dc137.gulfup.com

FR Group

Domain Information

The domain dc137.gulfup.com registered by FR Group was initially registered in April of 2006 through GODADDY.COM, LLC. Currently this domain has been known to host various forms of malware. The hosted servers are located in Denver, Colorado within the United States which resides on the FDCservers.net network.
Registrar:
GODADDY.COM, LLC

Server location:
Colorado, United States (US)

Create date:
Thursday, April 6, 2006

Expires date:
Monday, April 3, 2023

Updated date:
Friday, June 13, 2014

ASN:
AS174 COGENT-174 - Cogent Communications,US

Root domain:

Scanner detections:
Malware distribution  (67% detected)

Scan engine
Details
Detections

NANO AntiVirus
Trojan.Win32.Jorik.cqkxko
50.00%

avast!
Win32:Trojan-gen
50.00%

Avira AntiVirus
TR/Agent.169472.40
50.00%

G Data
Win32.Trojan.Agent.IYO402
50.00%

Bkav FE
W32.Clodb70.Trojan
50.00%

Reason Heuristics
PUP.Optional.Startup.O
50.00%

The domain dc137.gulfup.com has been seen to resolve to the following IP address.

May 30, 2014

File downloads found at URLs served by dc137.gulfup.com.

1 / 68      (PUP)
http://dc137.gulfup.com/828W1.exe  (platinumhideip.exe)

0 / 68
http://dc137.gulfup.com/DYC91.exe  (startup tool.exe)

5 / 68      (Malware)
http://dc137.gulfup.com/6YtH1.exe  (internet download manager 6,18 full free by anas.exe)

URL:
http://dc137.gulfup.com/

Web server:
Gulfup.com