www.4glx.com

www.Juming.com

Domain Information

The domain www.4glx.com registered by www.Juming.com was initially registered in May of 2016 through DROPCATCH.COM 867 LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Zhengzhou, Henan within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
DROPCATCH.COM 867 LLC

Server location:
Henan, China (CN)

Create date:
Wednesday, May 11, 2016

Expires date:
Thursday, May 11, 2017

Updated date:
Tuesday, May 24, 2016

ASN:
AS4837 CHINA169-BACKBONE CNCGROUP China169 Backbone,CN

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Gen:Variant.Symmi.57198
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Arcabit
Trojan.Symmi.DDF6E
100.00%

NANO AntiVirus
Trojan.Win32.Siggen6.dyieph
100.00%

ESET NOD32
Win32/ESVPN.A potentially unsafe (variant)
100.00%

Bitdefender
Gen:Variant.Symmi.57198
100.00%

Lavasoft Ad-Aware
Gen:Variant.Symmi.57198
100.00%

Emsisoft Anti-Malware
Gen:Variant.Symmi.57198
100.00%

Dr.Web
Trojan.Siggen6.49226
100.00%

Zillya! Antivirus
Adware.BrowseFox.Win32.123286
100.00%

Sophos
Generic PUA DI (PUA)
100.00%

G Data
Gen:Variant.Symmi.57198
100.00%

McAfee
Artemis!4985BCD25CF1
100.00%

Baidu Antivirus
Hacktool.Win32.ESVPN
100.00%

The domain www.4glx.com has been seen to resolve to the following 11 IP addresses.

44.60.204.221.adsl-pool.sx.cn
July 20, 2016

July 20, 2016

July 20, 2016

July 20, 2016

July 20, 2016

July 20, 2016

July 20, 2016

July 20, 2016

July 20, 2016

hn.kd.ny.adsl
July 20, 2016

July 20, 2016

File downloads found at URLs served by www.4glx.com.

14 / 68    (PUP)
http://www.4glx.com/qy-setup.exe  (4985bcd25cf1a112031bfcb67ecfc1a8)

The following 12 files have been seen to comunicate with www.4glx.com in live environments.