towelroot.com
WHOISGUARD, INC. (Proxy Registrant)
Domain Information
The domain towelroot.com is registered by proxy through ENOM, INC. and was originally registered in June of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Provo, Utah within the United States which resides on the Unified Layer network.
Registrant:
WHOISGUARD, INC.
Server location:
Utah, United States (US)
Create date:
Wednesday, June 11, 2014
Expires date:
Saturday, June 11, 2016
Updated date:
Tuesday, May 12, 2015
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
F-Secure
Android.Riskware.Agent
100.00%
ESET NOD32
Android/Exploit.Towel.A trojan
100.00%
Dr.Web
infected with Android.Exploit.10
100.00%
McAfee
Trojan.Artemis!E287E785D0E3
100.00%
Emsisoft Anti-Malware
Exploit.Android.Towel
100.00%
Lavasoft Ad-Aware
Android.Riskware.Agent.gVPS
100.00%
Kaspersky
HEUR:Exploit.AndroidOS.Lotoor
100.00%
Norman
Android.Riskware.Agent.gVPS
100.00%
Sophos
Virus 'Andr/TowRoot-A'
100.00%
MicroWorld eScan
Android.Riskware.Agent.gVPS
100.00%
Quick Heal
Android.TowelRoot.A
100.00%
AegisLab AV Signature
Lotoor
100.00%
NANO AntiVirus
Trojan.Android.TowelExploit.dlbeom
100.00%
avast!
Android:Towel-A [PUP]
100.00%
Bitdefender
Android.Riskware.Agent.gVPS
100.00%
The domain towelroot.com has been seen to resolve to the following IP address.
74-220-222-52.unifiedlayer.com
January 5, 2016
File downloads found at URLs served by towelroot.com.
Subdomains
URL:
http://towelroot.com/
Google Analytics:
UA-51935556
Title:
“towelroot by geohot”
SSL certificate subject:
CN=towelroot.com, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)15, OU=GT01728051
SSL certificate issuer:
CN=RapidSSL SHA256 CA - G3, O=GeoTrust Inc., C=US
Facebook:
Likes: 720
Shares: 7,706
Comments: 592
Statistics above are for the previous month of October 2024.