dl01.socdn.com

FIRSERIA, S.L.  (via a Proxy Registrant)

Domain Information

The domain dl01.socdn.com is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2012. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Neu Isenburg, Hessen within Germany which resides on the Akamai Technologies, Inc. network. The domain is associated with the publisher FIRSERIA, S.L. who is located in Badalona, Barcelona in Spain.
Registrar:
GODADDY.COM, LLC

Server location:
Hessen, Germany (DE)

Create date:
Tuesday, November 06, 2012

Expires date:
Sunday, November 06, 2016

Updated date:
Saturday, November 07, 2015

ASN:
AS26769 BANDCON - Bandcon,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Solimba.SolimbaAplicaciones.Bundler (M), PUP.Solimba.FIRSERIA.Bundler (M), PUP.Solimba.SolimbaA.Bundler (M), PUP.Solimba (M)
100.00%

nProtect
Trojan/W32.Agent.178856.B, Trojan-Clicker/W32.Agent.141848
6.00%

Malwarebytes
PUP.Offerware, Adware.Solimba.Lame
6.00%

K7 AntiVirus
Unwanted-Program, Unwanted-Program
6.00%

McAfee
Artemis!395ECAAEE6AD, Artemis!BB60F8545F23
6.00%

K7 Gateway Antivirus
Unwanted-Program
6.00%

NANO AntiVirus
Riskware.Win32.Downware.cruvdx, Trojan.Win32.Downware.cthmwx
6.00%

Clam AntiVirus
WIN.Adware.Solimba-3
6.00%

Agnitum Outpost
Trojan.Adware
6.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Solimba.1
6.00%

VIPRE Antivirus
DownloadMR
6.00%

Trend Micro
TROJ_GEN.RCBCOEK, TROJ_SPNR.03GA14
6.00%

McAfee Web Gateway
Artemis!395ECAAEE6AD, BehavesLike.Win32.BadFile.cc
6.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Solimba
6.00%

Antiy Labs AVL
Trojan/Win32.SGeneric, GrayWare[AdWare:not-a-virus]/MSIL.Solimba
6.00%

The domain dl01.socdn.com has been seen to resolve to the following 32 IP addresses.

May 6, 2015

May 6, 2015

a23-67-242-115.deploy.static.akamaitechnologies.com
May 5, 2015

a23-67-242-96.deploy.static.akamaitechnologies.com
May 5, 2015

March 12, 2015

March 12, 2015

March 12, 2015

March 12, 2015

a23-15-9-25.deploy.static.akamaitechnologies.com
November 10, 2014

a23-15-9-9.deploy.static.akamaitechnologies.com
November 10, 2014

a96-17-161-112.deploy.akamaitechnologies.com
November 10, 2014

a96-17-161-137.deploy.akamaitechnologies.com
November 10, 2014

a23-0-160-51.deploy.static.akamaitechnologies.com
October 24, 2014

a184-50-238-82.deploy.static.akamaitechnologies.com
October 24, 2014

a184-50-238-120.deploy.static.akamaitechnologies.com
October 24, 2014

a23-62-7-8.deploy.static.akamaitechnologies.com
October 20, 2014

a23-62-7-49.deploy.static.akamaitechnologies.com
October 20, 2014

a23-62-6-83.deploy.static.akamaitechnologies.com
October 9, 2014

a23-62-6-82.deploy.static.akamaitechnologies.com
October 9, 2014

a23-0-160-56.deploy.static.akamaitechnologies.com
September 4, 2014

a23-0-160-48.deploy.static.akamaitechnologies.com
September 4, 2014

a184-51-126-51.deploy.static.akamaitechnologies.com
September 2, 2014

a184-51-126-10.deploy.static.akamaitechnologies.com
September 2, 2014

a184-29-106-73.deploy.static.akamaitechnologies.com
August 17, 2014

a184-29-106-41.deploy.static.akamaitechnologies.com
August 17, 2014

a23-67-244-91.deploy.static.akamaitechnologies.com
August 10, 2014

a23-67-244-99.deploy.static.akamaitechnologies.com
August 10, 2014

a23-67-250-97.deploy.static.akamaitechnologies.com
July 3, 2014

a23-67-250-121.deploy.static.akamaitechnologies.com
May 1, 2014

a23-67-250-131.deploy.static.akamaitechnologies.com
May 1, 2014

 
Showing 30 of 32 IP Addresses

File downloads found at URLs served by dl01.socdn.com.

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.60.1/.../Mediaget.exe  (f5ed836954a81b0402affe4a504a0841)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/.../Video Star.exe  (ef6d9301ff004d4af2bb5e88611bc668)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.54.1/.../7 zip.exe  (76234c71026852c7cc1b2c9a5599e43f)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.57.1/.../Empire Earth.exe  (f705055dc2c4803f08242cd8ac7e2f59)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.57/.../bitcomet.exe  (72eb46e8b3abf828cb634a3b403c134b)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.54.1/.../glary undelete.exe  (b715ee323bee71d73d7841204454f0bd)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.54/.../stata.exe  (53673c7b714a8cd0026307ca59e5e31a)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/3.0.0/.../Counter Strike.exe  (d8ddbbf71b0abf7e449e1f780f2ed997)

1 / 68      (Adware)
http://dl01.socdn.com/n/3.0.4.1/.../Excel Viewer 2003.exe  (af370bf572bd4aed7baa3d9eaf9e0503)

1 / 68      (Adware)
http://dl01.socdn.com/n/3.0.4.1/.../Excell.exe  (874918bc2b7db314a3cff048a5e9f856)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.54.1/.../nod32 antivirus.exe  (faaf488e616812d464a7c6da371f5f33)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/3.0.30/.../Auto-Tune 5.exe  (aa71c4d7bd05a0ee9afff4f025cd55dd)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.57/.../spy software.exe  (755d029018ceed259ed3cb0234d27195)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.54.1/.../chrome.exe  (fc09836eb041ba42a5d72ffe0b536881)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.51/.../avs media player.exe  (0358309de9e5aac2d030aa200ac21ea2)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/3.0.0/.../WiFi Auditor.exe  (a070103971c7a6ef1030aac6be333927)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.57/.../solitario spider.exe  (137135d670a0825e512ffd7019d23ee0)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.54/.../age of empires iii.exe  (7b0551754475eec0d0f338e6c39c86ee)

1 / 68      (Adware)

1 / 68      (Adware)
http://dl01.socdn.com/n/2.2.48/.../avs media player.exe  (84bc1f372bd43f6da05dafe1f63ffe3a)

1 / 68      (Adware)
http://dl01.socdn.com/n/3.0.21/.../Google Chrome.exe  (891d59ce44d05faf4282ef15deaa6bab)

41 / 68    (Adware)
http://dl01.socdn.com/n/2.2.54.1/.../photoscape.exe  (435fe106969442de3c685a569cf5265c)

 
Latest 30 of 709 download URLs

The following 264 files have been seen to comunicate with dl01.socdn.com in live environments.

 
Latest 20 of 277 files