down.downholic.com

onesoft

Domain Information

The domain down.downholic.com registered by onesoft was initially registered in January of 2012 through DOTNAME KOREA CORP. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seoul, Seoul-T'Ukpyolsi within Korea which resides on the Asia Pacific Network Information Centre network.
Registrar:
DOTNAME KOREA CORP

Server location:
Seoul-T'Ukpyolsi, Korea (KR)

Create date:
Monday, January 2, 2012

Expires date:
Thursday, January 2, 2014

Updated date:
Tuesday, December 25, 2012

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

MicroWorld eScan
Application.Generic.569757
100.00%

nProtect
Adware/W32.Agent.491384
100.00%

McAfee
RDN/Generic PUP.x!ws
100.00%

Malwarebytes
Adware.Kraddare
100.00%

Trend Micro House Call
TROJ_GEN.R047H0AI713
100.00%

avast!
Win32:Adware-gen [Adw]
100.00%

Bitdefender
Application.Generic.569757
100.00%

Sophos
Generic PUA IB
100.00%

Comodo Security
TrojWare.Win32.Downloader.Adload.EN
100.00%

F-Secure
Application.Generic.569757
100.00%

Dr.Web
Trojan.DownLoader9.54842
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Avira AntiVirus
Adware/Rogue.491384
100.00%

Trend Micro
TROJ_SPNV.03H513
100.00%

G Data
Application.Generic.569757
100.00%

The domain down.downholic.com has been seen to resolve to the following 3 IP addresses.

August 24, 2013

August 24, 2013

August 24, 2013

File downloads found at URLs served by down.downholic.com.

25 / 68    (Adware)

URL:
http://down.downholic.com/

Web server:
Apache/2.2.6 (Unix) mod_ssl/2.2.6 OpenSSL/0.9.7a PHP/5.2.0 with Suhosin-Patch (PHP/5.2.0)