dl.bariatharg.com

franck rosset

Domain Information

The domain dl.bariatharg.com registered by franck rosset was initially registered in February of 2015 through GANDI SAS. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
GANDI SAS

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Tuesday, February 10, 2015

Expires date:
Friday, February 10, 2017

Updated date:
Wednesday, September 16, 2015

ASN:
AS16276 OVH OVH SAS,FR

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Kaspersky
not-a-virus:AdWare.Win32.Eorezo
75.00%

ESET NOD32
Detection.Undefined, Win32/Adware.EoRezo.BD application
50.00%

IKARUS anti.virus
not-a-virus:AdWare.Eorezo
50.00%

K7 AntiVirus
Riskware , Adware
50.00%

Baidu Antivirus
Adware.Win32.Eorezo, Adware.Win32.EoRezo
50.00%

Fortinet FortiGate
Adware/Eorezo
50.00%

Panda Antivirus
Generic Suspicious
25.00%

ESET NOD32
Win32/Adware.EoRezo.BD (variant)
25.00%

VIPRE Antivirus
Adware.Eorezo
25.00%

SUPERAntiSpyware
Adware.EoRezo/Variant
25.00%

Dr.Web
Threat.Undefined
25.00%

Reason Heuristics
PUP.Eorezo.Tuto4PC.Bundler (M)
25.00%

The domain dl.bariatharg.com has been seen to resolve to the following 2 IP addresses.

dl0.eorezo.com
February 22, 2016

dl6.eorezo.com
February 4, 2016

File downloads found at URLs served by dl.bariatharg.com.

7 / 68      (PUP)

1 / 68      (Adware)

3 / 68      (PUP)

8 / 68      (PUP)

The following 8 files have been seen to comunicate with dl.bariatharg.com in live environments.

URL:
http://dl.bariatharg.com/

Title:
“eoRezo”

Web server:
Apache/2.2.16 (Debian) PHP/5.3.3-7+squeeze25 with Suhosin-Patch mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1