kyle.mxp474.com
Only contact by email, all postal mail will be rejected (Proxy Registrant)
Domain Information
The domain kyle.mxp474.com is registered by proxy through SOLUCIONES CORPORATIVAS IP,SLU and was originally registered in July of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Gravelines, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP,SLU
Server location:
Nord-Pas-De-Calais, France (FR)
Create date:
Thursday, July 24, 2014
Expires date:
Friday, July 24, 2015
Updated date:
Thursday, July 24, 2014
ASN:
AS16276 OVH OVH SAS,FR
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.PluginUpdateSL.K, PUP.Softpulse.PluginUp.Bundler (M)
100.00%
ESET NOD32
Win32/SoftPulse.J potentially unwanted application, Win32/SoftPulse.H potentially unwanted application
80.00%
VIPRE Antivirus
Threat.4783235, Threat.4150696
80.00%
Avira AntiVirus
TR/Dropper.Gen
80.00%
McAfee
Program.Socrydo
60.00%
K7 AntiVirus
Unwanted-Program
60.00%
AVG
Found Win32/DH{gRJ UIEHeVRPFVGBFYEJHFOBE0GBDw}, Generic
60.00%
herdProtect (fuzzy)
a variant of 87dee090fce7a942f70f22608ac3c07d3ec0a1cc, a variant of 2c062ab132611bddf7557770ad9e3da5ceed3820
60.00%
avast!
Win32:PUP-gen [PUP], Win32:GenMalicious-GU [PUP]
40.00%
Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.150939
40.00%
Dr.Web
Win32.HLLW.Benjamin
20.00%
Kaspersky
not-a-virus:AdWare.Win32.SoftPulse
20.00%
MicroWorld eScan
Gen:Variant.Adware.Graftor.150939
20.00%
Malwarebytes
PUP.Optional.DomaIQ.Gen
20.00%
The domain kyle.mxp474.com has been seen to resolve to the following 4 IP addresses.
File downloads found at URLs served by kyle.mxp474.com.
URL:
http://kyle.mxp474.com/