www.egybest.com

Whois Privacy Corp.

Domain Information

The domain www.egybest.com registered by Whois Privacy Corp. was initially registered in July of 2009 through INTERNET DOMAIN SERVICE BS CORP. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
Arizona, United States (US)

Create date:
Friday, July 24, 2009

Expires date:
Monday, July 24, 2017

Updated date:
Sunday, June 19, 2016

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Bkav FE
W32.Clod697.Trojan
100.00%

McAfee
Artemis!E4D4C16046FE
100.00%

Malwarebytes
PUP.Optional.ExpressFiles.A
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

Trend Micro House Call
TROJ_GEN.F47V1115
100.00%

avast!
Win32:Downloader-TSH [PUP]
100.00%

Sophos
Express Files
100.00%

VIPRE Antivirus
ExpressFiles Installer
100.00%

AhnLab V3 Security
PUP/Win32.ExpressFiles
100.00%

ESET NOD32
Win32/ExpressFiles (variant)
100.00%

AVG
MalSign.Faglaro Enterprises Limited
100.00%

Reason Heuristics
PUP.FaglaroEnterprisesLimited.Q
100.00%

herdProtect (fuzzy)
a variant of 7a268514cfc9b35c7492a03c6bcc4e6b3d70ec7f
100.00%

G Data
Win32.Application.ExpressFiles
100.00%

The domain www.egybest.com has been seen to resolve to the following 2 IP addresses.

June 28, 2016

June 28, 2016

File downloads found at URLs served by www.egybest.com.

14 / 68    (Adware)

URL:
http://www.egybest.com/

Google Analytics:
UA-9923694

Title:
“تحميل و مشاهدة افلام HD اون لاين | EgyBest”

Description:
“تحميل و مشاهدة افلام HD اون لاين مجانا و روابط سريعة و مباشرة. افضل الافلام الاجنبية بجودة HD BluRay 1080p 720p حصريا على موقع ايجي بست”

SSL certificate subject:
CN=sni10660.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx

Facebook:
Likes:  12
Shares:  44

Statistics are for the previous month.