zhushou.52lishi.com

yuyi

Domain Information

The domain zhushou.52lishi.com registered by yuyi was initially registered in March of 2013 through XIN NET TECHNOLOGY CORPORATION. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Changde, Hunan within China which resides on the Asia Pacific Network Information Centre network.
Registrar:
XIN NET TECHNOLOGY CORPORATION

Server location:
Hunan, China (CN)

Create date:
Thursday, March 21, 2013

Expires date:
Monday, March 21, 2016

Updated date:
Thursday, June 19, 2014

ASN:
AS4134 CHINANET-BACKBONE No.31,Jin-rong Street

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Trojan.GenericKD.1832258
100.00%

nProtect
Trojan.GenericKD.1832258
100.00%

McAfee
Artemis!E48E2537F16D
100.00%

K7 AntiVirus
Adware
100.00%

NANO AntiVirus
Trojan.Win32.DownLoader11.dekzwh
100.00%

Norman
DLoader.ATMFR
100.00%

Trend Micro House Call
TROJ_GEN.R00JC0EI414
100.00%

avast!
Win32:Adware-gen [Adw]
100.00%

Kaspersky
not-a-virus:AdWare.Win32.Agent
100.00%

Bitdefender
Trojan.GenericKD.1832258
100.00%

Lavasoft Ad-Aware
Trojan.GenericKD.1832258
100.00%

Emsisoft Anti-Malware
Trojan.GenericKD.1832258
100.00%

Comodo Security
ApplicUnwnt
100.00%

F-Secure
Trojan.GenericKD.1832258
100.00%

Dr.Web
Trojan.DownLoader11.28041
100.00%

The domain zhushou.52lishi.com has been seen to resolve to the following IP address.

September 7, 2014

File downloads found at URLs served by zhushou.52lishi.com.

27 / 68    (PUP)

27 / 68    (PUP)

27 / 68    (PUP)

27 / 68    (PUP)
http://zhushou.52lishi.com/wanyxbd_10618.exe  (e48e2537f16d935769542a16bb19b4cb)

URL:
http://zhushou.52lishi.com/

Web server:
nginx/1.1.0