ttb.fowh56r36.com

Whois Privacy Protection Service, Inc.  (Proxy Registrant)

Domain Information

The domain ttb.fowh56r36.com is registered by proxy through NAME.COM, INC. and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
NAME.COM, INC.

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Friday, December 12, 2014

Expires date:
Saturday, December 12, 2015

Updated date:
Friday, December 12, 2014

ASN:
AS16276 OVH OVH SAS,FR

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.VideoPluginsoftwareSL.F, PUP.Systweak.SUPERTUN.Installer.Meta (M), PUP.Softpulse.VideoPluginsoftware.Bundler (M), PUP.Softpulse.DigitalPlugin.Bundler (M), PUP.InstallCore.S (M), PUP.Softpulse.VideoPlu.Bundler (M), PUP.Performersoft.F11LSoft.Bundler (M), PUP.Softpulse.DigitalP.Bundler (M), PUP.Softpulse (M)
100.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Symmi.49537, Gen:Variant.Adware.Kazy.494185, Application.Bundler.SoftPulse.P, Application.Bundler.SoftPulse.AY
28.21%

ESET NOD32
Win32/SoftPulse.S potentially unwanted application, Win32/SoftPulse.U potentially unwanted application
28.21%

VIPRE Antivirus
Threat.4783235, Threat.4150696
28.21%

Lavasoft Ad-Aware
Gen:Variant.Adware.Symmi.49537, Gen:Variant.Adware.Kazy.494185, Application.Bundler.SoftPulse.P
28.21%

F-Secure
Gen:Variant.Adware.Symmi.49537, Gen:Variant.Adware.Kazy.494185, Riskware.Application.Bundler.SoftPulse
28.21%

Norman
Gen:Variant.Adware.Symmi.49537, Gen:Variant.Application.Bundler.20, Gen:Variant.Adware.Kazy.494185, Application.Bundler.SoftPulse.AY
28.21%

Sophos
PUA 'SoftPulse' (of type Adware)
28.21%

MicroWorld eScan
Gen:Variant.Adware.Symmi.49537
28.21%

McAfee
Program.SoftPulse
28.21%

K7 AntiVirus
Unwanted-Program
28.21%

Bitdefender
Gen:Variant.Adware.Symmi.49537
28.21%

Comodo Security
Application.Win32.SoftPulse.D
28.21%

Avira AntiVirus
ADWARE/Adware.Gen, APPL/Softpulse.599480, APPL/Softpulse.aonb, APPL/Softpulse.aone
28.21%

G Data
Gen:Variant.Adware.Symmi.49537
28.21%

The domain ttb.fowh56r36.com has been seen to resolve to the following IP address.

May 4, 2015

File downloads found at URLs served by ttb.fowh56r36.com.

 
Latest 30 of 40 download URLs

URL:
http://ttb.fowh56r36.com/

Web server:
nginx