cdn.gameoapp.com

IronSource Israel 2011

Domain Information

The domain cdn.gameoapp.com registered by IronSource Israel 2011 was initially registered in October of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seattle, Washington within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Washington, United States (US)

Create date:
Tuesday, October 15, 2013

Expires date:
Saturday, October 15, 2016

Updated date:
Thursday, September 24, 2015

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

NANO AntiVirus
Riskware.Win32.InstallCore.dkmnol
100.00%

Trend Micro House Call
Suspicious_GEN.F47V1229
100.00%

Dr.Web
Trojan.InstallCore.40
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

ESET NOD32
Win32/InstallCore.UQ potentially unwanted (variant)
100.00%

Avira AntiVirus
ADWARE/InstallCore.Gen4
100.00%

McAfee
Artemis!0D7F8C42BA40
100.00%

Fortinet FortiGate
Riskware/InstallCore
100.00%

The domain cdn.gameoapp.com has been seen to resolve to the following 7 IP addresses.

50.23.103.19-static.reverse.softlayer.com
February 10, 2016

50.22.197.218-static.reverse.softlayer.com
February 10, 2016

February 10, 2016

184.173.134.99-static.reverse.softlayer.com
February 10, 2016

174.127.102.227.static.midphase.com
February 10, 2016

geetos.info
February 10, 2016

173.255.138.99.static.westdc.net
February 10, 2016

File downloads found at URLs served by cdn.gameoapp.com.

8 / 68      (PUP)
http://cdn.gameoapp.com/.../GameoSetup.exe  (0d7f8c42ba4079cdd984d773e24322e9)

The following 116 files have been seen to comunicate with cdn.gameoapp.com in live environments.

 
Latest 20 of 329 files

URL:
http://cdn.gameoapp.com/

Web server:
nginx/1.8.0