files5.mirror9.net

mark marrocco

Domain Information

The domain files5.mirror9.net registered by mark marrocco was initially registered in July of 2013 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Remove Malware from files5.mirror9.net - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Wednesday, July 31, 2013

Expires date:
Friday, July 31, 2015

Updated date:
Wednesday, July 31, 2013

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.FullSpectrumInteractive.Y
100.00%

Dr.Web
Adware.DownloadAdmin.1
100.00%

VIPRE Antivirus
DownloadAdmin
100.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
100.00%

ESET NOD32
Win32/DownloadAdmin
100.00%

Sophos
Download Admin
100.00%

Trend Micro House Call
TROJ_GEN.F47V0904, TROJ_GEN.F47V0909
66.67%

Avira AntiVirus
Adware/DownloadAdmin.AH.5, Adware/DownloadAdmin.AD.16
66.67%

avast!
Win32:PUP-gen [PUP]
66.67%

Baidu Antivirus
Trojan.Win32.DownloadAdmin
66.67%

herdProtect (fuzzy)
a variant of 4c8cf40ac41a65092df258fa40d552271f4fd1fa
33.33%

NANO AntiVirus
Trojan.Win32.Downware.crgjbr
33.33%

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
33.33%

McAfee
Artemis!84C3F956FE30
33.33%

McAfee Web Gateway
Artemis!84C3F956FE30
33.33%

The domain files5.mirror9.net has been seen to resolve to the following 2 IP addresses.

50.97.63.217-static.reverse.softlayer.com
February 6, 2014

108.168.160.45-static.reverse.softlayer.com
February 6, 2014

File downloads found at URLs served by files5.mirror9.net.

8 / 68      (PUP)
http://files5.mirror9.net/dl?bc=919437&aid=176681  (uplayermediaplayer-setup.exe)

12 / 68    (PUP)
http://files5.mirror9.net/dl?bc=919437&aid=176681  (uplayermediaplayer-setup.exe)

11 / 68    (PUP)
http://files5.mirror9.net/dl?bc=919437&aid=176681  (uplayermediaplayer-setup.exe)

The following 5 files have been seen to comunicate with files5.mirror9.net in live environments.

Alexa:
Global rank:  23,090,517
Backlinks:  9

Statistics are for the previous month (Alexa statistics are for entire mirror9.net).

Remove Malware from files5.mirror9.net - Powered by Reason Core Security