This is a summary of what was observed on geroyvoin.cn.

Network Information

IPASNCountry
213.163.84.2820495NL
(Click on any AS number to see its FIRE report)

Other domains on this IP:

Registration Information

Analysis Information

Malicious and Suspicious URLs

URLFirst DetectedLast Detected
http://geroyvoin.cn/1/cegmoprwx.pdf 2009-09-10 08:42:43 (same)
http://geroyvoin.cn/1/show.php?s=747bbfed51 2009-09-09 14:19:55 (same)

Exploits Detected

Office Snapshot Viewer The Microsoft Office Snapshot Viewer ActiveX control allows remote attackers to download arbitrary files to a client machine CVE-2008-2463
Adobe Collab overflow Multiple Adobe Reader and Acrobat buffer overflows CVE-2007-5659
Adobe util.printf overflow Stack-based buffer overflow in Adobe Acrobat and Reader via crafted format string argument in util.printf CVE-2008-2992
Adobe getIcon Stack-based buffer overflow in Adobe Reader and Acrobat via the getIcon method of a Collab object CVE-2009-0927
MsVidCtl Overflow Overflow in Microsoft Video ActiveX Control via specially-crafted data parameter CVE-2008-0015

Last URLs

http://geroyvoin.cn benign
http://geroyvoin.cn/1/cegmoprwx.pdf malicious
http://geroyvoin.cn/1/show.php?s=747bbfed51 malicious

Linking Information

No information available at this time.