796.zl8xewr9.huojiprogresso.com
Whois protection, this company does not own this domain name s.r.o.
Domain Information
The domain 796.zl8xewr9.huojiprogresso.com registered by Whois protection, this company does not own this domain name s.r.o. was initially registered in January of 2016 through HEBEI GUOJI MAOYI (SHANGHAI) LTD DBA HEBEIDOMAINS.COM. Currently this domain has been known to host various forms of malware. The hosted servers are located in Beaumaris, Victoria within Australia which resides on the Asia Pacific Network Information Centre network.
Registrant:
Whois protection, this company does not own this domain name s.r.o.
Registrar:
HEBEI GUOJI MAOYI (SHANGHAI) LTD DBA HEBEIDOMAINS.COM
Server location:
Victoria, Australia (AU)
Create date:
Sunday, January 3, 2016
Expires date:
Tuesday, January 3, 2017
Updated date:
Sunday, January 3, 2016
ASN:
AS133618 TRELLIAN-AS-AP Trellian Pty. Limited,AU
Scanner detections:
Malware distribution (100% detected)
Scan engine
Details
Detections
avast!
Win32:Malware-gen
100.00%
Kaspersky
Trojan.Win32.Kovter
100.00%
ESET NOD32
Win32/Injector.CPKF trojan
100.00%
Reason Heuristics
Threat.Win.Reputation.IMP
100.00%
The domain 796.zl8xewr9.huojiprogresso.com has been seen to resolve to the following IP address.
lb-182-241.above.com
January 4, 2016
File downloads found at URLs served by 796.zl8xewr9.huojiprogresso.com.
The following 12 files have been seen to comunicate with 796.zl8xewr9.huojiprogresso.com in live environments.
URL:
http://796.zl8xewr9.huojiprogresso.com/
Title:
“huojiprogresso.com”