download.flv.com

WHOIS PRIVACY PROTECTION SERVICE, INC.  (Proxy Registrant)

Domain Information

The domain download.flv.com is registered by proxy through ENOM, INC. and was originally registered in November of 1996. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Tuesday, November 19, 1996

Expires date:
Friday, November 18, 2016

Updated date:
Wednesday, December 16, 2015

ASN:
AS16265 LEASEWEB LeaseWeb B.V.

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.GreentreeApplicationsSRL, PUP.Optional.Installer, Win32.Generic.GreenTreeApplicationssrl.Installer.Meta, Win32.Generic.GreentreeApplications.Installer.Meta, PUP.FLVDnwload.Bundler.Installer.Meta (M), PUP.Optional.Greentre.Installer
96.88%

Dr.Web
Adware.BGuard.24, Adware.Downware.10873, Adware.Downware.12805
37.50%

Bkav FE
W32.HfsAdware
31.25%

Kaspersky
not-a-virus:AdWare.Win32.Agent
31.25%

Vba32 AntiVirus
AdWare.Agent
31.25%

Fortinet FortiGate
Adware/Agent
31.25%

Panda Antivirus
Generic Suspicious
31.25%

Baidu Antivirus
Adware.Win32.Agent
28.13%

Zillya! Antivirus
Downloader.VB.Win32.96426
21.88%

AVG
Generic
15.63%

Sophos
Spigot Toolbar (PUA)
12.50%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A
3.13%

F-Secure
Application:W32/Generic.70053c248f!Online
3.13%

Malwarebytes
PUP.Optional.Spigot
3.13%

Trend Micro House Call
Suspicious_GEN.F47V1124
3.13%

The domain download.flv.com has been seen to resolve to the following 2 IP addresses.

hosted-by.leaseweb.com
June 27, 2016

ytd2.greentreeapps.ro
January 2, 2016

File downloads found at URLs served by download.flv.com.

8 / 68      (PUP)
http://download.flv.com/kits/.../flvconverter_setup.exe  (7719746dcab8b4d9d5f89035fc5288d2)

1 / 68      (PUP)

1 / 68      (PUP)
http://download.flv.com/.../flvdownloader_setup.exe  (f9f43d0f0eb5be359f00b103d7b1c84c)

1 / 68      (PUP)
http://download.flv.com/kits/.../flvdownloader_setup.exe  (55f57842f612fc265d75e3fe083dcc32)

1 / 68      (Malware)
http://download.flv.com/.../flvconverter_setup.exe  (80c8f7c90241bf5460c2a5a7f011d9dc)

The following 203 files have been seen to comunicate with download.flv.com in live environments.

 
Latest 20 of 208 files

URL:
http://download.flv.com/

Web server:
nginx