bidder.tlvmedia.com

TLV Media

Domain Information

The domain bidder.tlvmedia.com registered by TLV Media was initially registered in June of 2008 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Houston, Texas within the United States which resides on the ThePlanet.com Internet Services, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Thursday, June 19, 2008

Expires date:
Thursday, April 12, 2018

Updated date:
Saturday, April 18, 2015

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Malwarebytes
PUP.Optional.Amonetize, PUP.Optional.Downloader, PUP.Optional.OptimumInstaller.A, PUP.Optional.OptimunInstaller
93.75%

AhnLab V3 Security
PUP/Win32.Amonetiz, PUP/Win32.Amonetize, PUP/Win32.OptimumInstaller, PUP/Win32.IBryte, PUP/Win32.DomaIQ
93.75%

AVG
BundleApp_r.R, Generic_r, Adware AdPlugin.VX, Adware AdPlugin.ABR, Adware AdPlugin.AFH, Adware AdPlugin.YP, Adware AdPlugin.AES
93.75%

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Installer.KOMPANIYAR.BB, PUP.Installer.KOMPANIYAR.c, PUP.Installer.Rollnon.F, PUP.Installer.KOMPANIYAR.h, PUP.Installer.FileFalcon.F, PUP.Installer.FileMonarch.F, PUP.Systweak.TUNEUPPR.Installer.Meta (L), PUP.Installer.Fileangels.F, PUP.Installer.Adknowledge, PUP.Bundler.Adknowledge
90.63%

G Data
Application.Bundler.Amonetize, Win32.Application.Amonetize, Gen:Variant.Application.Bundler.Amonetize.12, Adware.IBryte
87.50%

VIPRE Antivirus
Amonetize, Ignition Installer, Threat.4785227, Threat.4150696, Optimum Installer, Threat.4778314, Trojan.Win32.Generic
84.38%

Dr.Web
Adware.Downware.5717, Adware.Downware.5913, Adware.Downware.8012, Adware.Downware.6099, Adware.iBryte.473, Adware.Downware.8379
84.38%

avast!
Win32:Amonetize-BX [PUP], Win32:Amonetize-CI [PUP], Win32:Amonetize-CL [PUP], Win32:Adware-gen [Adw], Win32:IBryte-DY [PUP]
81.25%

Baidu Antivirus
Adware.Win32.Amonetize, Trojan.Win32.iBryte, Adware.Win32.iBryte
81.25%

NANO AntiVirus
Riskware.Win32.Downware.daymkg, Riskware.Win32.Amonetize.dcckkw, Riskware.Win32.Amonetize.dchxoa, Riskware.Win32.Amonetize.ddtnan
81.25%

Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize, not-a-virus:AdWare.Win32.Amonetize, not-a-virus:AdWare.Win32.iBryte, Trojan.Win32.Badur
81.25%

Avira AntiVirus
ADWARE/Adware.Gen2, APPL/Bundler.Amonetize.N.102, APPL/Amonetize.Z, Adware/Amonetize.Z, APPL/OptInstall.zaxz, Adware/iBryte.bxoh
71.88%

MicroWorld eScan
Application.Bundler.Amonetize.L, Application.Bundler.Amonetize.N, Gen:Variant.Application.Bundler.Amonetize.12, Adware.IBryte.U
71.88%

Bitdefender
Application.Bundler.Amonetize.L, Application.Bundler.Amonetize.N, Gen:Variant.Application.Bundler.Amonetize.12, Adware.IBryte.U
71.88%

McAfee
PUP-FBM!DC61776B9224, Artemis!3CCC98A653AD, RDN/Generic PUP.x!cjm, Artemis!34A55190B451, GenericATG-FGI!B722AC63A55B, PUP-Amonetize
59.38%

The domain bidder.tlvmedia.com has been seen to resolve to the following 2 IP addresses.

184.173.133.194-static.reverse.softlayer.com
December 1, 2014

184.173.181.53-static.reverse.softlayer.com
August 17, 2014

File downloads found at URLs served by bidder.tlvmedia.com.

 
Latest 30 of 64 download URLs

URL:
http://bidder.tlvmedia.com/

Title:
“Test Page for the Nginx HTTP Server on EPEL”

SSL certificate subject:
CN=*.tlvmedia.com, OU=Domain Control Validated, O=*.tlvmedia.com

SSL certificate issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, O="GoDaddy.com, Inc."

Web server:
nginx