riceteacher.com

KOREA SERVER HOSTING INC.

Domain Information

The domain riceteacher.com registered by KOREA SERVER HOSTING INC. was initially registered in June of 2015 through KOREA SERVER HOSTING INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seoul, Seoul-T'Ukpyolsi within Korea which resides on the Asia Pacific Network Information Centre network.
Registrar:
KOREA SERVER HOSTING INC.

Server location:
Seoul-T'Ukpyolsi, Korea (KR)

Create date:
Wednesday, June 10, 2015

Expires date:
Friday, June 10, 2016

Updated date:
Wednesday, June 10, 2015

ASN:
AS4766 KIXS-AS-KR Korea Telecom,KR

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.POSTMEDIACoLtd.L, PUP.Postmedia (M), PUP.Postmedia.Installer (M), PUP.Postmedi (M), PUP.Postmedi.Installer (M), PUP (M)
100.00%

Bkav FE
W32.Clod2b6.Trojan
4.55%

nProtect
Adware/W32.Agent1.1124560
4.55%

McAfee
Artemis!886D8F56BC18
4.55%

Malwarebytes
Adware.KorAd
4.55%

Trend Micro House Call
TROJ_GE.B688692C
4.55%

avast!
Win32:Rootkit-gen [Rtk]
4.55%

Dr.Web
Trojan.Adkor.45
4.55%

Avira AntiVirus
Rkit/Agent.1124560
4.55%

Emsisoft Anti-Malware
Gen:Variant.Zusy.76984
4.55%

IKARUS anti.virus
Win32.Rootkit
4.55%

The domain riceteacher.com has been seen to resolve to the following IP address.

April 2, 2016

File downloads found at URLs served by riceteacher.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

11 / 68    (Adware)
http://riceteacher.com/wuu_utiltop.exe  (886d8f56bc1819504d82d15457b2f8b8)