doko.dtsusuk.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain doko.dtsusuk.net is registered by proxy through GODADDY.COM, LLC and was originally registered in December of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Los Angeles, California within the United States which resides on the Level 3 Communications, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
California, United States (US)

Create date:
Sunday, December 15, 2013

Expires date:
Thursday, December 15, 2016

Updated date:
Sunday, December 27, 2015

ASN:
AS3356 LEVEL3 - Level 3 Communications, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.Revizer.T, Adware.Revizer.Installer (M)
100.00%

Dr.Web
Trojan.Revizer.235, infected with Trojan.Revizer.394, Trojan.Revizer.417, infected with Trojan.Revizer.417
57.14%

G Data
Dropped:Application.Generic.925035, NSIS.Adware.AddLyrics, Gen:Variant.Adware.AddLyrics.32
57.14%

AVG
Generic5, AddLyrics, Adware AddLyrics.AS
42.86%

MicroWorld eScan
Dropped:Application.Generic.925035, Gen:Variant.Adware.AddLyrics.32
28.57%

avast!
NSIS:Adware-QK [Adw], Win32:Adware-gen [Adw]
28.57%

Bitdefender
Dropped:Application.Generic.925035, Gen:Variant.Adware.AddLyrics.32
28.57%

F-Secure
Dropped:Application.Generic.925035, Gen:Variant.Adware.AddLyrics.32
28.57%

Baidu Antivirus
Adware.Win32.AddLyrics
28.57%

ESET NOD32
Win32/Adware.AddLyrics.DB (variant)
28.57%

McAfee
Artemis!A2A6C41E8301
14.29%

K7 AntiVirus
Adware
14.29%

NANO AntiVirus
Trojan.Win32.Revizer.diyexg
14.29%

Trend Micro House Call
Suspicious_GEN.F47V1124
14.29%

Lavasoft Ad-Aware
Dropped:Application.Generic.925035
14.29%

The domain doko.dtsusuk.net has been seen to resolve to the following 3 IP addresses.

January 5, 2016

January 5, 2016

January 5, 2016

File downloads found at URLs served by doko.dtsusuk.net.

1 / 68      (Adware)

5 / 68      (Adware)

3 / 68      (Adware)
http://doko.dtsusuk.net/apps/.../3333-5724_SpeeditUp.exe  (66a1f6f793182e01485db271bfe65ff2)

1 / 68      (Adware)
http://doko.dtsusuk.net/apps/.../3333-5724_SpeeditUp.exe  (24d726d63e63ce28d517c15d9a810d90)

1 / 68      (Adware)
http://doko.dtsusuk.net/apps/.../3333-5724_SpeeditUp.exe  (56cf927e1063a3f2a750246b0d01ee44)

12 / 68    (Adware)

22 / 68    (Adware)
http://doko.dtsusuk.net/apps/.../3333-5724_SpeeditUp.exe  (a2a6c41e830159ad15bf88a17d977796)

URL:
http://doko.dtsusuk.net/

Web server:
Apache