www.onlinedown.net

Beijing Aolande Information Technology Co.Ltd

Domain Information

The domain www.onlinedown.net registered by Beijing Aolande Information Technology Co.Ltd was initially registered in March of 2001 through 35 TECHNOLOGY CO., LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Beijing, Beijing within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
35 TECHNOLOGY CO., LTD

Server location:
Beijing, China (CN)

Create date:
Thursday, March 1, 2001

Expires date:
Thursday, March 1, 2018

Updated date:
Monday, November 23, 2015

ASN:
AS56041 CMNET-ZHEJIANG-AP China Mobile communications corporation,CN

Root domain:

Scanner detections:
Detections  (93% detected)

Scan engine
Details
Detections

IKARUS anti.virus
Trojan.Win32.Agent, Hoax.Win32.ArchSMS, Trojan-Banker.Win32.Delf, PUA.Gaofenquming
64.29%

Reason Heuristics
PUP.RiyuepeerinformationtechnologyBeijingCo (M), Threat.Win.Reputation.IMP, PUP.Gaofenquming (M), PUP.Riyuepee (M)
50.00%

Dr.Web
Adware.Downware.9666, Adware.Downware.10523, Adware.Downware.13046, Adware.Downware.14102
42.86%

McAfee
RDN/PWS-Banker.dldr!i, Artemis!E9D4E1408C36, Artemis!6F7B06B13D81, Artemis!755E53E348A3, Artemis!6A574D2286F0, Artemis!711031B5D5D7
42.86%

ESET NOD32
Win32/Gaofenquming.A potentially unwanted (variant), Win32/Gaofenquming.B potentially unwanted (variant)
42.86%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, AdWare.Agent
35.71%

Baidu Antivirus
PUA.Win32.Gaofenquming
35.71%

avast!
Win32:Rootkit-gen [Rtk], Win32:Adware-gen [Adw], Win32:Malware-gen
28.57%

K7 AntiVirus
Riskware , Adware
28.57%

VIPRE Antivirus
Trojan.Win32.Generic, Adware.Agent
28.57%

AhnLab V3 Security
Downloader/Win32.Banload
28.57%

Fortinet FortiGate
W32/Banker.I!tr.pws, Riskware/Gaofenquming
28.57%

G Data
Win32.Trojan.Agent.6NFSOQ, Application.Bundler.KX, Win32.Application.RiyueDowner
21.43%

Trend Micro House Call
Suspicious_GEN.F47V0101, Suspicious_GEN.F47V0402, Suspicious_GEN.F47V0323
21.43%

ViRobot
Trojan.Win32.Agent.1002496.A[h], Trojan.Win32.Agent.1005944[h], Adware.Agent.2738280[h]
21.43%

The domain www.onlinedown.net has been seen to resolve to the following 9 IP addresses.

July 3, 2016

June 3, 2016

May 16, 2016

April 16, 2016

December 4, 2015

July 7, 2014

July 7, 2014

July 7, 2014

July 7, 2014

File downloads found at URLs served by www.onlinedown.net.

6 / 68      (PUP)
http://www.onlinedown.net/.../index2.php?ver=1.0&name=RPGVXACE RTP&id=528005&token=b1316714070218d175484b478dc1c716  (木头超级字典生成器(木头字典工具集) 正式版_1@50061.exe)

6 / 68      (PUP)
http://www.onlinedown.net/.../index2.php?ver=1.10.1&name=Workrave&id=40679&token=aed13317ac67cb91bbf246a6f4bb1083  (木头超级字典生成器(木头字典工具集) 正式版_1@50061.exe)

URL:
http://www.onlinedown.net/

Google Analytics:
UA-67435585

Title:
“华军软件园-提供国内外最新免费软件、共享软件下载及发布的软件下载站,软件资讯、技巧、评测、教程等相关软件资讯!”

Web server:
Microsoft-IIS/6.0

Facebook:
Likes:  8
Shares:  19

Statistics are for the previous month.