dc106.4sharedhelper.com

China Capital Investment Limited

Domain Information

The domain dc106.4sharedhelper.com registered by China Capital Investment Limited was initially registered in August of 2015 through LEATHERNECKDOMAINS.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
LEATHERNECKDOMAINS.COM, LLC

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Tuesday, August 4, 2015

Expires date:
Thursday, August 4, 2016

Updated date:
Monday, March 7, 2016

ASN:
AS16265 LEASEWEB LeaseWeb B.V.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.NewITLimited.K, PUP.New IT Limited.ITMANAGEMENTGROUP.Bundler (M), PUP.New IT Limited.NewIT.Bundler (M), PUP.New IT Limited.NewIT (M), PUP.New IT Limited.ITMANAGE.Bundler (M), PUP.New IT Limited (M)
100.00%

McAfee
Program.PUP-FIV
7.69%

Malwarebytes
PUP.Optional.4Shared
7.69%

K7 AntiVirus
Unwanted-Program
7.69%

Agnitum Outpost
PUA.4Shared
7.69%

avast!
FourShared-D [PUP]
7.69%

Sophos
PUA '4Share Downloader'
7.69%

Comodo Security
Application.Win32.4Shared.G
7.69%

Dr.Web
Adware.Downware.2538, Adware.Siggen.26344
7.69%

VIPRE Antivirus
4Shared
7.69%

Avira AntiVirus
TR/Dropper.Gen
7.69%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen
7.69%

ESET NOD32
Win32/4Shared.C potentially unwanted application
7.69%

Rising Antivirus
PE:PUF.4Shared!1.9C25
7.69%

IKARUS anti.virus
nbsp;
7.69%

The domain dc106.4sharedhelper.com has been seen to resolve to the following 6 IP addresses.

192.230.92.93.ip.incapdns.net
August 17, 2016

199.83.132.93.ip.incapdns.net
July 31, 2016

April 15, 2016

March 2, 2016

January 3, 2016

hosted-by.leaseweb.com
January 8, 2015

File downloads found at URLs served by dc106.4sharedhelper.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

20 / 68    (Adware)

The following 5 files have been seen to comunicate with dc106.4sharedhelper.com in live environments.

URL:
http://dc106.4sharedhelper.com/

Web server:
nginx/1.8.1