adobe-shockwave-2014.free-safe.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain adobe-shockwave-2014.free-safe.com is registered by proxy through ENOM, INC. and was originally registered in April of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Provo, Utah within the United States which resides on the Unified Layer network.
Registrar:
ENOM, INC.

Server location:
Utah, United States (US)

Create date:
Wednesday, April 30, 2014

Expires date:
Thursday, April 30, 2015

Updated date:
Monday, May 19, 2014

ASN:
AS46606 UNIFIEDLAYER-AS-1 - Unified Layer,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

IKARUS anti.virus
AdWare.MSIL.Colooader
100.00%

Reason Heuristics
PUP.Installer.QUALITYSCORESL.K
100.00%

The domain adobe-shockwave-2014.free-safe.com has been seen to resolve to the following IP address.

162-144-91-108.unifiedlayer.com
September 30, 2014

File downloads found at URLs served by adobe-shockwave-2014.free-safe.com.

The following 2 files have been seen to comunicate with adobe-shockwave-2014.free-safe.com in live environments.

URL:
http://adobe-shockwave-2014.free-safe.com/

Google Analytics:
UA-46433396

Title:
“Adobe Shockwave Player - Free Safe”

Description:
“Adobe Shockwave Player allows you to display multimedia content from webpages.”

Web server:
Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4 (PHP/5.4.26)