dl.atappz.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl.atappz.com is registered by proxy through GODADDY.COM, LLC and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Friday, July 05, 2013

Expires date:
Tuesday, July 05, 2016

Updated date:
Monday, July 06, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.FIRSERIASL.N, PUP.FIRSERIASL.J, PUP.Installer.BechiroSL.V, PUP.FIRSERIASL.W, PUP.Solimba.AppsInstaller.Installer (M), PUP.Solimba.AppsInst.Bundler (M), PUP.Solimba.PortalPr.Bundler (M), PUP.Solimba.Bechiro.Bundler (M), PUP.Solimba (M)
100.00%

avast!
Win32:Firseria-A [PUP], Win32:Installer-N [PUP]
33.33%

Comodo Security
Application.Win32.Solimba.J, Application.Win32.Solimba.GW
33.33%

Dr.Web
Trojan.DownLoader10.51613, Adware.Downware.1302
33.33%

VIPRE Antivirus
DownloadMR, Threat.4782980
33.33%

Avira AntiVirus
Adware/Strictor.48157, APPL/Firseria.E, APPL/Solimba.Gen, TR/Dropper.Gen
33.33%

Sophos
Solimba Installer
33.33%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
33.33%

Malwarebytes
PUP.Optional.Firseria
25.00%

K7 Gateway Antivirus
Unwanted-Program , Trojan
25.00%

NANO AntiVirus
Trojan.Win32.Morstar.cqhuua
25.00%

Kaspersky
not-a-virus:Downloader.Win32.Morstar, not-a-virus:Downloader.Win32.Firser
25.00%

Bitdefender
Gen:Variant.Zusy.77453, Gen:Application.Bundler.Firseria.1
25.00%

Agnitum Outpost
Trojan.Strictor
25.00%

Lavasoft Ad-Aware
Gen:Variant.Zusy.77453, Gen:Application.Bundler.Firseria.1
25.00%

The domain dl.atappz.com has been seen to resolve to the following 10 IP addresses.

ip-50-63-202-55.ip.secureserver.net
July 15, 2016

a23-15-7-136.deploy.static.akamaitechnologies.com
June 19, 2016

a23-15-7-90.deploy.static.akamaitechnologies.com
June 19, 2016

a23-0-160-91.deploy.static.akamaitechnologies.com
April 12, 2016

a23-0-160-90.deploy.static.akamaitechnologies.com
April 12, 2016

May 5, 2015

a23-0-160-19.deploy.static.akamaitechnologies.com
September 4, 2014

a23-0-160-8.deploy.static.akamaitechnologies.com
September 4, 2014

May 1, 2014

a23-67-243-32.deploy.static.akamaitechnologies.com
May 1, 2014

File downloads found at URLs served by dl.atappz.com.

1 / 68      (Adware)
http://dl.atappz.com/n/3.0.23.7/.../Opera.exe  (32d2f95c8ac4d9b670f81d9d50c3ea29)

1 / 68      (Adware)
http://dl.atappz.com/n/3.0.15.1/.../Quick Slide.exe  (a48cda2a8b5f0b7673d21ec5be3bf1a4)

1 / 68      (Adware)
http://dl.atappz.com/n/3.0.15.1/.../Picasa.exe  (8863eafc84c5bd76f52ad72d9527628a)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.atappz.com/n/3.0.15.1/.../NOD32 antivirus.exe  (bbb9a81cfe891fbadac374ad836b511a)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.atappz.com/g/.../Setup.exe  (91fcc123d566b9d79bbc04f25b5e49e7)

10 / 68    (Adware)

30 / 68    (Adware)

28 / 68    (Adware)
http://dl.atappz.com/n/3.0.23.7/.../Minecraft.exe  (71ec1b6288ba07b7163937212bc85489)

28 / 68    (Adware)
http://dl.atappz.com/n/3.0.23.7/.../Google Chrome.exe  (17f875ce69f4f9078ee5f7ff981c807b)

The following 1160 files have been seen to comunicate with dl.atappz.com in live environments.

 
Latest 20 of 1,166 files

URL:
http://dl.atappz.com/

Web server:
AkamaiGHost