ds123.files-fast.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain ds123.files-fast.net is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Tuesday, June 3, 2014

Expires date:
Friday, June 3, 2016

Updated date:
Thursday, June 4, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.New IT Limited.Maxiget.Bundler (M), PUP.New IT Limited.Maxiget (M), PUP.New IT Limited (M)
100.00%

The domain ds123.files-fast.net has been seen to resolve to the following 4 IP addresses.

ip-50-63-202-39.ip.secureserver.net
June 30, 2015

hosted-by.leaseweb.com
October 20, 2014

June 9, 2014

June 9, 2014

File downloads found at URLs served by ds123.files-fast.net.

1 / 68      (Adware)

1 / 68      (Adware)
https://ds123.files-fast.net/.../NowYouSeeMe.exe  (42edcf5f20c534439eddd4929366f6e7)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://ds123.files-fast.net/.../Eminem - The Monster Fea...{320 kbps} ?L@?BerT?.exe  (eminem - the monster fea...{320 kbps} ★l@♫bert★.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://ds123.files-fast.net/.../MACROSS THE COMPLETE.exe  (c9beb4200fe0c1cf65c15f8e82ac4d1f)

1 / 68      (Adware)
https://ds123.files-fast.net/.../Contract J.A.C.K.exe  (b145bfe2cb8b1312e362ae9d76e3a80a)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
https://ds123.files-fast.net/.../Pyaar Ka Punchnama 2011 ...CharmeLeon Silver RG.exe  (pyaar ka punchnama 2011...charmeleon silver rg.exe)

1 / 68      (Adware)

1 / 68      (Adware)
https://ds123.files-fast.net/.../SaveAs.exe  (5c55e23598e6f569a486d37f30c59751)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

 
Latest 30 of 75 download URLs

The following 25 files have been seen to comunicate with ds123.files-fast.net in live environments.

 
Latest 20 of 29 files

URL:
http://ds123.files-fast.net/

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)

30 of 35 related domains