The domain box.cr173.com registered by Wu hong was initially registered in April of 2006 through GODADDY.COM, LLC. Currently this domain has been known to host various forms of malware. The hosted servers are located in Jishou, Hunan within China which resides on the Asia Pacific Network Information Centre network.
Hunan, China (CN)
Wednesday, April 19, 2006
Thursday, April 19, 2018
Wednesday, April 22, 2015
AS4134 CHINANET-BACKBONE No.31,Jin-rong Street,CN
Google Safe Browsing:
Malware distribution (80% detected)
Artemis!21927716FA77, Artemis!26CFA25FA642, Artemis!40C4CD0D3445, Artemis!3E91A71626C0, Artemis!7539B72238DE
McAfee Web Gateway
Artemis!21927716FA77, Artemis!26CFA25FA642, Artemis!40C4CD0D3445, BehavesLike.Win32.Tool.vc
Antiy Labs AVL
Trend Micro House Call
TROJ_GEN.F47V1129, TROJ_GE.A3A4935F, TROJ_GEN.F47V1105
W32.Clodf22.Trojan, W32.Clodbe7.Trojan, W32.Clodbe1.Trojan
(Suspicious) - DNAScan
The domain box.cr173.com has been seen to resolve to the following 3 IP addresses.
File downloads found at URLs served by box.cr173.com.