rd.jiguangie.com

chongqingquwankejiyouxiangongsi

Domain Information

The domain rd.jiguangie.com registered by chongqingquwankejiyouxiangongsi was initially registered in May of 2013 through ENAME TECHNOLOGY CO., LTD.. The hosted servers are located in Beijing, Beijing within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
ENAME TECHNOLOGY CO., LTD.

Server location:
Beijing, China (CN)

Create date:
Monday, May 6, 2013

Expires date:
Friday, May 6, 2016

Updated date:
Monday, April 20, 2015

ASN:
AS4808 CHINANET-IDC-BJ-AP IDC, China Telecommunications Corporation,CN

Root domain:

Google Safe Browsing:
malware,unwanted

Scan engine
Details
Detections

IKARUS anti.virus
Backdoor.Win32.Agobot, Trojan.SuspectCRC, Trojan-Downloader, PUA.Kuping
72.73%

Reason Heuristics
PUP.SHANGRAOWANGJUTIANXIATECHNOLOGYCOLTD.Installer (M), PUP.SHANGRAOWANGJUTIANXIATECHNOLOGYCOLTD (M), PUP.SHANGRAO (M)
45.45%

McAfee
PUP-KPToolBar, Artemis!EFF3C4DC7AD5
18.18%

Qihoo 360 Security
Trojan.Generic
9.09%

MicroWorld eScan
Trojan.GenericKD.2848251
9.09%

nProtect
Trojan.GenericKD.2848251
9.09%

VIPRE Antivirus
Trojan.Win32.Generic
9.09%

NANO AntiVirus
Trojan.Win32.Wsgame.dyktlh
9.09%

F-Prot
W32/Agent.EW.gen
9.09%

avast!
Win32:Evo-gen [Susp]
9.09%

G Data
Trojan.GenericKD.2848251
9.09%

Bitdefender
Trojan.GenericKD.2848251
9.09%

Lavasoft Ad-Aware
Trojan.GenericKD.2848251
9.09%

Emsisoft Anti-Malware
Trojan.GenericKD.2848251
9.09%

Comodo Security
TrojWare.Win32.TrojanDropper.Agent.HNMS
9.09%

The domain rd.jiguangie.com has been seen to resolve to the following 4 IP addresses.

May 19, 2016

November 18, 2015

June 26, 2014

June 26, 2014

File downloads found at URLs served by rd.jiguangie.com.

0 / 68

1 / 68      (PUP)
http://rd.jiguangie.com/rd.php?siteid=463  (高清观看_a_41705.exe)

2 / 68      (PUP)

3 / 68      (inconclusive)

1 / 68      (PUP)
http://rd.jiguangie.com/rd.php?siteid=510  (高清观看_a_41693.exe)

1 / 68      (PUP)
http://rd.jiguangie.com/rd.php?siteid=510  (高清观看_a_41693.exe)

19 / 68    (Malware)

2 / 68

2 / 68      (PUP)
http://rd.jiguangie.com/rd.php?siteid=510  (高清观看_a_41693.exe)

1 / 68

2 / 68

0 / 68

1 / 68

2 / 68      (PUP)

2 / 68      (PUP)

URL:
http://rd.jiguangie.com/

Web server:
nginx