cghipzu0myfb.79six9fo.com

Whois Privacy Protection Service, Inc.  (Proxy Registrant)

Domain Information

The domain cghipzu0myfb.79six9fo.com is registered by proxy through NAME.COM, INC. and was originally registered in October of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
NAME.COM, INC.

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Friday, October 17, 2014

Expires date:
Saturday, October 17, 2015

Updated date:
Friday, October 17, 2014

ASN:
AS16276 OVH OVH SAS,FR

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DigitalPluginSL.F
100.00%

VIPRE Antivirus
Threat.4783235
100.00%

Dr.Web
Trojan.DownLoader11.36367
100.00%

avast!
Win32:SoftPulse-AM [PUP]
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.20
100.00%

McAfee
SoftPulse.a
100.00%

Malwarebytes
PUP.Optional.DomaIQ
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

Agnitum Outpost
Riskware.Agent
100.00%

Norman
Kryptik.CDHN
100.00%

Clam AntiVirus
Win.Adware.Agent-30249
100.00%

Bitdefender
Gen:Variant.Application.Bundler.20
100.00%

NANO AntiVirus
Trojan.Win32.Agent.dguxty
100.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.20
100.00%

F-Secure
Gen:Variant.Application.Bundler
100.00%

The domain cghipzu0myfb.79six9fo.com has been seen to resolve to the following IP address.

May 3, 2015

File downloads found at URLs served by cghipzu0myfb.79six9fo.com.

URL:
http://cghipzu0myfb.79six9fo.com/

Web server:
Apache-Coyote/1.1