d.kindscanmeta.net

Adam Sorin

Domain Information

The domain d.kindscanmeta.net registered by Adam Sorin was initially registered in March of 2015 through TLD REGISTRAR SOLUTIONS LTD. Currently this domain has been known to host various forms of malware. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network.
Registrar:
TLD REGISTRAR SOLUTIONS LTD

Server location:
Dublin City, Ireland (IE)

Create date:
Monday, March 23, 2015

Expires date:
Wednesday, March 23, 2016

Updated date:
Thursday, March 26, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Atube.Optional.Installer.Meta (M), Threat.Win.Reputation.IMP, PUP.Optional.PCUtilities.Task.Meta (M), PUP.Optional.PCUtilities (M)
100.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Mplug.46
11.76%

Dr.Web
Trojan.Crossrider1.33816
11.76%

ESET NOD32
Win32/Adware.MultiPlug.LX application
11.76%

Emsisoft Anti-Malware
Gen:Variant.Adware.Mplug.46
11.76%

F-Secure
Gen:Variant.Adware.Mplug
11.76%

Norman
Gen:Variant.Adware.Mplug.46
11.76%

MicroWorld eScan
Gen:Variant.Adware.Mplug.46
11.76%

McAfee
MultiPlug-FXN, Program.MultiPlug-FXP
11.76%

Bitdefender
Gen:Variant.Adware.Mplug.46
11.76%

K7 AntiVirus
Trojan
11.76%

Arcabit
Trojan.Adware.Mplug.46
11.76%

Avira AntiVirus
TR/Crypt.XPACK.Gen
11.76%

AhnLab V3 Security
Win-PUP/MultiPlug, PUP/Win32.MultiPlug
11.76%

G Data
Gen:Variant.Adware.Mplug.46
11.76%

The domain d.kindscanmeta.net has been seen to resolve to the following 6 IP addresses.

ns1.ibspark.com
April 11, 2016

ec2-52-27-128-59.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-27-128-56.us-west-2.compute.amazonaws.com
July 16, 2015

ec2-52-27-128-62.us-west-2.compute.amazonaws.com
July 16, 2015

June 19, 2015

June 19, 2015

File downloads found at URLs served by d.kindscanmeta.net.

The following 144 files have been seen to comunicate with d.kindscanmeta.net in live environments.

 
Latest 20 of 157 files

URL:
http://d.kindscanmeta.net/

Google Analytics:
UA-48689684

Title:
“kindscanmeta.net”

SSL certificate subject:
CN=sni90752.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
nginx

30 of 618 related domains