tcafeby.com

jein comm

Domain Information

The domain tcafeby.com registered by jein comm was initially registered in December of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Wednesday, December 23, 2015

Expires date:
Saturday, December 23, 2017

Updated date:
Wednesday, December 23, 2015

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!B963ACE96945
100.00%

Malwarebytes
RiskWare.Tool.HCK
100.00%

avast!
Win32:Malware-gen
100.00%

Agnitum Outpost
Trojan.KillProc
100.00%

Dr.Web
Trojan.KillProc.34763
100.00%

Avira AntiVirus
TR/Agent.1143808.25
100.00%

IKARUS anti.virus
Trojan.Agent
100.00%

The domain tcafeby.com has been seen to resolve to the following 2 IP addresses.

April 14, 2016

April 14, 2016

File downloads found at URLs served by tcafeby.com.

URL:
http://tcafeby.com/

Google Analytics:
UA-24839020

Title:
“Tcafe 토렌트카페 티카페 토렌트”

Description:
“Tcafe 토렌트 카페 티카페 utorrent 다운로드 비회원 토렌트 다운로드 직다 음악토렌트 자료실”

SSL certificate subject:
CN=sni161159.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx