www.xiazaiba.com

Guangdong ivali network science and technology Crop.,Ltd

Domain Information

The domain www.xiazaiba.com registered by Guangdong ivali network science and technology Crop.,Ltd was initially registered in March of 2008 through GUANGZHOU MING YANG INFORMATION TECHNOLOGY CO., LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Haikou, Hainan within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
ENAME TECHNOLOGY CO., LTD.

Server location:
Hainan, China (CN)

Create date:
Wednesday, March 5, 2008

Expires date:
Sunday, March 5, 2017

Updated date:
Monday, June 8, 2015

ASN:
AS4134 CHINANET-BACKBONE No.31,Jin-rong Street,CN

Root domain:

Scanner detections:
Detections  (59% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ShanghaiGaoxinComputerSystemColtd.I, PUP.TopTools (M), Adware.Eszjuxuan, PUP.Bundler (L), PUP.Shanghai.Installer (M)
50.00%

IKARUS anti.virus
Trojan.ATRAPS5, Trojan.Win32.Pincav, Trojan-Downloader, Trojan.Win32.Skeeyah, Trojan.SuspectCRC, PUA.Eszjuxuan
33.33%

McAfee
Artemis!4647680C223D, Artemis!72CA53DE9185, Artemis!B00C86F002C5, Artemis!D0C117079894, Artemis!578DFB836D38
27.78%

Dr.Web
Adware.Downware.6307, Adware.WDJiange.1, Program.Unwanted.432, Adware.TopTools.20, Adware.TopTools.41
27.78%

avast!
Win32:Trojan-gen, Win32:Evo-gen [Susp], Win32:Malware-gen, Win32:Adware-gen [Adw]
22.22%

G Data
Win32.Trojan.Agent.TMWDA0, Win32.Adware.FlyStudio, Win32.Application.Agent.P6KQ1B, Gen:Variant.Adware.Razy.63718
22.22%

Comodo Security
TrojWare.Win32.TrojanDropper.Agent.HNMS, UnclassifiedMalware, Application.Win32.MeinV.AK
16.67%

AVG
Generic, Generic7
16.67%

Baidu Antivirus
Win32.Adware.Eszjuxuan
16.67%

Malwarebytes
PUP.Optional.Chad, PUP.Optional.Chinad.C
11.11%

F-Prot
W32/SelfStarterInternetTrojan!M, W32/Agent.EW.gen
11.11%

Trend Micro House Call
TROJ_GEN.F47V0118, Suspicious_GEN.F47V0401
11.11%

Sophos
Mal/Emogen-F, Install Core Click run software (PUA)
11.11%

VIPRE Antivirus
Trojan.Win32.Generic, Adware.Agent
11.11%

Kaspersky
Trojan.Win32.Pincav, not-a-virus:AdWare.Win32.Agent
11.11%

The domain www.xiazaiba.com has been seen to resolve to the following 13 IP addresses.

July 24, 2016

July 24, 2016

August 13, 2015

August 13, 2015

August 13, 2015

August 13, 2015

August 13, 2015

August 13, 2015

August 13, 2015

April 16, 2014

April 16, 2014

April 16, 2014

April 16, 2014

File downloads found at URLs served by www.xiazaiba.com.

1 / 68      (PUP)

13 / 68    (PUP)

1 / 68      (PUP)

5 / 68      (PUP)

3 / 68      (PUP)

1 / 68      (PUP)

4 / 68      (inconclusive)

16 / 68    (PUP)

1 / 68      (PUP)

URL:
http://www.xiazaiba.com/

Title:
“ذվ_ṩȫ,ֻ,ֻϷ,Ϸط!_ɫذ”

Web server:
DnionOS/1.2.1.12 (PHP/5.5.27)

Facebook:
Likes:  10
Shares:  84
Comments:  7

Statistics are for the previous month.