The domain go34down.com is registered by proxy through GODADDY.COM, LLC and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Haarlem, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Noord-Holland, Netherlands (NL)
Create date:
Monday, July 1, 2013
Expires date:
Friday, July 1, 2016
Updated date:
Thursday, July 2, 2015
ASN:
AS30633 LEASEWEB-US - Leaseweb USA, Inc.,US
Google Safe Browsing:
unwanted
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Somoto.p, PUP.Somoto.I, PUP.SomotoIsrael.I, PUP.Somoto.Bundler (M), Adware.Somoto.Installer.Meta (M), PUP.Somoto.SomotoIsrael.Bundler (M), PUP.Somoto.SomotoIs.Bundler (M), PUP.Somoto (M)
87.50%
ESET NOD32
Win32/DownWare, Win32/Somoto, Win32/Somoto.Q potentially unwanted, Win32/DownWare.L potentially unwanted
20.83%
Baidu Antivirus
Adware.Win32.DownWare, Adware.Win32.Somoto, PUA.Win32.DownWare
20.83%
Sophos
Generic PUA IM, Somoto BetterInstaller, Generic PUA FD
18.75%
Qihoo 360 Security
Win32/Application.5d6, Win32/Virus.Downloader.942, Win32/Virus.Downloader.192, Win32/Application.074, Win32/Trojan.Multi.daf
18.75%
Kaspersky
not-a-virus:Downloader.NSIS.Agent, not-a-virus:Downloader.Win32.Agent, Trojan.Win32.Badur, not-a-virus:AdWare.Win32.Agent
16.67%
Dr.Web
Adware.Somoto.17, Trojan.Packed.28357, Trojan.MulDrop4.11744, Trojan.DownLoader12.24492, Trojan.Packed.27732
16.67%
McAfee
RDN/Generic PUP.x!c2e, RDN/Generic PUP.x!cj3, Artemis!522CA56F9C83, Artemis!7B07071549BB, Artemis!F3C14BCA37B3, Artemis!A737D6D2BC80
14.58%
VIPRE Antivirus
Trojan.Win32.Generic
14.58%
AVG
AdInstaller.Somoto, Generic, Downloader
14.58%
K7 AntiVirus
Trojan , Unwanted-Program , Adware
12.50%
avast!
Win32:PUP-gen [PUP], Win32:Malware-gen, Win32:Somoto-R [PUP], Win32:Somoto-O [PUP]
12.50%
Panda Antivirus
PUP/MultiToolbar.A, Generic Suspicious, Trj/CI.A, Trj/Chgt.E
12.50%
AhnLab V3 Security
Win-PUP/Somoto, Win-AppCare/Somoto.236920.B, PUP/Win32.Somoto
10.42%
MicroWorld eScan
Application.Bundler.Somoto.I, Application.Bundler.Somoto.J
8.33%
The domain go34down.com has been seen to resolve to the following IP address.
File downloads found at URLs served by go34down.com.
Latest 30 of 69 download URLs