dl.cetaitlagrenouille.com

franck rosset

Domain Information

The domain dl.cetaitlagrenouille.com registered by franck rosset was initially registered in May of 2016 through GANDI SAS. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Paris, Ile-De-France within France which resides on the Asia Pacific Network Information Centre network.
Registrar:
GANDI SAS

Server location:
Ile-De-France, France (FR)

Create date:
Monday, May 9, 2016

Expires date:
Tuesday, May 9, 2017

Updated date:
Monday, May 9, 2016

ASN:
AS12876 AS12876 ONLINE S.A.S., FR

Scanner detections:
Detections  (90% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.Eorezo (M), Adware.Eorezo.DB (M), Trojan.PPZ (M), Trojan.PPZ.5yeT.Installer.Meta (M), Trojan.PPZ.Installer.Meta (M), Trojan.PPZ.OuU2T8z.Installer.Meta (M)
82.14%

ESET NOD32
MSIL/Injector.ORY trojan, MSIL/Injector.PMV trojan, MSIL/Injector.PPZ trojan, MSIL/Injector.PUG trojan
71.43%

Emsisoft Anti-Malware
Trojan.Agent.BTQY, Gen:Variant.Barys.8233, Gen:Variant.Application.Bundler.Temonde, Gen:Variant.MSILPerseus.40969, Gen:Variant.Strictor.108445, Trojan.GenericKD.3406878
21.43%

Dr.Web
Adware.Eorezo.898
21.43%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
17.86%

avast!
Win32:Adware-gen [Adw], Win32:Evo-gen [Susp]
7.14%

MicroWorld eScan
Gen:Variant.Application.Bundler.Temonde.12
3.57%

McAfee
Artemis!637B2C4BDE97
3.57%

Malwarebytes
PUP.Optional.Tuto4PC
3.57%

Arcabit
Trojan.Application.Bundler.Temonde.12
3.57%

Baidu Antivirus
Win32.Trojan.WisdomEyes.151026.9950
3.57%

F-Prot
W32/S-77298a25
3.57%

ESET NOD32
MSIL/Injector.PPZ (variant)
3.57%

Kaspersky
not-a-virus:HEUR:Downloader.MSIL.Temonde
3.57%

Bitdefender
Gen:Variant.Application.Bundler.Temonde.12
3.57%

The domain dl.cetaitlagrenouille.com has been seen to resolve to the following 6 IP addresses.

dl3.wizzuniquify.com
June 27, 2016

dl4.wizzuniquify.com
June 27, 2016

dl5.wizzuniquify.com
June 27, 2016

dl1.wizzuniquify.com
June 27, 2016

dl2.wizzuniquify.com
June 27, 2016

dl0.wizzuniquify.com
June 27, 2016

File downloads found at URLs served by dl.cetaitlagrenouille.com.

2 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (inconclusive)

2 / 68      (PUP)

2 / 68      (PUP)

1 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (inconclusive)

URL:
http://dl.cetaitlagrenouille.com/

Title:
“Uniquify - Login”

Web server:
Apache/2.4.10 (Debian)