dc101.4shared.com

New IT Solutions Ltd.

Domain Information

The domain dc101.4shared.com registered by New IT Solutions Ltd. was initially registered in January of 2005 through GODADDY.COM, LLC. The domain hosts various software downloads. The hosted servers are located in Fort Lauderdale, Florida within the United States which resides on the WZ Communications Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Florida, United States (US)

Create date:
Tuesday, January 11, 2005

Expires date:
Friday, January 11, 2019

Updated date:
Thursday, January 23, 2014

ASN:
AS40824 WZCOM-US - WZ Communications Inc.,US

Root domain:

Scanner detections:
Detections  (80% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.NewITLimited.X, PUP.NewITLimited.Q, PUP.New IT Limited.NewIT.Bundler (M), PUP.New IT Limited.NewIT (M), PUP.New IT Limited.ITMANAGE.Bundler (M), PUP.New IT Limited (M)
95.00%

Dr.Web
Adware.Downware.2538, Trojan.StartPage.51192, Adware.Downware.2538, Trojan.StartPage.54036
5.00%

ESET NOD32
Win32/4Shared.D potentially unwanted application, Win32/4Shared.C potentially unwanted application
5.00%

VIPRE Antivirus
Threat.4788236, 4Shared
5.00%

avast!
FourShared-D [PUP], PUP-gen [PUP]
5.00%

McAfee
PUP-FIV, Program.PUP-FIV
5.00%

Malwarebytes
PUP.Optional.4Shared
5.00%

K7 AntiVirus
Unwanted-Program , Trojan
5.00%

NANO AntiVirus
Trojan.Win32.StartPage.ctnzdt, Trojan.Win32.StartPage.cxgxgp
5.00%

F-Prot
W32/4Shared.G.gen
5.00%

Agnitum Outpost
PUA.4Shared
5.00%

Sophos
4Share Downloader, PUA '4Share Downloader'
5.00%

Comodo Security
Application.Win32.4Shared.G
5.00%

Avira AntiVirus
APPL/Downloader.Gen6
5.00%

Rising Antivirus
PE:PUF.4Shared!1.9C25
5.00%

The domain dc101.4shared.com has been seen to resolve to the following IP address.

c-r111-uc0058-141.webazilla.com
May 1, 2014

File downloads found at URLs served by dc101.4shared.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://dc101.4shared.com/downloadhelper/dhx/.../?????? ?? ?????? ??????? ?? ??????.exe  (الرجال من المريخ والنساء من الزهرة.exe)

1 / 68      (Adware)

1 / 68      (Adware)
https://dc101.4shared.com/downloadhelper/named/trinity/.../Preen - ???????????????????????????.exe  (preen - เมื่อไหร่ฟ้าจะมองลงมาที่ฉัน.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://dc101.4shared.com/downloadhelper/exe/.../25.exe  (e3fb0eea4a123b3d62ed396ad1f77842)

2 / 68      (PUP)

1 / 68      (Adware)

 
Latest 30 of 52 download URLs

The following file have been seen to comunicate with dc101.4shared.com in live environments.

URL:
http://dc101.4shared.com/

Google Analytics:
UA-306602

Title:
“4shared.com - free file sharing and storage”

SSL certificate subject:
CN=*.4shared.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
571