files4.mirror4.net

mark marrocco

Domain Information

The domain files4.mirror4.net registered by mark marrocco was initially registered in July of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Francisco, California within the United States which resides on the Fastly network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Wednesday, July 31, 2013

Expires date:
Monday, July 31, 2017

Updated date:
Saturday, August 1, 2015

ASN:
AS54113 FASTLY - Fastly, US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Recode.U, PUP.Installer.Recode.R, Threat.Installer.Recode, PUP.DownloadAdmin.Recode.Installer (M), Adware.DownloadAdmin.Bundler.Installer.Meta (M), PUP.DownloadAdmin.Bundler.Installer.Meta (M), PUP.DownloadAdmin (M)
74.00%

ESET NOD32
Win32/DownloadAdmin.G potentially unwanted application
66.00%

Dr.Web
Adware.Downware.2220, Adware.DAdmin.151, Adware.DAdmin.97, Threat.Undefined, Trojan.Vittalia.81
66.00%

VIPRE Antivirus
Threat.4783369, Threat.4150696, DownloadAdmin, Trojan.Win32.Generic
66.00%

avast!
Adware-OH [Adw], Win32:Rootkit-gen [Rtk], Win32:Adware-BRR [Adw], DownloadAdmin-A [Adw], Adware-gen [Adw]
52.00%

Malwarebytes
PUP.Optional.FlashPro, PUP.Optional.BundleInstaller.A, PUP.Optional.DownloadAdmin
46.00%

NANO AntiVirus
Riskware.Win32.Downware.crgjbr, Trojan.Win32.Downware.crgjbr, Trojan.Win32.DAdmin.djhtdm, Riskware.Nsis.Downware.dlgjls
42.00%

Sophos
Download Admin, PUA 'Download Admin'
36.00%

AVG
Generic
30.00%

Clam AntiVirus
Win.Adware.Agent-6650, Win.Adware.Downloadadmin-1
28.00%

Avira AntiVirus
APPL/DownloadAdminG.A.17, Adware/Agent.OCK.8, APPL/Dldr.Admin.iona, PUA/DownloadAdmin.Gen
26.00%

Comodo Security
Application.Win32.Agent.OCK, Application.Win32.DownloadAdmin.TTK, Application.Win32.DownloadAdmin.ANGL, Application.Win32.DownloadAdmin.AGGL
22.00%

K7 AntiVirus
Adware , Unwanted-Program , Trojan
22.00%

Agnitum Outpost
Riskware.Agent
20.00%

AhnLab V3 Security
PUP/Win32.BundleInstaller
20.00%

The domain files4.mirror4.net has been seen to resolve to the following 15 IP addresses.

August 4, 2016

August 4, 2016

July 15, 2016

February 10, 2016

May 3, 2015

May 3, 2015

December 4, 2014

October 9, 2014

June 9, 2014

May 31, 2014

May 30, 2014

May 30, 2014

May 30, 2014

May 29, 2014

May 29, 2014

File downloads found at URLs served by files4.mirror4.net.

 
Latest 30 of 92 download URLs

The following 6 files have been seen to comunicate with files4.mirror4.net in live environments.

URL:
http://files4.mirror4.net/

Web server:
Varnish

Facebook:
Shares:  2

Statistics are for the previous month.