Server location:
Beijing, China (CN)
ASN:
AS38361 CNNIC-CNET-AP CNET Networks LTD.,CN
Scanner detections:
Detections (54% detected)
Scan engine
Details
Detections
Dr.Web
Adware.Downware.11005, Adware.Qjwmonkey.18, Adware.Qjwmonkey.28, Adware.Downware.10663, Adware.Qjwmonkey.34, Adware.Qjwmonkey.47
55.17%
avast!
Win32:Malware-gen, Win32:Adware-gen [Adw], Win32:Evo-gen [Susp]
51.72%
G Data
Win32.Trojan.Agent.EJ6EF3, Application.Generic.1438389, Win32.Trojan.Agent.AU7HNT, Win32.Adware.Qjwmonkey, Gen:Variant.Application.Bundler.84
48.28%
ESET NOD32
Win32/Adware.Qjwmonkey (variant), Win32/Packed.NSISmod.O suspicious (variant)
48.28%
IKARUS anti.virus
not-a-virus:Downloader.BindEx, PUA.Qjwmonkey, Trojan.Taranis, PUA.Softcnapp
44.83%
Avira AntiVirus
APPL/Qjwmonkey.tdz, ADWARE/Qjwmonkey.B, APPL/Qjwmonkey.uzfd, APPL/Qjwmonkey.cfk, TR/Taranis.2828
41.38%
Panda Antivirus
Trj/Genetic.gen
37.93%
AVG
Generic6, Generic7, Adware Generic7.RAL, Adware Generic7.ADRL, Adware Generic7.YUD
37.93%
K7 AntiVirus
Adware
34.48%
Rising Antivirus
PE:Trojan.Win32.Generic.18F7D0C5!418894021, PE:Adware.Qjwmonkey!1.A299 [F], PE:Malware.Generic/QRS!1.9E2D [F], PE:Malware.Generic(Thunder)!1.A1C4 [F]
31.03%
Zillya! Antivirus
Adware.Qjwmonkey.Win32.11, Adware.Qjwmonkey.Win32.17, Adware.BrowseFox.Win32.162316, Adware.Qjwmonkey.Win32.120, Adware.Qjwmonkey.Win32.125
27.59%
VIPRE Antivirus
Trojan.Win32.Generic
27.59%
Sophos
Generic PUA OH, Generic PUA OG (PUA), Generic PUA LE (PUA), QjMonkey (PUA), Xiazai (PUA)
27.59%
Reason Heuristics
Threat.Win.Reputation.IMP, PUP.GreenCreaturesEnvironmentProtectionScienceEndTechnologyCo (M), Adware.Generic.AT (M)
27.59%
AhnLab V3 Security
PUP/Win32.MultiPlug, PUP/Win32.Downloader, PUP/Win32.Agent, PUP/Win32.Generic
24.14%
The domain xiazai.zol.com.cn has been seen to resolve to the following 2 IP addresses.
123.103.57.124-BJ-CNC
August 13, 2015
c25-zol-xiazai-web-80.cnet.com.cn
June 9, 2014
File downloads found at URLs served by xiazai.zol.com.cn.
Latest 30 of 177 download URLs
The following 2 files have been seen to comunicate with xiazai.zol.com.cn in live environments.