dxdown.wannianli365.com

ZhangXiuLi

Domain Information

The domain dxdown.wannianli365.com registered by ZhangXiuLi was initially registered in August of 2014 through ENAME TECHNOLOGY CO., LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tianjin, Tianjin within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
ENAME TECHNOLOGY CO., LTD.

Server location:
Tianjin, China (CN)

Create date:
Tuesday, August 26, 2014

Expires date:
Saturday, August 26, 2017

Updated date:
Thursday, May 12, 2016

ASN:
AS4837 CHINA169-BACKBONE CNCGROUP China169 Backbone,CN

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SHANGHAI.Installer (M), PUP.SHANGHAIFENGHANNETWORKINFORMATIONTECHNOLOGYSTU, PUP (M)
100.00%

The domain dxdown.wannianli365.com has been seen to resolve to the following 6 IP addresses.

September 13, 2016

September 13, 2016

no-data
May 18, 2016

May 18, 2016

no-data
May 18, 2016

no-data
May 18, 2016

File downloads found at URLs served by dxdown.wannianli365.com.

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://dxdown.wannianli365.com/cx/2016052726/.../setup_0468t6m4.exe  (953afb1d-1f88-8b87-055b-31541c6b7419_1d1c4822353e282)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)