gameen.ru

Private Person  (Proxy Registrant)

Domain Information

The domain gameen.ru is registered by proxy through REGRU-RU and was originally registered in April of 2015. Currently this domain has been known to host various forms of malware. The hosted servers are located in Frankfurt Am Main, Hessen within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
REGRU-RU

Server location:
Hessen, Germany (DE)

Create date:
Tuesday, April 21, 2015

Expires date:
Thursday, April 21, 2016

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.GenericKD.1873114
100.00%

nProtect
Trojan.GenericKD.1873114
100.00%

McAfee
Artemis!3D687F274882
100.00%

Arcabit
Trojan.Generic.D1C94DA
100.00%

avast!
BV:Deleter-EA [Trj]
100.00%

Bitdefender
Trojan.GenericKD.1873114
100.00%

Lavasoft Ad-Aware
Trojan.GenericKD.1873114
100.00%

Emsisoft Anti-Malware
Trojan.GenericKD.1873114
100.00%

Comodo Security
UnclassifiedMalware
100.00%

F-Secure
Trojan.GenericKD.1873114
100.00%

Dr.Web
Trojan.Hosts.33902
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

ViRobot
Trojan.Win32.S.Agent.3606211[h]
100.00%

G Data
Trojan.GenericKD.1873114
100.00%

ESET NOD32
BAT/HostsChanger.A potentially unsafe
100.00%

The domain gameen.ru has been seen to resolve to the following IP address.

lh27045.voxility.net
April 5, 2016

File downloads found at URLs served by gameen.ru.

17 / 68    (Malware)
http://gameen.ru/1402902071h/.../cntnt  (minecraft-1.7.2-v0.7.3.exe)

17 / 68    (Malware)
http://gameen.ru/1402413037j/.../cntnt  (minecraft-1.7.2-v0.7.3.exe)

17 / 68    (Malware)
http://gameen.ru/1403245574o/.../cntnt  (minecraft-1.7.2-v0.7.3.exe)

URL:
http://gameen.ru/

Title:
“gameen.ru”

Web server:
nginx/1.9.6 (PHP/5.4.45-1~dotdeb+7.1)