jp.config.371pub.com

Li Pei

Domain Information

The domain jp.config.371pub.com registered by Li Pei was initially registered in September of 2014 through HICHINA ZHICHENG TECHNOLOGY LTD.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Ningbo, Zhejiang within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
HICHINA ZHICHENG TECHNOLOGY LTD.

Server location:
Zhejiang, China (CN)

Create date:
Tuesday, September 16, 2014

Expires date:
Friday, September 16, 2016

Updated date:
Tuesday, September 1, 2015

ASN:
AS4134 CHINANET-BACKBONE No.31,Jin-rong Street,CN

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Graftor.172417
100.00%

Bitdefender
Gen:Variant.Graftor.172417
100.00%

K7 AntiVirus
Riskware
100.00%

Agnitum Outpost
Trojan.Rogue
100.00%

Norman
Troj_Generic.YMGSM
100.00%

Trend Micro House Call
TROJ_GEN.R000C0EBF15
100.00%

avast!
Win32:Trojan-gen
100.00%

Lavasoft Ad-Aware
Gen:Variant.Graftor.172417
100.00%

Comodo Security
UnclassifiedMalware
100.00%

F-Secure
Gen:Variant.Graftor.172417
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Trend Micro
TROJ_GEN.R000C0EBF15
100.00%

Emsisoft Anti-Malware
Gen:Variant.Graftor.172417
100.00%

Avira AntiVirus
TR/Rogue.12856
100.00%

G Data
Gen:Variant.Graftor.172417
100.00%

The domain jp.config.371pub.com has been seen to resolve to the following 4 IP addresses.

April 19, 2016

April 19, 2016

April 19, 2016

April 19, 2016

File downloads found at URLs served by jp.config.371pub.com.

17 / 68    (Malware)
http://jp.config.371pub.com/.../ec.exe  (a09ef089614bed08919ca50920dacd16)

URL:
http://jp.config.371pub.com/

Web server:
nginx