feidowns.org

WhoisGuard, Inc.  (Proxy Registrant)

Domain Information

The domain feidowns.org is registered by proxy through eNom, Inc.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Wasilla, Alaska within the United States which resides on the Level 3 Communications, Inc. network.
Registrar:
eNom, Inc.

Server location:
Alaska, United States (US)

ASN:
AS21740 ENOMAS1 - eNom, Incorporated,US

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

K7 AntiVirus
Trojan , Trojan-Downloader
100.00%

ESET NOD32
Win32/ExtenBro.BB (variant), Win32/TrojanDownloader.Agent.BQQ (variant)
100.00%

avast!
Win32:GenMalicious-LZO [Trj], Win32:Malware-gen
100.00%

Agnitum Outpost
Trojan.ExtenBro, Trojan.DL.Agent
100.00%

Avira AntiVirus
TR/Dropper.Gen
100.00%

Fortinet FortiGate
W32/ExtenBro.BB!tr, PossibleThreat.SB!tr.dldr
100.00%

AVG
Downloader.Rozena, Downloader.Generic14
100.00%

Bkav FE
W32.VuspirtasLTC.Trojan
50.00%

MicroWorld eScan
Gen:Variant.Graftor.185088
50.00%

Quick Heal
Trojan.Kilim.r6
50.00%

McAfee
Artemis!59E1CC1FF108
50.00%

Zillya! Antivirus
Trojan.ExtenBro.Win32.3086
50.00%

Arcabit
Trojan.Graftor.D2D300
50.00%

NANO AntiVirus
Trojan.Win32.DownLoader12.dthnmr
50.00%

Kaspersky
HEUR:Trojan.Script.Generic
50.00%

The domain feidowns.org has been seen to resolve to the following IP address.

April 15, 2016

File downloads found at URLs served by feidowns.org.

7 / 68      (Malware)
http://feidowns.org/winhls.exe  (de003c3fb6ff8b7d295b615e747eb9d8)

31 / 68    (Malware)
http://feidowns.org/Installwimyml.exe  (59e1cc1ff108bd25380856f66fcf7260)

URL:
http://feidowns.org/

Google Analytics:
UA-2249740

Title:
“Feidowns.org”

Description:
“Find Cash Advance, Debt Consolidation and more at Feidowns.org. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Feidowns.org is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 685 related domains