dll513.retailfile.biz
Fundacion Private Whois (Proxy Registrant)
Domain Information
The domain dll513.retailfile.biz is registered by proxy through INTERNET.BS CORP. and was originally registered in September of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the FDCservers.net network.
Registrant:
Fundacion Private Whois
Registrar:
INTERNET.BS CORP.
Server location:
Illinois, United States (US)
Create date:
Monday, September 15, 2014
Expires date:
Monday, September 14, 2015
Updated date:
Monday, September 15, 2014
ASN:
AS6461 ABOVENET - Abovenet Communications, Inc,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.ViaAdvertisingGroupLimited.i, PUP.Installer.ViaAdvertisingGroupLimited.GG, PUP.Installer.ViaAdvertisingGroupLimited.T, PUP.Via Advertising.ViaAdvertisingGroup.Bundler (M), PUP.Via Advertising.ViaAdver.Bundler (M)
100.00%
avast!
Win32:Downloader-UEO [PUP]
27.27%
VIPRE Antivirus
Threat.4758264
27.27%
Dr.Web
Adware.Downware.8624, Adware.Downware.8424, Adware.Downware.8715
27.27%
Malwarebytes
PUP.Optional.Downloader
27.27%
IKARUS anti.virus
PUA.Expressdownloader
27.27%
NANO AntiVirus
Riskware.Win32.Downware.deefau, Riskware.Win32.Downware.dewbzs
27.27%
Avira AntiVirus
TR/EDownload.J.2, APPL/Downloader.Gen8
27.27%
Agnitum Outpost
Riskware.Agent
27.27%
AVG
Adware BundleApp_r
27.27%
Baidu Antivirus
PUA.Win32.ExpressDownloader
27.27%
K7 AntiVirus
Adware
27.27%
Kaspersky
HEUR:Trojan.Win32.Generic
27.27%
Zillya! Antivirus
Downloader.Agent.Win32.221797, Downloader.Agent.Win32.221440
27.27%
Vba32 AntiVirus
Downloader.Agent
27.27%
The domain dll513.retailfile.biz has been seen to resolve to the following IP address.
File downloads found at URLs served by dll513.retailfile.biz.
URL:
http://dll513.retailfile.biz/
Web server:
nginx/0.7.67 (PHP/5.3.3-7+squeeze14)
Related Domains