dc108.4shared.com

New IT Solutions Ltd.

Domain Information

The domain dc108.4shared.com registered by New IT Solutions Ltd. was initially registered in January of 2005 through GODADDY.COM, LLC. The domain hosts various software downloads. The hosted servers are located in Fort Lauderdale, Florida within the United States which resides on the WZ Communications Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Florida, United States (US)

Create date:
Tuesday, January 11, 2005

Expires date:
Friday, January 11, 2019

Updated date:
Tuesday, November 12, 2013

ASN:
AS40824 WZCOM-US - WZ Communications Inc.

Root domain:

Scanner detections:
Detections  (84% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.NewITLimited.h, PUP.New IT Limited.NewIT.Bundler (M), PUP.New IT Limited.NewIT (M), PUP.New IT Limited.ITMANAGE.Bundler (M), PUP.NewITSolutions.Optional.Installer.Meta (L), PUP.New IT Limited (M)
93.55%

McAfee
Generic.dx!F556271E1338, Artemis!48B4B5878C85
6.45%

Malwarebytes
Trojan.Agent, PUP.Optional.4Shared
6.45%

K7 Gateway Antivirus
Trojan
6.45%

K7 AntiVirus
Trojan
6.45%

NANO AntiVirus
Trojan.Win32.Gendal.xahvz, Trojan.Win32.Downware.cumjmn
6.45%

Trend Micro House Call
HKTL_USURF, TROJ_GEN.F47V0206
6.45%

Agnitum Outpost
Trojan.Agent, PUA.Toolbar.Ask
6.45%

VIPRE Antivirus
Trojan.Win32.Generic
6.45%

McAfee Web Gateway
Generic.dx!F556271E1338, Artemis!48B4B5878C85
6.45%

ESET NOD32
Win32/UltraReach.AB (variant), Win32/Bundled.Toolbar.Ask (variant)
6.45%

AVG
BackDoor.Agent.YTH.dropper, Generic5
6.45%

F-Prot
W32/Trojan2.ASYO
3.23%

Norman
Suspicious_Gen2.DTE
3.23%

Total Defense
Win32/Tnega.AFDO
3.23%

The domain dc108.4shared.com has been seen to resolve to the following IP address.

c-r113-uc0064-147.webazilla.com
December 28, 2013

File downloads found at URLs served by dc108.4shared.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (PUP)
http://dc108.4shared.com/.../-UtQpTHA?lgfp=30000  (4shared_desktop_4.0.3.1.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://dc108.4shared.com/downloadhelper/exe/.../?????????????????????????.exe  (อ้ายแพ้เขาหรือเจ้าลำเอียง.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://dc108.4shared.com/downloadhelper/named/trinity/.../0t07 ??? ??????? - ????????????????????????????.exe  (0t07 หนู มิเตอร์ - ขอหมอนใบนั้นที่เธอฝันยามหนุน.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://dc108.4shared.com/downloadhelper/exe/.../004.?????????????????? - ?????? ???????.exe  (004.คนน่าฮักอกฮักบ่คือ - ไหมไทย ใจตะวัน.exe)

1 / 68      (Adware)

1 / 68      (Adware)
https://dc108.4shared.com/downloadhelper/named/xeroxbaidub1fsm2/.../????????? ???????????? - ??????????????.exe  (อริสมันต์ พงษ์เรืองรอง - รักเธอตลอดเวลา.exe)

 
Latest 30 of 40 download URLs

The following file have been seen to comunicate with dc108.4shared.com in live environments.

URL:
http://dc108.4shared.com/

Google Analytics:
UA-306602

Title:
“4shared.com - free file sharing and storage”

SSL certificate subject:
CN=*.4shared.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
571

Compete.com:
US visitors:  3,535

Statistics are for the previous month.