deng.qiniudn.com

Shanghai Qiniu Information Technologies Co., Ltd.

Domain Information

The domain deng.qiniudn.com registered by Shanghai Qiniu Information Technologies Co., Ltd. was initially registered in August of 2012 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Jiaojiang, Zhejiang within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Zhejiang, China (CN)

Create date:
Thursday, August 30, 2012

Expires date:
Sunday, August 30, 2015

Updated date:
Wednesday, April 29, 2015

ASN:
AS4134 CHINANET-BACKBONE No.31,Jin-rong Street,CN

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.GenericKD.2069615
100.00%

nProtect
Trojan.GenericKD.2069615
100.00%

Quick Heal
Downloader.Agent.r6 (Not a Virus)
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

K7 AntiVirus
Trojan
100.00%

Trend Micro House Call
TROJ_GEN.F0C2C00AM15
100.00%

avast!
Win32:Malware-gen
100.00%

Kaspersky
not-a-virus:Downloader.Win32.Agent
100.00%

Bitdefender
Trojan.GenericKD.2069615
100.00%

Agnitum Outpost
PUA.Downloader
100.00%

Lavasoft Ad-Aware
Trojan.GenericKD.2069615
100.00%

Sophos
Generic PUA JI
100.00%

Comodo Security
Worm.Win32.Dropper.RA
100.00%

F-Secure
Trojan.GenericKD.2069615
100.00%

Zillya! Antivirus
Downloader.Agent.Win32.246693
100.00%

The domain deng.qiniudn.com has been seen to resolve to the following 2 IP addresses.

May 28, 2015

May 28, 2015

File downloads found at URLs served by deng.qiniudn.com.

25 / 68    (PUP)
http://deng.qiniudn.com/newpack.exe  (43d5316302917f9b9cee15a9fc247c3d)

URL:
http://deng.qiniudn.com/

Web server:
nginx/1.4.4