random.backupcdn.com
WHOIS PRIVACY PROTECTION SERVICE, INC. (Proxy Registrant)
Domain Information
The domain random.backupcdn.com is registered by proxy through ENOM, INC. and was originally registered in July of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in London, England within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrant:
WHOIS PRIVACY PROTECTION SERVICE, INC.
Server location:
England, United Kingdom (GB)
Create date:
Monday, July 7, 2014
Expires date:
Thursday, July 7, 2016
Updated date:
Thursday, December 10, 2015
ASN:
AS54104 AS-NETDNA - netDNA,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Bundle.Installer.Installer.Meta (M), PUP.Optional.Bundle.Installer.Meta (L), PUP.Bundler.Installer.Installer.Meta (L), PUP.AffiliateBundler.Installer.Meta (M), PUP.BundledOffer.Installer.Installer.Meta (M)
92.00%
VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
10.00%
NANO AntiVirus
Riskware.Nsis.Unwanted.dshbdc
10.00%
SUPERAntiSpyware
PUP.BundleInstaller
10.00%
Dr.Web
Program.Unwanted.713, Detection.Undefined
10.00%
Baidu Antivirus
PUA.Win32.MyPCBackup, Adware.Win32.Genome
8.00%
ESET NOD32
Win32/MyPCBackup.E potentially unwanted
8.00%
Kaspersky
Trojan-Downloader.Win32.Genome
8.00%
Sophos
Generic PUA GD, Generic PUA FI, Generic PUA OM (PUA), Generic PUA AG (PUA)
8.00%
Panda Antivirus
Generic Suspicious
8.00%
G Data
Win32.Trojan.Agent.259OSN, Win32.Trojan.Agent.TTGZBW, Win32.Trojan.Agent.E0O4AL
6.00%
ESET NOD32
Win32/MyPCBackup.E potentially unwanted application
4.00%
Qihoo 360 Security
HEUR/QVM42.1.Malware.Gen
2.00%
avast!
Win32:Malware-gen
2.00%
The domain random.backupcdn.com has been seen to resolve to the following 2 IP addresses.
94.31.29.41.IPYX-077437-ZYO.above.net
June 7, 2016
94.31.29.237.IPYX-077437-ZYO.above.net
January 2, 2016
File downloads found at URLs served by random.backupcdn.com.
The following 23 files have been seen to comunicate with random.backupcdn.com in live environments.
URL:
http://random.backupcdn.com/
Web server:
NetDNA-cache/2.2
Related Domains