modulo-seguro.sitebr.net

WHOIS PRIVACY PROTECTION SERVICE, INC.  (Proxy Registrant)

Domain Information

The domain modulo-seguro.sitebr.net is registered by proxy through ENOM, INC. and was originally registered in August of 2007. Currently this domain has been known to host various forms of malware. The hosted servers are located in Rio De Janeiro, Rio De Janeiro within Brazil which resides on the Latin American and Caribbean IP address Regional Registry network.
Registrar:
ENOM, INC.

Server location:
Rio De Janeiro, Brazil (BR)

Create date:
Friday, August 10, 2007

Expires date:
Wednesday, August 10, 2016

Updated date:
Wednesday, December 9, 2015

ASN:
AS28271 DataCorpore Serviços e Representações,BR

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.GenericKD.2302731
100.00%

nProtect
Trojan.GenericKD.2302731
100.00%

Quick Heal
Trojan.Inject.r3
100.00%

Malwarebytes
Trojan.Banker.MDT
100.00%

Zillya! Antivirus
Trojan.Inject.Win32.163991
100.00%

K7 AntiVirus
Trojan
100.00%

Agnitum Outpost
Trojan.Inject
100.00%

Norman
Suspicious_Gen4.IFZOW
100.00%

Trend Micro House Call
TROJ_GEN.R000C0EDN15
100.00%

avast!
Win32:Malware-gen
100.00%

Kaspersky
Trojan.Win32.Inject
100.00%

Bitdefender
Trojan.GenericKD.2302731
100.00%

NANO AntiVirus
Trojan.Win32.Inject.dqttzt
100.00%

ViRobot
Trojan.Win32.S.Agent.228864.BL[h]
100.00%

Lavasoft Ad-Aware
Trojan.GenericKD.2302731
100.00%

The domain modulo-seguro.sitebr.net has been seen to resolve to the following IP address.

rede17-server124.t5.com.br
January 30, 2016

File downloads found at URLs served by modulo-seguro.sitebr.net.

33 / 68    (Malware)
http://modulo-seguro.sitebr.net/.../INTIMACAO.exe  (490b02138556d5dc0113922a96019843)

URL:
http://modulo-seguro.sitebr.net/

Web server:
Apache