db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru

Private Person  (Proxy Registrant)

Domain Information

The domain db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru is registered by proxy through REGRU-RU and was originally registered in September of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Lauderdale, Mississippi within the United States which resides on the RIPE Network Coordination Centre network.
Registrar:
REGRU-RU

Server location:
Mississippi, United States (US)

Create date:
Monday, September 14, 2015

Expires date:
Wednesday, September 14, 2016

ASN:
AS57062 SERVERCLUB-AS ServerClub Inc,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Amonitize.GPF (M)
100.00%

ESET NOD32
Win32/Adware.ICLoader.LV
100.00%

avast!
Win32:Adware-gen [Adw]
100.00%

Kaspersky
Trojan.Win32.SelfDel
100.00%

Sophos
Generic PUA MC (PUA)
100.00%

F-Secure
Gen:Variant.Zusy.162257
100.00%

Dr.Web
Trojan.LoadMoney.942
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Emsisoft Anti-Malware
Gen:Variant.Zusy.162257
100.00%

Avira AntiVirus
ADWARE/ICLoader.Gen7
100.00%

Microsoft Security Essentials
Trojan:Win32/Ditsecuty
100.00%

The domain db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru has been seen to resolve to the following IP address.

September 16, 2015

File downloads found at URLs served by db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru.

URL:
http://db209e5c56969095bc88c0ee971cb31b.sjkfhksdfh.ru/

Web server:
nginx (PHP/5.4.44-1~dotdeb+7.1)