The domain dd.simple-files.com registered by Whois Privacy Corp. was initially registered in April of 2013 through INTERNET.BS CORP.. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network. The domain is associated with the publisher Blisbury LLP who is located in London, United Kingdom.
INTERNET DOMAIN SERVICE BS CORP
Northern Ireland, United Kingdom (GB)
Monday, April 15, 2013
Friday, April 15, 2016
Friday, December 11, 2015
Detections (100% detected)
PUP.Installer.TechnologyIsland.i, PUP.Installer.NewMonte.b, PUP.Installer.TechnologyIsland.r, PUP.Installer.TechnologyIsland.?, PUP.Installer.NewMonte.V, PUP.Installer.NewMonte.d, PUP.Installer.TechnologyIsland.v, PUP.Installer.Via Advertising, PUP.Bundler.Via Advertising, PUP.Blisbury.Bundler, Threat.Blisbury.Bundler, PUP.Blisbury.httpwwwsimplefiles.Bundler (M), PUP.Via Advertising.TechnologyIsland.Bundler (M), PUP.Blisbury.NewMonte.Bundler (M), PUP.Via Advertising.Technolo.Bundler (M), PUP.Blisbury.httpwwws.Bundler (M), PUP.Via Advertising (M), PUP.Blisbury (M)
Adware.Downware.7936, Threat.Undefined, Adware.Downware.8279, Adware.Downware.9527, Adware.Downware.10330
Win32:Adware-gen [Adw], Win32:Rootkit-gen [Rtk], Win32:PUP-gen [PUP], Win32:Trojan-gen
Generic, Adware BundleApp_r.AL, Adware BundleApp_r.AM, Adware BundleApp_r.AO
Win32/ExpressDownloader.J potentially unwanted application, Win32/ExpressDownloader.H potentially unwanted application
PUA.ICLoader, PUA.Expressdownloader, PUA.BrowseFox
K7 Gateway Antivirus
Trojan , Unwanted-Program
Riskware.Win32.Downware.dedwnb, Riskware.Win32.Babylon.dffshm, Trojan.Win32.BPlug.dkkvvf, Riskware.Win32.Downware.deleer
a variant of 299731bbd6c85fe09cba6bcbf216040b1ab4c66c, a variant of b6758f1f54ef04c91956cdcbe2e0ee3099953c61, a variant of 292a79294cfb9efb1332b6fccf5141cd14b97426
Gen:Variant.Kazy.462844, Win32.Application.Expressdownloader, Gen:Variant.Adware.Kazy.462844
Unwanted-Program , Trojan
Win32/BrowseFox, Win32/ExpressDownloader (variant)
The domain dd.simple-files.com has been seen to resolve to the following 3 IP addresses.
April 17, 2016
May 6, 2015
April 11, 2014
File downloads found at URLs served by dd.simple-files.com.
Latest 30 of 68 download URLs
The following 372 files have been seen to comunicate with dd.simple-files.com in live environments.