cdn01.bcdn.info

chan tin hang

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
GoDaddy.com, LLC

Server location:
Northern Ireland, United Kingdom (GB)

Root domain:

Scanner detections:
Detections  (84% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.SoftpulseSL.F, PUP.Installer.BundloreLimited.F, PUP.VGrabber.Installer.Bundler.Installer.Meta (L), PUP.Adknowledge.SafeDown.Bundler (M), PUP.Air Software.AirSoftw.Bundler (M), PUP.VGrabber.Installer.Bundler (L)
50.00%

VIPRE Antivirus
Threat.4782980, Threat.4150696, Bundlore, Trojan.Win32.Generic
38.89%

Dr.Web
Trojan.DownLoader11.35004, Adware.Downware.336, Adware.Zugo.84, Adware.Downware.113
38.89%

avast!
Win32:Firseria-C [PUP], NSIS:Bundlore-B [Adw], NSIS:Adware-DR [Adw], Win32:Adware-gen [Adw], NSIS:Ezula-AX [Adw]
33.33%

McAfee Web Gateway
Heuristic.BehavesLike.Win32.Suspicious-BAY.G, BehavesLike.Win32.CryptDoma.fh, BehavesLike.Win32.BadFile.gc, BehavesLike.Win32.Tool.hc
33.33%

McAfee
PUP-FOZ, Artemis!118920F77D0E, Artemis!6753A682772C, Trojan.Artemis!16E1952FF720, Generic.grp!gc, Generic PUP.x!b2o
33.33%

ESET NOD32
Win32/Adware.Bundlore, Win32/Bundlore (variant)
27.78%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
27.78%

G Data
Win32.Application.SoftPulse, Gen:Variant.Adware.MPlug, Win32.Application.Agent.7MI0XK, NSIS:Ezula-AX
22.22%

Avira AntiVirus
TR/Crypt.XPACK.Gen, Adware/MPlug.6.14, ADWARE/Adware.Gen
22.22%

Sophos
Bundlore, Generic PUA AA, Generic PUA NH
16.67%

Baidu Antivirus
PUA.Win32.Downloader.Bundlore, Adware.Win32.Bundlore, Trojan.NSIS.Agent
16.67%

Antiy Labs AVL
Trojan/Win32.TSGeneric, GrayWare[:not-a-virus]/Win32.Downloader.gen, Trojan/win32.agent.gen
16.67%

NANO AntiVirus
Trojan.Text.Yotoon.deckrr, Riskware.Nsis.Downware.dorcdr, Trojan.Win32.Downware.lsjdg
16.67%

Trend Micro House Call
ADW_NSOFTONLY_0000007.TOMA, HV_BUNDLORE_CI202F0F.RDXN, TROJ_GEN.R06H1GP
16.67%

The domain cdn01.bcdn.info has been seen to resolve to the following 2 IP addresses.

ip-184-168-221-42.ip.secureserver.net
February 4, 2016

unallocated.barefruit.co.uk
June 18, 2015

File downloads found at URLs served by cdn01.bcdn.info.

1 / 68      (PUP)

1 / 68      (PUP)

15 / 68    (PUP)

10 / 68    (PUP)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

4 / 68      (PUP)

14 / 68    (PUP)

1 / 68      (PUP)

1 / 68

2 / 68      (PUP)

1 / 68      (PUP)

0 / 68

15 / 68    (PUP)

27 / 68    (Adware)

8 / 68      (PUP)

3 / 68      (Adware)

3 / 68      (inconclusive)

The following 238 files have been seen to comunicate with cdn01.bcdn.info in live environments.

 
Latest 20 of 238 files

URL:
http://cdn01.bcdn.info/

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)