on.pluto.tv

WHOIS PRIVACY PROTECTION SERVICE, INC.  (Proxy Registrant)

Domain Information

The domain on.pluto.tv is registered by proxy through ENOM, INC. and was originally registered in February of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Mountain View, California within the United States which resides on the Google Inc. network.
Registrar:
ENOM, INC.

Server location:
California, United States (US)

Create date:
Saturday, February 23, 2013

Updated date:
Thursday, November 6, 2014

ASN:
AS15169 GOOGLE - Google Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PlutoTV (M), PUP.PlutoTV.Installer.Installer.Meta (M)
95.65%

ESET NOD32
Win32/Delf.NRJ worm
4.35%

avast!
Win32:Agent-AODJ [Trj]
4.35%

F-Prot
W32/Renamer.A.gen
4.35%

Microsoft Security Essentials
Threat.Undefined
4.35%

AVG
Worm/Delf.KKS
4.35%

Dr.Web
Trojan.Inject1.28681
4.35%

Emsisoft Anti-Malware
Worm.Generic.377772
4.35%

Kaspersky
Virus.Win32.Renamer
4.35%

Norman
Worm.Generic.377772
4.35%

The domain on.pluto.tv has been seen to resolve to the following 11 IP addresses.

August 7, 2016

July 17, 2016

May 20, 2016

qa-in-f121.1e100.net
May 18, 2016

January 4, 2016

November 19, 2015

July 23, 2015

qh-in-f121.1e100.net
July 1, 2015

qc-in-f121.1e100.net
May 5, 2015

qg-in-f121.1e100.net
May 4, 2015

December 1, 2014

File downloads found at URLs served by on.pluto.tv.

9 / 68      (Malware)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotv-0.0.3.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup0910.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup0618.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotv-0.0.7.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotv-0.0.5.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotv-0.0.8.exe)

1 / 68      (PUP)
http://on.pluto.tv/plutotv-pc  (plutotvsetup.exe)

The following 24 files have been seen to comunicate with on.pluto.tv in live environments.

 
Latest 20 of 24 files

URL:
http://on.pluto.tv/

Title:
“Sign in - Google Accounts”

Web server:
GSE