random.backupcdn.com

WHOIS PRIVACY PROTECTION SERVICE, INC.  (Proxy Registrant)

Domain Information

The domain random.backupcdn.com is registered by proxy through ENOM, INC. and was originally registered in July of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in London, England within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
England, United Kingdom (GB)

Create date:
Monday, July 7, 2014

Expires date:
Thursday, July 7, 2016

Updated date:
Thursday, December 10, 2015

ASN:
AS54104 AS-NETDNA - netDNA,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Bundle.Installer.Installer.Meta (M), PUP.Optional.Bundle.Installer.Meta (L), PUP.Bundler.Installer.Installer.Meta (L), PUP.AffiliateBundler.Installer.Meta (M), PUP.BundledOffer.Installer.Installer.Meta (M)
92.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
10.00%

NANO AntiVirus
Riskware.Nsis.Unwanted.dshbdc
10.00%

SUPERAntiSpyware
PUP.BundleInstaller
10.00%

Dr.Web
Program.Unwanted.713, Detection.Undefined
10.00%

Baidu Antivirus
PUA.Win32.MyPCBackup, Adware.Win32.Genome
8.00%

ESET NOD32
Win32/MyPCBackup.E potentially unwanted
8.00%

Kaspersky
Trojan-Downloader.Win32.Genome
8.00%

Sophos
Generic PUA GD, Generic PUA FI, Generic PUA OM (PUA), Generic PUA AG (PUA)
8.00%

Panda Antivirus
Generic Suspicious
8.00%

G Data
Win32.Trojan.Agent.259OSN, Win32.Trojan.Agent.TTGZBW, Win32.Trojan.Agent.E0O4AL
6.00%

ESET NOD32
Win32/MyPCBackup.E potentially unwanted application
4.00%

AVG
PCBackup
4.00%

Qihoo 360 Security
HEUR/QVM42.1.Malware.Gen
2.00%

avast!
Win32:Malware-gen
2.00%

The domain random.backupcdn.com has been seen to resolve to the following 2 IP addresses.

94.31.29.41.IPYX-077437-ZYO.above.net
June 7, 2016

94.31.29.237.IPYX-077437-ZYO.above.net
January 2, 2016

File downloads found at URLs served by random.backupcdn.com.

5 / 68      (PUP)
http://random.backupcdn.com/aff_setup.exe  (f7b2854db8c8389f63713cd795aab8ac)

The following 23 files have been seen to comunicate with random.backupcdn.com in live environments.

 
Latest 20 of 24 files

URL:
http://random.backupcdn.com/

Web server:
NetDNA-cache/2.2