dl.wizzuniquify.com

Cloud4PC

Domain Information

The domain dl.wizzuniquify.com registered by Cloud4PC was initially registered in November of 2015 through GANDI SAS. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Paris, Ile-De-France within France which resides on the Asia Pacific Network Information Centre network.
Registrar:
GANDI SAS

Server location:
Ile-De-France, France (FR)

Create date:
Tuesday, November 24, 2015

Expires date:
Thursday, November 24, 2016

Updated date:
Wednesday, November 25, 2015

ASN:
AS12876 AS12876 ONLINE S.A.S., FR

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SoundPlusPro.Installer.Meta (M), Adware.Eorezo.DB (M), Adware.Eorezo.Meta (M), Adware.Eorezo.ZLTjxq.Meta (M), Adware.Eorezo.VXhU.Meta (M), Adware.Eorezo.pDSxQBAw.Meta (M), Adware.Eorezo (M), Adware.Downloader.3CwxHgO.Meta (M), Adware.Downloader.GuideSty.Meta (M), Adware.Downloader.twKn5b.Meta (M), Adware.Downloader.Snplp.Meta (M), Adware.Bundler.bHEr2t.Meta (M), Adware.Downloader.5jnZ.Meta (M), Adware.Downloader.J0AfS.Meta (M), Adware.Downloader.tLXjk.Meta (M), PUP.SpaceSoundPro.lSc0ylxL.Installer.Meta (M), PUP.DefenseM (M), Adware.Downloader.muuka.Meta (M), PUP.SoundPlusPro.Installer (M)
96.00%

ESET NOD32
MSIL/Injector.ORY trojan, MSIL/Injector.PMV trojan, MSIL/Injector.POM trojan, MSIL/Injector.PPZ trojan
20.00%

Dr.Web
Adware.Eorezo.860, Adware.Eorezo.898
8.00%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.Temonde.12
2.00%

F-Secure
Variant.Application.Bundler
2.00%

The domain dl.wizzuniquify.com has been seen to resolve to the following 6 IP addresses.

dl5.wizzuniquify.com
May 20, 2016

dl4.wizzuniquify.com
March 30, 2016

dl2.wizzuniquify.com
February 17, 2016

dl3.wizzuniquify.com
February 17, 2016

dl0.wizzuniquify.com
February 1, 2016

dl1.wizzuniquify.com
February 1, 2016

File downloads found at URLs served by dl.wizzuniquify.com.

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

URL:
http://dl.wizzuniquify.com/

Title:
“Uniquify - Login”

Web server:
Apache/2.4.10 (Debian)