dll513.yourfile-downloader.net

Whois Privacy Corp.

Domain Information

The domain dll513.yourfile-downloader.net registered by Whois Privacy Corp. was initially registered in January of 2015 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Registrar:
TLD REGISTRAR SOLUTIONS LTD

Server location:
Quebec, Canada (CA)

Create date:
Tuesday, January 27, 2015

Expires date:
Friday, January 27, 2017

Updated date:
Thursday, January 28, 2016

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Task.Via Advertising, PUP.Via Advertising.Bundler, PUP.Via Advertising.Supers.Bundler (M), PUP.Via Advertising.ViaAdvertisingGroup.Bundler (M), PUP.Via Advertising.RomirProduction.Bundler (M), PUP.Via Advertising.ViaAdver.Bundler (M), PUP.Via Advertising.RomirPro.Bundler (M), PUP.Via Advertising (M)
94.12%

VIPRE Antivirus
Threat.4758264, Threat.4783941, Threat.4150696, Via Advertising
23.53%

avast!
Win32:Downloader-UEO [PUP], Win32:Adware-gen [Adw], Win32:Dropper-gen [Drp], Win32:Malware-gen
20.59%

ESET NOD32
Win32/ExpressDownloader.K potentially unwanted application, Detection.Undefined
20.59%

AVG
Generic, Adware Generic_r.YX
20.59%

Avira AntiVirus
APPL/Downloader.Gen4, PUA/EDownloader.Gen
17.65%

Dr.Web
Adware.Downware.9685, Adware.Downware.9713, Adware.Downware.9735, Adware.Downware.10330, Adware.Downware.9685
14.71%

Sophos
PUA 'Go For Files'
14.71%

Comodo Security
Virus.Win32.Virut.CE
14.71%

K7 AntiVirus
Unwanted-Program , Trojan
11.76%

AhnLab V3 Security
Win-PUP/YourFileDownloader, PUP/Win32.Downware, PUP/Win32.YourFileDownloader
11.76%

F-Secure
Adware.BrowseFox.BQ, Riskware.Application.YourFileDownloader.B, Adware.Agent.PGP
11.76%

Malwarebytes
PUP.Optional.Downloader
11.76%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.24, Application.YourFileDownloader, Adware.Agent.PGP
11.76%

Agnitum Outpost
PUA.Downware, Riskware.Agent
8.82%

The domain dll513.yourfile-downloader.net has been seen to resolve to the following 6 IP addresses.

September 15, 2016

June 22, 2016

ns513839.ip-167-114-156.net
April 19, 2016

ns1.ibspark.com
January 29, 2016

209.95.43.22.static.midphase.com
May 5, 2015

February 13, 2015

File downloads found at URLs served by dll513.yourfile-downloader.net.

 
Latest 30 of 36 download URLs

The following 172 files have been seen to comunicate with dll513.yourfile-downloader.net in live environments.

 
Latest 20 of 195 files

URL:
http://dll513.yourfile-downloader.net/

Google Analytics:
UA-48689684

Title:
“yourfile-downloader.net”

Web server:
nginx

30 of 618 related domains