download-cdn.drp.su

Private Person  (Proxy Registrant)

Domain Information

The domain download-cdn.drp.su is registered by proxy through R01-REG-FID and was originally registered in June of 2009. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
R01-REG-FID

Server location:
Arizona, United States (US)

Create date:
Wednesday, June 17, 2009

Expires date:
Friday, June 17, 2016

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc., US

Root domain:

Scanner detections:
Detections  (78% detected)

Scan engine
Details
Detections

Reason Heuristics
Win32.Generic.KuzyakovArturVyacheslavovichIP.Meta, Win32.Generic.KuzyakovArturVyacheslavovichIP.Installer.Meta, Adware.Bundler.Meta (M)
100.00%

Microsoft Security Essentials
Threat.Undefined
5.56%

avast!
Win32:SaliCode
5.56%

F-Secure
Win32.Sality.3
5.56%

Emsisoft Anti-Malware
Win32.Sality
5.56%

Dr.Web
Win32.Sector.22
5.56%

F-Prot
W32/Sality.gen2
5.56%

McAfee
Virus.W32/Sality.gen.z
5.56%

Norman
Win32.Sality.3
5.56%

Lavasoft Ad-Aware
Win32.Sality.3
5.56%

Kaspersky
Virus.Win32.Sality
5.56%

ESET NOD32
Win32/Sality.NBA virus
5.56%

The domain download-cdn.drp.su has been seen to resolve to the following 6 IP addresses.

June 28, 2016

June 28, 2016

October 12, 2015

October 12, 2015

July 16, 2015

July 16, 2015

File downloads found at URLs served by download-cdn.drp.su.

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_546880821.1464336190.exe)

0 / 68
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_0.000482.1435420749.43111864723.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (ef96ee170ad3e951377dcfd9f51b7fc0)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (501c055e74275cc248e6170c61815acd)

1 / 68      (PUP)

0 / 68
http://download-cdn.drp.su/DRP-Full.torrent  (903bda3a3237e1776fcb17f650d4b76d)

0 / 68
http://download-cdn.drp.su/DriverPack-Online.exe  (836290203c39a538fd9f0a1876b38987)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_599399633.1436898155.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_467818316.1458298228.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_178435651.1457107142.exe)

0 / 68
http://download-cdn.drp.su/DRP-Full.torrent  (ab3e5d11639d9a5da0def7e338674fc1)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_1588726032.1455995077.exe)

0 / 68
http://download-cdn.drp.su/DRP-Full.torrent  (driverpack-solution.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_1018764142.1447453931.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_967620892.1437816531.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_2057143084.1451292654.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (gdriverpack-online_312579022.1446135843.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_1327303049.1442155536.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack_online_1616273229.exe)

12 / 68    (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_955892683.1437002572.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_1482085281.1436546707.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_1788851912.1433606158.exe)

1 / 68      (PUP)
http://download-cdn.drp.su/DriverPack-Online.exe  (driverpack-online_1488412137.1436092797.exe)

URL:
http://download-cdn.drp.su/

Title:
“Index of /”

SSL certificate subject:
CN=ssl256375.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx