down.jiashenworkshop.com

panglei

Domain Information

The domain down.jiashenworkshop.com registered by panglei was initially registered in March of 2014 through HANGZHOU AIMING NETWORK CO.,LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tianjin, Tianjin within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
HANGZHOU AIMING NETWORK CO.,LTD

Server location:
Tianjin, China (CN)

Create date:
Tuesday, March 4, 2014

Expires date:
Wednesday, March 4, 2015

Updated date:
Tuesday, March 4, 2014

ASN:
AS4837 CHINA169-BACKBONE CNCGROUP China169 Backbone

Google Safe Browsing:
malware

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.KillAV.2
100.00%

McAfee
Artemis!8C884531EE18
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

NANO AntiVirus
Riskware.Nsis.Hao.cymivw
100.00%

Trend Micro House Call
TROJ_GEN.R047C0PFG14
100.00%

Kaspersky
not-a-virus:AdWare.Win32.Hao123
100.00%

Bitdefender
Gen:Variant.KillAV.2
100.00%

Lavasoft Ad-Aware
Gen:Variant.KillAV.2
100.00%

Emsisoft Anti-Malware
Gen:Variant.KillAV
100.00%

F-Secure
Gen:Variant.KillAV.2
100.00%

Dr.Web
Trojan.PWS.Gina.82
100.00%

Avira AntiVirus
TR/Killav.2.106
100.00%

Trend Micro
TROJ_GEN.R047C0PFG14
100.00%

Sophos
Mal/Agent-AOM
100.00%

G Data
Gen:Variant.KillAV
100.00%

The domain down.jiashenworkshop.com has been seen to resolve to the following 2 IP addresses.

June 26, 2014

no-data
June 26, 2014

File downloads found at URLs served by down.jiashenworkshop.com.

21 / 68    (Adware)
http://down.jiashenworkshop.com/.../an6t_78_101.exe  (8c884531ee1856d856f9df842f9cb19f)

URL:
http://down.jiashenworkshop.com/

Web server:
nginx