dc172.gulfup.com

FR Group

Domain Information

The domain dc172.gulfup.com registered by FR Group was initially registered in April of 2006 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dronten, Flevoland within Netherlands which resides on the RIPE Network Coordination Centre network.
Remove Malware from dc172.gulfup.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Flevoland, Netherlands (NL)

Create date:
Thursday, April 06, 2006

Expires date:
Monday, April 03, 2023

Updated date:
Wednesday, February 25, 2015

ASN:
AS50673 SERVERIUS-AS Serverius Holding B.V.,NL

Root domain:

Scanner detections:
Detections  (67% detected)

Scan engine
Details
Detections

Trend Micro House Call
TROJ_GEN.F47V0809, TROJ_GEN.F47V0831
100.00%

K7 AntiVirus
Unwanted-Program
50.00%

K7 Gateway Antivirus
Unwanted-Program
50.00%

Sophos
Open Install
50.00%

Dr.Web
Adware.Downware.1348
50.00%

Antiy Labs AVL
Trojan/Win32.Autoit
50.00%

ESET NOD32
Win32/OpenInstall (variant)
50.00%

McAfee
Artemis!3719C6E783EF
50.00%

McAfee Web Gateway
Artemis!3719C6E783EF
50.00%

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
50.00%

Reason Heuristics
PUP.FreeGamePick
50.00%

The domain dc172.gulfup.com has been seen to resolve to the following 2 IP addresses.

June 19, 2015

May 30, 2014

File downloads found at URLs served by dc172.gulfup.com.

10 / 68    (PUP)

0 / 68
http://dc172.gulfup.com/gg0c3.exe  (atlantis_setup.exe)

2 / 68      (PUP)
http://dc172.gulfup.com/R4OO1.exe  (8-ball-frenzy.exe)

URL:
http://dc172.gulfup.com/

Web server:
gulfup.com

Remove Malware from dc172.gulfup.com - Powered by Reason Core Security