ds212.simple-get.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain ds212.simple-get.net is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Strasbourg, Alsace within France which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Alsace, France (FR)

Create date:
Thursday, June 5, 2014

Expires date:
Sunday, June 5, 2016

Updated date:
Thursday, June 11, 2015

ASN:
AS8972 PLUSSERVER-AS PlusServer AG,DE

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MaxigetLimited.H, PUP.New IT Limited.Maxiget (M), PUP.New IT Limited.Maxiget.Bundler (M), PUP.New IT Limited (M)
90.91%

Dr.Web
Adware.Downware.1751, Win32.HLLP.Neshta
36.36%

avast!
Win32:Adware-gen [Adw], Win32:Apanas [Trj]
36.36%

F-Prot
W32/A-22cc26dc, W32/HLLP.41472
36.36%

VIPRE Antivirus
Threat.4150696
27.27%

ESET NOD32
Win32/4Shared.V potentially unwanted application, Win32/4Shared.U potentially unwanted application, Win32/Neshta.A virus
27.27%

MicroWorld eScan
Gen:Variant.Adware.Strictor.58208
27.27%

K7 AntiVirus
Unwanted-Program
27.27%

Agnitum Outpost
PUA.4Shared
27.27%

Bitdefender
Gen:Variant.Adware.Strictor.58208
27.27%

Lavasoft Ad-Aware
Gen:Variant.Adware.Strictor.58208
27.27%

Emsisoft Anti-Malware
Gen:Variant.Adware.Strictor.58208
27.27%

F-Secure
Gen:Variant.Adware.Strictor.58208
27.27%

G Data
Gen:Variant.Adware.Strictor.58208, Win32.Application.4shared
27.27%

AVG
Generic
27.27%

The domain ds212.simple-get.net has been seen to resolve to the following 4 IP addresses.

ip-50-63-202-54.ip.secureserver.net
June 23, 2016

static-ip-62-75-207-166.inaddr.ip-pool.com
April 21, 2016

August 17, 2014

August 17, 2014

File downloads found at URLs served by ds212.simple-get.net.

1 / 68      (Adware)

8 / 68      (Malware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

31 / 68    (Adware)

14 / 68    (Adware)

The following 218 files have been seen to comunicate with ds212.simple-get.net in live environments.

 
Latest 20 of 218 files

URL:
http://ds212.simple-get.net/

Title:
“Поиск по интернет магазинам”

Web server:
nginx/1.0.15 (PHP/5.3.3)

30 of 44 related domains