minecraft.launcherfiles.com

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain minecraft.launcherfiles.com is registered by proxy through SHINJIRU MSC SDN BHD and was originally registered in September of 2015. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
SHINJIRU MSC SDN BHD

Server location:
Arizona, United States (US)

Create date:
Wednesday, September 16, 2015

Expires date:
Friday, September 16, 2016

Updated date:
Wednesday, September 16, 2015

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Root domain:

Google Safe Browsing:
unwanted

Scan engine
Details
Detections

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
54.55%

Dr.Web
Trojan.DownLoader17.21235, Trojan.DownLoader18.35653, Trojan.DownLoader18.60665, Trojan.DownLoader19.22290
45.45%

Kaspersky
UDS:DangerousObject.Multi.Generic
27.27%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A
9.09%

F-Secure
Application:W32/Generic.70053c248f!Online
9.09%

Rising Antivirus
PE:Malware.RDM.30!5.24[F1]
9.09%

MicroWorld eScan
Trojan.GenericKD.2806924
9.09%

nProtect
Trojan.GenericKD.2806924
9.09%

McAfee
Artemis!F858D1587B60
9.09%

Arcabit
Trojan.Generic.D2AD48C
9.09%

avast!
Win32:Dropper-gen [Drp]
9.09%

Bitdefender
Trojan.GenericKD.2806924
9.09%

Agnitum Outpost
Trojan.DownLoader
9.09%

Lavasoft Ad-Aware
Trojan.GenericKD.2806924
9.09%

Emsisoft Anti-Malware
Trojan.GenericKD.2806924
9.09%

The domain minecraft.launcherfiles.com has been seen to resolve to the following 2 IP addresses.

February 1, 2016

February 1, 2016

File downloads found at URLs served by minecraft.launcherfiles.com.

1 / 68      (Malware)
http://minecraft.launcherfiles.com/Minecraft.exe  (318926760319aadd85f86c7e021f754f)

1 / 68
http://minecraft.launcherfiles.com/Minecraft.exe  (6762c53af17c76d60b76e93d476b00fd)

15 / 68    (PUP)
http://minecraft.launcherfiles.com/Minecraft.exe  (f858d1587b60ec1c8260ddf76d99e4f7)

1 / 68
http://minecraft.launcherfiles.com/Minecraft.exe  (18476b5c8278fe6ebeb1f5b4f71795fb)

1 / 68      (inconclusive)
http://minecraft.launcherfiles.com/Minecraft.exe  (dfc6c22683231c71e6844e9dedf9807a)

3 / 68      (inconclusive)
http://minecraft.launcherfiles.com/Minecraft.exe  (03f21439a78c9d4e4e5d830ee39d03b2)

2 / 68      (inconclusive)
http://minecraft.launcherfiles.com/Minecraft.exe  (80b37a96b7103a55c83460ca7beb0c79)

1 / 68
http://minecraft.launcherfiles.com/Minecraft.exe  (1da8ff36f5868ff7f8da06ee2a61e844)

2 / 68      (inconclusive)
http://minecraft.launcherfiles.com/Minecraft.exe  (abbea78e8ff2dcc1838c3bd9fb53fafc)

2 / 68      (inconclusive)
http://minecraft.launcherfiles.com/Minecraft.exe  (f844396d3de0afeb265f7dd432feba4d)

2 / 68      (false positives)

URL:
http://minecraft.launcherfiles.com/

SSL certificate subject:
CN=sni34262.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx