bhj4jig5y3kywjn.yellowneck.ru

Private Person  (Proxy Registrant)

Domain Information

The domain bhj4jig5y3kywjn.yellowneck.ru is registered by proxy through REGRU-REG-RIPN and was originally registered in August of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Edinburgh, Scotland within United Kingdom which resides on the Latin American and Caribbean IP address Regional Registry network.
Registrar:
REGRU-REG-RIPN

Server location:
Scotland, United Kingdom (GB)

Create date:
Wednesday, August 13, 2014

Expires date:
Thursday, August 13, 2015

ASN:
AS59711 FORTUNIX-AS Fortunix Networks L.P.,GB

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Dr.Web
Trojan.InstallMonster.940
100.00%

ESET NOD32
Win32/InstallMonstr.FI (variant)
100.00%

Reason Heuristics
PUP.ProfitServis.n
100.00%

The domain bhj4jig5y3kywjn.yellowneck.ru has been seen to resolve to the following IP address.

August 20, 2014

File downloads found at URLs served by bhj4jig5y3kywjn.yellowneck.ru.

URL:
http://bhj4jig5y3kywjn.yellowneck.ru/

Web server:
nginx/1.4.2 (PHP/5.4.17)