ttb.mplayerdownloads.com

Whois Privacy Protection Service, Inc.  (Proxy Registrant)

Domain Information

The domain ttb.mplayerdownloads.com is registered by proxy through NAME.COM, INC. and was originally registered in January of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
NAME.COM, INC.

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Monday, January 9, 2012

Expires date:
Monday, January 9, 2017

Updated date:
Friday, March 13, 2015

ASN:
AS16276 OVH OVH SAS,FR

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Softpulse.SoftpulseSl.Bundler (M), PUP.Outbrowse.CliCkTrU.Bundler (M)
80.00%

Malwarebytes
PUP.Optional.InstallCore
20.00%

ESET NOD32
Win32/InstallCore.ACZ potentially unwanted (variant)
20.00%

The domain ttb.mplayerdownloads.com has been seen to resolve to the following 2 IP addresses.

April 10, 2016

March 3, 2016

File downloads found at URLs served by ttb.mplayerdownloads.com.

URL:
http://ttb.mplayerdownloads.com/

Web server:
nginx