The domain cp.mplayerdownloader.com is registered by proxy through SOLUCIONES CORPORATIVAS IP,SLU and was originally registered in March of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP,SLU
Server location:
Northern Ireland, United Kingdom (GB)
Create date:
Friday, March 15, 2013
Expires date:
Sunday, March 15, 2015
Updated date:
Thursday, February 13, 2014
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Awimba.W, PUP.TUGUUSL.X, PUP.Tuguu.Bundler (M)
100.00%
Malwarebytes
Adware.DomaIQ, PUP.FakeFlash.Domaiq
85.71%
K7 AntiVirus
Trojan , Unwanted-Program , Adware
85.71%
avast!
Win32:DomaIQ-AI [PUP], NSIS:DomaIQ-C [PUP], Win32:PUP-gen [PUP], Win32:DomaIQ-M [PUP]
85.71%
Comodo Security
UnclassifiedMalware, Application.Win32.DolmaIQ.~zq, Application.Win32.Downloader.Agent.WA
85.71%
Dr.Web
Adware.W3i.29
85.71%
VIPRE Antivirus
DomaIQ
85.71%
Avira AntiVirus
APPL/DomaIQ.Gen
85.71%
ESET NOD32
Win32/DomaIQ
85.71%
IKARUS anti.virus
APPL, AdWare.DomaIQ, AdWare.Win32.InstallIQ, Trojan-Ransom.Win32.Blocker, Win32.SuspectCrc
85.71%
AVG
MalSign.Skodna, Skodna.Generic_c
85.71%
McAfee
Artemis!FBC01F93E69E, Artemis!F96E65950B8B, RDN/Generic PUP.z!dj, Artemis!C2E09F9C9792, Artemis!0C47ADD77FDA
71.43%
Norman
Obfuscated.gen!r, Suspicious_Gen4.ERZRG
71.43%
Sophos
DomainIQ pay-per install, Generic PUA CF
71.43%
NANO AntiVirus
Trojan.Win32.W3i.cjeffs, Riskware.Win32.DomaIQ.crbbqh
57.14%
The domain cp.mplayerdownloader.com has been seen to resolve to the following 3 IP addresses.
unallocated.barefruit.co.uk
May 3, 2015
File downloads found at URLs served by cp.mplayerdownloader.com.
Latest 30 of 41 download URLs
The following 230 files have been seen to comunicate with cp.mplayerdownloader.com in live environments.