bookbook.in

Jinheng Zhu

Domain Information

The domain bookbook.in registered by Jinheng Zhu was initially registered in December of 2015 through Name.com LLC (R65-AFIN). This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Kirkland, Washington within the United States which resides on the eNom, Incorporated network.
Registrar:
GoDaddy.com, LLC (R101-AFIN)

Server location:
Washington, United States (US)

Create date:
Saturday, December 5, 2015

Expires date:
Tuesday, December 5, 2017

Updated date:
Monday, January 18, 2016

ASN:
AS21740 ENOMAS1 - eNom, Incorporated,US

Scanner detections:
Detections  (89% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/AdWare.MultiPlug.CT application, Win32/Adware.MultiPlug.HV application
64.29%

avast!
Win32:Agent-AYLT [PUP]
57.14%

Norman
Gen:Variant.Adware.MPlug.16, Gen:Variant.Adware.MPlug.10, Adware.MultiPlug.CU, Adware.Agent.OZI, Adware.Mplug.CY, Trojan.Agent.BGHQ
47.62%

Dr.Web
Trojan.Crossrider.38012, Trojan.Crossrider.36808, Trojan.Crossrider.38014, Trojan.Crossrider.37873, Trojan.Crossrider.37360, Trojan.DownLoader11.39404, Trojan.Crossrider.36840
45.24%

Microsoft Security Essentials
Threat.Undefined
45.24%

AVG
Adware Generic_r.VD, Adware Generic_r.UH
42.86%

Emsisoft Anti-Malware
Gen:Variant.Adware.MPlug.16, Gen:Variant.Adware.MPlug.10, Adware.MultiPlug.CU, Adware.Agent.OZI, Adware.Mplug.CY, Trojan.Agent.BGHQ
40.48%

Reason Heuristics
PUP.OlehAlek (M), PUP (M), Adware.Downloader.ET (M)
40.48%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.MultiPlug, not-a-virus:AdWare.Win32.MultiPlug
33.33%

McAfee
Program.MultiPlug-FRO, Program.MultiPlug-FRE
26.19%

VIPRE Antivirus
Threat.5085665, Threat.5180739
16.67%

F-Secure
Variant.Adware.MPlug, Trojan.Agent.BGHQ, Trojan.Agent.BGIR
14.29%

Sophos
PUA 'MultiPlug' (of type Adware)
2.38%

The domain bookbook.in has been seen to resolve to the following 7 IP addresses.

February 22, 2016

ec2-52-79-54-33.ap-northeast-2.compute.amazonaws.com
January 28, 2016

rc2.sjl01.dmtracker.com
July 16, 2015

ec2-54-68-56-152.us-west-2.compute.amazonaws.com
May 3, 2015

ec2-54-68-145-207.us-west-2.compute.amazonaws.com
November 3, 2014

November 1, 2014

November 1, 2014

File downloads found at URLs served by bookbook.in.

 
Latest 30 of 134 download URLs

The following 35 files have been seen to comunicate with bookbook.in in live environments.

 
Latest 20 of 47 files

URL:
http://bookbook.in/

Title:
“Book Book, Come In”

Description:
“世界上失败的方式只有一种,就是半途而废<br/><br/> 如被微信重新排版,请在浏览器中打开”

Web server:
Tengine/2.1.0