www.turbobitfreecdn.com

Temp Organization

Domain Information

The domain www.turbobitfreecdn.com registered by Temp Organization was initially registered in October of 2015 through NICS TELEKOMUNIKASYON TICARET LTD.STI.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Istanbul, Istanbul within Turkey which resides on the RIPE Network Coordination Centre network.
Registrar:
NICS TELEKOMUNIKASYON TICARET LTD.STI.

Server location:
Istanbul, Turkey (TR)

Create date:
Monday, October 12, 2015

Expires date:
Wednesday, October 12, 2016

Updated date:
Monday, October 12, 2015

ASN:
AS29262 IDEALHOSTING IDEALHOSTING SUNUCU INTERNET HIZ. TIC. LTD STI,TR

Scanner detections:
Detections  (75% detected)

Scan engine
Details
Detections

Kaspersky
not-a-virus:Downloader.Win32.Agent, not-a-virus:HEUR:Downloader.Win32.MediaGet
100.00%

Sophos
PUA 'Amonetize', MediaGet (PUA)
100.00%

Malwarebytes
PUP.Optional.Amonetize, PUP.Optional.MediaGet
100.00%

Baidu Antivirus
PUA.Win32.Amonetize, Adware.Win32.MediaGet
100.00%

AVG
BundleApp, Banne
100.00%

K7 AntiVirus
Unwanted-Program
66.67%

IKARUS anti.virus
not-a-virus:AdWare.Amonetize, PUA.MediaGet
66.67%

Qihoo 360 Security
Win32/Virus.Downloader.911, Win32/Virus.e7d
66.67%

Bkav FE
W32.HfsAdware
66.67%

ESET NOD32
Win32/MediaGet.AE potentially unwanted (variant)
66.67%

Comodo Security
Application.Win32.MediaGet.G
66.67%

Dr.Web
Program.MediaGet.133
66.67%

G Data
Win32.Adware.MediaGet
66.67%

Reason Heuristics
PUP.MediaGet.Banner.Installer (M)
66.67%

ESET NOD32
Win32/Amonetize.JP potentially unwanted application
33.33%

The domain www.turbobitfreecdn.com has been seen to resolve to the following IP address.

mail168164.dergireklam.com
October 20, 2015

File downloads found at URLs served by www.turbobitfreecdn.com.

The following 2 files have been seen to comunicate with www.turbobitfreecdn.com in live environments.

URL:
http://www.turbobitfreecdn.com/

Web server:
Apache