www.towelroot.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain www.towelroot.com is registered by proxy through ENOM, INC. and was originally registered in June of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Provo, Utah within the United States which resides on the Unified Layer network.
Registrar:
ENOM, INC.

Server location:
Utah, United States (US)

Create date:
Wednesday, June 11, 2014

Expires date:
Saturday, June 11, 2016

Updated date:
Tuesday, May 12, 2015

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

F-Secure
Android.Riskware.Agent
100.00%

ESET NOD32
Android/Exploit.Towel.A trojan
100.00%

Dr.Web
infected with Android.Exploit.10
100.00%

McAfee
Trojan.Artemis!E287E785D0E3
100.00%

Emsisoft Anti-Malware
Exploit.Android.Towel
100.00%

Lavasoft Ad-Aware
Android.Riskware.Agent.gVPS
100.00%

Kaspersky
HEUR:Exploit.AndroidOS.Lotoor
100.00%

Norman
Android.Riskware.Agent.gVPS
100.00%

Sophos
Virus 'Andr/TowRoot-A'
100.00%

MicroWorld eScan
Android.Riskware.Agent.gVPS
100.00%

Quick Heal
Android.TowelRoot.A
100.00%

AegisLab AV Signature
Lotoor
100.00%

NANO AntiVirus
Trojan.Android.TowelExploit.dlbeom
100.00%

avast!
Android:Towel-A [PUP]
100.00%

Bitdefender
Android.Riskware.Agent.gVPS
100.00%

The domain www.towelroot.com has been seen to resolve to the following IP address.

74-220-222-52.unifiedlayer.com
January 5, 2016

File downloads found at URLs served by www.towelroot.com.

25 / 68    (PUP)
https://www.towelroot.com/tr.apk  (e287e785d0e3e043fb0cfbfe69309d8e)

Facebook:
Likes:  720
Shares:  7,706
Comments:  592

Statistics are for the previous month.