gino.entregaregistrada.ru

Private Person  (Proxy Registrant)

Domain Information

The domain gino.entregaregistrada.ru is registered by proxy through RU-CENTER-RU and was originally registered in March of 2016. Currently this domain has been known to host various forms of malware. The hosted servers are located in Tampa, Florida within the United States which resides on the Voodoo.com, Inc network.
Registrar:
RU-CENTER-RU

Server location:
Florida, United States (US)

Create date:
Thursday, March 3, 2016

Expires date:
Friday, March 3, 2017

ASN:
AS19867 VOODOO1 - Voodoo.com, Inc,US

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Razy.16934
100.00%

McAfee
Artemis!EABD8150400E
100.00%

Arcabit
Trojan.Razy.D4226
100.00%

ESET NOD32
MSIL/TrojanDownloader.Agent.AHG (variant)
100.00%

avast!
Win32:Malware-gen
100.00%

Bitdefender
Gen:Variant.Razy.16934
100.00%

Lavasoft Ad-Aware
Gen:Variant.Razy.16934
100.00%

Emsisoft Anti-Malware
Gen:Variant.Razy.16934
100.00%

F-Secure
Gen:Variant.Razy.16934
100.00%

Sophos
Mal/Generic-S
100.00%

Avira AntiVirus
TR/Dropper.MSIL.270956
100.00%

Microsoft Security Essentials
TrojanDownloader:MSIL/Banload.AF
100.00%

AegisLab AV Signature
Gen.Variant.Razy!c
100.00%

G Data
Gen:Variant.Razy.16934
100.00%

IKARUS anti.virus
Trojan-Downloader.MSIL.Agent
100.00%

The domain gino.entregaregistrada.ru has been seen to resolve to the following IP address.

192.64.147.142.voodoo.com
September 1, 2016

File downloads found at URLs served by gino.entregaregistrada.ru.

19 / 68    (Malware)

URL:
http://gino.entregaregistrada.ru/

Web server:
Apache (PHP/5.3.8)