downlaod.tuizhong.com

Song Li

Domain Information

The domain downlaod.tuizhong.com registered by Song Li was initially registered in March of 2010 through ENAME TECHNOLOGY CO., LTD.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Nanning, Guangxi within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
ENAME TECHNOLOGY CO., LTD.

Server location:
Guangxi, China (CN)

Create date:
Tuesday, March 23, 2010

Expires date:
Monday, March 23, 2015

Updated date:
Wednesday, January 8, 2014

ASN:
AS37963 CNNIC-ALIBABA-CN-NET-AP Hangzhou Alibaba Advertising Co.,Ltd.,CN

Root domain:

Google Safe Browsing:
malware

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SHANGHAIFENGHANNETWORKINFORMATIONTECHNOLOGYSTUDIO.Installer (M), PUP (M)
100.00%

Dr.Web
BackDoor.Infector.50
50.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
50.00%

The domain downlaod.tuizhong.com has been seen to resolve to the following 6 IP addresses.

September 1, 2016

September 1, 2016

August 12, 2014

August 12, 2014

August 12, 2014

AY140721104848Z
August 12, 2014

File downloads found at URLs served by downlaod.tuizhong.com.

1 / 68      (Malware)

3 / 68      (PUP)

The following 5 files have been seen to comunicate with downlaod.tuizhong.com in live environments.

URL:
http://downlaod.tuizhong.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)