cdn.sysweatheralert.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain cdn.sysweatheralert.com is registered by proxy through ENOM, INC. and was originally registered in April of 2016. Currently this domain has been known to host various forms of malware. The hosted servers are located in United, Pennsylvania within the United States which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Pennsylvania, United States (US)

Create date:
Tuesday, April 5, 2016

Expires date:
Wednesday, April 5, 2017

Updated date:
Tuesday, April 5, 2016

ASN:
AS60068 CDN77 Datacamp Limited,GB

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

McAfee
Trojan.Artemis!19DE9FE98804
100.00%

F-Secure
Variant.Razy.39481
100.00%

ESET NOD32
Generik.NLJPRGF trojan
100.00%

Kaspersky
Trojan.Win32.Inject
100.00%

Norman
Gen:Variant.Razy.39481
100.00%

The domain cdn.sysweatheralert.com has been seen to resolve to the following IP address.

new-york-20.cdn77.com
May 27, 2016

File downloads found at URLs served by cdn.sysweatheralert.com.

5 / 68      (Malware)

The following file have been seen to comunicate with cdn.sysweatheralert.com in live environments.

URL:
http://cdn.sysweatheralert.com/

Title:
“Your Push Zone has been created.”

SSL certificate subject:
CN=1619094373.rsc.cdn77.org

SSL certificate issuer:
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US

Web server:
CDN77-Turbo

30 of 33 related domains