ss.cywl5.com

YinSi BaoHu Yi KaiQi (Hidden by Whois Privacy Protection Service)

Domain Information

The domain ss.cywl5.com registered by YinSi BaoHu Yi KaiQi (Hidden by Whois Privacy Protection Service) was initially registered in April of 2016 through HICHINA ZHICHENG TECHNOLOGY LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Guangzhou, Guangdong within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
HICHINA ZHICHENG TECHNOLOGY LTD.

Server location:
Guangdong, China (CN)

Create date:
Friday, April 15, 2016

Expires date:
Saturday, April 15, 2017

Updated date:
Friday, April 15, 2016

ASN:
AS133774 CHINATELECOM-FUJIAN-FUZHOU-IDC1 Fuzhou, CN

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Adware.Razy.63718
100.00%

Bitdefender
Gen:Variant.Adware.Razy.63718
100.00%

Baidu Antivirus
Win32.Adware.Eszjuxuan
100.00%

ESET NOD32
Win32/Adware.Eszjuxuan (variant)
100.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Razy.63718
100.00%

F-Secure
Gen:Variant.Adware.Razy
100.00%

Dr.Web
Adware.TopTools.26
100.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Razy.63718
100.00%

Arcabit
Trojan.Adware.Razy.DF8E6
100.00%

G Data
Gen:Variant.Adware.Razy.63718
100.00%

AVG
Generic7
100.00%

The domain ss.cywl5.com has been seen to resolve to the following IP address.

August 28, 2016

File downloads found at URLs served by ss.cywl5.com.

11 / 68    (PUP)
http://ss.cywl5.com/jx.php?id=833  (setup_277trj.exe)

URL:
http://ss.cywl5.com/

Description:
“万泰联盟是全国基于网络广告和提供全面电子商务咨询与解决方案的专业IT公司之一,拥有与互联网广告相关的多项产品服务。”

Web server:
Microsoft-IIS/6.0 (PHP/5.4.5)