mrn7nm2o0i4llfy.verbif.ru

CORLEON GROUP LTD

Domain Information

The domain mrn7nm2o0i4llfy.verbif.ru registered by CORLEON GROUP LTD was initially registered in June of 2014 through REGRU-REG-RIPN. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
REGRU-REG-RIPN

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Saturday, June 28, 2014

Expires date:
Sunday, June 28, 2015

ASN:
AS59711 FORTUNIX-AS Fortunix Networks L.P.,GB

Root domain:

Google Safe Browsing:
malware

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/InstallMonstr.EN potentially unwanted application, Win32/Hoax.ArchSMS.AHD.Gen application
66.67%

Malwarebytes
Trojan.SMSHoax
66.67%

avast!
Win32:InstallMonstr-ET [PUP], Win32:Malware-gen
66.67%

Clam AntiVirus
Win.Trojan.Agent-730660
66.67%

Reason Heuristics
PUP.Optional.Installer.M
33.33%

Comodo Security
ApplicUnwnt.Win32.Hoax.ArchSMS.AHBA
33.33%

Panda Antivirus
Trj/Genetic.gen
33.33%

Kaspersky
Trojan.Win32.Inject
33.33%

MicroWorld eScan
Gen:Variant.Graftor.140286
33.33%

Lavasoft Ad-Aware
Gen:Variant.Graftor.140286
33.33%

F-Secure
Gen:Variant.Graftor.140286
33.33%

G Data
Win32.Application.Installmonstr
33.33%

The domain mrn7nm2o0i4llfy.verbif.ru has been seen to resolve to the following IP address.

July 3, 2014

File downloads found at URLs served by mrn7nm2o0i4llfy.verbif.ru.

URL:
http://mrn7nm2o0i4llfy.verbif.ru/

Web server:
nginx/1.4.2 (PHP/5.4.17)