fileshare7190.depositfiles.org

Kalmet Investments Limited

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Prague, Hlavni Mesto Praha within Czech Republic which resides on the RIPE Network Coordination Centre network.
Registrar:
EuroDNS S.A. (R1721-LROR)

Server location:
Hlavni Mesto Praha, Czech Republic (CZ)

ASN:
AS43355 UPL-TELECOM-AS UPL Telecom s.r.o.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/Toolbar.Babylon (variant), Android/Exploit.Lotoor.DH
100.00%

Malwarebytes
PUP.Optional.BabylonToolBar.A
50.00%

Bkav FE
W32.Clodd2d.Trojan
50.00%

MicroWorld eScan
Gen:Trojan.Heur.EuW@Ysr08Sdi
50.00%

McAfee
Artemis!69A6A314B6E8
50.00%

K7 AntiVirus
Riskware
50.00%

NANO AntiVirus
Trojan.Win32.DroidRtC.bvwyju
50.00%

Norman
Suspicious_Gen4.EGTTW
50.00%

Trend Micro House Call
TROJ_GEN.R0CBC0RHK13
50.00%

avast!
ELF:Lootor-H [PUP]
50.00%

Lavasoft Ad-Aware
Gen:Trojan.Heur.EuW@Ysr08Sdi
50.00%

Sophos
Andr/DroidRt-C
50.00%

Comodo Security
UnclassifiedMalware
50.00%

F-Secure
Gen:Trojan.Heur.EuW@Ysr08Sdi
50.00%

Dr.Web
Android.Exploit.5
50.00%

The domain fileshare7190.depositfiles.org has been seen to resolve to the following 2 IP addresses.

S20322.yeshost.ru
April 26, 2014

January 10, 2014

File downloads found at URLs served by fileshare7190.depositfiles.org.

URL:
http://fileshare7190.depositfiles.org/

Title:
“DepositFiles”

Description:
“DepositFiles provides you with a legitimate technical solution, which enables you to upload, store, access and download text, software, scripts, images, sounds, videos, animations and any other materials in form of one or several electronic fil...”

SSL certificate subject:
CN=*.depositfiles.org, OU=PremiumSSL Wildcard, O=KALMET INVESTMENTS LIMITED, STREET=1312 Victoria, L=Mahe, S=Mahe, C=SC

SSL certificate issuer:
CN=COMODO High-Assurance Secure Server CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
nginx