atn.frmclstr.com

HugeDomains.com

Domain Information

The domain atn.frmclstr.com registered by HugeDomains.com was initially registered in March of 2016 through DROPCATCH.COM 648 LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
DROPCATCH.COM 648 LLC

Server location:
Virginia, United States (US)

Create date:
Thursday, March 3, 2016

Expires date:
Friday, March 3, 2017

Updated date:
Friday, March 4, 2016

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Baidu Antivirus
Adware.Win32.AddLyrics
53.85%

Reason Heuristics
Adware.Revizer.Installer (M)
53.85%

avast!
NSIS:Adware-NH [PUP], Adware-PA [Adw], NSIS:Adware-PM [Adw], Win32:Adware-gen [Adw]
38.46%

ESET NOD32
Win32/AdWare.AddLyrics.AJ (variant), Win32/AdWare.AddLyrics.BO (variant), Win32/AdWare.AddLyrics.CB (variant), Win32/Adware.AddLyrics.DR (variant)
38.46%

AVG
Adware Generic_r.TH, Adware Generic5.BPGF, Adware AdLoad.K, Adware AddLyrics_r.JQ
38.46%

Malwarebytes
PUP.Optional.AdLyrics, PUP.Optional.Graftor, PUP.Optional.VeriBrowse.A
38.46%

VIPRE Antivirus
Threat.5063086, Trojan.Win32.Generic
30.77%

Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.155899, Gen:Variant.Adware.Kazy.367484, Gen:Variant.Adware.Graftor.159066, Gen:Variant.Adware.AddLyrics.32
30.77%

F-Secure
Gen:Variant.Adware.Graftor.155899, Gen:Variant.Adware.Kazy.367484, Gen:Variant.Adware.Graftor.159066, Gen:Variant.Adware.AddLyrics
30.77%

NANO AntiVirus
Riskware.Win32.AddLyrics.dfezsv, Riskware.Win32.MultiPlug.dijfpr, Trojan.Win32.Revizer.dnwpqh
23.08%

Panda Antivirus
Trj/Genetic.gen, Trj/CI.A
23.08%

MicroWorld eScan
Gen:Variant.Adware.Kazy.367484, Gen:Variant.Adware.Graftor.159066, Gen:Variant.Adware.AddLyrics.32
23.08%

G Data
NSIS.Adware.AddLyrics, Gen:Variant.Adware.AddLyrics.32
23.08%

Dr.Web
Trojan.Revizer.27, Trojan.Revizer.417
15.38%

Kaspersky
not-a-virus:AdWare.Win32.AddLyrics
15.38%

The domain atn.frmclstr.com has been seen to resolve to the following 7 IP addresses.

ec2-52-4-72-137.compute-1.amazonaws.com
July 3, 2016

ec2-107-23-198-240.compute-1.amazonaws.com
July 3, 2016

ec2-52-20-195-18.compute-1.amazonaws.com
May 24, 2016

ec2-107-23-195-178.compute-1.amazonaws.com
May 24, 2016

ec2-54-172-219-65.compute-1.amazonaws.com
May 24, 2016

ec2-54-152-144-243.compute-1.amazonaws.com
April 19, 2016

ec2-52-200-243-123.compute-1.amazonaws.com
April 19, 2016

File downloads found at URLs served by atn.frmclstr.com.

25 / 68    (Adware)

4 / 68      (PUP)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

8 / 68      (Adware)

1 / 68      (Adware)

4 / 68      (Adware)

15 / 68    (Adware)

1 / 68      (Adware)

16 / 68    (Adware)

6 / 68      (Adware)

The following 33 files have been seen to comunicate with atn.frmclstr.com in live environments.

 
Latest 20 of 33 files

URL:
http://atn.frmclstr.com/

Google Analytics:
UA-7117339

Title:
“HugeDomains.com - FrMclsTr.com is for sale (Fr Mcls Tr)”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Microsoft-IIS/8.5 (ASP.NET)

30 of 50 related domains