flv.fakdmr.com
Grupo Blidoo S.L.
Domain Information
The domain flv.fakdmr.com registered by Grupo Blidoo S.L. was initially registered in August of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrant:
Grupo Blidoo S.L.
Registrar:
GODADDY.COM, LLC
Server location:
Virginia, United States (US)
Create date:
Wednesday, August 21, 2013
Expires date:
Friday, August 21, 2015
Updated date:
Monday, August 18, 2014
ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.BechiroSL.O, PUP.Installer.BechiroSL.F
100.00%
Malwarebytes
PUP.Optional.InstallCore
90.91%
K7 AntiVirus
Unwanted-Program
90.91%
VIPRE Antivirus
DownloadMR
90.91%
G Data
Win32.Application.Morstar
90.91%
Vba32 AntiVirus
Downware.Morstar
90.91%
ESET NOD32
Win32/FirseriaInstaller (variant)
90.91%
Rising Antivirus
PE:Malware.FirseriaInstaller!6.17AF
90.91%
Comodo Security
Application.Win32.Solimba.L
72.73%
MicroWorld eScan
Gen:Variant.Strictor.55064
9.09%
avast!
Win32:PUP-gen [PUP]
9.09%
Bitdefender
Gen:Variant.Strictor.55064
9.09%
Agnitum Outpost
PUA.Firseria
9.09%
Lavasoft Ad-Aware
Gen:Variant.Strictor.55064
9.09%
The domain flv.fakdmr.com has been seen to resolve to the following 4 IP addresses.
ec2-75-101-156-240.compute-1.amazonaws.com
September 3, 2014
ec2-54-197-235-95.compute-1.amazonaws.com
September 3, 2014
dl02.lw100.1e111.net
April 14, 2014
dl01.lw100.1e111.net
April 14, 2014
File downloads found at URLs served by flv.fakdmr.com.
URL:
http://flv.fakdmr.com/
Network:
Amazon Web Services (AWS), running an EC2 instance
Web server:
nginx (PHP/5.5.16)