www.eurolive.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.eurolive.com is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 1997. Currently this domain has been known to host various forms of malware. The hosted servers are located in Brussels, Brussels Hoofdstedelijk Gewest within Belgium which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Brussels Hoofdstedelijk Gewest, Belgium (BE)

Create date:
Sunday, June 15, 1997

Expires date:
Tuesday, June 14, 2016

Updated date:
Wednesday, October 1, 2014

ASN:
AS56693 TWOTOWN TwoTown Belgique Sarl,BE

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.RentabiliwebBelgique.Installer (M), Optional.Rentabiliweb.Messanger.Installer.Meta (L)
100.00%

Malwarebytes
PUP.Optional.ScramblePacker.A
25.00%

The domain www.eurolive.com has been seen to resolve to the following 2 IP addresses.

91.226.182.236.unconfigured.2town.net
June 6, 2016

vip5.2town.net
February 27, 2016

File downloads found at URLs served by www.eurolive.com.

2 / 68      (PUP)

2 / 68      (PUP)

The following 4 files have been seen to comunicate with www.eurolive.com in live environments.

URL:
http://www.eurolive.com/

Google Analytics:
UA-2813150

Title:
“EuroLive : La rfrence du liveshow chat + webcam 100% gratuit”

Description:
“EuroLive: Live Show & Chat 100% Gratuit en one 2 one avec nos htesses super sexy - La rfrence du live c'est Eurolive.com”

SSL certificate subject:
CN=*.eurolive.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
Apache