Download
Community
knowledgeBase
» dk.1aab803gfl.com
Overview
Analysis
IPs Addresses (1)
Downloads (6)
Network (1)
Website Detail
Related Domains (147)
dk.1aab803gfl.com
Only contact by email, all postal mail will be rejected (Proxy Registrant)
Domain Information
The domain dk.1aab803gfl.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in February of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Vitoria-Gasteiz, Pais Vasco within Spain which resides on the RIPE Network Coordination Centre network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP, SL
Server location:
Pais Vasco, Spain (ES)
Create date:
Tuesday, February 17, 2015
Expires date:
Friday, February 17, 2017
Updated date:
Friday, February 19, 2016
ASN:
AS57910 SCIP-AS Soluciones Corporativas IP, SL,ES
Root domain:
1aab803gfl.com
Whois:
1 1aab803gfl.com record
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
Threat.Air Software.Bundler, PUP.Air Software.DownloadAssistant.Bundler (M), PUP.Air Software.Download.Bundler (M), PUP.Vittalia.Bundler (M), PUP.Air Software (M)
100.00%
avast!
PUP-gen [PUP]
16.67%
AVG
Potentially harmful program Downloader.EQH
16.67%
Bkav FE
W32.HfsAdware
16.67%
NANO AntiVirus
Trojan.Win32.DownloadHelper.dpgylc
16.67%
Trend Micro House Call
TROJ_GEN.R0E9H05CP15
16.67%
Dr.Web
Trojan.Vittalia.30
16.67%
AhnLab V3 Security
PUP/Win32.InstallCore
16.67%
Vba32 AntiVirus
Downloader.DownloadHelper
16.67%
ESET NOD32
Win32/DownloadAssistant.A potentially unwanted (variant)
16.67%
IKARUS anti.virus
PUA.DownloadAssistant
16.67%
IPs Addresses
The domain dk.1aab803gfl.com has been seen to resolve to the following IP address.
37.152.88.204
www.renewyourexpireddomain.com
February 28, 2016
Downloads
File downloads found at URLs served by dk.1aab803gfl.com.
1 / 68 (Adware)
http://dk.1aab803gfl.com/installers/axtan_installers/get.php?ik=air&ua=chrome&ut=a05269af71a05091941d146a45991ab4&p=REVTQ0FSR0FSRVM=&u=L2Rvd25sb2FkLmRlc2Nhcmdhci5lcy9pbnN0YWxsZXJzL291dC8wMDMxMzAwMzE0MDAzMTUvcGlpZC01NTAzZmNlNjBkZmMxNS44OTA3NjAwMS9heC8xL2Rlc2NhcmdhcmVzL3NwYW5pc2gvc2VvL2Nocm9tZS9taW5lY3JhZnQvZC80Mjc5MmJhNmM3NzQ1YmE0YWMyNWJmNjVkNWI1ZWIxNC9haXIvbmEvbmEvMC9pbnN0YWxsZXJfbWluZWNyYWZ0X1NwYW5pc2guZXhl&r=95862&redir=1&loop=1&x=L2hvbWUvZG93bl9jcm9ucy9wdWJsaWNfaHRtbC9pbnN0YWxsZXJzL291dC9heC8xL2Rlc2NhcmdhcmVzL3NwYW5pc2gvc2VvL2Nocm9tZS9taW5lY3JhZnQvZC80Mjc5MmJhNmM3NzQ1YmE0YWMyNWJmNjVkNWI1ZWIxNC9haXIvbmEvbmEvMC9pbnN0YWxsZXJfbWluZWNyYWZ0X1NwYW5pc2guZXhl&aa=ax/1/descargares//&GH=88&JG=26&GE=85&EE=71&HI=43&KL=9&LD=93&CI=57&HJ=41&s=
(installer_minecraft_spanish.exe)
1 / 68 (Adware)
http://dk.1aab803gfl.com/installers/axtan_installers/get.php?ik=air&ua=chrome&ut=c0b9c1d4152f7942a6c7b34e15a18a4e&u=L2Rvd25sb2FkLmRlc2Nhcmdhci5lcy9pbnN0YWxsZXJzL291dC8wMDMxMzAwMzE0MDAzMTUvcGlpZC01NTAzZTgyNjNmNzI0NC4yMzc4MTMwMC9heC8xL2Rlc2NhcmdhcmVzL2VuZ2xpc2gvc2VvL2Nocm9tZS9ndGFfc2FuX2FuZHJlYXMvZC80Mjc5MmJhNmM3NzQ1YmE0YWMyNWJmNjVkNWI1ZWIxNC9haXIvbmEvbmEvMS9pbnN0YWxsZXJfZ3RhX3Nhbl9hbmRyZWFzX0VuZ2xpc2guZXhl&r=5757086&loop=1&p=REVTQ0FSR0FSRVM=&x=L2hvbWUvZG93bl9jcm9ucy9wdWJsaWNfaHRtbC9pbnN0YWxsZXJzL291dC9heC8xL2Rlc2NhcmdhcmVzL2VuZ2xpc2gvc2VvL2Nocm9tZS9ndGFfc2FuX2FuZHJlYXMvZC80Mjc5MmJhNmM3NzQ1YmE0YWMyNWJmNjVkNWI1ZWIxNC9haXIvbmEvbmEvMS9pbnN0YWxsZXJfZ3RhX3Nhbl9hbmRyZWFzX0VuZ2xpc2guZXhl&redir=1&aa=ax/1/descargares//&MK=91&NG=47&BK=99&HM=17&MM=36&NE=43&HA=11&JD=71&JI=21&DN=39&s=
(installer_gta_san_andreas_english.exe)
1 / 68 (Adware)
http://dk.1aab803gfl.com/installers/axtan_installers/get.php?ik=air&ua=chrome&ut=df47e026c0efabb8d5fc68e7735670c6&p=RUFaRUxGUg==&x=L2hvbWUvZG93bl9jcm9ucy9wdWJsaWNfaHRtbC9pbnN0YWxsZXJzL291dC9heC8xL2VhemVsZnIvZnJlbmNoL3Nlby9jaHJvbWUvYmx1ZXN0YWNrc18wXzlfMTFfNDExOS9kLzc4MjE5ODAyN2ZjNTA5NGM0NzlkM2VmOWE0M2IyMmI1L2Fpci82Nzc5NzEvbmEvMS9pbnN0YWxsZXJfYmx1ZXN0YWNrc18wXzlfMTFfNDExOV9GcmVuY2guZXhl&u=L2Rvd25sb2FkLmVhemVsLmNvbS9pbnN0YWxsZXJzL291dC8wMDMxMzAwMzE0MDAzMTUvcGlpZC01NTAzZjc5NTFiYjVjMy4wNDM5MDAyMy9heC8xL2VhemVsZnIvZnJlbmNoL3Nlby9jaHJvbWUvYmx1ZXN0YWNrc18wXzlfMTFfNDExOS9kLzc4MjE5ODAyN2ZjNTA5NGM0NzlkM2VmOWE0M2IyMmI1L2Fpci82Nzc5NzEvbmEvMS9pbnN0YWxsZXJfYmx1ZXN0YWNrc18wXzlfMTFfNDExOV9GcmVuY2guZXhl&redir=1&r=3153801&loop=1&aa=ax/1/eazelfr//&BL=15&NL=97&FC=35&NH=79&MA=47&KG=23&EB=91&EJ=92&KM=35&AM=77&s=
(installer_bluestacks_0_9_11_4119_french.exe)
1 / 68 (Adware)
http://dk.1aab803gfl.com/installers/axtan_installers/get.php?ik=air&ua=chrome&ut=8d22dddd49bd61a0b3a8dbf7791f4f07&r=5927881&u=L2Rvd25sb2FkLmluc3RzZW8uY29tL2luc3RhbGxlcnMvb3V0LzAwMzEzMDAzMTQwMDMxNS9waWlkLTAxMjM0NTY3ODk5ODc0NTYzMjEwMDEyMzQ1Njc4OTEyL2xwLzEvc2VvL3NwYW5pc2gvc2VvL2Nocm9tZS9hcmVzL2QvNzgyMTk4MDI3ZmM1MDk0YzQ3OWQzZWY5YTQzYjIyYjUvYWlyL25hL25hLzEvaW5zdGFsbGVyX2FyZXNfU3BhbmlzaC5leGU=&p=U0VP&loop=1&redir=1&x=L2hvbWUvZG93bl9jcm9ucy9wdWJsaWNfaHRtbC9pbnN0YWxsZXJzL291dC9scC8xL3Nlby9zcGFuaXNoL3Nlby9jaHJvbWUvYXJlcy9kLzc4MjE5ODAyN2ZjNTA5NGM0NzlkM2VmOWE0M2IyMmI1L2Fpci9uYS9uYS8xL2luc3RhbGxlcl9hcmVzX1NwYW5pc2guZXhl&aa=lp/1/seo//&AD=80&GI=69&CH=65&EL=37&LA=18&FB=22&KK=58&NH=47&CK=26&HC=71&s=
(installer_ares_spanish.exe)
11 / 68 (Adware)
http://dk.1aab803gfl.com/installers/axtan_installers/get.php?ik=air&ua=chrome&ut=659450249207a5c96cd82244f90c1357&r=5832722&x=L2hvbWUvZG93bl9jcm9ucy9wdWJsaWNfaHRtbC9pbnN0YWxsZXJzL291dC9vbi8yL2ZyZWVzb2Z0c3RvcmVjb20vZW5nbGlzaC9hZGNhc2gvY2hyb21lL2Fkb2JlX2ZsYXNoX3BsYXllci9kLzI3NTg3NmUzNGNmNjA5ZGIxMThmM2Q4NGI3OTlhNzkwL2Fpci9uYS9uYS8wL2luc3RhbGxlcl9hZG9iZV9mbGFzaF9wbGF5ZXJfRW5nbGlzaC5leGU=&redir=1&p=RlJFRVNPRlRTVE9SRUNPTQ==&loop=1&u=L2Rvd25sb2FkMi5mcmVlc29mdHN0b3JlMi5jb20vaW5zdGFsbGVycy9vdXQvMDAzMTMwMDMxNDAwMzE1L3BpaWQtNTUwNGI1MWU3YWJlZjguNDE2NDcwODUvb24vMi9mcmVlc29mdHN0b3JlY29tL2VuZ2xpc2gvYWRjYXNoL2Nocm9tZS9hZG9iZV9mbGFzaF9wbGF5ZXIvZC8yNzU4NzZlMzRjZjYwOWRiMTE4ZjNkODRiNzk5YTc5MC9haXIvbmEvbmEvMC9pbnN0YWxsZXJfYWRvYmVfZmxhc2hfcGxheWVyX0VuZ2xpc2guZXhl&aa=on/2/freesoftstorecom//&BJ=23&IM=74&AH=4&CF=92&BF=64&MH=69&FB=65&GD=69&FG=50&HL=95&s=
(Setup.exe)
1 / 68 (Adware)
http://dk.1aab803gfl.com/installers/axtan_installers/get.php?ik=air&ua=chrome&ut=8b8877e1f027b3b8333c14fb46ee1185&loop=1&p=TVAz&r=8213968&x=L2hvbWUvZG93bl9jcm9ucy9wdWJsaWNfaHRtbC9pbnN0YWxsZXJzL291dC9heC8xL21wMy9zcGFuaXNoL3Nlby9jaHJvbWUvbWFnaWNfcGhvdG9fZWRpdG9yXzZfMDEvZC83ODIxOTgwMjdmYzUwOTRjNDc5ZDNlZjlhNDNiMjJiNS9haXIvNjYzNzI0L25hLzEvaW5zdGFsbGVyX21hZ2ljX3Bob3RvX2VkaXRvcl82XzAxX1NwYW5pc2guZXhl&u=L2Rvd25sb2FkLm1wMy5lcy9pbnN0YWxsZXJzL291dC8wMDMxMzAwMzE0MDAzMTUvcGlpZC01NTA0MTk5MDZkOTg2Ny4wNzMzMjc0OC9heC8xL21wMy9zcGFuaXNoL3Nlby9jaHJvbWUvbWFnaWNfcGhvdG9fZWRpdG9yXzZfMDEvZC83ODIxOTgwMjdmYzUwOTRjNDc5ZDNlZjlhNDNiMjJiNS9haXIvNjYzNzI0L25hLzEvaW5zdGFsbGVyX21hZ2ljX3Bob3RvX2VkaXRvcl82XzAxX1NwYW5pc2guZXhl&redir=1&aa=ax/1/mp3//&LK=60&NF=55&JG=16&BK=90&KK=11&CA=76&ID=75&CI=6&FI=8&CE=55&s=
(installer_magic_photo_editor_6_01_spanish.exe)
Network Communications
The following file have been seen to comunicate with dk.1aab803gfl.com in live environments.
TCP »
37.152.88.204
:80
setup.exe
Website Details
URL:
http://dk.1aab803gfl.com/
Google Analytics:
UA-1141889
Title:
“ ”
Web server:
Apache/2.2.22 (Debian)
Related Domains
1aab801gfl.com
1aab805gfl.com
1aab806gfl.com
1aab810gfl.com
1aab811gfl.com
1aab813gfl.com
1aab821gfl.com
3tio8y2sd2.com
8b52qx7.com
900101dwn.com
900102dwn.com
900103dwn.com
900107dwn.com
900111dwn.com
900114dwn.com
9buqwgjm6k.com
a-ato13wf.com
a-pos14mi.com
abroreca.com
bertrejota.com
bwikrnwk56.com
cliremitaros.com
clk3down.com
cloudfile10.com
cloudsvr300.com
cloudsvr31.com
cloudsvr310.com
cloudsvr33.com
cloudsvr409.com
cloudsvr410.com
30 of 147 related domains
X