fileflow.co

BRSOFTWARELLC

Domain Information

The domain fileflow.co registered by BRSOFTWARELLC was initially registered in March of 2015 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
NAMECHEAP, INC.

Server location:
Virginia, United States (US)

Create date:
Tuesday, March 10, 2015

Expires date:
Wednesday, March 9, 2016

Updated date:
Friday, March 18, 2016

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (89% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Tecnolab.Installer (M), PUP.BR Software.BRSOFTWARE.Installer (M), PUP.BR Software.GOSAFER.Installer (M), PUP.BR Software.BRSOFTWA.Installer (M), PUP.BR Software.GENCOLAB.Installer (M), PUP.BR Software (M)
81.25%

MicroWorld eScan
Adware.Downloader.BG, Trojan.GenericKD.2405264
18.75%

nProtect
Adware.Downloader.BG, Trojan.GenericKD.2405264
18.75%

K7 AntiVirus
Unwanted-Program , Trojan-Downloader
18.75%

ESET NOD32
NSIS/TrojanDownloader.Adload.AM
18.75%

avast!
NSIS:Downloader-ACE [PUP]
18.75%

Kaspersky
not-a-virus:AdWare.NSIS.Agent, Trojan.Win32.Nurjax, Trojan-Downloader.Win32.Genome
18.75%

Bitdefender
Adware.Downloader.BG, Trojan.GenericKD.2405264
18.75%

Lavasoft Ad-Aware
Adware.Downloader.BG, Trojan.GenericKD.2405264
18.75%

Emsisoft Anti-Malware
Adware.Downloader.BG, Trojan.GenericKD.2405264
18.75%

F-Secure
Adware.Downloader.BG, Trojan.GenericKD.2405264
18.75%

VIPRE Antivirus
Amonetize
18.75%

Avira AntiVirus
TR/Dldr.Adload.zewqw, TR/Dldr.Adload.66295
18.75%

AhnLab V3 Security
Adware/Win32.LoadMoney, PUP/Win32.Adload
18.75%

G Data
Adware.Downloader.BG, Trojan.GenericKD.2405264
18.75%

The domain fileflow.co has been seen to resolve to the following 7 IP addresses.

ec2-52-20-13-20.compute-1.amazonaws.com
April 16, 2016

ec2-52-201-52-18.compute-1.amazonaws.com
April 16, 2016

ec2-52-3-127-100.compute-1.amazonaws.com
March 31, 2016

ec2-52-86-210-34.compute-1.amazonaws.com
March 31, 2016

February 26, 2016

January 30, 2016

June 19, 2015

File downloads found at URLs served by fileflow.co.

1 / 68      (Adware)
http://fileflow.co/ids/.../Download Letra da Musica Obrigado Mãe - Naiara Azevedo - Lançamento 2014 - Baixar MP3 Grátis.exe  (download letra da musica obrigado me - naiara azevedo - lanamento 2014 - baixar mp3 grtis.exe)

1 / 68      (PUP)
http://fileflow.co/ids/.../Pink Floyd The Wall.exe  (d14341e9c87036b243249a05569d93f1)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (Adware)
http://fileflow.co/ids/.../720p HD mp4.exe  (0ca53658cc32b317c66e6ae106a69c31)

1 / 68      (Adware)

1 / 68      (PUP)
http://fileflow.co/ids/.../Baixar Filme Super Velozes, Mega Furiosos – Dublado.exe  (baixar filme super velozes, mega furiosos dublado.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

22 / 68    (PUP)
http://fileflow.co/ids/.../Download Summer - Calvin Harris - Baixar MP3 Grátis.exe  (download summer - calvin harris - baixar mp3 grtis.exe)

1 / 68      (Adware)

1 / 68      (PUP)
http://fileflow.co/ids/.../Os Vingadores.exe  (d1b39dd43cca36c2c7a04023aefdf732)

26 / 68    (PUP)

25 / 68    (PUP)

April 14, 2015

URL:
http://fileflow.co/

Google Analytics:
UA-12529737

Title:
“fileflow.co - domain expired”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx