ttb.gspxtny93b.com

Repossessed by Go Daddy

Domain Information

The domain ttb.gspxtny93b.com registered by Repossessed by Go Daddy was initially registered in October of 2014 through NAMESILO, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Wednesday, October 8, 2014

Expires date:
Thursday, October 8, 2015

Updated date:
Tuesday, October 14, 2014

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Softpulse.DigitalP.Bundler (M), PUP.Bundlore.Bundler (M), PUP.Softpulse.VideoPlu.Bundler (M), PUP.Outbrowse.OTOPIASo.Bundler (M), PUP.Softpulse (M)
97.96%

VIPRE Antivirus
Threat.4657539
2.04%

F-Prot
W32/AdGazelle.A (exact, not disinfectable)
2.04%

ESET NOD32
Win32/AdGazelle.E potentially unwanted application
2.04%

avast!
Win32:PUP-gen [PUP]
2.04%

Emsisoft Anti-Malware
Gen:Variant.Adware.Strictor.76751
2.04%

Norman
Gen:Variant.Adware.Strictor.76751
2.04%

The domain ttb.gspxtny93b.com has been seen to resolve to the following 3 IP addresses.

ip-184-168-221-74.ip.secureserver.net
November 10, 2014

192.64.147.197.voodoo.com
October 9, 2014

ec2-54-69-147-88.us-west-2.compute.amazonaws.com
September 28, 2014

File downloads found at URLs served by ttb.gspxtny93b.com.

 
Latest 30 of 273 download URLs

The following 2 files have been seen to comunicate with ttb.gspxtny93b.com in live environments.

URL:
http://ttb.gspxtny93b.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)