dl.reclinataretama.com

franck rosset

Domain Information

The domain dl.reclinataretama.com registered by franck rosset was initially registered in June of 2015 through GANDI SAS. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
GANDI SAS

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Friday, June 5, 2015

Expires date:
Sunday, June 5, 2016

Updated date:
Friday, June 5, 2015

ASN:
AS16276 OVH OVH SAS,FR

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Eorezo.LAgenceExclusive.Installer (M), PUP.Eorezo.Bundler (M), Adware.Eorezo (M)
70.00%

ESET NOD32
Win32/Adware.EoRezo.AZ application, Win32/Adware.EoRezo.BD application
60.00%

Clam AntiVirus
Win.Adware.Eorezo-308
30.00%

Kaspersky
UDS:DangerousObject.Multi.Generic, not-a-virus:AdWare.Win32.Eorezo
30.00%

NANO AntiVirus
Riskware.InnoSetup.EoRezo.dttnyf
30.00%

ESET NOD32
Win32/Adware.EoRezo.AZ (variant)
20.00%

IKARUS anti.virus
not-a-virus:AdWare.Eorezo
20.00%

K7 AntiVirus
Adware
10.00%

Dr.Web
Detection.Undefined
10.00%

The domain dl.reclinataretama.com has been seen to resolve to the following 4 IP addresses.

dl7.eorezo.com
May 25, 2016

dl0.eorezo.com
May 24, 2016

dl6.eorezo.com
April 22, 2016

dl5.eorezo.com
February 28, 2016

File downloads found at URLs served by dl.reclinataretama.com.

1 / 68      (Adware)

The following 14 files have been seen to comunicate with dl.reclinataretama.com in live environments.

URL:
http://dl.reclinataretama.com/

Title:
“eoRezo”

Web server:
Apache/2.2.16 (Debian) PHP/5.3.3-7+squeeze25 with Suhosin-Patch mod_ssl/2.2.16 OpenSSL/0.9.8o mod_perl/2.0.4 Perl/v5.10.1