files4.mirror7.net

mark marrocco

Domain Information

The domain files4.mirror7.net registered by mark marrocco was initially registered in July of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Massachusetts, United States (US)

Create date:
Wednesday, July 31, 2013

Expires date:
Monday, July 31, 2017

Updated date:
Saturday, August 1, 2015

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DownloadAdmin.U, PUP.Installer.DownloadAdmin.T, PUP.Installer.DownloadAdmin.R, PUP.Installer.DownloadAdmin.O, PUP.Installer.DownloadAdmin.V, PUP.Installer.Tightrope, Threat.Tightrope.Bundler, PUP.Tightrope.DownloadAdmin.Bundler (M), PUP.TightRope.Bundler.Installer.Meta (M), PUP.Tightrope.Download.Bundler (M)
100.00%

Malwarebytes
PUP.Optional.DownloadAdmin
82.61%

VIPRE Antivirus
DownloadAdmin, Threat.4783369, Threat.4150696
82.61%

Dr.Web
Adware.Downware.2220, Adware.DAdmin.151, Threat.Undefined
82.61%

Sophos
Download Admin, PUA 'DownloadAdmin' (of type Adware)
82.61%

Avira AntiVirus
ADWARE/Adware.Gen, ADWARE/Adware.Gen9
73.91%

F-Secure
Adware:W32/WebInstallBundle
69.57%

AVG
Generic, MalSign.InstallC
69.57%

NANO AntiVirus
Riskware.Win32.Downware.crgjbr, Trojan.Win32.Downware.crgjbr, Trojan.Win32.DAdmin.djhtdm, Riskware.Win32.Downware.djahkt
65.22%

herdProtect (fuzzy)
a variant of bee4a545f7b9705f6d3dc2c45e3e095135d3a543, a variant of 2cc1784de9a99e051538cf8b0f4e525e8f9031be, a variant of 515fd89eed11d6fde64e6fe643ad90a83ca6d9ff
60.87%

Comodo Security
Application.Win32.Agent.OCK, Application.Win32.DownloadAdmin.TTK, ApplicUnwnt, Application.Win32.DownloadAdmin.ANGL
56.52%

Clam AntiVirus
Win.Adware.Agent-6650, Win.Adware.Downloadadmin, Win.Adware.Downloadadmin-1
52.17%

ESET NOD32
Win32/DownloadAdmin
47.83%

avast!
Adware-OH [Adw], DownloadAdmin-K [PUP]
47.83%

ESET NOD32
Win32/DownloadAdmin.G potentially unwanted application, Win32/DownloadAdmin.H potentially unwanted application
34.78%

The domain files4.mirror7.net has been seen to resolve to the following 21 IP addresses.

a23-15-7-105.deploy.static.akamaitechnologies.com
June 3, 2016

a23-15-7-97.deploy.static.akamaitechnologies.com
June 3, 2016

a104-96-221-91.deploy.static.akamaitechnologies.com
May 29, 2016

a104-96-221-98.deploy.static.akamaitechnologies.com
May 29, 2016

a23-15-9-58.deploy.static.akamaitechnologies.com
April 21, 2016

a23-15-9-18.deploy.static.akamaitechnologies.com
April 21, 2016

a23-0-160-72.deploy.static.akamaitechnologies.com
February 29, 2016

a23-67-243-59.deploy.static.akamaitechnologies.com
May 3, 2015

a23-62-7-33.deploy.static.akamaitechnologies.com
December 1, 2014

a23-62-7-9.deploy.static.akamaitechnologies.com
December 1, 2014

a23-0-160-74.deploy.static.akamaitechnologies.com
December 1, 2014

a184-50-229-177.deploy.static.akamaitechnologies.com
September 5, 2014

a184-50-229-137.deploy.static.akamaitechnologies.com
September 5, 2014

a184-51-126-32.deploy.static.akamaitechnologies.com
September 5, 2014

a184-51-126-56.deploy.static.akamaitechnologies.com
September 5, 2014

a23-0-160-65.deploy.static.akamaitechnologies.com
September 2, 2014

a23-0-160-11.deploy.static.akamaitechnologies.com
September 2, 2014

July 31, 2014

July 31, 2014

May 16, 2014

a23-67-243-24.deploy.static.akamaitechnologies.com
May 16, 2014

File downloads found at URLs served by files4.mirror7.net.

The following 380 files have been seen to comunicate with files4.mirror7.net in live environments.

 
Latest 20 of 389 files