download.fuzezip.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain download.fuzezip.com is registered by proxy through GODADDY.COM, LLC and was originally registered in September of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Tel Aviv, Israel (IL)

Create date:
Tuesday, September 4, 2012

Expires date:
Sunday, September 4, 2016

Updated date:
Monday, August 25, 2014

ASN:
AS6461 MFNX MFN - Metromedia Fiber Network

Root domain:

Scanner detections:
Detections  (91% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.KoyoteLab.W, PUP.Bandoo.KoyoteLab.Installer (M)
100.00%

Dr.Web
Adware.Downware.942, Adware.Downware.964
80.00%

Trend Micro House Call
TROJ_GEN.F47V0724, Suspicious_GEN.F47V0617, Suspicious_GEN.F47V0821, Suspicious_GEN.F47V0905
40.00%

Malwarebytes
PUP.Optional.Koyote.A
40.00%

G Data
Win32.Application.Searchsuite
30.00%

AVG
SearchSuite
30.00%

McAfee
Artemis!9E2A597317B5, Artemis!9B296CE0F08C
20.00%

ESET NOD32
Win32/KoyoteLab (variant)
20.00%

IKARUS anti.virus
PUA.SearchSuite
20.00%

Baidu Antivirus
PUA.Win32.KoyoteLab
20.00%

Boost by Reason
Adware.Installer.KoyoteLab.W
10.00%

Bkav FE
W32.Clodd0b.Trojan
10.00%

XVirus List
Win.Detected
10.00%

Fortinet FortiGate
Riskware/KoyoteLab
10.00%

The domain download.fuzezip.com has been seen to resolve to the following 2 IP addresses.

94.31.0.25.IPYX-076665-ZYO.above.net
February 3, 2014

July 24, 2013

File downloads found at URLs served by download.fuzezip.com.

0 / 68
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r184-w-bc.exe)

1 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r179-w-bi.exe)

11 / 68    (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r240-w-bc.exe)

1 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r163-n-bi.exe)

10 / 68    (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r152-w-bc.exe)

6 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r184-w-bc.exe)

2 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r158-w-bi.exe)

3 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r158-w-bi.exe)

3 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r166-w-bc.exe)

2 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (FuzeZipSetup-r167-w-bc.exe)

5 / 68      (PUP)
http://download.fuzezip.com/FuzeZipSetup.exe  (fuzezipsetup-r155-w-bc.exe)

The following 15 files have been seen to comunicate with download.fuzezip.com in live environments.

URL:
http://download.fuzezip.com/

Web server:
Apache