cdn.torrents-time.com

Whois Privacy Corp.

Domain Information

The domain cdn.torrents-time.com registered by Whois Privacy Corp. was initially registered in June of 2015 through INTERNET DOMAIN SERVICE BS CORP. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
INTERNET DOMAIN SERVICE BS CORP

Server location:
Arizona, United States (US)

Create date:
Tuesday, June 23, 2015

Expires date:
Friday, June 23, 2017

Updated date:
Monday, February 8, 2016

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Root domain:

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.TorrentsTime.Radius.Installer.Meta (M), PUP.TorrentsTime.Installer.Meta (M), PUP.TorrentsTime (M), Threat.Win.Reputation.IMP
72.22%

avast!
Win32:Kukacka, Win32:SaliCode, Win32:Sality, Win32:Malware-gen
27.78%

ESET NOD32
Win32/Sality.NBA virus, Detection.Undefined
27.78%

Microsoft Security Essentials
Threat.Undefined
25.00%

Norman
Win32.Sality.3, Gen:Variant.Graftor.278139
22.22%

AVG
Win32/Sality
22.22%

Emsisoft Anti-Malware
Win32.Sality, Gen:Variant.Graftor.275935
19.44%

Kaspersky
Virus.Win32.Sality
19.44%

Dr.Web
Win32.Sector.30, Trojan.Encoder.567
16.67%

F-Prot
W32/Sality.E.gen, W32/Sality.gen2, W32/Virut.AI!Generic
16.67%

McAfee
Virus.W32/Sality.gen.z
13.89%

Sophos
Virus 'Mal/Sality-D'
8.33%

VIPRE Antivirus
Threat.4721115
5.56%

Avira AntiVirus
TR/Crypt.ULPM.Gen
2.78%

Clam AntiVirus
Win.Adware.Application-693
2.78%

The domain cdn.torrents-time.com has been seen to resolve to the following 2 IP addresses.

February 17, 2016

February 17, 2016

File downloads found at URLs served by cdn.torrents-time.com.

1 / 68      (PUP)
https://cdn.torrents-time.com/torrentsTime-download.exe  (3b06369ab1f1db92d8c6081f35871674)

URL:
http://cdn.torrents-time.com/

Google Analytics:
UA-72543046

Title:
“Torrents Time embed”

SSL certificate subject:
CN=ssl370300.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx