download.casino.redkings.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.casino.redkings.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2005. Currently this domain has been known to host various forms of malware. The hosted servers are located in Valletta, Malta within Malta which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Malta, Malta (MT)

Create date:
Saturday, May 7, 2005

Expires date:
Saturday, May 7, 2016

Updated date:
Wednesday, April 15, 2015

ASN:
AS20521 ASN-BELLNET Bellnet Limited,MT

Root domain:

Scanner detections:
Malware distribution  (57% detected)

Scan engine
Details
Detections

Kaspersky
HEUR:Trojan-Downloader.Win32.Generic, not-a-virus:Downloader.Win32.InstallFlash
100.00%

NANO AntiVirus
Trojan.Win32.DownLoader11.dlmtpk, Trojan.Win32.DownLoader11.dpapgd
83.33%

Agnitum Outpost
Trojan.DownLoader
83.33%

Avira AntiVirus
GAME/Casino.Gen
83.33%

McAfee
Artemis!AF72E8EC8630, Artemis!F52A0EE2CED0, Artemis!1563B1B7D9AC, Artemis!F4FE28693DD0, Artemis!22F638572F46
83.33%

Trend Micro House Call
Suspicious_GEN.F47V0127, Suspicious_GEN.F47V0306, TROJ_GEN.F47V1001, Suspicious_GEN.F47V0422
66.67%

SUPERAntiSpyware
Trojan.Agent/Gen-Dropper
66.67%

IKARUS anti.virus
Win32.SuspectCrc, Win32.DH, not-a-virus:Downloader.InstallFlash
50.00%

AVG
Win.Threat.High, Skodna.Casino
50.00%

herdProtect (fuzzy)
a variant of b73e2be54dfcdbf60adfa4ca83cc89a1daa491af, a variant of a4dd690ccbd1d1995da5df446e15b9e1119bc32b
33.33%

Baidu Antivirus
Trojan.Win32.Downloader
33.33%

K7 AntiVirus
Riskware
16.67%

Vba32 AntiVirus
Downloader.InstallFlash
16.67%

Bkav FE
HW32.Laneul
16.67%

Clam AntiVirus
Win.Trojan.Downloader-66692
16.67%

The domain download.casino.redkings.com has been seen to resolve to the following IP address.

December 15, 2015

File downloads found at URLs served by download.casino.redkings.com.

10 / 68    (Malware)