files5.mirror8.com

mark marrocco

Domain Information

The domain files5.mirror8.com registered by mark marrocco was initially registered in July of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Wednesday, July 31, 2013

Expires date:
Monday, July 31, 2017

Updated date:
Saturday, August 1, 2015

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DownloadAdmin.a, PUP.Tightrope.DownloadAdmin.Bundler (M), PUP.DownloadAdmin.Bundler.Installer.Meta (M), PUP.Tightrope.Download.Bundler (M)
83.33%

VIPRE Antivirus
Threat.4783369, DownloadAdmin
33.33%

Dr.Web
Adware.Downware.2220, Adware.DownloadAdmin.1
33.33%

ESET NOD32
Win32/DownloadAdmin.G potentially unwanted application
16.67%

avast!
Adware-OH [Adw]
16.67%

Malwarebytes
PUP.Optional.DownloadAdmin
16.67%

K7 AntiVirus
Unwanted-Program
16.67%

Comodo Security
Application.Win32.Agent.OCK
16.67%

F-Secure
Adware:W32/WebInstallBundle
16.67%

Sophos
Download Admin
16.67%

Avira AntiVirus
ADWARE/Adware.Gen9
16.67%

AVG
Generic
16.67%

NANO AntiVirus
Trojan.Win32.Downware.crgjbr
16.67%

Trend Micro House Call
TROJ_GEN.F47V1020
16.67%

ESET NOD32
Win32/DownloadAdmin
16.67%

The domain files5.mirror8.com has been seen to resolve to the following 2 IP addresses.

50.22.63.140-static.reverse.softlayer.com
November 2, 2014

50.22.63.138-static.reverse.softlayer.com
November 2, 2014

File downloads found at URLs served by files5.mirror8.com.

1 / 68      (PUP)
http://files5.mirror8.com/dl?bc=835931  (quicktimeplayer-setup.exe)

1 / 68      (Adware)
http://files5.mirror8.com/dl?bc=578415&geo  (openoffice341-setup.exe)

1 / 68      (PUP)
http://files5.mirror8.com/dl?bc=835931  (quicktimeplayer-setup.exe)

1 / 68      (Adware)
http://files5.mirror8.com/dl?bc=992155&source=btchrome  (stlouiscardinalsbrowserthemeforchrome-setup.exe)

7 / 68      (PUP)
http://files5.mirror8.com/dl?bc=919487  (minecraftfordwai-setup.exe)

12 / 68    (Adware)
http://files5.mirror8.com/dl?bc=991291&source=btchrome  (49ersbrowserthemeforchrome-setup.exe)

The following 164 files have been seen to comunicate with files5.mirror8.com in live environments.

 
Latest 20 of 200 files