The domain www.vgrabber.com is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Arizona, United States (US)
Create date:
Tuesday, June 7, 2011
Expires date:
Tuesday, June 7, 2016
Updated date:
Monday, June 8, 2015
ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC
Scanner detections:
Detections (82% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.BundloreLimited.F, PUP.Installer.Bundlore.O, PUP.Installer.SambamediaSL.F, PUP.Installer.Bundlore.F, PUP.Installer.BundloreLimited.P, PUP.Bundler.Softpulse, PUP.VGrabber.Installer.Bundler.Installer.Meta (L), PUP.Tuguu.LunacomI.Bundler (M), PUP.Tuguu.Bundler (M)
78.95%
Dr.Web
Trojan.DownLoad3.30945, Adware.Downware.336, Adware.Downware.1598, Trojan.DownLoader7.7108, Adware.Downware.1897, Adware.Downware.830
68.42%
VIPRE Antivirus
Bundlore, Trojan.Win32.Generic, Threat.5064683
68.42%
ESET NOD32
Win32/Bundlore (variant), Win32/Adware.Bundlore
57.89%
Sophos
vGrabber, Bundlore, PUA 'SoftPulse' (of type Adware)
57.89%
Fortinet FortiGate
Riskware/Bundlore, W32/Adload.NMV!tr.dldr, W32/Kryptik.BWOY!tr
52.63%
Malwarebytes
PUP.BundleInstaller.VG, PUP.Optional.Bundlore.A, PUP.Optional.SmartSec
47.37%
Avira AntiVirus
Adware/Zugo.C.1, Adware/Zugo.C.2, TR/Dropper.Gen, ADWARE/Adware.Gen
47.37%
NANO AntiVirus
Riskware.Nsis.Downware.yrefc, Trojan.Text.Yotoon.deckrr, Trojan.Win32.DriverUpd.djqtoc, Riskware.Text.Babylon.cwhyhv
42.11%
Trend Micro House Call
TROJ_GEN.R4FH1K2, TROJ_SPNR.14B713, TROJ_GEN.F47V0406, HV_BUNDLEPACK_CA226E9F.TOMC, TROJ_GEN.R0CBB04HG13, TROJ_GEN.R047B01L914
42.11%
avast!
NSIS:Bundlore-B [Adw], NSIS:Ezula-BC [Adw], Win32:SoftPulse-DI [PUP], NSIS:Bundlore-C [Adw]
42.11%
Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, Signed-Adware.Softpulse
42.11%
McAfee
Artemis!05B6AD6EFB32, RDN/Generic PUP.x!bnf, Artemis!B1C74AEE9E80, RDN/Generic PUP.x!bg3, Artemis!0BCD1FF0D3C0, Program.SoftPulse, Artemis!6B9220D98F72
36.84%
AVG
AdInstaller.Bundlor, Adware AdInstaller.Bundlor, Win.Threat.High
36.84%
Trend Micro
TROJ_SPNR.0CBK13, TROJ_GEN.R0CBC0EFG13, ADW_PULSOFT.SM, TROJ_GEN.R00JC0EAF14, TROJ_GEN.R0CBC0OI513
26.32%
The domain www.vgrabber.com has been seen to resolve to the following 8 IP addresses.
ip-184-168-221-51.ip.secureserver.net
July 23, 2016
a23-67-250-89.deploy.static.akamaitechnologies.com
April 13, 2014
a23-67-250-106.deploy.static.akamaitechnologies.com
April 13, 2014
a23-67-242-18.deploy.static.akamaitechnologies.com
April 11, 2014
a23-67-242-66.deploy.static.akamaitechnologies.com
April 11, 2014
File downloads found at URLs served by www.vgrabber.com.
The following 153 files have been seen to comunicate with www.vgrabber.com in live environments.
URL:
http://www.vgrabber.com/
Title:
“vGrabber.com - Download videos from online video sites!”
Web server:
Apache/2.2.3 (CentOS) (PHP/5.3.26)
Facebook:
Likes: 15
Shares: 34
Comments: 34
Statistics are for the previous month.