The domain sunkfile.com is registered by proxy through GODADDY.COM, LLC and was originally registered in September of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Arizona, United States (US)
Create date:
Monday, September 29, 2014
Expires date:
Thursday, September 29, 2016
Updated date:
Sunday, October 4, 2015
ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US
Scanner detections:
Detections (96% detected)
Scan engine
Details
Detections
Microsoft Security Essentials
Threat.Undefined
60.42%
avast!
MSIL:Solimba-Z [PUP], Win32:Adware-gen [Adw], Win32:Kukacka
60.42%
ESET NOD32
MSIL/Solimba.AH potentially unwanted application, Win32/Sality.NBA virus
60.42%
Emsisoft Anti-Malware
Application.Bundler.Morstar.L, Application.Bundler.Solimba
54.17%
Dr.Web
Adware.Downware.8808, Adware.Downware.8763, Win32.Sector.30
52.08%
Kaspersky
not-a-virus:Downloader.Win32.Morstar
50.00%
Norman
Application.Bundler.Morstar.L, Application.Bundler.Solimba.C
47.92%
AVG
Adware BundleApp_r.AV, Win32/Sality
45.83%
Reason Heuristics
PUP.Solimba.Contumar (M), PUP.Solimba.FIRSERIA.Bundler (M), PUP.Solimba.Condesti (M), PUP.Solimba (M)
39.58%
VIPRE Antivirus
Threat.4150696, Threat.4721115
25.00%
F-Secure
Riskware.Application.Bundler.Solimba, Riskware.Application.Bundler.Morstar
18.75%
Sophos
PUA 'Solimba Installer'
6.25%
McAfee
Virus.W32/Sality.gen.z
2.08%
F-Prot
W32/Sality.gen2
2.08%
The domain sunkfile.com has been seen to resolve to the following 8 IP addresses.
ip-50-63-202-39.ip.secureserver.net
November 10, 2015
ec2-52-6-62-98.compute-1.amazonaws.com
August 19, 2015
ec2-54-165-65-72.compute-1.amazonaws.com
August 19, 2015
ec2-23-21-44-29.compute-1.amazonaws.com
May 7, 2015
ec2-75-101-136-136.compute-1.amazonaws.com
May 7, 2015
ec2-54-243-233-95.compute-1.amazonaws.com
January 6, 2015
ec2-23-23-148-223.compute-1.amazonaws.com
October 20, 2014
ec2-50-17-180-253.compute-1.amazonaws.com
October 20, 2014
File downloads found at URLs served by sunkfile.com.
Latest 30 of 72 download URLs
The following 7 files have been seen to comunicate with sunkfile.com in live environments.
Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)