dll513.yourfd.net

Whois Privacy Corp.

Domain Information

The domain dll513.yourfd.net registered by Whois Privacy Corp. was initially registered in March of 2015 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network.
Registrar:
TLD REGISTRAR SOLUTIONS LTD

Server location:
Dublin City, Ireland (IE)

Create date:
Friday, March 27, 2015

Expires date:
Monday, March 27, 2017

Updated date:
Monday, March 28, 2016

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Goldencalf, PUP.Bundler.Via Advertising, PUP.Goldencalf.Installer (M), PUP.Goldenca.Installer (M), PUP (M), PUP.Via Advertising (M)
91.67%

MicroWorld eScan
Gen:Variant.Mikey.10506, Gen:Variant.Kazy.589566
25.00%

avast!
Win32:Adware-gen [Adw], Win32:Dropper-gen [Drp]
25.00%

Dr.Web
Adware.Downware.11073, Adware.Downware.10707, Adware.Downware.10745
25.00%

ESET NOD32
Win32/ExpressDownloader.K potentially unwanted (variant)
16.67%

Baidu Antivirus
PUA.Win32.ExpressDownloader
16.67%

Emsisoft Anti-Malware
Gen:Variant.Mikey.10506, Gen:Variant.Kazy.589566
16.67%

ESET NOD32
Win32/ExpressDownloader.K potentially unwanted application
16.67%

Bkav FE
W32.HfsAdware
16.67%

K7 AntiVirus
Adware
16.67%

Bitdefender
Gen:Variant.Mikey.10506, Gen:Variant.Kazy.589566
16.67%

Agnitum Outpost
Riskware.Agent
16.67%

G Data
Gen:Variant.Mikey.10506, Gen:Variant.Kazy.589566
16.67%

AhnLab V3 Security
PUP/Win32.YourFileDownloader
16.67%

AVG
Downloader
16.67%

The domain dll513.yourfd.net has been seen to resolve to the following 3 IP addresses.

ns1.ibspark.com
April 14, 2016

199.195.196.180.static.midphase.com
October 13, 2015

209.95.43.22.static.midphase.com
May 5, 2015

File downloads found at URLs served by dll513.yourfd.net.

The following 161 files have been seen to comunicate with dll513.yourfd.net in live environments.

 
Latest 20 of 173 files

URL:
http://dll513.yourfd.net/

Google Analytics:
UA-48689684

Title:
“yourfd.net”

Web server:
nginx

30 of 618 related domains