cpadominator.com

SELECT SOLUTIONS LLC

Domain Information

The domain cpadominator.com registered by SELECT SOLUTIONS LLC was initially registered in March of 2008 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in West Chester, Ohio within the United States which resides on the Level 3 Communications, Inc. network.
Remove Malware from cpadominator.com - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
Ohio, United States (US)

Create date:
Monday, March 03, 2008

Expires date:
Thursday, March 03, 2016

Updated date:
Friday, May 01, 2015

ASN:
AS30152 BEYOND-HOSTING - Beyond Hosting, LLC,US

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.LionSeaSoftwarecoltd.F, PUP.Installer.WARPINSTALL.a, PUP.Installer.TINYINSTALLER.F, PUP.Installer.INSTALLTHIS.F, PUP.Installer.PremiumInstaller.F, DownloadManager.AirSoftware.O, PUP.Optional.Installer.F, PUP.Bundler.Adknowledge, PUP.Bundler.Outbrowse, DownloadManager.Bundler.Air Software, PUP.Adknowledge.Bundler, PUP.Air Software.AirSoftware.Bundler (M), PUP.Adknowledge.PremiumInstaller.Installer (M), PUP.Adknowledge.TINYINSTALLER.Installer (M), PUP.Downloadius.Downloadious.Installer (M), PUP.Adknowledge.Fileangels.Bundler (M)
100.00%

K7 AntiVirus
Unwanted-Program , Adware , Trojan , Riskware , DoS-Trojan
90.91%

AVG
MalSign.Generic, Skodna.Generic, Adware Generic_s.CM, Adware Generic5, Adware AdInstaller.ExpressInstall, Adware Generic_r.JA
90.91%

Dr.Web
Trojan.Packed.25254, Trojan.Packed.26807, Adware.Downware.1489, Adware.Downware.1479, Adware.Downware.1503, Adware.Downware.1479
90.91%

avast!
Win32:Somoto-N [PUP], Win32:IBryte-BY [PUP], Win32:IBryte-DJ [PUP], Win32:Installer-K [PUP], Adware-gen [Adw], PUP-gen [PUP]
87.88%

Kaspersky
not-a-virus:Downloader.Win32.Agent, not-a-virus:AdWare.Win32.iBryte, not-a-virus:AdWare.Win32.AirAdInstaller, not-a-virus:Downloader.NSIS.OutBrowse
87.88%

Sophos
iBryte Optimum Installer, AirInstaller, PUA 'AnyProtect', PUA 'iBryte Optimum Installer', PUA 'AirInstaller', iBryte Premium Installer
87.88%

VIPRE Antivirus
Optimum Installer, Trojan.Win32.Generic, Threat.4778314, Threat.4150696, Threat.4782985, Trojan.Win32.Kryptik.blxe, Threat.4823950
87.88%

Agnitum Outpost
Trojan.Buzus, PUA.Agent, Adware.Agent, PUA.AirAd, Trojan.Injected, PUA.OutBrowse, Trojan.Kryptik, Riskware.AdWare, PUA.AirAdInstaller
87.88%

NANO AntiVirus
Riskware.Win32.IBryte.cspzhi, Trojan.Win32.Agent.cxjjsz, Trojan.Win32.Downware.cqiqwb, Riskware.Win32.AirAdInstaller.cxhlvu
87.88%

Zillya! Antivirus
Trojan.Buzus.Win32.119414, Adware.iBryte.Win32.854, Adware.iBryte.Win32.616, Trojan.Buzus.Win32.118729, Adware.AirAdInstaller.Win32.230
87.88%

Malwarebytes
PUP.Optional.OptimumInstaller.A, PUP.Optional.iBryte, PUP.Optional.IBryte.A, PUP.Optional.OutBrowse.gen, PUP.Optional.AirInstaller
84.85%

K7 Gateway Antivirus
Unwanted-Program , Adware , Trojan , Riskware , DoS-Trojan
84.85%

Comodo Security
Application.Win32.Adware.iBryte.BAA, Application.Win32.iBryte.WRP, Application.Win32.iBryte.M, Application.Win32.Agent.AJ
84.85%

Avira AntiVirus
Adware/iBryte.djc, ADWARE/Adware.Gen7, Adware/AgentCV.A.14165, ADWARE/InstallCore.Gen7, Adware/iBryte.L, PUA/Outbrowse.Gen
84.85%

The domain cpadominator.com has been seen to resolve to the following 4 IP addresses.

May 5, 2015

May 5, 2015

209-87-144-110.bhsrv.net
August 10, 2014

serv2.freegiveawayoffers.com
April 14, 2014

File downloads found at URLs served by cpadominator.com.

 
Latest 30 of 35 download URLs

URL:
http://cpadominator.com/

SSL certificate subject:
CN=sni79104.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (PHP/5.4.30)

Remove Malware from cpadominator.com - Powered by Reason Core Security