dl.game-time.co

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl.game-time.co is registered by proxy through GODADDY.COM, INC. and was originally registered in November of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Mountain View, California within the United States which resides on the Google Inc. network.
Remove Malware from dl.game-time.co - Powered by Reason Core Security
Registrar:
GODADDY.COM, INC.

Server location:
California, United States (US)

Create date:
Tuesday, November 12, 2013

Expires date:
Friday, November 11, 2016

Updated date:
Sunday, October 11, 2015

ASN:
AS15169 GOOGLE - Google Inc.

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SayMediaGroup.I, PUP.Installer.SayMediaGroup.K, PUP.PluginUpdateSL.G, PUP.PluginUpdateSL.J, PUP.Installer.Fileadventure.F, PUP.Installer.PluginUpdateSL.M, PUP.SayMediaGroup.J, PUP.Installer.SystemApplet.F, PUP.Installer.Softpulse, Threat.Win.Reputation.IMP, PUP.Outbrowse, PUP.Bundler.Softpulse, PUP.Installer.Adknowledge, Threat.Outbrowse.Bundler, PUP.Softpulse.Bundler, PUP.Outbrowse.Bundler (M), PUP.Softpulse.PluginUpdate.Bundler (M), PUP.Adknowledge.SafeDown.Bundler (M), PUP.Softpulse.TrustedDownload.Bundler (M), PUP.Softpulse.YumonSystem.Bundler (M), PUP.installCore.SayMediaGroup (M)
93.75%

Avira AntiVirus
Adware/InstallCore.A.289, ADWARE/InstallCore.Gen9, TR/Dropper.Gen, APPL/Softpulse.Gen, Adware/iBryte.bxov, Adware/Agent.OIL
83.33%

ESET NOD32
Win32/InstallCore.OK potentially unwanted application, Win32/InstallCore.PZ potentially unwanted application, Win32/InstallCore.QH potentially unwanted application, Win32/SoftPulse.S potentially unwanted application, Win32/SoftPulse.X potentially unwanted application
79.17%

VIPRE Antivirus
Threat.4788237, Threat.4150696, Threat.4778314, Threat.4783235, Threat.5064683, Threat.4823950, Optimum Installer, OutBrowse
77.08%

Dr.Web
Trojan.MulDrop5.10078, Trojan.Domaiq.10, Trojan.Domaiq.9, Trojan.MulDrop5.38104, Trojan.iBryte.47, Trojan.Packed.28579, Adware.SoftPules.3
72.92%

Malwarebytes
PUP.Optional.InstallCore.A, PUP.Optional.DomaIQ, PUP.Optional.Ibryte, PUP.Optional.OptimumInstaller.A, PUP.Optional.OutBrowse
70.83%

K7 Gateway Antivirus
Adware , Trojan , Unwanted-Program , Dialer
68.75%

K7 AntiVirus
Adware , Trojan , Unwanted-Program
68.75%

AVG
Generic, Adware AdPlugin.BUN, Found Win32/DH{gRJ UIEHeVRPFVGBFYEJHFOBE0GBDw}, Pluginup, Found Win32/DH{gRIxfX5QgQd5VE8VUYEVgQkcU4ETQYEP}
68.75%

McAfee Web Gateway
CryptInno, BehavesLike.Win32.CryptInno.bc, BehavesLike.Win32.CryptDoma.bc, BehavesLike.Win32.CryptDoma.tc, GenericATG-FGI!746F50AE6DB0
66.67%

Comodo Security
Application.Win32.InstallCore.GGTA, Application.Win32.DomaIQ.FSX, Application.Win32.AgentCV.HWYE, Application.Win32.SoftPulse.J, Application.Win32.InstallCore.T
64.58%

Sophos
Install Core Click run software, SoftPulse, Mal/Inject-CEE, PUA 'SoftPulse' (of type Adware), PUA 'Install Core Click run software'
62.50%

NANO AntiVirus
Trojan.Win32.DriverUpd.dipney, Trojan.Win32.DriverUpd.dhxfoa, Trojan.Win32.Badur.dhhunu, Riskware.Win32.Agent.deikti, Trojan.Win32.DriverUpd.djqtoc
62.50%

McAfee
CryptInno, SoftPulse, SoftPulse.a, Artemis!0FF2B0F7AD04, Program.SoftPulse, Generic-FAIN!9C941A3E0AA7, Program.Adware-OutBrowse
60.42%

Kaspersky
not-a-virus:Downloader.Win32.DriverUpd, Trojan.Win32.Inject, not-a-virus:AdWare.Win32.SoftPulse, HEUR:Trojan.Win32.Generic
60.42%

The domain dl.game-time.co has been seen to resolve to the following 9 IP addresses.

February 4, 2016

January 6, 2016

December 16, 2015

May 4, 2015

qc-in-f121.1e100.net
August 23, 2014

qa-in-f121.1e100.net
May 1, 2014

qh-in-f121.1e100.net
May 1, 2014

qg-in-f121.1e100.net
April 11, 2014

April 11, 2014

File downloads found at URLs served by dl.game-time.co.

 
Latest 30 of 95 download URLs

The following 25 files have been seen to comunicate with dl.game-time.co in live environments.

 
Latest 20 of 25 files

URL:
http://dl.game-time.co/

SSL certificate subject:
E=game-time.co@domainsbyproxy.com, CN=dl.game-time.co, C=IL

SSL certificate issuer:
CN=StartCom Class 1 Primary Intermediate Server CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Web server:
Google Frontend

Remove Malware from dl.game-time.co - Powered by Reason Core Security