cdn.oaktreeshop.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain cdn.oaktreeshop.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States.
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Thursday, March 19, 2015

Expires date:
Sunday, March 19, 2017

Updated date:
Sunday, March 20, 2016

ASN:
AS30081 CACHENETWORKS - CacheNetworks, Inc.

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Dr.Web
Trojan.Lyrics.800, infected with Trojan.Lyrics.800, infected with Trojan.Lyrics.1096, BACKDOOR.Trojan, infected with Trojan.Lyrics.1124
93.75%

Emsisoft Anti-Malware
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.655281, Gen:Variant.Adware.Kazy.655281, Gen:Variant.Mikey.21657
93.75%

AVG
Generic6, Adware Generic6.AYFO, Adware Generic6.AYGZ, Adware Generic6.AYDZ, Adware Generic6.AYCR, Adware Generic6.AYFI, Adware Generic6.AXNZ
91.67%

AhnLab V3 Security
PUP/Win32.CrossRider
85.42%

avast!
Win32:Malware-gen, Win32:Adware-gen [Adw], Win32:Rootkit-gen [Rtk], Win32:Adware-CQE [Adw]
83.33%

NANO AntiVirus
Riskware.Win32.PennyBee.dsevnz, Riskware.Win32.PennyBee.dsnrfy, Riskware.Win32.PennyBee.dsoyaw, Riskware.Win32.PennyBee.dsqllu, Riskware.Win32.PennyBee.dshbtp
83.33%

Avira AntiVirus
ADWARE/ClickPotato.3518805, ADWARE/Adware.Gen7, ADWARE/PennyBee.487864.8, TR/Trash.Gen, ADWARE/PennyBee.Gen7
83.33%

Baidu Antivirus
Adware.Win32.PennyBee, PUA.Win32.Generik
83.33%

MicroWorld eScan
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.635070, Gen:Variant.Kazy.655281, Gen:Variant.Adware.Kazy.655281, Gen:Variant.Graftor.232803, Gen:Variant.Mikey.21657, Gen:Variant.Adware.Mikey.22707, Application.Generic.1306252
81.25%

Bitdefender
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.635070, Gen:Variant.Kazy.655281
81.25%

Microsoft Security Essentials
Adware:Win32/ZoomyLib, Threat.Undefined, Trojan:Win32/Disrapter.A
81.25%

G Data
Trojan.GenericKD.2442641, Gen:Variant.Mikey.14573, Gen:Variant.Adware.Kazy.635070, Gen:Variant.Kazy.635070, Gen:Variant.Kazy.655281
81.25%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696
79.17%

IKARUS anti.virus
AdWare.PennyBee, PUA.PennyBee, Win32.SuspectCrc, PUA.Bundler, PUA.RiskWare.Komodia, Trojan.SuspectCRC
75.00%

Arcabit
Trojan.Kazy.D9A0F5, Trojan.Mikey.D3B48, Adware.Generic.D133DFC, Trojan.Adware.PennyBee.2, Trojan.Graftor.D38D63, Trojan.Adware.Graftor.D38D63
75.00%

The domain cdn.oaktreeshop.com has been seen to resolve to the following IP address.

vip1.g.cachefly.net
February 1, 2016

File downloads found at URLs served by cdn.oaktreeshop.com.

18 / 68    (PUP)

19 / 68    (PUP)

6 / 68      (PUP)

9 / 68      (PUP)

The following 197 files have been seen to comunicate with cdn.oaktreeshop.com in live environments.

 
Latest 20 of 267 files

URL:
http://cdn.oaktreeshop.com/

Web server:
CFS 0213 (PHP/5.5.8)