s1.lshunterapptv.com

Fundacion Private Whois  (Proxy Registrant)

Domain Information

The domain s1.lshunterapptv.com is registered by proxy through INTERNET.BS CORP. and was originally registered in December of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Studio City, California within the United States which resides on the netDNA network.
Registrar:
INTERNET.BS CORP.

Server location:
California, United States (US)

Create date:
Tuesday, December 18, 2012

Expires date:
Thursday, December 18, 2014

Updated date:
Monday, December 2, 2013

ASN:
AS4436 AS-NLAYER - nLayer Communications, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.CoolMirageltd.CC, PUP.Installer.CoolMirageltd.AA, PUP.CoolMirage.Installer, PUP.CoolMirage.Installer (M)
100.00%

Dr.Web
Adware.Downware.861, Adware.Downware.902
27.78%

ESET NOD32
Win32/Adware.1ClickDownload, Win32/AdWare.1ClickDownload.AT
22.22%

McAfee
Adware-SweetIM
16.67%

Malwarebytes
PUP.BundleInstaller.DW
16.67%

SUPERAntiSpyware
Adware.Downware
16.67%

K7 AntiVirus
Adware
16.67%

NANO AntiVirus
Riskware.Nsis.Downware.czyjkl
16.67%

avast!
Win32:Downloader-TPG [PUP]
16.67%

Sophos
FT Downloader
16.67%

Comodo Security
Application.Win32.MCool.A
16.67%

VIPRE Antivirus
Iminent
16.67%

Avira AntiVirus
APPL/CoolMirage.Gen6
16.67%

herdProtect (fuzzy)
a variant of e41402b4df9048f9daa4c2d3d0b93ef1c956eda5, a variant of 95efd3b3067f2a40e11474a78f309f1fb026c23c
11.11%

Fortinet FortiGate
Riskware/1ClickDownload
5.56%

The domain s1.lshunterapptv.com has been seen to resolve to the following IP address.

March 28, 2014

File downloads found at URLs served by s1.lshunterapptv.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

2 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

15 / 68    (Adware)

1 / 68      (Adware)

4 / 68      (Adware)

1 / 68      (Adware)

The following 3 files have been seen to comunicate with s1.lshunterapptv.com in live environments.

URL:
http://s1.lshunterapptv.com/

Title:
“SportHunter”

Web server:
NetDNA-cache/2.2 (PHP/5.3.10-1ubuntu3.1)