www.webplayproduct.com

Metwaly

Domain Information

The domain www.webplayproduct.com registered by Metwaly was initially registered in April of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Barcelona, Catalonia within Spain.
Registrar:
TUCOWS DOMAINS INC.

Server location:
Catalonia, Spain (ES)

Create date:
Friday, April 24, 2015

Expires date:
Sunday, April 24, 2016

Updated date:
Saturday, August 8, 2015

ASN:
AS19324 DOSARREST - Dosarrest Internet Security LTD,US

Root domain:

Scanner detections:
Detections  (93% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.JottixinternationalmediaGM2007.Y, PUP.Installer.JottixinternationalmediaGM2007.W, PUP.Jottix.JottixinternationalmediaGM2007.Installer (M), PUP.Jottix.Jottixin.Installer (M)
92.86%

McAfee
Artemis!61FD0A4D9F78, Artemis!5D9583611D19, Artemis!4EAEC618A5C8, Artemis!3C130B1D78D1, Artemis!97D5AB6C2D68, Artemis!A402DC35F34C
42.86%

Malwarebytes
PUP.Downware
42.86%

avast!
Win32:Adware-AZL [Adw]
42.86%

ESET NOD32
Win32/DownWare
42.86%

Rising Antivirus
PE:Trojan.Win32.Generic.137A42C9!326779593
42.86%

AVG
Generic, MalSign.Generic
42.86%

SUPERAntiSpyware
PUP.Downloader/Variant
35.71%

Sophos
Jottix
35.71%

Dr.Web
Adware.Downware.1402
35.71%

VIPRE Antivirus
Jottix
35.71%

NANO AntiVirus
Riskware.Nsis.Downloader.cwamby
28.57%

Trend Micro House Call
TROJ_GEN.R0CBH05CU14, TROJ_GEN.F47V0913, ADW_JOTTIX, TROJ_GEN.F47V0910
28.57%

K7 AntiVirus
Unwanted-Program
21.43%

Bkav FE
W32.Clodf0b.Trojan, W32.Cloda30.Trojan
14.29%

The domain www.webplayproduct.com has been seen to resolve to the following IP address.

May 16, 2016

File downloads found at URLs served by www.webplayproduct.com.