files5.mirror2.info
Domains By Proxy, LLC (Proxy Registrant)
Domain Information
The domain files5.mirror2.info is registered by proxy through GoDaddy.com, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Registrant:
Domains By Proxy, LLC
Registrar:
GoDaddy.com, LLC
Server location:
Texas, United States (US)
ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.
Google Safe Browsing:
unwanted
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.FullSpectrumInteractive.Y, PUP.Installer.FullSpectrumInteractive.T, PUP.DownloadAdmin.FullSpectrumInteractive.Installer (M), PUP.DownloadAdmin.Groovecom.Installer (M), PUP.DownloadAdmin.FullSpec.Installer (M), PUP.DownloadAdmin.Grooveco.Installer (M), PUP.UPlayerMedia.Installer.Meta (M), PUP.Tightrope.Download.Bundler (M), PUP.DownloadAdmin (M)
100.00%
VIPRE Antivirus
DownloadAdmin
10.00%
ESET NOD32
Win32/DownloadAdmin
10.00%
Sophos
Download Admin
10.00%
Dr.Web
Adware.Downware.2220, Adware.DownloadAdmin.1
8.00%
NANO AntiVirus
Trojan.Win32.Downware.crgjbr
8.00%
Malwarebytes
PUP.Optional.FullSpectrumAdmin, PUP.Optional.DownloadAdmin
6.00%
herdProtect (fuzzy)
a variant of 91e077df334609d9d06c0aa406732444f35c0751, a variant of c0c8c64539073aa814b18a59f587cdb4feda77fb, a variant of 826ef148d2f34b4be1519911fb7b422ae6c50ac9
6.00%
Rising Antivirus
PE:Malware.XPACK/RDM!5.1
6.00%
avast!
Adware-OH [Adw], Win32:PUP-gen [PUP]
4.00%
AVG
InstallC, MultiBundle
4.00%
McAfee
Artemis!CAC2871D15F6, Artemis!4E3C8437137D
4.00%
F-Secure
Adware:W32/WebInstallBundle
2.00%
AhnLab V3 Security
PUP/Win32.Downloader
2.00%
K7 AntiVirus
Unwanted-Program
2.00%
The domain files5.mirror2.info has been seen to resolve to the following 4 IP addresses.
50.22.63.138-static.reverse.softlayer.com
October 20, 2014
50.22.63.140-static.reverse.softlayer.com
October 20, 2014
108.168.160.45-static.reverse.softlayer.com
February 6, 2014
50.97.63.217-static.reverse.softlayer.com
February 6, 2014
File downloads found at URLs served by files5.mirror2.info.
Latest 30 of 187 download URLs
The following 236 files have been seen to comunicate with files5.mirror2.info in live environments.