The domain www.eclipse-upload.com registered by Easyspace Privacy was initially registered in October of 2015 through EASYSPACE LTD.. Currently this domain has been known to host various forms of malware. The hosted servers are located in Glasgow, Scotland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrant:
Easyspace Privacy
Server location:
Scotland, United Kingdom (GB)
Create date:
Wednesday, October 7, 2015
Expires date:
Friday, October 7, 2016
Updated date:
Wednesday, October 7, 2015
ASN:
AS20860 IOMART-AS Iomart, GB
Scanner detections:
Malware distribution (60% detected)
Scan engine
Details
Detections
ESET NOD32
MSIL/TrojanDownloader.Banload.GC trojan, MSIL/TrojanDownloader.Banload.GF trojan
60.00%
AegisLab AV Signature
Heur.MSIL.Androm, Troj.Downloader.W32.AutoIt.mDtA
60.00%
Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen, QVM10.1.Malware.Gen, HEUR/QVM10.1.0000.Malware.Gen
60.00%
MicroWorld eScan
AIT:Trojan.GenericTKA.270, AIT:Trojan.GenericTKA.280
40.00%
Malwarebytes
Trojan.Agent
40.00%
Bitdefender
AIT:Trojan.GenericTKA.270, AIT:Trojan.GenericTKA.280
40.00%
ESET NOD32
Win32/Packed.Autoit.R suspicious (variant)
40.00%
Lavasoft Ad-Aware
AIT:Trojan.GenericTKA.270, AIT:Trojan.GenericTKA.280
40.00%
Emsisoft Anti-Malware
AIT:Trojan.GenericTKA.270, AIT:Trojan.GenericTKA.280
40.00%
F-Secure
AIT:Trojan.GenericTKA.270, AIT:Trojan.GenericTKA.280
40.00%
Arcabit
AIT:Trojan.GenericTKA.270, AIT:Trojan.GenericTKA.280
40.00%
G Data
AIT:Trojan.GenericTKA.270, AIT:Trojan.GenericTKA.280
40.00%
McAfee
Artemis!298E9A834883
20.00%
Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F]
20.00%
The domain www.eclipse-upload.com has been seen to resolve to the following IP address.
File downloads found at URLs served by www.eclipse-upload.com.
URL:
http://www.eclipse-upload.com/
Web server:
Microsoft-IIS/8.5 (PHP/5.6.0,ASP.NET)