files5.mirror2.info

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain files5.mirror2.info is registered by proxy through GoDaddy.com, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
GoDaddy.com, LLC

Server location:
Texas, United States (US)

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.FullSpectrumInteractive.Y, PUP.Installer.FullSpectrumInteractive.T, PUP.DownloadAdmin.FullSpectrumInteractive.Installer (M), PUP.DownloadAdmin.Groovecom.Installer (M), PUP.DownloadAdmin.FullSpec.Installer (M), PUP.DownloadAdmin.Grooveco.Installer (M), PUP.UPlayerMedia.Installer.Meta (M), PUP.Tightrope.Download.Bundler (M), PUP.DownloadAdmin (M)
100.00%

VIPRE Antivirus
DownloadAdmin
10.00%

ESET NOD32
Win32/DownloadAdmin
10.00%

Sophos
Download Admin
10.00%

Dr.Web
Adware.Downware.2220, Adware.DownloadAdmin.1
8.00%

NANO AntiVirus
Trojan.Win32.Downware.crgjbr
8.00%

Malwarebytes
PUP.Optional.FullSpectrumAdmin, PUP.Optional.DownloadAdmin
6.00%

herdProtect (fuzzy)
a variant of 91e077df334609d9d06c0aa406732444f35c0751, a variant of c0c8c64539073aa814b18a59f587cdb4feda77fb, a variant of 826ef148d2f34b4be1519911fb7b422ae6c50ac9
6.00%

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
6.00%

avast!
Adware-OH [Adw], Win32:PUP-gen [PUP]
4.00%

AVG
InstallC, MultiBundle
4.00%

McAfee
Artemis!CAC2871D15F6, Artemis!4E3C8437137D
4.00%

F-Secure
Adware:W32/WebInstallBundle
2.00%

AhnLab V3 Security
PUP/Win32.Downloader
2.00%

K7 AntiVirus
Unwanted-Program
2.00%

The domain files5.mirror2.info has been seen to resolve to the following 4 IP addresses.

50.22.63.138-static.reverse.softlayer.com
October 20, 2014

50.22.63.140-static.reverse.softlayer.com
October 20, 2014

108.168.160.45-static.reverse.softlayer.com
February 6, 2014

50.97.63.217-static.reverse.softlayer.com
February 6, 2014

File downloads found at URLs served by files5.mirror2.info.

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=899882&aid=674  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=671257&aid=30679  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=919437&aid=matomy  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (Adware)
http://files5.mirror2.info/dl?aid=www&bc=4861  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)

1 / 68      (PUP)

11 / 68    (PUP)
http://files5.mirror2.info/dl?bc=919437&aid=30679  (uplayermediaplayer-setup.exe)

1 / 68      (Adware)
http://files5.mirror2.info/dl?aid=www&bc=4809&geo  (uplayermediaplayer-setup.exe)

1 / 68      (Adware)

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=671257&aid=7309  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=906517&aid=CD8826  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=896274&aid=146513  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

6 / 68      (PUP)
http://files5.mirror2.info/dl?bc=896274&aid=125  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=919437&aid=3439  (uplayermediaplayer-setup.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://files5.mirror2.info/dl?bc=919437&aid=366151  (uplayermediaplayer-setup.exe)

 
Latest 30 of 187 download URLs

The following 236 files have been seen to comunicate with files5.mirror2.info in live environments.

 
Latest 20 of 319 files