qsoh.gamesflight.com

Moniker Online Services LLC (DONE ACCOUNT)

Domain Information

The domain qsoh.gamesflight.com registered by Moniker Online Services LLC (DONE ACCOUNT) was initially registered in April of 2015 through Moniker Online Services. Currently this domain has been known to host various forms of malware. The hosted servers are located in Nuremberg, Bayern within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
Moniker Online Services

Server location:
Bayern, Germany (DE)

Create date:
Wednesday, April 1, 2015

Expires date:
Saturday, April 1, 2017

Updated date:
Wednesday, April 6, 2016

ASN:
AS24940 HETZNER-AS Hetzner Online GmbH,DE

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP (M), PUP.GamesFli.Installer (M)
100.00%

The domain qsoh.gamesflight.com has been seen to resolve to the following 5 IP addresses.

September 1, 2016

ec2-54-235-159-97.compute-1.amazonaws.com
June 23, 2016

static.242.0.76.144.clients.your-server.de
April 6, 2016

static.130.1.76.144.clients.your-server.de
April 6, 2016

November 10, 2015

File downloads found at URLs served by qsoh.gamesflight.com.

 
Latest 30 of 2,782 download URLs

The following 25 files have been seen to comunicate with qsoh.gamesflight.com in live environments.

 
Latest 20 of 31 files

URL:
http://qsoh.gamesflight.com/

Web server:
nginx