The domain ni871050_1.vweb02.nitrado.net registered by marbis GmbH was initially registered in January of 2005 through CPS-DATENSYSTEME GMBH. Currently this domain has been known to host various forms of malware. The hosted servers are located in Malsch, Baden-Wurttemberg within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
CPS-DATENSYSTEME GMBH
Server location:
Baden-Wurttemberg, Germany (DE)
Create date:
Friday, January 21, 2005
Expires date:
Saturday, January 21, 2017
Updated date:
Wednesday, January 6, 2016
ASN:
AS34309 LINK11 Link11 GmbH,DE
Scanner detections:
Malware distribution (90% detected)
Scan engine
Details
Detections
Emsisoft Anti-Malware
Trojan.GenericKD.3000350, Gen:Variant.Symmi.59468, Gen:Variant.Symmi.60333, Trojan.GenericKD.3053326
80.00%
Qihoo 360 Security
HEUR/QVM33.0.Malware.Gen, HEUR/QVM19.1.Malware.Gen, Win32/Trojan.ced
60.00%
MicroWorld eScan
Trojan.GenericKD.3000350, Gen:Variant.Symmi.59468, Gen:Variant.Symmi.60333, Trojan.GenericKD.3053326
50.00%
Bitdefender
Trojan.GenericKD.3000350, Gen:Variant.Symmi.59468, Gen:Variant.Symmi.60333, Trojan.GenericKD.3053326
50.00%
Arcabit
Trojan.Generic.D2DC81E, Trojan.Symmi.DE84C, Trojan.Symmi.DEBAD, Trojan.Generic.D2E970E
50.00%
Lavasoft Ad-Aware
Trojan.GenericKD.3000350, Gen:Variant.Symmi.59468, Gen:Variant.Symmi.60333, Trojan.GenericKD.3053326
50.00%
F-Secure
Trojan.GenericKD.3000350, Gen:Variant.Symmi.59468, Gen:Variant.Symmi.60333, Trojan.GenericKD.3053326
50.00%
G Data
Trojan.GenericKD.3000350, Gen:Variant.Symmi.59468, Gen:Variant.Symmi.60333, Trojan.GenericKD.3053326
50.00%
Avira AntiVirus
TR/Rogue.1661952.3, TR/Symmi.2402304.1, TR/Symmi.1629184, TR/Spy.Agent.2391040
40.00%
avast!
Win32:Evo-gen [Susp]
40.00%
Norman
Gen:Variant.Symmi.60333, Gen:Variant.Symmi.59468
40.00%
Reason Heuristics
Riskware.GameTool
30.00%
ESET NOD32
Win32/Packed.Themida suspicious application
30.00%
nProtect
Trojan.GenericKD.3000350, Trojan.GenericKD.3053326
20.00%
AegisLab AV Signature
Troj.Generickd!c, Gen.Variant.Symmi!c
20.00%
The domain ni871050_1.vweb02.nitrado.net has been seen to resolve to the following IP address.
vweb02.nitrado.net
February 28, 2016
File downloads found at URLs served by ni871050_1.vweb02.nitrado.net.
URL:
http://ni871050_1.vweb02.nitrado.net/
Title:
“nitrado.net - your gameserver provider”