www.azfiles.net

Andrey Shkolovoy

Domain Information

The domain www.azfiles.net registered by Andrey Shkolovoy was initially registered in January of 2012 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Sloboda, Voronezh within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Voronezh, Russia (RU)

Create date:
Wednesday, January 25, 2012

Expires date:
Wednesday, January 25, 2017

Updated date:
Wednesday, March 30, 2016

ASN:
AS29470 RETNNET-AS JSC _RetnNet_,RU

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.Generic.11692645
100.00%

avast!
Win32:Malware-gen
100.00%

Lavasoft Ad-Aware
Trojan.Generic.11692645
100.00%

Comodo Security
UnclassifiedMalware
100.00%

F-Secure
Trojan.Generic.11692645
100.00%

ESET NOD32
Win32/Packed.Themida (variant)
100.00%

AVG
Generic11_c
100.00%

Reason Heuristics
PUP.Installer.ROSTPAY.F
100.00%

The domain www.azfiles.net has been seen to resolve to the following IP address.

July 3, 2016

File downloads found at URLs served by www.azfiles.net.

8 / 68      (PUP)
https://www.azfiles.net/.../setup.exe  (202f2ed1cc7542a2e09876952feeeaa2)

8 / 68      (PUP)
http://www.azfiles.net/.../setup.exe  (202f2ed1cc7542a2e09876952feeeaa2)

The following 24 files have been seen to comunicate with www.azfiles.net in live environments.

 
Latest 20 of 27 files

URL:
http://www.azfiles.net/

Google Analytics:
UA-38654744

Title:
“File extensions and formats - AZFiles.net”

SSL certificate subject:
CN=www.azfiles.ru

SSL certificate issuer:
CN=WoSign CA Free SSL Certificate G2, O=WoSign CA Limited, C=CN

Web server:
nginx