down.woka123.cn

Domain Information

Server location:
Guangdong, China (CN)

ASN:
AS58543 CHINATELECOM-GUANGDONG-IDC Guangdong, CN

Root domain:

Scanner detections:
Detections  (67% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Kuping.K potentially unwanted (variant)
33.33%

IKARUS anti.virus
PUA.Kuping
33.33%

Emsisoft Anti-Malware
Gen:Variant.Graftor.268197
33.33%

ESET NOD32
Win32/Kuping.K potentially unwanted application
33.33%

Norman
Gen:Variant.Graftor.268197
33.33%

Reason Heuristics
PUP.Kuping
33.33%

The domain down.woka123.cn has been seen to resolve to the following 3 IP addresses.

May 16, 2016

April 12, 2016

March 3, 2016

File downloads found at URLs served by down.woka123.cn.

1 / 68      (PUP)

3 / 68      (PUP)

2 / 68
http://down.woka123.cn/qudao/.../mrgy_306_tp.exe  (a0c9b5955a808450601e64f15ad58c17)