gclubbz.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain gclubbz.com is registered by proxy through ENOM, INC. and was originally registered in October of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States.
Registrar:
ENOM, INC.

Server location:
Texas, United States (US)

Create date:
Wednesday, October 21, 2015

Expires date:
Friday, October 21, 2016

Updated date:
Saturday, November 21, 2015

ASN:
AS6364 ATLANTIC-NET - Atlantic.net, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

K7 AntiVirus
Trojan
100.00%

avast!
Win32:PUP-gen [PUP]
100.00%

Clam AntiVirus
Win.Adware.Agent-58870
100.00%

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
100.00%

Avira AntiVirus
TR/Agent.24445898
100.00%

McAfee
Artemis!30270D7659D2
100.00%

Qihoo 360 Security
Win32/Trojan.25c
100.00%

The domain gclubbz.com has been seen to resolve to the following IP address.

February 7, 2016

File downloads found at URLs served by gclubbz.com.

7 / 68      (PUP)

URL:
http://gclubbz.com/

Title:
“สมัคร Gclub คาสิโนออนไลน์ รับฟรี 50% โทร 083-5555570 083-5555572”

Description:
“Gclub Royal คาสิโนออนไลน์ จีคลับ บาคาร่า แจ็คพ็อตเป็นล้านพร้อมโปรโมชั่นมากมาย เล่น Gclub ฝาก-ถอน รวดเร็ว การเงินมั่นคง ตลอด 24 ชม.”

SSL certificate subject:
CN=gclubbz.com, OU=PositiveSSL, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
Apache/2.2.31 (Unix) mod_ssl/2.2.31 OpenSSL/1.0.1e-fips mod_bwlimited/1.4 (PHP/5.4.45)