c3.97you.net

Xiamen Privacy Protection Service Co. Ltd.

Domain Information

The domain c3.97you.net registered by Xiamen Privacy Protection Service Co. Ltd. was initially registered in November of 2014 through ENAME TECHNOLOGY CO., LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tianjin, Tianjin within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
ENAME TECHNOLOGY CO., LTD.

Server location:
Tianjin, China (CN)

Create date:
Friday, November 14, 2014

Expires date:
Monday, November 14, 2016

Updated date:
Thursday, November 12, 2015

ASN:
AS4837 CHINA169-BACKBONE CNCGROUP China169 Backbone,CN

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

avast!
Win32:Malware-gen
100.00%

G Data
Win32.Application.RiyueDowner, Gen:Variant.Symmi.60792
100.00%

AegisLab AV Signature
Adware.W32.Agent!c, Gen.Variant.Symmi!c
100.00%

ESET NOD32
Win32/Gaofenquming.B potentially unwanted (variant)
100.00%

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F], PE:Malware.Generic(Thunder)!1.A1C4 [F]
100.00%

IKARUS anti.virus
PUA.Gaofenquming
100.00%

Kaspersky
not-a-virus:AdWare.Win32.Agent
50.00%

Dr.Web
Adware.Downware.14102
50.00%

Sophos
Generic PUA HJ (PUA)
50.00%

Avira AntiVirus
TR/Dldr.Banload.rxdk
50.00%

Vba32 AntiVirus
AdWare.Agent
50.00%

AVG
Generic
50.00%

Panda Antivirus
Generic Suspicious
50.00%

MicroWorld eScan
Gen:Variant.Symmi.60792
50.00%

The domain c3.97you.net has been seen to resolve to the following 6 IP addresses.

July 21, 2016

July 2, 2016

no-data
June 7, 2016

no-data
June 7, 2016

June 7, 2016

no-data
June 7, 2016

File downloads found at URLs served by c3.97you.net.

15 / 68    (PUP)
http://c3.97you.net/.../????X5_18@27420.exe  (sogou_pinyin_79c_8100000377427033054.exe)

14 / 68    (PUP)
http://c3.97you.net/.../??????????_18@29057.exe  (超级兔子2013 2.0.0.3_3@2636.exe)

15 / 68    (PUP)
http://c3.97you.net/.../ie activex??_18@183881.exe  (sogou_pinyin_79c_8100000377427033054.exe)

15 / 68    (PUP)
http://c3.97you.net/.../ ??GHOST_18@6026.exe  (sogou_pinyin_79c_8100000377427033054.exe)

14 / 68    (PUP)
http://c3.97you.net/.../???7_18@24772.exe  (超级兔子2013 2.0.0.3_3@2636.exe)

URL:
http://c3.97you.net/

Web server:
fastmirror 2014-10-15_2014-10-15