dl01.faadmr.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl01.faadmr.com is registered by proxy through GODADDY.COM, LLC and was originally registered in April of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Remove Malware from dl01.faadmr.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Massachusetts, United States (US)

Create date:
Thursday, April 25, 2013

Expires date:
Saturday, April 25, 2015

Updated date:
Saturday, April 26, 2014

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.FIRSERIASL.J, PUP.FIRSERIASL.V, PUP.Installer.AppsInstallerSL.V, PUP.Installer.AppsInstallerSL.H, PUP.Installer.BechiroSL.V, PUP.Installer.AppsInstallerSL.AA, PUP.Solimba.AppsInstaller.Installer (M)
100.00%

VIPRE Antivirus
DownloadMR, Threat.4782980
77.78%

avast!
MSIL:Crypt-KA [PUP], Solimba-C [PUP], Win32:Installer-N [PUP], Win32:Solimba-C [PUP]
66.67%

Avira AntiVirus
TR/Dropper.Gen, APPL/Solimba.Gen
66.67%

ESET NOD32
MSIL/Solimba.AB
55.56%

Dr.Web
Adware.Downware.1125, Adware.Downware.1302
55.56%

Trend Micro House Call
ADW_SOLIMBA, TROJ_GEN.F47V0515, TROJ_GEN.F47V0710, TROJ_SPNV.03KC13, TROJ_GEN.F47V0628
55.56%

Sophos
Solimba Installer, DownloadMR
55.56%

Malwarebytes
PUP.Optional.Solimba.mr
44.44%

Comodo Security
Application.Win32.Solimba.GW, UnclassifiedMalware
44.44%

K7 Gateway Antivirus
Unwanted-Program
33.33%

K7 AntiVirus
Unwanted-Program
33.33%

Agnitum Outpost
PUA.Solimba
33.33%

Trend Micro
ADW_SOLIMBA, TROJ_SPNV.03KC13
33.33%

IKARUS anti.virus
nbsp;
33.33%

The domain dl01.faadmr.com has been seen to resolve to the following 13 IP addresses.

a184-51-126-57.deploy.static.akamaitechnologies.com
September 5, 2014

a184-51-126-33.deploy.static.akamaitechnologies.com
September 5, 2014

a23-0-160-48.deploy.static.akamaitechnologies.com
September 2, 2014

a23-0-160-11.deploy.static.akamaitechnologies.com
September 2, 2014

a23-67-250-128.deploy.static.akamaitechnologies.com
June 21, 2014

a23-67-250-112.deploy.static.akamaitechnologies.com
June 21, 2014

a96-16-98-18.deploy.akamaitechnologies.com
December 18, 2013

a96-16-98-8.deploy.akamaitechnologies.com
December 18, 2013

a96-16-98-112.deploy.akamaitechnologies.com
December 18, 2013

a23-67-242-35.deploy.static.akamaitechnologies.com
November 16, 2013

a23-67-242-10.deploy.static.akamaitechnologies.com
November 16, 2013

November 16, 2013

a23-67-243-96.deploy.static.akamaitechnologies.com
November 16, 2013

File downloads found at URLs served by dl01.faadmr.com.

25 / 68    (Adware)

1 / 68      (Adware)
http://dl01.faadmr.com/n/3.0.7/.../Telmex Antivirus.exe  (285ed20cd30059756dcfa5ded3643747)

20 / 68    (Adware)

10 / 68    (Adware)

19 / 68    (Adware)

6 / 68      (Adware)
http://dl01.faadmr.com/n/3.0.6/.../ImgBurn.exe  (5a6ad870c67df94d505e0c72d1564971)

1 / 68      (Adware)
http://dl01.faadmr.com/n/.../Avast! Free Antivirus.exe  (6093abd9aaa38a68d65d950c94010f17)

The following 100 files have been seen to comunicate with dl01.faadmr.com in live environments.

 
Latest 20 of 102 files

URL:
http://dl01.faadmr.com/

Web server:
nginx (PHP/5.5.16)

Remove Malware from dl01.faadmr.com - Powered by Reason Core Security