www.cobraqui.ru

Private Person  (Proxy Registrant)

Domain Information

The domain www.cobraqui.ru is registered by proxy through RU-CENTER-RU and was originally registered in December of 2015. Currently this domain has been known to host various forms of malware. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
RU-CENTER-RU

Server location:
Moscow City, Russia (RU)

Create date:
Sunday, December 13, 2015

Expires date:
Tuesday, December 13, 2016

ASN:
AS20655 E-STYLEISP-AS e-Style ISP LLC,RU

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Adware.Barys.2182, Gen:Variant.Barys.27388
100.00%

ESET NOD32
Generik.NNSRMBN (variant), MSIL/TrojanDownloader.Agent.BGK (variant)
100.00%

Bitdefender
Gen:Variant.Adware.Barys.2182, Gen:Variant.Barys.27388
100.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Barys.2182, Gen:Variant.Barys.27388
100.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Barys.2182, Gen:Variant.Barys.27388
100.00%

F-Secure
Gen:Variant.Adware.Barys, Gen:Variant.Barys.27388
100.00%

G Data
Gen:Variant.Adware.Barys.2182, Gen:Variant.Barys.27388
100.00%

Avira AntiVirus
TR/Dropper.MSIL.190639
50.00%

Baidu Antivirus
Trojan.Win32.Generik
50.00%

Arcabit
Trojan.Barys.D6AFC
50.00%

Fortinet FortiGate
MSIL/Agent.BGK!tr.dldr
50.00%

AVG
Downloader.MSIL
50.00%

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
50.00%

The domain www.cobraqui.ru has been seen to resolve to the following IP address.

217-174-100-233.e-styleisp.ru
January 31, 2016

File downloads found at URLs served by www.cobraqui.ru.