81787fef6cdfbd32b86d85202b1846ea.burningcube.ru

Private Person  (Proxy Registrant)

Domain Information

The domain 81787fef6cdfbd32b86d85202b1846ea.burningcube.ru is registered by proxy through REGRU-RU and was originally registered in March of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Lauderdale, Mississippi within the United States which resides on the RIPE Network Coordination Centre network.
Registrar:
REGRU-RU

Server location:
Mississippi, United States (US)

Create date:
Monday, March 30, 2015

Expires date:
Wednesday, March 30, 2016

ASN:
AS57062 SERVERCLUB-AS ServerClub Inc,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallCube.ConsortiumGroup (M), PUP.ICLoader.InfoResu (M), PUP.ICLoader.Softstor (M), PUP.InstallCube.TREYSNK (M)
100.00%

Dr.Web
Trojan.InstallCube.1023
33.33%

avast!
Win32:Malware-gen
16.67%

The domain 81787fef6cdfbd32b86d85202b1846ea.burningcube.ru has been seen to resolve to the following 2 IP addresses.

May 21, 2016

mypennystocks.mobi
February 25, 2016

File downloads found at URLs served by 81787fef6cdfbd32b86d85202b1846ea.burningcube.ru.

URL:
http://81787fef6cdfbd32b86d85202b1846ea.burningcube.ru/

Web server:
nginx (PHP/5.6.15-1~dotdeb+7.1)