39szc0.1fichier.com

Yohan TORDJMAN

Domain Information

The domain 39szc0.1fichier.com registered by Yohan TORDJMAN was initially registered in December of 2009 through ONLINE SAS. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Paris, Ile-De-France within France which resides on the RIPE Network Coordination Centre network.
Registrar:
ONLINE SAS

Server location:
Ile-De-France, France (FR)

Create date:
Monday, December 7, 2009

Expires date:
Sunday, December 7, 2014

Updated date:
Sunday, May 20, 2012

ASN:
AS198792 DSTORAGE DSTORAGE s.a.s.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Vba32 AntiVirus
Hoax.Blocker
100.00%

ESET NOD32
Win32/OpenCandy
100.00%

Reason Heuristics
PUP.OpenCandy.Installer (L)
100.00%

The domain 39szc0.1fichier.com has been seen to resolve to the following IP address.

www.1fichier.com
May 30, 2014

File downloads found at URLs served by 39szc0.1fichier.com.

3 / 68      (PUP)
http://39szc0.1fichier.com/  (1989691_setup.exe)

The following 14 files have been seen to comunicate with 39szc0.1fichier.com in live environments.

URL:
http://39szc0.1fichier.com/

Title:
“Download”

SSL certificate subject:
CN=*.1fichier.com, OU=Domain Control Validated - RapidSSL(R), OU=See www.rapidssl.com/resources/cps (c)12, OU=GT91339487, O=*.1fichier.com, C=FR, SERIALNUMBER=xeUANxI5c6F-4xhuF5dO2gyN1zMT2SxU

SSL certificate issuer:
CN=RapidSSL CA, O="GeoTrust, Inc.", C=US

Web server:
nginx