www.leadershipcobrancas.ru

Private Person  (Proxy Registrant)

Domain Information

The domain www.leadershipcobrancas.ru is registered by proxy through RU-CENTER-RU and was originally registered in December of 2015. Currently this domain has been known to host various forms of malware. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
RU-CENTER-RU

Server location:
Moscow City, Russia (RU)

Create date:
Friday, December 11, 2015

Expires date:
Sunday, December 11, 2016

ASN:
AS20655 E-STYLEISP-AS e-Style ISP LLC,RU

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Emsisoft Anti-Malware
Gen:Variant.Kazy.782732, Gen:Variant.Kazy.773206
66.67%

ESET NOD32
MSIL/TrojanDownloader.Agent.BGK (variant)
66.67%

Avira AntiVirus
TR/Dropper.MSIL.28975, TR/Dropper.MSIL.237158
66.67%

Fortinet FortiGate
MSIL/Agent.BGK!tr.dldr
66.67%

Baidu Antivirus
Trojan.MSIL.Agent
66.67%

Lavasoft Ad-Aware
Gen:Variant.Kazy.782732
33.33%

F-Secure
Gen:Variant.Kazy.782732
33.33%

ESET NOD32
MSIL/TrojanDownloader.Agent.BGK trojan
33.33%

Norman
Gen:Variant.Kazy.782732
33.33%

MicroWorld eScan
Gen:Variant.Kazy.773206
33.33%

McAfee
Artemis!3A2266263831
33.33%

K7 AntiVirus
Trojan-Downloader
33.33%

Arcabit
Trojan.Kazy.DBCC56
33.33%

Agnitum Outpost
Trojan.Agent
33.33%

avast!
Win32:Malware-gen
33.33%

The domain www.leadershipcobrancas.ru has been seen to resolve to the following 2 IP addresses.

192.64.147.142.voodoo.com
April 4, 2016

217-174-100-233.e-styleisp.ru
January 27, 2016

File downloads found at URLs served by www.leadershipcobrancas.ru.

URL:
http://www.leadershipcobrancas.ru/

Web server:
Apache (PHP/5.3.8)