dc108.4sharedhelper.com

China Capital Investment Limited

Domain Information

The domain dc108.4sharedhelper.com registered by China Capital Investment Limited was initially registered in August of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
LEATHERNECKDOMAINS.COM, LLC

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Tuesday, August 4, 2015

Expires date:
Thursday, August 4, 2016

Updated date:
Monday, March 7, 2016

ASN:
AS16265 LEASEWEB LeaseWeb B.V.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.NewITLimited.J, PUP.New IT Limited.NewIT.Bundler (M), PUP.New IT Limited.ITMANAGE.Bundler (M), PUP.New IT Limited (M)
100.00%

F-Prot
W32/4Shared.C2.gen
9.09%

avast!
FourShared-D [PUP]
9.09%

Dr.Web
Trojan.StartPage.54023
9.09%

AVG
Adware MultiBundle.AD
9.09%

VIPRE Antivirus
Threat.4150696
9.09%

ESET NOD32
Win32/4Shared.D potentially unwanted application
9.09%

Kaspersky
not-a-virus:Downloader.Win32.Agent
9.09%

Clam AntiVirus
Win.Adware.Downware-267
9.09%

McAfee
PUP-FEP
9.09%

Malwarebytes
PUP.Optional.4Shared
9.09%

Zillya! Antivirus
Downloader.Agent.Win32.186696
9.09%

K7 AntiVirus
Unwanted-Program
9.09%

NANO AntiVirus
Trojan.Win32.Agent.dagppi
9.09%

Agnitum Outpost
PUA.4Shared
9.09%

The domain dc108.4sharedhelper.com has been seen to resolve to the following 5 IP addresses.

192.230.92.93.ip.incapdns.net
September 1, 2016

199.83.132.93.ip.incapdns.net
July 12, 2016

April 2, 2016

January 27, 2016

hosted-by.leaseweb.com
July 10, 2014

File downloads found at URLs served by dc108.4sharedhelper.com.

1 / 68      (Adware)

1 / 68      (Adware)

The following 5 files have been seen to comunicate with dc108.4sharedhelper.com in live environments.

URL:
http://dc108.4sharedhelper.com/

Web server:
nginx/1.8.1