dls.gufile.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain dls.gufile.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in November of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Monday, November 12, 2012

Expires date:
Saturday, November 12, 2016

Updated date:
Thursday, October 29, 2015

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
(M), PUP.TuguuSLU.J, PUP.Awimba.d, PUP.TuguuSL.G, PUP.TUGUUSL.d, PUP.TuguuSL.M, PUP.Bundler.Tuguu, Threat.Bundler.Awimba, PUP.Tuguu.Bundler (M), PUP.Tuguu.tuguusl.Bundler (M), PUP.Tuguu.Awimba.Bundler (M), PUP.Tuguu (M)
100.00%

Dr.Web
Adware.W3i.34, Trojan.DownLoader10.474, Adware.W3i.29, Trojan.Packed.24553, Adware.W3i.28, Adware.W3i.37
24.32%

VIPRE Antivirus
DomaIQ, Threat.4150696, Threat.4783235
24.32%

Avira AntiVirus
W32/Mabezat, Adware/DomaIQ.cc.293, APPL/DomaIQ.Gen7, PUA/DomaIQ.GK
21.62%

Sophos
DomainIQ pay-per install
21.62%

Malwarebytes
Adware.DomaIQ, PUP.Adware.DomaIQ, PUP.Optional.DomaIQ
18.92%

Kaspersky
not-a-virus:AdWare.Win32.DomaIQ, not-a-virus:Downloader.NSIS.Agent, not-a-virus:HEUR:AdWare.MSIL.DomaIQ, not-a-virus:AdWare.MSIL.DomaIQ
18.92%

McAfee
Artemis!DDA4AB6E17E1, RDN/Generic PUP.x!bp3, Adware-DomaIQ, Artemis!AF95B7F0653E, Artemis!257F351AE86C, Artemis!0D58EFC2D706, Artemis!6FB7612A2690
18.92%

ESET NOD32
Win32/DomaIQ
16.22%

avast!
PUP-gen [PUP], Win32:PUP-gen [PUP], Installer-AE [PUP], NSIS:DomaIQ-C [PUP], DomaIQ-T [PUP]
16.22%

K7 AntiVirus
Trojan , Unwanted-Program
16.22%

K7 Gateway Antivirus
Trojan , Unwanted-Program
16.22%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud), VIRUS_UNKNOWN, Win32.Troj.Undef.(kcloud), Win32.Troj.DomaIQ.cc.(kcloud)
16.22%

G Data
Trojan.Agent.BAAB, Win32.Application.DomalQ, Application.Bundler.DomaIQ, NSIS.Application.DomaIQ, Trojan.Generic.12213770
16.22%

IKARUS anti.virus
AdWare.SuspectCRC, Trojan-Dropper, Trojan-Downloader.Small, AdWare.DomaIQ, Trojan.Msil
16.22%

The domain dls.gufile.com has been seen to resolve to the following 6 IP addresses.

unallocated.barefruit.co.uk
May 2, 2015

November 30, 2014

September 22, 2014

August 7, 2014

March 19, 2014

December 4, 2013

File downloads found at URLs served by dls.gufile.com.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://dls.gufile.com/d/81/java-runtime-environment-jre/.../467  (java-runtime-environment-jre_v.c.exe)

1 / 68      (Adware)
http://dls.gufile.com/d/119/AVG-Anti-Virus-Free-Edition-2013/.../376  (avg-anti-virus-free-edition-2013_v.c.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

2 / 68      (Malware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

12 / 68    (Adware)

29 / 68    (Adware)

31 / 68    (Adware)

1 / 68      (Adware)

The following 230 files have been seen to comunicate with dls.gufile.com in live environments.

 
Latest 20 of 230 files