doc-0k-74-docs.googleusercontent.com

Google Inc.

Domain Information

This domain is used by the Google drive/ Google documents service to share public files but Google itself does not host legitimate Google files on this domain, it is simply for user's of the Drive service. The domain doc-0k-74-docs.googleusercontent.com registered by Google Inc. was initially registered in November of 2008 through MARKMONITOR INC.. The domain hosts various software downloads. The hosted servers are located in Mountain View, California within the United States which resides on the Google Inc. network.
Registrar:
MARKMONITOR INC.

Server location:
California, United States (US)

Create date:
Monday, November 17, 2008

Expires date:
Tuesday, November 17, 2015

Updated date:
Friday, October 17, 2014

ASN:
AS15169 GOOGLE - Google Inc.

Scanner detections:
Malware distribution  (57% detected)

Note:
While the domain hosts possible unwanted files, it is owned and operated by Google which DOES NOT distribute these files. The files are public using the Google Drive service by individual users.

Scan engine
Details
Detections

Trend Micro House Call
TROJ_GEN.R0CBB01A214, TROJ_GE.7B21F729, TROJ_GE.E05E03A0, TROJ_GE.1107E5BB, Suspici.657E4DC8
83.33%

McAfee
Artemis!D8F12C859387, Artemis!9F872427470D, Artemis!518F55159259, Artemis!33FD0E57C0D2
66.67%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious-PKR.G, BehavesLike.Win32.AdwareBaidu.tc, BehavesLike.Win32.Backdoor.fm
66.67%

ESET NOD32
JS/TrojanClicker.Agent.NFJ.Gen, MSIL/Stimilik.CT (variant)
66.67%

K7 AntiVirus
Spyware
50.00%

K7 Gateway Antivirus
Spyware
50.00%

Sophos
Mal/Generic-S, Generic PUA ID
50.00%

VIPRE Antivirus
Trojan.Win32.Generic
50.00%

Baidu Antivirus
Trojan.JS.Clicker, Trojan.MSIL.Stimilik
50.00%

G Data
Win32.Trojan.Agent.3I7T18, Win32.Trojan.Agent.W888RO, Gen:Variant.Kazy.532880
50.00%

Qihoo 360 Security
HEUR/Malware.QVM06.Gen
50.00%

Norman
Troj_Generic.RWATS, Troj_Generic.TAAOM
33.33%

Fortinet FortiGate
JS/TrojanClicker_Agent_NFJ.gen!tr
33.33%

Panda Antivirus
Suspicious file, Trj/Chgt.A
33.33%

avast!
Win32:Dropper-gen [Drp], Win32:Trojan-gen
33.33%

The domain doc-0k-74-docs.googleusercontent.com has been seen to resolve to the following 33 IP addresses.

lga15s44-in-f10.1e100.net
May 5, 2015

lga15s44-in-f11.1e100.net
May 5, 2015

lga15s44-in-f12.1e100.net
May 5, 2015

iad23s23-in-f12.1e100.net
March 28, 2015

iad23s23-in-f11.1e100.net
March 28, 2015

iad23s23-in-f10.1e100.net
March 28, 2015

iad23s25-in-f11.1e100.net
February 1, 2015

iad23s25-in-f10.1e100.net
February 1, 2015

iad23s25-in-f12.1e100.net
February 1, 2015

iad23s06-in-f10.1e100.net
November 29, 2014

iad23s06-in-f12.1e100.net
November 29, 2014

iad23s06-in-f11.1e100.net
November 29, 2014

iad23s08-in-f10.1e100.net
September 7, 2014

iad23s08-in-f12.1e100.net
September 7, 2014

iad23s08-in-f11.1e100.net
September 7, 2014

iad23s05-in-f12.1e100.net
September 5, 2014

iad23s05-in-f11.1e100.net
September 5, 2014

iad23s05-in-f10.1e100.net
September 5, 2014

iad23s26-in-f10.1e100.net
September 4, 2014

iad23s26-in-f12.1e100.net
September 4, 2014

iad23s26-in-f11.1e100.net
September 4, 2014

lga15s42-in-f12.1e100.net
May 30, 2014

lga15s42-in-f11.1e100.net
May 30, 2014

lga15s42-in-f10.1e100.net
May 30, 2014

lga15s45-in-f10.1e100.net
April 25, 2014

lga15s45-in-f12.1e100.net
April 25, 2014

lga15s45-in-f11.1e100.net
April 25, 2014

lga15s43-in-f11.1e100.net
March 15, 2014

lga15s43-in-f12.1e100.net
March 15, 2014

lga15s43-in-f10.1e100.net
March 15, 2014

 
Showing 30 of 33 IP Addresses

File downloads found at URLs served by doc-0k-74-docs.googleusercontent.com.

URL:
http://doc-0k-74-docs.googleusercontent.com/

SSL certificate subject:
CN=*.googleusercontent.com, O=Google Inc, L=Mountain View, S=California, C=US

SSL certificate issuer:
CN=Google Internet Authority G2, O=Google Inc, C=US

Web server:
sffe