downloads.doubleoptmedia.com

REACTIVATION PERIOD

Domain Information

The domain downloads.doubleoptmedia.com registered by REACTIVATION PERIOD was initially registered in February of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Costa Mesa, California within the United States which resides on the Level 3 Communications, Inc. network.
Registrar:
ENOM, INC.

Server location:
California, United States (US)

Create date:
Thursday, February 20, 2014

Expires date:
Saturday, February 20, 2016

Updated date:
Saturday, April 2, 2016

ASN:
AS21740 ENOMAS1 - eNom, Incorporated

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Startup.MsTechAnB.K, PUP.MsTechAnB.N, PUP.Installer.MsTechAnB.I, PUP.MsChildrenCode.N, PUP.Installer.MsChildrenCode.I, PUP.Startup.MsChildrenCode.F
83.33%

Trend Micro House Call
TROJ_GEN.F47V0107, TROJ_GEN.F47V0311, TROJ_GEN.F47V0320, TROJ_GEN.F47V0327
58.33%

MicroWorld eScan
Gen:Variant.Symmi.39392
50.00%

Bitdefender
Gen:Variant.Symmi.39392
50.00%

Lavasoft Ad-Aware
Gen:Variant.Symmi.39392
50.00%

F-Secure
Gen:Variant.Symmi.39392
50.00%

VIPRE Antivirus
Backdoor.Win32.Ircbot.gen, Trojan.Win32.Generic
50.00%

Emsisoft Anti-Malware
Gen:Variant.Symmi.39392
50.00%

G Data
Gen:Variant.Symmi.39392
50.00%

Qihoo 360 Security
Win32/Trojan.8b6, Win32/Trojan.3a9, Win32/Trojan.c2b, HEUR/Malware.QVM19.Gen, Win32/Trojan.96d
41.67%

XVirus List
Win.Detected
33.33%

Dr.Web
Tool.BtcMine.141, Trojan.BtcMine.356, Trojan.Packed.26351
33.33%

ESET NOD32
Win32/MediaMine, Win32/Packed.Themida (variant)
33.33%

McAfee
Artemis!ABE97C48A963, Artemis!2BD7EB2B1464, Artemis!94549BB50885
25.00%

Comodo Security
UnclassifiedMalware
25.00%

The domain downloads.doubleoptmedia.com has been seen to resolve to the following 2 IP addresses.

February 22, 2016

February 9, 2016

File downloads found at URLs served by downloads.doubleoptmedia.com.

8 / 68      (Adware)

9 / 68      (Adware)

4 / 68      (Adware)

9 / 68      (Adware)

7 / 68      (Adware)
http://downloads.doubleoptmedia.com/g8v2c.exe  (17c9f84b20b61deecbaf3057e59bf67e)

8 / 68      (Adware)

10 / 68    (Adware)

10 / 68    (Adware)

5 / 68      (Adware)

3 / 68      (inconclusive)

11 / 68    (Adware)

1 / 68
http://downloads.doubleoptmedia.com/OpenCL.dll  (a371bee57bfbfa2d73da79aa1a752a3f)

21 / 68    (Adware)
http://downloads.doubleoptmedia.com/wg8v2.exe  (2bd7eb2b1464c59d0628de3ab0279f11)

30 of 43 related domains