4mwva.jinniu.info

luo xiao liang

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tokyo, Tokyo within Japan which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
West263 International Limited

Server location:
Tokyo, Japan (JP)

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.Generic.12242118
100.00%

nProtect
Trojan.Generic.12242118
100.00%

SUPERAntiSpyware
Trojan.Agent/Gen-StartPage
100.00%

K7 AntiVirus
Riskware
100.00%

NANO AntiVirus
Trojan.Nsis.Feasu.djrzxb
100.00%

Norman
Startpage.WTF
100.00%

Trend Micro House Call
Suspicious_GEN.F47V1128
100.00%

avast!
Win32:Malware-gen
100.00%

Bitdefender
Trojan.Generic.12242118
100.00%

Lavasoft Ad-Aware
Trojan.Generic.12242118
100.00%

Emsisoft Anti-Malware
Trojan.Generic.12242118
100.00%

Comodo Security
Application.Win32.MeinV.AK
100.00%

F-Secure
Trojan.Generic.12242118
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Sophos
AdLoad
100.00%

The domain 4mwva.jinniu.info has been seen to resolve to the following IP address.

ec2-54-178-203-224.ap-northeast-1.compute.amazonaws.com
April 1, 2016

File downloads found at URLs served by 4mwva.jinniu.info.

22 / 68    (PUP)
http://4mwva.jinniu.info:8088/.../d.php  (1417198659l383l2551.exe)

URL:
http://4mwva.jinniu.info/

Google Analytics:
UA-36684132

Title:
“一秒钟的梦 | 学习 分享 感动 成长”

Description:
“一秒钟的梦 | 学习 分享 感动 成长”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx/1.4.6 (Ubuntu) (PHP/5.5.9-1ubuntu4.14)