files.vbox.me

Runar Buvik

Domain Information

The domain files.vbox.me registered by Runar Buvik was initially registered in November of 2008 through OnlineNIC, Inc. R115-ME. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the Sago Networks network.
Registrar:
OnlineNIC, Inc. R115-ME (82)

Server location:
Illinois, United States (US)

Create date:
Thursday, November 06, 2008

Expires date:
Sunday, November 06, 2016

Updated date:
Monday, August 24, 2015

ASN:
AS21840 SAGONET-TPA - Sago Networks

Root domain:

Scanner detections:
Detections  (91% detected)

Scan engine
Details
Detections

Reason Heuristics
Adware.InstallAssistant
100.00%

Kingsoft AntiVirus
VIRUS_UNKNOWN
80.00%

Trend Micro House Call
TROJ_GEN.F47V1208, TROJ_GEN.F47V0204, Suspicious_GEN.F47V1113, Suspicious_GEN.F47V0424, Suspicious_GEN.F47V0602
50.00%

Antiy Labs AVL
Worm[IM]/Win32.Sohanad, Trojan/Win32.SGeneric
40.00%

The Hacker
Trojan/KillAV.nhz
40.00%

Jiangmin
Trojan/Agent.kfiu, Backdoor/DarkKomet.qfj
20.00%

McAfee
Artemis!9F75DDB7087E
10.00%

McAfee Web Gateway
BehavesLike.Win32.BadFile.tc
10.00%

The domain files.vbox.me has been seen to resolve to the following IP address.

64-16-198-18.static.sagonet.net
February 14, 2014

File downloads found at URLs served by files.vbox.me.

1 / 68      (PUP)

3 / 68      (PUP)

1 / 68      (PUP)

4 / 68      (PUP)

3 / 68      (PUP)

5 / 68      (PUP)

4 / 68      (PUP)

3 / 68      (PUP)

4 / 68      (PUP)

The following file have been seen to comunicate with files.vbox.me in live environments.

URL:
http://files.vbox.me/

Web server:
Apache/2.2.15 (CentOS)