ttb.7khtnyb52n.com

Matthew Pynhas

Domain Information

The domain ttb.7khtnyb52n.com registered by Matthew Pynhas was initially registered in September of 2014 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Faro, Faro within Portugal which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Faro, Portugal (PT)

Create date:
Tuesday, September 30, 2014

Expires date:
Wednesday, September 30, 2015

Updated date:
Tuesday, September 30, 2014

ASN:
AS8426 CLARANET-AS ClaraNET LTD,GB

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DigitalPluginSL.M, PUP.Installer.DigitalPluginSL.F, PUP.Softpulse.DigitalPlugin.Bundler (M), PUP.Softpulse.DigitalP.Bundler (M), PUP.Softpulse (M)
100.00%

VIPRE Antivirus
Threat.4783235
9.09%

Malwarebytes
PUP.Optional.SoftPulse
9.09%

Avira AntiVirus
APPL/Softpulse.Gen8
9.09%

Vba32 AntiVirus
BScope.Adware.Softpulse
9.09%

Panda Antivirus
Trj/Genetic.gen
9.09%

ESET NOD32
Win32/SoftPulse (variant)
9.09%

AVG
Generic
9.09%

herdProtect (fuzzy)
a variant of f38ce40c1916148193d57a8dc04f2ce95e2fa4db
6.06%

Dr.Web
Trojan.DownLoader11.34754
6.06%

McAfee
Softpulse.b
6.06%

K7 AntiVirus
Unwanted-Program
6.06%

Agnitum Outpost
Riskware.Agent
6.06%

Clam AntiVirus
Win.Trojan.Softpulse-51
6.06%

AhnLab V3 Security
PUP/Win32.SmartSecure
6.06%

The domain ttb.7khtnyb52n.com has been seen to resolve to the following 4 IP addresses.

anubisnetworks.com
September 30, 2014

anubisnetworks.com
September 30, 2014

anubisnetworks.com
September 30, 2014

anubisnetworks.com
September 30, 2014

File downloads found at URLs served by ttb.7khtnyb52n.com.

 
Latest 30 of 34 download URLs

The following 3 files have been seen to comunicate with ttb.7khtnyb52n.com in live environments.

URL:
http://ttb.7khtnyb52n.com/

Web server:
nginx