This is a summary of what was observed on somstan.cn.

Network Information

IPASNCountry
210.51.166.2479929CN
(Click on any AS number to see its FIRE report)

Other domains on this IP:

Registration Information

Analysis Information

Malicious and Suspicious URLs

URLFirst DetectedLast Detected
http://somstan.cn/sv/?spl=2&br=MSIE&vers=7.0&s=ec445bc5411c202a8361c7db463e84b4 2009-11-02 19:32:23 (same)

Exploits Detected

Sina Downloader Sina DLoader is prone to a vulnerability that can cause malicious files to be downloaded and saved to arbitrary locations BID-30223

Last URLs

http://somstan.cn/sv/ benign
http://somstan.cn/sv/index.php?s=ec445bc5411c202a8361c7db463e84b4 benign
http://somstan.cn/sv/index.php?s=b018bc976781fdac040e32c40513b310 benign
http://somstan.cn/sv/stat.php benign
http://somstan.cn/sv/Client2.jar benign
http://somstan.cn/sv/?spl=2&br=MSIE&vers=7.0&s=ec445bc5411c202a8361c7db463e84b4 malicious
http://somstan.cn/sv/pdf.php benign
http://somstan.cn/sv/index.php?s=4017985176938a491016668fc08ef81a benign

Linking Information

No information available at this time.