Download
Community
knowledgeBase
» lp.mediafinderpro.com
Overview
Analysis
IPs Addresses (6)
Downloads (23)
Network (216)
lp.mediafinderpro.com
Rocketry BV
Domain Information
The domain lp.mediafinderpro.com registered by Rocketry BV was initially registered in April of 2015 through REGTIME LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the EU (Ireland) region datacenter.
Registrant:
Rocketry BV
Registrar:
INTERLAKENAMES.COM LLC
Server location:
Dublin City, Ireland (IE)
Create date:
Wednesday, April 15, 2015
Expires date:
Saturday, April 15, 2017
Updated date:
Sunday, April 17, 2016
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.
Root domain:
mediafinderpro.com
Whois:
3 mediafinderpro.com records
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.CJCSInvestService.S, PUP.MediaFinder.Installer.Meta (M), PUP.CJCSInvestService.Installer (M), PUP.CJCSInve.Installer (M), Threat.Win.Reputation.IMP, PUP.Amonetize (M), PUP (M)
64.71%
ESET NOD32
Win32/Adware.MediaFinder.F application, Detection.Undefined, Win32/Adware.MediaFinder.E application
47.06%
VIPRE Antivirus
Threat.4150696
41.18%
avast!
PUP-gen [PUP], Downloader-TQN [PUP]
41.18%
Lavasoft Ad-Aware
Gen:Variant.Application.MediaFinder.2
41.18%
Emsisoft Anti-Malware
Gen:Variant.Application.MediaFinder
41.18%
Dr.Web
Threat.Undefined
41.18%
Norman
Gen:Variant.Application.MediaFinder.2
41.18%
Sophos
PUA 'Install Core CJCS InvestService'
41.18%
Avira AntiVirus
APPL/MediaFinder.Gen2, PUA/InstallCore.Gen, ADWARE/MDF.A
35.29%
F-Secure
Riskware.Gen:Variant.Application.MediaFinder
35.29%
Zillya! Antivirus
Adware.MediaFinder.Win32.1
35.29%
K7 AntiVirus
Adware
35.29%
Bitdefender
Gen:Variant.Application.MediaFinder.2
35.29%
SUPERAntiSpyware
Adware.MediaFinder, Adware.MediaFinder/Variant
35.29%
IPs Addresses
The domain lp.mediafinderpro.com has been seen to resolve to the following 6 IP addresses.
85.159.233.63
August 20, 2016
198.50.233.229
August 12, 2016
141.8.224.93
August 5, 2016
54.72.9.51
ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
December 15, 2015
185.53.177.9
August 21, 2015
173.214.255.137
137.255.serverel.net
February 14, 2014
Downloads
File downloads found at URLs served by lp.mediafinderpro.com.
1 / 68 (Adware)
http://lp.mediafinderpro.com/files/5c0b189d917055da97c9b392339fb347/.../tEPwtIyOElOqXkCrfbsl60KsmSPEv677QcaPo4EvkdUFoL KXy9dAqPmI6ak=&ip=75.100.14.244&country=US&subid=292575202
(your_file_download.exe)
1 / 68 (PUP)
http://lp.mediafinderpro.com/files/05f74cc3ba17af531529ccdb0d06c364/download.php?get&file_id=&advert=166&sub=21&site=292&filename=Your file&name=Your_file_download.rar&data=Bmn qDPf7KVWFeRzCYrnhuGKd4TCy16hhw6hRcbTMLU8l2g3pAP0U/.../ 8NpsXS7AMnaMHUrFrFILK0hq7Hbxv7pTa8QFnnRRGGt8=&ip=98.186.162.65&country=US&subid=270616741
(your_file_download.exe)
1 / 68 (Malware)
http://lp.mediafinderpro.com/files/028b044d21bb3cc7a6e8768caf4e68f8/download.php?get&file_id=&advert=166&sub=1&site=292&filename=Your file&name=Your_file_download.rar&data=IZq7nDIPLX yCbZTmlGZP2YALT/.../MgqMgvv uHL&p_id=1
(your_file_download.exe)
1 / 68 (Adware)
http://lp.mediafinderpro.com/files/fb8a4f17c473dd0344cc13316aeedaa4/download.php?get&file_id=&advert=166&sub=21&site=292&filename=Your file&name=Your_file_download.rar&data=7nd64uRAT7/bD72sedD8c8G AtpTr8hv/m4yqx4ch420TZiOETU/.../qsLWaQ=&ip=64.38.90.243&country=US&subid=278921109
(your_file_download.exe)
1 / 68 (Adware)
http://lp.mediafinderpro.com/files/.../download.php?get&file_id=&advert=166&sub=21&site=292&filename=Your file&name=Your_file_download.rar&data=IRNqbzkP3AxbuU2qIQbyKgyIo44URstFo9S5Z1WUA8DDDFuUtCL0SvQd1X4e36rnHXqZJpDKcqJJvWtjEykee3M=&ip=177.141.51.41&country=BR&subid=283673027
(your_file_download.exe)
1 / 68 (PUP)
http://lp.mediafinderpro.com/files/.../download.php?get&file_id=&advert=166&sub=21&site=292&filename=Your file&name=Your_file_download.rar&data=JnEQQKE9oobek LVMDu1HhWjZYg9OLU9KXlXUHAfKz3Th3xZKkGEDn9OVDBL80Kzh8GTLWCcKtgk5VutgyfpTZiL5jUjyaMuJLDRZoubGnM=&ip=67.177.69.36&country=US&subid=273283427
(your_file_download.exe)
1 / 68 (PUP)
http://lp.mediafinderpro.com/files/7f9db1df51a324cb2311ed4b8cf5ac15/download.php?get&file_id=&advert=0&sub=21&site=0&filename=your file&name=your_file_download.rar&data=SscBu2vcHGUr9LbhTrqvQbecPKXFnaDgsvy8mHCUs5HFK77M1k35vde73/.../rwkQdto zbKs8Xr7DRA0SDEdqtc=&ip=122.178.206.18&country=IN
(your_file_download.exe)
1 / 68 (PUP)
http://lp.mediafinderpro.com/files/ab863ff22968ea392c78ea9c93408eef/download.php?get&file_id=&advert=0&sub=21&site=0&filename=your file&name=your_file_download.rar&data=5Ky2EXHBeHwox6PivNi bQ1y HxpqX/.../OILBCk2A8pJHD3qK9uayoOiNiVmg=&ip=122.178.206.18&country=IN
(your_file_download.exe)
20 / 68 (PUP)
http://lp.mediafinderpro.com/files/.../download.php?get&file_id=&advert=166&sub=21&site=292&filename=Your file&name=Your_file_download.rar&data=IRNqbzkP3AxbuU2qIQbyKgyIo44URstFo9S5Z1WUA8DDDFuUtCL0SvQd1X4e36rnHXqZJpDKcqJJvWtjEykee3M=&ip=207.191.220.144&country=US&subid=282374036
(your_file_download.exe)
21 / 68 (PUP)
http://lp.mediafinderpro.com/files/7e2e68344ccaea02a28b635f4adbfeee/.../tEPwtIyOElOqXkCrfbsl60KsmSPEv677QcaPo4EvkdUFoL KXy9dAqPmI6ak=&ip=68.3.7.23&country=US&subid=288683208
(your_file_download.exe)
23 / 68 (Adware)
http://lp.mediafinderpro.com/files/a668c9a3766caa086b525fcb809d4b69/.../TywrVdduT8MKqRORmk34=&ip=184.36.53.72&country=US&subid=272609231
(your_file_download.exe)
10 / 68 (PUP)
http://lp.mediafinderpro.com/files/.../download.php?get&file_id=&advert=166&sub=21&site=292&filename=Your file&name=Your_file_download.rar&data=IRNqbzkP3AxbuU2qIQbyKgyIo44URstFo9S5Z1WUA8DDDFuUtCL0SvQd1X4e36rnHXqZJpDKcqJJvWtjEykee3M=&ip=24.9.218.251&country=US&subid=286826003
(your_file_download.exe)
21 / 68 (PUP)
http://lp.mediafinderpro.com/files/e072b36b138c3b83810ac25509bfb63b/download.php?get&file_id=&advert=166&sub=21&site=292&filename=Your file&name=Your_file_download.rar&data=/85/mkf8NyNLpKJ9ln95xLA3hSf7etiDS09ONumBS2BQxoXIq1QFIfSA1BN/769H31bN/.../0AG iKoJjPlPr6QBdveYqFqiU=&ip=50.143.71.6&country=US&subid=270915347
(your_file_download.exe)
21 / 68 (PUP)
http://lp.mediafinderpro.com/files/d8e03739c5343089296a763041000bd5/.../tEPwtIyOElOqXkCrfbsl60KsmSPEv677QcaPo4EvkdUFoL KXy9dAqPmI6ak=&ip=173.71.20.19&country=US&subid=288902569
(your_file_download.exe)
20 / 68 (PUP)
http://lp.mediafinderpro.com/files/5af69a8e4ffa75bb85cf38c1ca06f0a2/.../tEPwtIyOElOqXkCrfbsl60KsmSPEv677QcaPo4EvkdUFoL KXy9dAqPmI6ak=&ip=69.221.168.170&country=US&subid=289518943
(your_file_download.exe)
2 / 68 (PUP)
http://lp.mediafinderpro.com/files/.../download.php?get&file_id=&advert=0&sub=21&site=0&filename=Your file&name=Your_file_download.rar&data=Uj1GsnHBYGMEBgo9GU7S1tk6qNDHYAiLvViyC2YFtqeZGRyv 86j901KXCMutBmjdHCzeJUVIWcMvYNvyP3s4bUE Vnn15LFPFMayQse79I=&ip=76.167.67.237&country=US
(your_file_download.exe)
2 / 68 (PUP)
http://lp.mediafinderpro.com/files/ebf4d1003613958c35714d1732e4a3cd/download.php?get&file_id=&advert=0&sub=21&site=0&filename=Your file&name=Your_file_download.rar&data=BpPxGi08W2JPW5pe3oZp JQhpgNDA9L9zW1297m5JG9bDfNidIW60qwHfQjAyvkIwEe4j5/0y5rTI/.../89dOM fuKDWf B8si9AuuI4=&ip=76.167.67.237&country=US
(your_file_download.exe)
2 / 68 (PUP)
http://lp.mediafinderpro.com/files/30a1800d23e83afd3eee3cd3895cfd63/download.php?get&file_id=&advert=0&sub=21&site=0&filename=Your file&name=Your_file_download.rar&data=RC9ZbAALWh/.../k=&ip=76.167.67.237&country=US
(your_file_download.exe)
2 / 68 (PUP)
http://lp.mediafinderpro.com/files/a2e54bbf0d5fafa1bf535d251de1fd59/download.php?get&file_id=&advert=0&sub=21&site=0&filename=Your file&name=Your_file_download.rar&data=5il7n6l0ZIwK8U14wSZeyB XCNOxbhucOG8LnoIYaMgzNZm4g/cmhMv4v3 t/.../G467Cc2HvGOsnbVji 1bVVvBxv7umeYM=&ip=76.167.67.237&country=US
(your_file_download.exe)
2 / 68 (PUP)
http://lp.mediafinderpro.com/files/.../download.php?get&file_id=&advert=0&sub=21&site=0&filename=Your file&name=Your_file_download.rar&data=zU1yrzSj0NiyCWUusbcywJxrkwjyda8nRjRQYul2dUA9Cy3MMZO2PjhP0XfccaIA3FWipaQZ0GQk1oTjZM3PUbLaoUCMN93803Isw9 F6ZY=&ip=76.167.67.237&country=US
(your_file_download.exe)
2 / 68 (PUP)
http://lp.mediafinderpro.com/files/740e91bf298cdc4849d1e5ae0d3f7180/.../DHzmfCE4R8 w3CbpxbWKsAkbu1PHBREQvnEOvL Ff7OFEU1xhprAQLP6lpAylmGZk jXLqsO703VAHN2s=&ip=213.57.78.192&country=IL
(your_file_download.exe)
2 / 68 (PUP)
http://lp.mediafinderpro.com/files/0375662788b5ff7180703bfa32654532/download.php?get&file_id=&advert=0&sub=21&site=0&filename=Your file&name=Your_file_download.rar&data=hjhkMbu/ZXFYDISuieg0v5vgbhDlc4WdlflYC8vBfwSmaAE2YZ/.../8ajuFNCUQHoWfbOMNF1gXdm0dueU=&ip=96.35.35.129&country=US
(your_file_download.exe)
1 / 68 (Adware)
http://lp.mediafinderpro.com/files/ff2996c3afe9eae9b6d892642688899b/.../WZ4PI8qozhWhfOmj3T6WG4RMiwk9Fa04H88 Gkd9OP5Is9npjvCHzZsHw08EhA0KynHoYM8jBcovbi6dNTrvpagT7rGuawNZA=&ip=173.52.69.70&country=US&subid=271172125
(your_file_download.exe)
Network Communications
The following 216 files have been seen to comunicate with lp.mediafinderpro.com in live environments.
TCP »
54.72.9.51
:80
toolbarupdaterservice.exe
TCP »
54.72.9.51
:80
hdnInstaller.exe (hdnInstaller)
TCP »
54.72.9.51
:80
onedrvup.exe
TCP »
54.72.9.51
:80
hdnInstaller.exe (hdnInstaller)
TCP »
54.72.9.51
:80
247843.ftf (Optimizer Pro v3.2 by PC Utilities Software Limited)
TCP »
54.72.9.51
:80
1799877.exe
TCP »
54.72.9.51
:80
IEError.exe (IEError)
TCP »
54.72.9.51
:80
install_flashplayer14x32_x64md_aaa_aih.exe (bon joueur)
TCP »
54.72.9.51
:80
optimizerproinstaller.exe (Optimizer Pro v3.2 by PCUtilities Software Limited)
TCP »
54.72.9.51
:80
charles.exe (by Apple)
TCP »
54.72.9.51
:80
onedrv.exe
TCP »
54.72.9.51
:80
IEError.exe (IEError)
TCP »
54.72.9.51
:80
updater27793.exe (CouponDropDown Plugin by Innovative Apps)
TCP »
54.72.9.51
:80
install_flashplayer16x33_masp_aaa_aih.exe (by Apple)
TCP »
54.72.9.51
:80
toolbarupdaterservice.exe
TCP »
54.72.9.51
:80
hdnInstaller.exe (hdnInstaller)
TCP »
54.72.9.51
:80
g.jpg
TCP »
54.72.9.51
:80
smlb.jpg
TCP »
54.72.9.51
:80
smlb.jpg
TCP »
54.72.9.51
:80
hqghumeaylnlf.exe (Optimizer Pro v3.2 by PC Utilities Software Limited)
Latest 20 of 220 files
X