The domain cdn.oaktreeshop.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Illinois, United States (US)
Create date:
Thursday, March 19, 2015
Expires date:
Sunday, March 19, 2017
Updated date:
Sunday, March 20, 2016
ASN:
AS30081 CACHENETWORKS - CacheNetworks, Inc.
Scanner detections:
Detections (96% detected)
Scan engine
Details
Detections
Dr.Web
Trojan.Lyrics.800, infected with Trojan.Lyrics.800, infected with Trojan.Lyrics.1096, BACKDOOR.Trojan, infected with Trojan.Lyrics.1124
93.75%
Emsisoft Anti-Malware
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.655281, Gen:Variant.Adware.Kazy.655281, Gen:Variant.Mikey.21657
93.75%
AVG
Generic6, Adware Generic6.AYFO, Adware Generic6.AYGZ, Adware Generic6.AYDZ, Adware Generic6.AYCR, Adware Generic6.AYFI, Adware Generic6.AXNZ
91.67%
AhnLab V3 Security
PUP/Win32.CrossRider
85.42%
avast!
Win32:Malware-gen, Win32:Adware-gen [Adw], Win32:Rootkit-gen [Rtk], Win32:Adware-CQE [Adw]
83.33%
NANO AntiVirus
Riskware.Win32.PennyBee.dsevnz, Riskware.Win32.PennyBee.dsnrfy, Riskware.Win32.PennyBee.dsoyaw, Riskware.Win32.PennyBee.dsqllu, Riskware.Win32.PennyBee.dshbtp
83.33%
Avira AntiVirus
ADWARE/ClickPotato.3518805, ADWARE/Adware.Gen7, ADWARE/PennyBee.487864.8, TR/Trash.Gen, ADWARE/PennyBee.Gen7
83.33%
Baidu Antivirus
Adware.Win32.PennyBee, PUA.Win32.Generik
83.33%
MicroWorld eScan
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.635070, Gen:Variant.Kazy.655281, Gen:Variant.Adware.Kazy.655281, Gen:Variant.Graftor.232803, Gen:Variant.Mikey.21657, Gen:Variant.Adware.Mikey.22707, Application.Generic.1306252
81.25%
Bitdefender
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.635070, Gen:Variant.Kazy.655281
81.25%
Microsoft Security Essentials
Adware:Win32/ZoomyLib, Threat.Undefined, Trojan:Win32/Disrapter.A
81.25%
G Data
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.635070, Gen:Variant.Kazy.655281
81.25%
VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
79.17%
IKARUS anti.virus
AdWare.PennyBee, PUA.PennyBee, Win32.SuspectCrc, PUA.Bundler, PUA.RiskWare.Komodia, Trojan.SuspectCRC
75.00%
Arcabit
Trojan.Kazy.D9A0F5, Trojan.Mikey.D3B48, Adware.Generic.D133DFC, Trojan.Adware.PennyBee.2, Trojan.Graftor.D38D63, Trojan.Adware.Graftor.D38D63
75.00%
The domain cdn.oaktreeshop.com has been seen to resolve to the following IP address.
vip1.g.cachefly.net
February 1, 2016
File downloads found at URLs served by cdn.oaktreeshop.com.
The following 197 files have been seen to comunicate with cdn.oaktreeshop.com in live environments.
URL:
http://cdn.oaktreeshop.com/
Web server:
CFS 0213 (PHP/5.5.8)