i_mp3-es_ytd-video-downloader-5-1-0.fareditrewiry.com
Only contact by email, all postal mail will be rejected (Proxy Registrant)
Domain Information
The domain i_mp3-es_ytd-video-downloader-5-1-0.fareditrewiry.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP, SL
Server location:
Nord-Pas-De-Calais, France (FR)
Create date:
Tuesday, December 30, 2014
Expires date:
Friday, December 30, 2016
Updated date:
Monday, November 23, 2015
ASN:
AS16276 OVH OVH SAS,FR
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
Win32.Generic
100.00%
Bkav FE
W32.HfsAdware
100.00%
McAfee
Artemis!8A5AE67E0CA6
100.00%
Malwarebytes
PUP.Optional.APNToolBar.A
100.00%
Dr.Web
Adware.Downware.10873
100.00%
Vba32 AntiVirus
Backdoor.Sinowal
100.00%
Baidu Antivirus
Adware.Win32.AskToolbar
100.00%
ESET NOD32
Win32/Bundled.Toolbar.Ask.G potentially unsafe (variant)
100.00%
IKARUS anti.virus
PUA.Offer
100.00%
Fortinet FortiGate
Riskware/Ask
100.00%
avast!
Win32:Adware-gen [Adw]
100.00%
G Data
Win32.Adware.Spigot
100.00%
Quick Heal
AdWare.MSIL.g6 (Not a Virus)
100.00%
K7 AntiVirus
Trojan
100.00%
Trend Micro House Call
TROJ_GEN.R047H07HS14
100.00%
The domain i_mp3-es_ytd-video-downloader-5-1-0.fareditrewiry.com has been seen to resolve to the following IP address.
ns3014179.ip-149-202-192.eu
June 5, 2016
File downloads found at URLs served by i_mp3-es_ytd-video-downloader-5-1-0.fareditrewiry.com.
The following 40 files have been seen to comunicate with i_mp3-es_ytd-video-downloader-5-1-0.fareditrewiry.com in live environments.
URL:
http://i_mp3-es_ytd-video-downloader-5-1-0.fareditrewiry.com/
Related Domains