server.mobogenie.com

Beijing Gamease Age Digital Technology Co., Ltd.

Domain Information

The domain server.mobogenie.com registered by Beijing Gamease Age Digital Technology Co., Ltd. was initially registered in November of 2012 through HICHINA ZHICHENG TECHNOLOGY LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Singapore, Singapore within Singapore which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the Asia Pacific (Singapore) region datacenter.
Registrar:
MARKMONITOR INC.

Server location:
Singapore, Singapore (SG)

Create date:
Wednesday, November 28, 2012

Expires date:
Tuesday, November 28, 2017

Updated date:
Wednesday, December 24, 2014

ASN:
AS38895 AMAZON-AS-AP Amazon.com Tech Telecom,JP

Root domain:

Scanner detections:
Detections  (60% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.BeijingAmazGameAgeInternetTechnologyCo.T, PUP.Optional.Installer.X, PUP.Optional.Installer.W, PUP.Optional.Installer.EE, PUP.Optional.BeijingAmazGameAgeInternetTechnologyCo.Installer, PUP.Optional.BeijingA.Installer
68.57%

Dr.Web
Adware.NextLive.2, Detection.Undefined
31.43%

ESET NOD32
Win32/Mobogenie.B potentially unwanted application, Win32/Adware.Mobogenie.A application
28.57%

avast!
NSIS:NextLive-A [Adw], Win32:Mobogenie-O [Adw], Win32:PUP-gen [PUP]
20.00%

Trend Micro House Call
TROJ_GEN.F47V0112, TROJ_GEN.F47V0316, ADW_NEXTLIVE, Suspicious_GEN.F47V0701
14.29%

NANO AntiVirus
Trojan.Win32.NextLive.csjhvj, Trojan.Win32.Click.cttoky
14.29%

G Data
Win32.Application.Mobogenie, Win32.Trojan.Agent.S5DAQF, Win32.Adware.NextLive
14.29%

ESET NOD32
Win32/Mobogenie
14.29%

MicroWorld eScan
Adware.NewNextMe.A
11.43%

Malwarebytes
PUP.Optional.NextLive.A
11.43%

Lavasoft Ad-Aware
Adware.NewNextMe.A
11.43%

Comodo Security
ApplicUnwnt.Win32.NextLive.~A
11.43%

F-Secure
Adware.NewNextMe.A
11.43%

Avira AntiVirus
APPL/NextLive.opea.2
11.43%

Trend Micro
ADW_NEXTLIVE
11.43%

The domain server.mobogenie.com has been seen to resolve to the following 87 IP addresses.

ec2-54-254-135-225.ap-southeast-1.compute.amazonaws.com
September 5, 2016

ec2-54-255-171-68.ap-southeast-1.compute.amazonaws.com
August 4, 2016

ec2-52-220-18-138.ap-southeast-1.compute.amazonaws.com
July 24, 2016

ec2-54-169-33-14.ap-southeast-1.compute.amazonaws.com
July 24, 2016

ec2-52-220-25-250.ap-southeast-1.compute.amazonaws.com
July 24, 2016

ec2-52-77-165-135.ap-southeast-1.compute.amazonaws.com
July 3, 2016

ec2-52-74-169-59.ap-southeast-1.compute.amazonaws.com
July 3, 2016

ec2-54-251-181-250.ap-southeast-1.compute.amazonaws.com
July 3, 2016

ec2-54-169-143-99.ap-southeast-1.compute.amazonaws.com
June 25, 2016

ec2-54-169-39-67.ap-southeast-1.compute.amazonaws.com
May 18, 2016

ec2-52-76-124-71.ap-southeast-1.compute.amazonaws.com
February 7, 2016

ec2-54-254-212-206.ap-southeast-1.compute.amazonaws.com
December 19, 2015

ec2-54-169-196-211.ap-southeast-1.compute.amazonaws.com
November 9, 2015

ec2-52-74-144-135.ap-southeast-1.compute.amazonaws.com
September 10, 2015

ec2-52-74-42-243.ap-southeast-1.compute.amazonaws.com
September 10, 2015

ec2-54-254-240-35.ap-southeast-1.compute.amazonaws.com
September 10, 2015

ec2-54-169-61-248.ap-southeast-1.compute.amazonaws.com
September 10, 2015

ec2-54-255-163-0.ap-southeast-1.compute.amazonaws.com
May 6, 2015

ec2-54-169-49-106.ap-southeast-1.compute.amazonaws.com
May 6, 2015

ec2-54-255-142-241.ap-southeast-1.compute.amazonaws.com
May 6, 2015

ec2-54-254-189-184.ap-southeast-1.compute.amazonaws.com
May 6, 2015

ec2-54-254-155-171.ap-southeast-1.compute.amazonaws.com
May 6, 2015

ec2-54-254-235-97.ap-southeast-1.compute.amazonaws.com
May 6, 2015

ec2-54-251-130-173.ap-southeast-1.compute.amazonaws.com
December 2, 2014

ec2-54-179-186-128.ap-southeast-1.compute.amazonaws.com
December 2, 2014

ec2-54-179-186-71.ap-southeast-1.compute.amazonaws.com
December 2, 2014

ec2-54-179-132-13.ap-southeast-1.compute.amazonaws.com
December 2, 2014

ec2-54-179-132-1.ap-southeast-1.compute.amazonaws.com
December 2, 2014

ec2-54-255-205-188.ap-southeast-1.compute.amazonaws.com
December 2, 2014

ec2-54-255-203-238.ap-southeast-1.compute.amazonaws.com
December 2, 2014

 
Showing 30 of 87 IP Addresses

File downloads found at URLs served by server.mobogenie.com.

0 / 68

1 / 68      (PUP)

1 / 68      (inconclusive)

0 / 68

1 / 68      (PUP)

18 / 68    (PUP)

8 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (inconclusive)

2 / 68      (PUP)

2 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

0 / 68

2 / 68      (PUP)

1 / 68      (PUP)

2 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

The following 67 files have been seen to comunicate with server.mobogenie.com in live environments.

 
Latest 20 of 304 files

URL:
http://server.mobogenie.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

SSL certificate subject:
CN=*.mobogenie.com, OU=Terms of use at www.verisign.com/rpa (c)05, OU=Product Dept., O="Beijing AmazGame Age Internet Technology Co., Ltd.", L=Beijing, S=Beijing, C=CN

SSL certificate issuer:
CN=VeriSign Class 3 Secure Server CA - G3, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Web server:
Tengine

Facebook:
Shares:  1

Statistics are for the previous month.