dl.d0wnpzivrubajjui.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl.d0wnpzivrubajjui.com is registered by proxy through GODADDY.COM, LLC and was originally registered in September of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Thursday, September 19, 2013

Expires date:
Saturday, September 19, 2015

Updated date:
Tuesday, October 7, 2014

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Solimba.FIRSERIA.Bundler (M), PUP.Solimba.SETUPPRO.Bundler (M), PUP.Solimba.Condesti (M), PUP.Solimba.RAPIDDOW.Bundler (M), PUP.Solimba.PortalPr.Bundler (M), PUP.Solimba (M), PUP.Solimba.Bundler
98.00%

VIPRE Antivirus
Threat.55332
2.00%

Microsoft Security Essentials
Threat.Undefined
2.00%

avast!
Win32:Gardih
2.00%

Dr.Web
Win32.HLLP.Jeefo.36352
2.00%

F-Prot
W32/Jeefo.A
2.00%

ESET NOD32
Win32/Jeefo.A virus
2.00%

AVG
Win32/Hidrag.A
2.00%

McAfee
Virus.W32/Jeefo.e
2.00%

Emsisoft Anti-Malware
Win32.Jeefo
2.00%

Norman
Win32.Jeefo.B
2.00%

Kaspersky
Virus.Win32.Hidrag
2.00%

The domain dl.d0wnpzivrubajjui.com has been seen to resolve to the following 37 IP addresses.

unallocated.barefruit.co.uk
May 21, 2015

a96-6-113-75.deploy.akamaitechnologies.com
May 3, 2015

a96-6-113-121.deploy.akamaitechnologies.com
May 3, 2015

a23-15-7-122.deploy.static.akamaitechnologies.com
February 15, 2015

a23-15-7-104.deploy.static.akamaitechnologies.com
February 15, 2015

a23-62-6-91.deploy.static.akamaitechnologies.com
September 18, 2014

a23-62-7-17.deploy.static.akamaitechnologies.com
September 7, 2014

a23-62-7-66.deploy.static.akamaitechnologies.com
September 7, 2014

a23-62-6-97.deploy.static.akamaitechnologies.com
September 3, 2014

a23-62-6-80.deploy.static.akamaitechnologies.com
September 3, 2014

a184-51-126-56.deploy.static.akamaitechnologies.com
August 17, 2014

a184-51-126-25.deploy.static.akamaitechnologies.com
August 17, 2014

a23-0-160-65.deploy.static.akamaitechnologies.com
August 16, 2014

a23-0-160-35.deploy.static.akamaitechnologies.com
August 16, 2014

a23-67-250-96.deploy.static.akamaitechnologies.com
April 14, 2014

a23-67-242-114.deploy.static.akamaitechnologies.com
April 11, 2014

a23-67-242-121.deploy.static.akamaitechnologies.com
April 11, 2014

a23-67-242-129.deploy.static.akamaitechnologies.com
April 11, 2014

a23-67-250-91.deploy.static.akamaitechnologies.com
April 4, 2014

a23-67-250-106.deploy.static.akamaitechnologies.com
April 4, 2014

March 19, 2014

March 19, 2014

a23-67-242-80.deploy.static.akamaitechnologies.com
March 3, 2014

a23-67-242-72.deploy.static.akamaitechnologies.com
March 3, 2014

a23-0-165-90.deploy.static.akamaitechnologies.com
January 28, 2014

a23-0-165-67.deploy.static.akamaitechnologies.com
January 28, 2014

January 23, 2014

January 14, 2014

January 14, 2014

a23-67-244-144.deploy.static.akamaitechnologies.com
January 10, 2014

 
Showing 30 of 37 IP Addresses

File downloads found at URLs served by dl.d0wnpzivrubajjui.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../FLV_Media_Player.exe  (e350ff194af1bb4b190a207f411fe6f8)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../LEGO Racers.exe  (2d287e5ef638ac0cd5f31256bff50078)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../Skype.exe  (f3f7c6c6fd718bb9f8823aeb3c1e63d6)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../AVS_Media_Player.exe  (06ec031ee11ec70f82865bcf885f1bf0)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../Netcut.exe  (48495102f195bd8f62b46677b68f7cdf)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../FLV_Media_Player.exe  (9d52015d679bd37356ccceddbb8a120f)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../FLV_Media_Player.exe  (dea628e1356abaf3719023ceb7c402f2)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../FLV_Media_Player.exe  (2d559401f125ee82d26ecac5c7ecc0b5)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../avast.exe  (50f086ea10195db2367a6f943dcdb04f)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/3.0.28.3/.../Test.exe  (40bca229a7be34b0b0da6c4e7c2fe478)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl.d0wnpzivrubajjui.com/n/.../Minecraft.exe  (1227331bc07dafa7953f2d008385111d)

1 / 68      (Adware)

 
Latest 30 of 180 download URLs

The following 567 files have been seen to comunicate with dl.d0wnpzivrubajjui.com in live environments.

 
Latest 20 of 579 files

URL:
http://dl.d0wnpzivrubajjui.com/

Web server:
nginx/1.0.15