udp.eoo.cm

Domain Information

Server location:
Nevada, United States (US)

ASN:
AS36114 VERSAWEB-ASN - Versaweb, LLC, US

Root domain:

Scanner detections:
Detections  (75% detected)

Scan engine
Details
Detections

avast!
Win32:Evo-gen [Susp]
33.33%

ESET NOD32
Win32/Adware.Ymeta.A application
33.33%

Reason Heuristics
Threat.Win.Reputation.IMP
33.33%

Fortinet FortiGate
W32/Injector.FOD!tr
33.33%

AhnLab V3 Security
PUP/Win32.MultiPlug
33.33%

MicroWorld eScan
Gen:Variant.Graftor.274572
33.33%

Arcabit
Trojan.Graftor.D4308C
33.33%

Bitdefender
Gen:Variant.Graftor.274572
33.33%

Lavasoft Ad-Aware
Gen:Variant.Graftor.274572
33.33%

Emsisoft Anti-Malware
Gen:Variant.Graftor.274572
33.33%

F-Secure
Gen:Variant.Graftor.274572
33.33%

G Data
Gen:Variant.Graftor.274572
33.33%

The domain udp.eoo.cm has been seen to resolve to the following 4 IP addresses.

ns2-jerusalem.hostyou.com.br
April 12, 2016

jerusalem.hostyou.com.br
April 12, 2016

ns4-jerusalem.hostyou.com.br
April 12, 2016

ns3-jerusalem.hostyou.com.br
April 12, 2016

File downloads found at URLs served by udp.eoo.cm.

1 / 68      (Malware)
http://udp.eoo.cm/55a87a67_1202000450.exe  (404bbc591cdd4d3d471df9cb5f459f9b)

2 / 68      (PUP)
http://udp.eoo.cm/DeskHomePage_181_1.exe  (446bf81f5eb3790d527a6d1b54fc2dd5)

9 / 68      (PUP)
http://udp.eoo.cm/Spirit_1070.exe  (84a57140e72b56d2b82a14fdbffdea8b)

0 / 68
http://udp.eoo.cm/55a87a67_1202000450.exe  (55a87a67_1202000207.exe)