install-cdn.theswiftrecord.com
Domains By Proxy, LLC (Proxy Registrant)
Domain Information
The domain install-cdn.theswiftrecord.com is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Massachusetts, United States (US)
Create date:
Wednesday, February 18, 2015
Expires date:
Sunday, February 18, 2018
Updated date:
Monday, March 21, 2016
ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
Threat.Yontoo.SwiftRecord, PUP.Yontoo.SwiftRecord, PUP.Yontoo.SwiftRecord (M)
100.00%
IKARUS anti.virus
PUA.BrowseFox
100.00%
Dr.Web
Trojan.Yontoo.1016, Trojan.Yontoo.1734
94.74%
K7 AntiVirus
Trojan
94.74%
NANO AntiVirus
Trojan.Win32.Yontoo.dnkubo
94.74%
F-Prot
W32/S-f64f6ec1
94.74%
Vba32 AntiVirus
AdWare.MSIL.Agent
94.74%
Baidu Antivirus
Adware.Win32.BrowseFox
94.74%
AVG
BrowseFox, AdPlugin
94.74%
Malwarebytes
PUP.Optional.SwiftRecord.A
89.47%
Avira AntiVirus
ADWARE/BrowseFox.Gen2
89.47%
Bkav FE
W32.HfsAdware, W32.BrowseFoxAC.Adware
89.47%
Agnitum Outpost
Riskware.Agent
89.47%
Rising Antivirus
PE:Malware.UDM!6.1D8B, PE:Adware.BrowseFox!6.1D8B
89.47%
Qihoo 360 Security
HEUR/QVM30.1.Malware.Gen
84.21%
The domain install-cdn.theswiftrecord.com has been seen to resolve to the following 18 IP addresses.
a104-96-220-155.deploy.static.akamaitechnologies.com
May 18, 2016
a104-96-220-106.deploy.static.akamaitechnologies.com
May 16, 2016
a104-96-220-113.deploy.static.akamaitechnologies.com
May 16, 2016
a184-51-126-123.deploy.static.akamaitechnologies.com
April 20, 2016
a184-51-126-121.deploy.static.akamaitechnologies.com
April 20, 2016
a23-0-160-11.deploy.static.akamaitechnologies.com
April 16, 2016
a23-0-160-10.deploy.static.akamaitechnologies.com
April 16, 2016
a23-15-9-90.deploy.static.akamaitechnologies.com
April 12, 2016
a23-15-9-57.deploy.static.akamaitechnologies.com
April 12, 2016
a23-15-8-201.deploy.static.akamaitechnologies.com
April 7, 2016
a23-15-8-219.deploy.static.akamaitechnologies.com
April 7, 2016
a23-62-6-89.deploy.static.akamaitechnologies.com
March 4, 2016
a23-62-6-65.deploy.static.akamaitechnologies.com
March 3, 2016
a23-62-6-88.deploy.static.akamaitechnologies.com
March 3, 2016
File downloads found at URLs served by install-cdn.theswiftrecord.com.
The following 195 files have been seen to comunicate with install-cdn.theswiftrecord.com in live environments.
URL:
http://install-cdn.theswiftrecord.com/
Web server:
Microsoft-IIS/7.5 (ASP.NET)