skyfilmess.com

PAULINO V OLIVEIRA

Domain Information

The domain skyfilmess.com registered by PAULINO V OLIVEIRA was initially registered in December of 2015 through UNIVERSO ONLINE S/A (UOL). Currently this domain has been known to host various forms of malware. The hosted servers are located in Sao Paulo, Sao Paulo within Brazil which resides on the Latin American and Caribbean IP address Regional Registry network.
Registrar:
UNIVERSO ONLINE S/A (UOL)

Server location:
Sao Paulo, Brazil (BR)

Create date:
Tuesday, December 29, 2015

Expires date:
Thursday, December 29, 2016

Updated date:
Tuesday, December 29, 2015

ASN:
AS7162 Universo Online S.A.,BR

Google Safe Browsing:
unwanted

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Strictor.101775
100.00%

Quick Heal
(Suspicious) - DNAScan
100.00%

Bitdefender
Gen:Variant.Strictor.101775
100.00%

K7 AntiVirus
Trojan
100.00%

Agnitum Outpost
Trojan.PWS.BestaFera
100.00%

Kaspersky
Trojan-Banker.Win32.BestaFera
100.00%

Lavasoft Ad-Aware
Gen:Variant.Strictor.101775
100.00%

Emsisoft Anti-Malware
Gen:Variant.Strictor.101775
100.00%

Comodo Security
TrojWare.Win32.TrojanDownloader.Delf.gen
100.00%

F-Secure
Gen:Variant.Strictor.101775
100.00%

Sophos
Mal/Generic-S
100.00%

Avira AntiVirus
TR/Samca.A.814, TR/Spy.Banker.626688.3
100.00%

Fortinet FortiGate
W32/BestaFera.FZW!tr, W32/BestaFera.FZA!tr
100.00%

Arcabit
Trojan.Strictor.D18D8F
100.00%

G Data
Gen:Variant.Strictor.101775
100.00%

The domain skyfilmess.com has been seen to resolve to the following IP address.

January 30, 2016

File downloads found at URLs served by skyfilmess.com.

16 / 68    (Malware)
http://skyfilmess.com/SkyFilmes_Player.exe  (04a1ae84a0629aa005522cf4ddc5293f)

17 / 68    (Malware)
http://skyfilmess.com/SkyFilmes_Player.exe  (5e9eb7403bef5c6e69eb931ce0cea844)

URL:
http://skyfilmess.com/

Web server:
nginx