www.dealwifi.com

Qing Ye Ke Ji Bei Jing You Xian Ze Ren Gong Si

Domain Information

The domain www.dealwifi.com registered by Qing Ye Ke Ji Bei Jing You Xian Ze Ren Gong Si was initially registered in March of 2015 through HICHINA ZHICHENG TECHNOLOGY LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Washington, District of Columbia within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
HICHINA ZHICHENG TECHNOLOGY LTD.

Server location:
District of Columbia, United States (US)

Create date:
Wednesday, March 11, 2015

Expires date:
Saturday, March 11, 2017

Updated date:
Wednesday, February 17, 2016

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Fafo.MB (M)
100.00%

Dr.Web
Adware.Mutabaha.116
50.00%

Avira AntiVirus
W32/Sality.AT
50.00%

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
50.00%

The domain www.dealwifi.com has been seen to resolve to the following 3 IP addresses.

July 22, 2016

July 22, 2016

c5.3e.559e.ip4.static.sl-reverse.com
April 7, 2016

File downloads found at URLs served by www.dealwifi.com.

4 / 68      (PUP)
http://www.dealwifi.com/WIFI_setup.exe  (4f806fca550a84ae1279877498c5ded7)

1 / 68      (PUP)
http://www.dealwifi.com/WIFI_setup_dlsite.exe  (ae0ccf77a2e1ef52651d85103ad37e7a)

The following 9 files have been seen to comunicate with www.dealwifi.com in live environments.

URL:
http://www.dealwifi.com/

Title:
“DEAL WIFI”

Web server:
nginx/1.8.0 (PHP/5.3.3)

Facebook:
Shares:  2

Statistics are for the previous month.