The domain atn.frmclstr.com registered by HugeDomains.com was initially registered in March of 2016 through DROPCATCH.COM 648 LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrant:
HugeDomains.com
Registrar:
DROPCATCH.COM 648 LLC
Server location:
Virginia, United States (US)
Create date:
Thursday, March 3, 2016
Expires date:
Friday, March 3, 2017
Updated date:
Friday, March 4, 2016
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Baidu Antivirus
Adware.Win32.AddLyrics
53.85%
Reason Heuristics
Adware.Revizer.Installer (M)
53.85%
avast!
NSIS:Adware-NH [PUP], Adware-PA [Adw], NSIS:Adware-PM [Adw], Win32:Adware-gen [Adw]
38.46%
ESET NOD32
Win32/AdWare.AddLyrics.AJ (variant), Win32/AdWare.AddLyrics.BO (variant), Win32/AdWare.AddLyrics.CB (variant), Win32/Adware.AddLyrics.DR (variant)
38.46%
AVG
Adware Generic_r.TH, Adware Generic5.BPGF, Adware AdLoad.K, Adware AddLyrics_r.JQ
38.46%
Malwarebytes
PUP.Optional.AdLyrics, PUP.Optional.Graftor, PUP.Optional.VeriBrowse.A
38.46%
VIPRE Antivirus
Threat.5063086, Trojan.Win32.Generic
30.77%
Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.155899, Gen:Variant.Adware.Kazy.367484, Gen:Variant.Adware.Graftor.159066, Gen:Variant.Adware.AddLyrics.32
30.77%
F-Secure
Gen:Variant.Adware.Graftor.155899, Gen:Variant.Adware.Kazy.367484, Gen:Variant.Adware.Graftor.159066, Gen:Variant.Adware.AddLyrics
30.77%
NANO AntiVirus
Riskware.Win32.AddLyrics.dfezsv, Riskware.Win32.MultiPlug.dijfpr, Trojan.Win32.Revizer.dnwpqh
23.08%
Panda Antivirus
Trj/Genetic.gen, Trj/CI.A
23.08%
MicroWorld eScan
Gen:Variant.Adware.Kazy.367484, Gen:Variant.Adware.Graftor.159066, Gen:Variant.Adware.AddLyrics.32
23.08%
G Data
NSIS.Adware.AddLyrics, Gen:Variant.Adware.AddLyrics.32
23.08%
Dr.Web
Trojan.Revizer.27, Trojan.Revizer.417
15.38%
Kaspersky
not-a-virus:AdWare.Win32.AddLyrics
15.38%
The domain atn.frmclstr.com has been seen to resolve to the following 7 IP addresses.
ec2-52-4-72-137.compute-1.amazonaws.com
July 3, 2016
ec2-107-23-198-240.compute-1.amazonaws.com
July 3, 2016
ec2-52-20-195-18.compute-1.amazonaws.com
May 24, 2016
ec2-107-23-195-178.compute-1.amazonaws.com
May 24, 2016
ec2-54-172-219-65.compute-1.amazonaws.com
May 24, 2016
ec2-54-152-144-243.compute-1.amazonaws.com
April 19, 2016
ec2-52-200-243-123.compute-1.amazonaws.com
April 19, 2016
File downloads found at URLs served by atn.frmclstr.com.
The following 33 files have been seen to comunicate with atn.frmclstr.com in live environments.
URL:
http://atn.frmclstr.com/
Google Analytics:
UA-7117339
Title:
“HugeDomains.com - FrMclsTr.com is for sale (Fr Mcls Tr)”
Network:
Amazon Web Services (AWS), running an EC2 instance
Web server:
Microsoft-IIS/8.5 (ASP.NET)
Related Domains