dl.hzdmr.com

jianlong song

Domain Information

The domain dl.hzdmr.com registered by jianlong song was initially registered in December of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Remove Malware from dl.hzdmr.com - Powered by Reason Core Security
Registrar:
EUTURBO.COM LLC

Server location:
Massachusetts, United States (US)

Create date:
Tuesday, December 22, 2015

Expires date:
Thursday, December 22, 2016

Updated date:
Tuesday, December 22, 2015

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.FIRSERIASL.J, PUP.Installer.AppsInstallerSL.V, PUP.Installer.AppsInstallerSL.M, PUP.Installer.AppsInstallerSL.I, PUP.Installer.AppsInstallerSL.L, PUP.Installer.AppsInstallerSL.N, PUP.Solimba.AppsInstaller.Installer (M)
100.00%

Malwarebytes
PUP.Optional.Solimba.mr, PUP.Optional.Firseria
70.00%

VIPRE Antivirus
DownloadMR, Threat.4782980, Threat.4150696
70.00%

Avira AntiVirus
TR/Dropper.Gen, APPL/Solimba.Gen, APPL/Firseria.Gen8
60.00%

avast!
MSIL:Crypt-KA [PUP], Solimba-C [PUP]
50.00%

K7 Gateway Antivirus
Trojan , Unwanted-Program
50.00%

K7 AntiVirus
Trojan , Unwanted-Program
50.00%

Sophos
Solimba Installer, DownloadMR
40.00%

Vba32 AntiVirus
Downware.Morstar, Signed-Downware.Morstar.AppsInstallerSL
40.00%

AVG
Generic_r, Adware Skodna.Generic.AMG, Bechiro SL
40.00%

Dr.Web
Adware.Downware.1125, Trojan.DownLoader11.24441
40.00%

ESET NOD32
MSIL/Solimba potentially unwanted application, MSIL/Solimba.AH potentially unwanted application
40.00%

Kaspersky
not-a-virus:Downloader.NSIS.Agent, not-a-virus:AdWare.Win32.Fiseria, not-a-virus:Downloader.Win32.Morstar
40.00%

NANO AntiVirus
Trojan.Win32.Generic.cskuge, Trojan.Win32.DownLoad3.daevxj, Trojan.Win32.Morstar.dfgpsr, Riskware.Win32.Downloader.cskuky
40.00%

Comodo Security
Application.Win32.Solimba.GW, Application.Win32.Solimba.LSW
40.00%

The domain dl.hzdmr.com has been seen to resolve to the following 14 IP addresses.

January 27, 2016

a23-62-6-80.deploy.static.akamaitechnologies.com
December 2, 2014

a23-62-6-58.deploy.static.akamaitechnologies.com
October 24, 2014

a23-62-7-17.deploy.static.akamaitechnologies.com
September 27, 2014

a23-62-7-18.deploy.static.akamaitechnologies.com
September 27, 2014

a23-62-6-74.deploy.static.akamaitechnologies.com
September 2, 2014

a23-62-6-66.deploy.static.akamaitechnologies.com
September 2, 2014

May 1, 2014

a23-15-8-83.deploy.static.akamaitechnologies.com
January 14, 2014

a23-15-8-66.deploy.static.akamaitechnologies.com
January 14, 2014

November 16, 2013

November 16, 2013

November 16, 2013

a23-67-243-67.deploy.static.akamaitechnologies.com
November 16, 2013

File downloads found at URLs served by dl.hzdmr.com.

1 / 68      (Adware)
http://dl.hzdmr.com/n/.../Video Star.exe  (9d5f11a32a3cb3fea200318c7a52bd79)

1 / 68      (Adware)
http://dl.hzdmr.com/n/.../Easy Photo Print.exe  (00d558b38ac82794bffc03a656866454)

20 / 68    (Adware)
http://dl.hzdmr.com/n/3.0.15.2/.../Edge of Space.exe  (557fe94d3d406d219ba7682aefadbdf4)

20 / 68    (Adware)
http://dl.hzdmr.com/n/.../Edge of Space.exe  (557fe94d3d406d219ba7682aefadbdf4)

36 / 68    (Adware)
http://dl.hzdmr.com/n/.../Youtube Downloader HD.exe  (a727e9f991aae3a52947137659abe5a8)

18 / 68    (Adware)
http://dl.hzdmr.com/n/.../GoToMeeting.exe  (7c17c9b893a3d9afa7d63a7e41ed6216)

14 / 68    (Adware)
http://dl.hzdmr.com/n/3.0.15.3/.../Mediaget.exe  (c0796a214cf5e6aa407af52e20f414a9)

11 / 68    (Adware)

1 / 68      (Adware)
http://dl.hzdmr.com/n/.../Print Artist Platinum.exe  (a0fca875ec05a0c04f828cb9b5e9094f)

7 / 68      (Adware)

7 / 68      (Adware)

The following 284 files have been seen to comunicate with dl.hzdmr.com in live environments.

 
Latest 20 of 285 files

Remove Malware from dl.hzdmr.com - Powered by Reason Core Security