db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru
Private Person (Proxy Registrant)
Domain Information
The domain db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru is registered by proxy through REGRU-RU and was originally registered in September of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Lauderdale, Mississippi within the United States which resides on the RIPE Network Coordination Centre network.
Registrant:
Private Person
Server location:
Mississippi, United States (US)
Create date:
Monday, September 14, 2015
Expires date:
Wednesday, September 14, 2016
ASN:
AS57062 SERVERCLUB-AS ServerClub Inc,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Amonitize.GPF (M)
100.00%
ESET NOD32
Win32/Adware.ICLoader.LV
100.00%
avast!
Win32:Adware-gen [Adw]
100.00%
Kaspersky
Trojan.Win32.SelfDel
100.00%
Sophos
Generic PUA MC (PUA)
100.00%
F-Secure
Gen:Variant.Zusy.162257
100.00%
Dr.Web
Trojan.LoadMoney.942
100.00%
VIPRE Antivirus
Trojan.Win32.Generic
100.00%
Emsisoft Anti-Malware
Gen:Variant.Zusy.162257
100.00%
Avira AntiVirus
ADWARE/ICLoader.Gen7
100.00%
Microsoft Security Essentials
Trojan:Win32/Ditsecuty
100.00%
The domain db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru has been seen to resolve to the following IP address.
File downloads found at URLs served by db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru.
URL:
http://db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru/
Web server:
nginx (PHP/5.4.44-1~dotdeb+7.1)