downcdn1.shgaoxin.net

Song Li

Domain Information

The domain downcdn1.shgaoxin.net registered by Song Li was initially registered in February of 2013 through ENAME TECHNOLOGY CO., LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Fuzhou, Fujian within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
ENAME TECHNOLOGY CO., LTD.

Server location:
Fujian, China (CN)

Create date:
Sunday, February 24, 2013

Expires date:
Tuesday, February 24, 2015

Updated date:
Wednesday, January 8, 2014

ASN:
AS4134 CHINANET-BACKBONE No.31,Jin-rong Street,CN

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!DD6E8F199EAB, Artemis!DB008E824397
100.00%

Trend Micro House Call
TROJ_GEN.F47V1231, TROJ_GEN.F47V0223
100.00%

Sophos
Mal/Emogen-F
100.00%

Reason Heuristics
PUP.Installer.ShanghaiGaoxinComputerSystemColtd.N, PUP.Installer.ShanghaiGaoxinComputerSystemColtd.I
100.00%

Malwarebytes
Extension.Mismatch
50.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
50.00%

avast!
Win32:Malware-gen
50.00%

The domain downcdn1.shgaoxin.net has been seen to resolve to the following 5 IP addresses.

September 5, 2014

September 5, 2014

September 5, 2014

April 16, 2014

April 16, 2014

File downloads found at URLs served by downcdn1.shgaoxin.net.

6 / 68      (PUP)

5 / 68      (PUP)
http://downcdn1.shgaoxin.net/.../setup149.exe  (db008e824397b8c8d2af19bb572bdd47)

URL:
http://downcdn1.shgaoxin.net/

Web server:
Microsoft-IIS/7.5