce-nl-sync.bidswitch.net2025-08-1035.214.136.108
aws-fr-sync.bidswitch.net2023-12-183.78.15.192
us-east-sync.bidswitch.net2025-07-0135.211.202.130
us-west-sync.bidswitch.net2024-04-1935.212.133.238
eu-sync.bidswitch.net2025-08-1235.214.136.108
gce-sc.bidswitch.net2025-05-0535.211.114.141
ghent-gce-sc.bidswitch.net2025-04-0635.211.200.231
grid.bidswitch.net2024-10-0774.119.118.93
media.grid.bidswitch.net2021-09-1618.192.135.64
gce-nl.bidswitch.net2025-05-0435.214.222.44
ghent-gce-nl.bidswitch.net2025-04-2835.214.230.116
grid-use.vip.bidswitch.net2024-11-2535.211.101.18
grid-eu.vip.bidswitch.net2024-11-2535.214.180.109
user-data-apac-jp.bidswitch.net2025-07-0835.213.7.90
gce-jp.bidswitch.net2025-05-2735.213.120.246
r.bidswitch.net2025-07-2835.212.154.245
use-gce-sc.r.bidswitch.net2025-05-0935.211.118.13
eu-gce-nl.r.bidswitch.net2025-02-1535.214.163.35
usw-gce-or.r.bidswitch.net2025-08-0435.212.154.245
useast-aws1-user.bidswitch.net2025-05-0735.211.114.141
useast-aws2-user.bidswitch.net2025-06-1735.211.114.141
apac-jp-user.bidswitch.net2014-10-0354.64.154.250
us-west-user.bidswitch.net2025-03-1435.212.182.232
aws-fr.bidswitch.net2025-06-2335.214.222.44
staging-ghent-aws-fr.bidswitch.net2025-07-2934.1.239.25
gce-or.bidswitch.net2025-05-1635.212.182.232
ghent-gce-or.bidswitch.net2025-04-2235.212.198.217
us-west.bidswitch.net2024-09-0635.212.224.4
user-data-us-west.bidswitch.net2025-07-0735.212.160.220
user-data-eu.bidswitch.net2025-07-2935.214.136.108
pdc-usw.bidswitch.net2025-07-0535.212.244.20
www.bidswitch.net2024-07-14185.217.41.108
x.bidswitch.net2014-05-0195.131.123.50
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information