s0.br.hao123img.com

Baidu Online Network Technology Co.Ltd

Domain Information

The domain s0.br.hao123img.com registered by Baidu Online Network Technology Co.Ltd was initially registered in November of 2011 through HICHINA ZHICHENG TECHNOLOGY LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ismailia, Al Ismailiyah within Egypt which resides on the African Network Information Center network.
Registrar:
HICHINA ZHICHENG TECHNOLOGY LTD.

Server location:
Al Ismailiyah, Egypt (EG)

Create date:
Monday, November 28, 2011

Expires date:
Tuesday, November 28, 2017

Updated date:
Wednesday, January 6, 2016

ASN:
AS36992 ETISALAT-MISR, EG

Root domain:

Scanner detections:
Detections  (75% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Hao123 (variant), Win32/Hao123.D potentially unwanted (variant), Win32/Hao123.C potentially unwanted (variant)
100.00%

avast!
Win32:Malware-gen
25.00%

G Data
Win32.Trojan.Agent.Y740DK
25.00%

Dr.Web
Trojan.StartPage.60052
25.00%

Bkav FE
W32.HfsAdware
25.00%

K7 AntiVirus
Trojan
25.00%

Sophos
Generic PUA FD (PUA)
25.00%

McAfee
Artemis!B2C3FB20BF93
25.00%

Reason Heuristics
PUP.Hao123.ShrtCt.Meta (M)
25.00%

The domain s0.br.hao123img.com has been seen to resolve to the following 2 IP addresses.

host-105.203.253.170.etisalat.com.eg
June 6, 2016

October 13, 2015

File downloads found at URLs served by s0.br.hao123img.com.

3 / 68      (Malware)

2 / 68      (inconclusive)

5 / 68      (PUP)
http://s0.br.hao123img.com/resource/.../imgschome.exe  (b2c3fb20bf93c6cd7971ad96a5da1d35)

2 / 68      (PUP)

URL:
http://s0.br.hao123img.com/

Web server:
us01-sys-jorcol03.us01.baidu.com