dhg.freedownloadmediaconverter.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dhg.freedownloadmediaconverter.com is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Redwood City, California within the United States which resides on the SKYE network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Wednesday, February 13, 2013

Expires date:
Friday, February 13, 2015

Updated date:
Friday, February 14, 2014

ASN:
AS26008 NOMINUM-SKYE1 - SKYE

Scanner detections:
Detections  (92% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Bundlore.F, PUP.Installer.Bundlore.I, PUP.Solimba.Bechiro.Bundler (M), PUP.Bundlore.Bundler (M), PUP.Air Software.AirSoftw.Bundler (M), PUP.NewMedia.NMH.Bundler (M)
91.67%

Dr.Web
Adware.Downware.925, Adware.Downware.1302
66.67%

VIPRE Antivirus
Bundlore, DownloadMR
66.67%

avast!
Win32:Bundlore-A [PUP]
58.33%

Malwarebytes
PUP.Optional.Bundlore, PUP.Optional.Solimba
50.00%

Fortinet FortiGate
Adware/WebCake, Adware/Solimba
50.00%

Bkav FE
W32.Clod357.Trojan, W32.Clodc14.Trojan
50.00%

ESET NOD32
Win32/Toolbar.Conduit, MSIL/Solimba
50.00%

McAfee
Artemis!D0AA0A857FBF, Trojan.Artemis!7328C7EA768C, Artemis!7CF3BCE5ECF2
50.00%

McAfee Web Gateway
Artemis!D0AA0A857FBF, BehavesLike.Win32.PUP.tc, BehavesLike.Win32.Downloader.dc
50.00%

Norman
Agent.ASCUC, Bundlore.CERT
41.67%

Trend Micro House Call
TROJ_GEN.F47V0507, TROJ_GEN.F47V0510, TROJ_GEN.R002H05IT14
41.67%

Sophos
PUA 'Bundlore', Solimba Installer
25.00%

AVG
Adware AdInstaller.Bundlor, Skodna.Generic
25.00%

IKARUS anti.virus
PUA.Bundlore, PUA.Bechiro
25.00%

The domain dhg.freedownloadmediaconverter.com has been seen to resolve to the following 3 IP addresses.

search.dnsassist.verizon.net
May 1, 2014

March 14, 2014

March 14, 2014

File downloads found at URLs served by dhg.freedownloadmediaconverter.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

12 / 68    (Adware)

15 / 68    (Adware)

15 / 68    (Adware)

25 / 68    (Adware)

5 / 68      (Adware)

12 / 68    (Adware)

5 / 68      (Adware)

12 / 68    (Adware)

The following 84 files have been seen to comunicate with dhg.freedownloadmediaconverter.com in live environments.

 
Latest 20 of 84 files

URL:
http://dhg.freedownloadmediaconverter.com/

Web server:
Apache/2.2.3 (CentOS)