www.wmpcodecpack.com

WhoisGuard

Domain Information

The domain www.wmpcodecpack.com registered by WhoisGuard was initially registered in May of 2010 through OVH. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
OVH

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Tuesday, May 18, 2010

Expires date:
Thursday, May 18, 2017

Updated date:
Tuesday, March 29, 2016

ASN:
AS16276 OVH OVH Systems

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
Opencandy
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

NANO AntiVirus
Riskware.Win32.OpenCandy.dvwkdm
100.00%

Agnitum Outpost
Riskware.Agent
100.00%

Dr.Web
Adware.OpenCandy.137
100.00%

F-Prot
W32/OpenCandy.A2.gen
100.00%

G Data
Win32.Application.OpenCandy
100.00%

McAfee
Artemis!2A69647E32A1
100.00%

ESET NOD32
Win32/OpenCandy.C potentially unsafe (variant)
100.00%

Fortinet FortiGate
Riskware/OpenCandy
100.00%

AVG
OpenCandy
100.00%

Reason Heuristics
PUP.OpenCandy.Installer (L)
100.00%

The domain www.wmpcodecpack.com has been seen to resolve to the following IP address.

cluster014.ovh.net
April 15, 2016

File downloads found at URLs served by www.wmpcodecpack.com.

12 / 68    (PUP)
http://www.wmpcodecpack.com/?download=codecpack  (media.player.codec.pack.v4.3.9.setup.exe)

The following 13 files have been seen to comunicate with www.wmpcodecpack.com in live environments.

URL:
http://www.wmpcodecpack.com/

Title:
“WMP Codec Pack”

Web server:
Apache (PHP/4.4.9)

Facebook:
Shares:  2

Statistics are for the previous month.