get.abcodoe.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain get.abcodoe.com is registered by proxy through ENOM, INC. and was originally registered in March of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Siauliai, Siauliu Apskritis within Lithuania which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Siauliu Apskritis, Lithuania (LT)

Create date:
Wednesday, March 12, 2014

Expires date:
Thursday, March 12, 2015

Updated date:
Wednesday, March 12, 2014

ASN:
AS61272 IST-AS Informacines sistemos ir technologijos, UAB,LT

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PaymentsInteractiveSL.L, PUP.Tuguu.Payments.Bundler (M)
100.00%

VIPRE Antivirus
Threat.4783235
33.33%

Dr.Web
Trojan.DownLoader9.21779
33.33%

MicroWorld eScan
Gen:Variant.Application.Bundler.DomaIQ.3
33.33%

McAfee
Adware-DomaIQ!F6CB534A58DC
33.33%

Malwarebytes
PUP.Optional.BundleInstaller.A
33.33%

SUPERAntiSpyware
Adware.DomaIQ/Variant
33.33%

K7 AntiVirus
Unwanted-Program
33.33%

NANO AntiVirus
Trojan.Win32.DomaIQ.ctadmg
33.33%

F-Prot
W32/DomaIQ.D3.gen
33.33%

avast!
PUP-gen [PUP]
33.33%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ
33.33%

Bitdefender
Gen:Variant.Application.Bundler.DomaIQ.3
33.33%

Agnitum Outpost
PUA.DomaIQ
33.33%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.DomaIQ.5
33.33%

The domain get.abcodoe.com has been seen to resolve to the following IP address.

hst-190-51-25-185.ist.lt
May 24, 2014

File downloads found at URLs served by get.abcodoe.com.

1 / 68      (Adware)
http://get.abcodoe.com/.../flashplayer.exe  (8313f760ef401f9d8f757695ba83a77d)

1 / 68      (Adware)
http://get.abcodoe.com/.../flashplayer.exe  (4507a0c8204f2db4bd89606907a57acb)

27 / 68    (Adware)
http://get.abcodoe.com/.../flashplayer.exe  (fd2f3152390c55cf1ee537e05aa8c636)