flvrunner.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain flvrunner.com is registered by proxy through GODADDY.COM, LLC and was originally registered in April of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the GigeNET network.
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Wednesday, April 04, 2012

Expires date:
Monday, April 04, 2016

Updated date:
Tuesday, April 30, 2013

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Conduit.Q, PUP.Conduit.T, PUP.4218.Conduit.N, PUP.4203.Conduit.M, PUP.conduitinstaller.Conduit.Y, PUP.4327.Conduit.N, PUP.Conduit.Bundler (M), Win32.Generic, PUP.Softpulse (M)
97.96%

Dr.Web
Adware.Conduit.6, Adware.BGuard.15, Adware.Downware.1237, Adware.Conduit.3
24.49%

Malwarebytes
PUP.Optional.Conduit.A
20.41%

VIPRE Antivirus
Conduit
20.41%

ESET NOD32
Win32/Toolbar.Conduit, Win32/Wajam (variant), Win32/OpenCandy, Win32/Toolbar.Conduit.AE (variant), Win32/Toolbar.Conduit.AJ (variant)
16.33%

Panda Antivirus
Adware/Conduit, PUP/Conduit.A
10.20%

SUPERAntiSpyware
Adware.Conduit/Variant
10.20%

Trend Micro House Call
TROJ_GEN.F47V0127, TROJ_GEN.F47V0102, TROJ_GEN.F47V0613, TROJ_GEN.F47V0911
8.16%

Rising Antivirus
PE:PUF.OpenCandy!1.9DE5
6.12%

Boost by Reason
Adware.Conduit.Q
4.08%

herdProtect (fuzzy)
a variant of 1dc08d3d16d0fea70e55579219369411c99e00b4, a variant of fc850be0cdd6e3625c60df9068b94cf2c00350eb
4.08%

K7 Gateway Antivirus
Unwanted-Program
4.08%

K7 AntiVirus
Unwanted-Program
4.08%

NANO AntiVirus
Riskware.Win32.BGuard.csnycu, Trojan.Win32.WebToolbar.dmqirt
4.08%

Kaspersky
not-a-virus:WebToolbar.JS.Condonit, not-a-virus:WebToolbar.Win32.Agent
4.08%

The domain flvrunner.com has been seen to resolve to the following 7 IP addresses.

ip-69.39.236.56.hosted.by.gigenet.com
June 5, 2016

May 31, 2016

May 27, 2016

ip-50-63-202-40.ip.secureserver.net
April 9, 2016

66.228.121.142-static.reverse.softlayer.com
July 26, 2015

184.173.251.168-static.reverse.softlayer.com
February 6, 2014

184.173.131.159-static.reverse.softlayer.com
February 6, 2014

File downloads found at URLs served by flvrunner.com.

1 / 68      (PUP)
http://flvrunner.com/.../download_fr.php  (fileconverter_1.5.exe)

1 / 68      (Adware)

1 / 68      (PUP)
http://flvrunner.com/.../download_de.php  (fileconverter_1.3.exe)

1 / 68      (PUP)
http://flvrunner.com/.../download_du.php  (tb_fileconverter_1.4_b2.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://flvrunner.com/.../download_sw.php  (fileconverter_1.6.exe)

7 / 68      (PUP)
http://flvrunner.com/.../download_es.php  (fileconverter_1.2.exe)

10 / 68    (PUP)
http://flvrunner.com/.../downloadsp.php  (flvplayer_tsv34bdqg.exe)

The following 442 files have been seen to comunicate with flvrunner.com in live environments.

 
Latest 20 of 456 files

URL:
http://flvrunner.com/

Title:
“Download Now”

Description:
“Free Video Converter Add-on”

Web server:
nginx/1.5.0 (PHP/5.3.29)

Facebook:
Likes:  671,064
Shares:  80
Comments:  3,052

Compete.com:
US visitors:  467,373

Statistics above are for the previous month of November 2017.