ffloader.com

Whois Privacy Corp.

Domain Information

The domain ffloader.com registered by Whois Privacy Corp. was initially registered in February of 2015 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roosendaal, Noord-Brabant within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
TLD REGISTRAR SOLUTIONS LTD

Server location:
Noord-Brabant, Netherlands (NL)

Create date:
Monday, February 23, 2015

Expires date:
Tuesday, February 23, 2016

Updated date:
Wednesday, May 13, 2015

ASN:
AS43350 NFORCE NFOrce Entertainment BV,NL

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
DownloadManager.AXELPOWER, DownloadManager.Installer.AXELPOWER, PUP.AXELPOWER (M), PUP.AXELPOWE (M), PUP.AXELPOWE.Installer (M), PUP (M)
95.83%

Dr.Web
Adware.Downware.9852
16.67%

VIPRE Antivirus
Threat.4150696
4.17%

ESET NOD32
Win32/Adware.OxyPumper application
4.17%

AVG
Adware Generic6.ZRK
4.17%

Kaspersky
not-a-virus:Downloader.Win32.Agent
4.17%

Malwarebytes
PUP.Optional.OxyPumper
4.17%

Zillya! Antivirus
Downloader.Agent.Win32.240606
4.17%

K7 AntiVirus
Adware
4.17%

Agnitum Outpost
PUA.Downloader
4.17%

F-Prot
W32/S-649a0c01
4.17%

Clam AntiVirus
Win.Trojan.Downloader-65035
4.17%

Comodo Security
Application.Win32.OxyPumper.DS
4.17%

Vba32 AntiVirus
Downloader.Agent
4.17%

Panda Antivirus
Trj/Genetic.gen
4.17%

The domain ffloader.com has been seen to resolve to the following 2 IP addresses.

May 22, 2016

urlforward.topdns.com
January 30, 2016

File downloads found at URLs served by ffloader.com.

The following 9 files have been seen to comunicate with ffloader.com in live environments.

URL:
http://ffloader.com/

Title:
“Go.com | The Walt Disney Company”

Description:
“Go.com is the top-level home on the Internet to the online properties of The Walt Disney Company.”