weilbet.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain weilbet.com is registered by proxy through GODADDY.COM, LLC and was originally registered in August of 2015. Currently this domain has been known to host various forms of malware. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Thursday, August 13, 2015

Expires date:
Saturday, August 13, 2016

Updated date:
Monday, November 16, 2015

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc., US

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Dr.Web
Trojan.DownLoader13.6370
100.00%

Reason Heuristics
Threat.Win.Reputation.IMP
100.00%

The domain weilbet.com has been seen to resolve to the following 2 IP addresses.

June 30, 2016

June 30, 2016

File downloads found at URLs served by weilbet.com.

2 / 68      (Malware)
http://weilbet.com/en/.../setup.exe  (184a876dd823c3da6f95e81b7427cd79)

URL:
http://weilbet.com/

Google Analytics:
UA-72948669

Title:
“Real money gaming , slot game, sportbook and live casino in malaysia - weilbet”

Description:
“Looking for best real money gaming , slot game , live casino and sportbook in Malaysia ? we are the best gaming company in malaysia.”

SSL certificate subject:
CN=sni134908.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (ASP.NET) (Version: 4.0.30319)