extensionfile.net

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain extensionfile.net is registered by proxy through ENOM, INC. and was originally registered in March of 2008. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Remove Malware from extensionfile.net - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
Arizona, United States (US)

Create date:
Thursday, March 27, 2008

Expires date:
Sunday, March 27, 2016

Updated date:
Thursday, March 05, 2015

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

McAfee
Artemis!86274B082D4A
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

K7 Gateway Antivirus
Unwanted-Program
100.00%

Comodo Security
UnclassifiedMalware
100.00%

McAfee Web Gateway
Artemis!86274B082D4A
100.00%

Sophos
PC Ultra Speed
100.00%

ESET NOD32
Win32/SpeedingUpMyPC (variant)
100.00%

Reason Heuristics
PUP.Optional.SmartPCSolutions.M
100.00%

The domain extensionfile.net has been seen to resolve to the following 8 IP addresses.

January 4, 2016

January 4, 2016

October 13, 2015

October 13, 2015

February 7, 2014

February 7, 2014

December 26, 2013

December 26, 2013

File downloads found at URLs served by extensionfile.net.

8 / 68      (PUP)

March 28, 2015

October 13, 2015

December 22, 2015

October 29, 2015

January 14, 2015

December 2, 2014

December 17, 2014

November 25, 2015

February 7, 2016

February 2, 2016

February 9, 2016

February 3, 2016

February 4, 2016

February 4, 2016

February 4, 2016

February 24, 2015

February 4, 2016

Latest 30 of 57 subdomains

URL:
http://extensionfile.net/

Google Analytics:
UA-71895931

Title:
“File extension database”

SSL certificate subject:
CN=ssl370177.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (PHP/5.6.17)

Facebook:
Shares:  5

Statistics above are for the previous month of November 2016.

Remove Malware from extensionfile.net - Powered by Reason Core Security