gmfiles.brothersoft.com

Kunlun Wanwei Keji Gufen Youxian Gongsi

Domain Information

The domain gmfiles.brothersoft.com registered by Kunlun Wanwei Keji Gufen Youxian Gongsi was initially registered in July of 2002 through GODADDY.COM, LLC. The domain hosts various software downloads. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Friday, July 12, 2002

Expires date:
Thursday, July 12, 2018

Updated date:
Friday, April 26, 2013

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Malware distribution  (86% detected)

Scan engine
Details
Detections

Reason Heuristics
Win32.Generic, PUP.InstallCore.RE11 (M), PUP.InstallCore.RE.Installer (M), PUP.InstallCore.EST (M), PUP.KORAM (M)
97.73%

Dr.Web
Trojan.PackedENT.24553
2.27%

ESET NOD32
Win32/InstallCore.AHA potentially unwanted application
2.27%

The domain gmfiles.brothersoft.com has been seen to resolve to the following IP address.

75.126.20.73-static.reverse.softlayer.com
February 7, 2014

File downloads found at URLs served by gmfiles.brothersoft.com.

1 / 68      (PUP)
http://gmfiles.brothersoft.com/games/.../CapitalismIISetup.exe  (brothersoft_downloader_for_capitalism_ii.exe)

1 / 68      (PUP)
http://gmfiles.brothersoft.com/games/.../dino_and_aliens-setup.exe  (brothersoft_downloader_for_dino_and_aliens.exe)

0 / 68

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://gmfiles.brothersoft.com/games/new/sports/.../legorace.exe  (brothersoft_downloader_for_lego_racers.exe)

0 / 68
http://gmfiles.brothersoft.com/games/.../PlantsVsZombiesSetup-en.exe  (brothersoft_downloader_for_plants_vs_zombies.exe)

1 / 68      (PUP)

1 / 68      (Malware)

1 / 68      (PUP)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (PUP)

1 / 68      (Malware)
http://gmfiles.brothersoft.com/games/.../KingdomElementalSetup.exe  (brothersoft_downloader_for_kingdom_elemental_1_56.exe)

1 / 68      (PUP)

1 / 68      (Malware)
http://gmfiles.brothersoft.com/games/.../hoyleboard_free.exe  (installer_for_hoyle_board_games.exe)

1 / 68      (Malware)
http://gmfiles.brothersoft.com/games/new/shooting_games/.../nerfdemo1_1.exe  (icreinstall_installer_for_nerf_arena_blast.exe)

1 / 68      (Adware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (Malware)
http://gmfiles.brothersoft.com/games/new/rpg/.../hpcos_demo1_beta3_nov-11-2002.exe  (installer_for_harry_potter_and_the_chamber_of_secrets.exe)

1 / 68      (PUP)

1 / 68      (Malware)

1 / 68      (Malware)
http://gmfiles.brothersoft.com/games/.../GH3_PC_1.3_Patch.exe  (installer_for_guitar_hero_iii_legends_of_rock_patch.exe)

 
Latest 30 of 80 download URLs

The following 10 files have been seen to comunicate with gmfiles.brothersoft.com in live environments.

URL:
http://gmfiles.brothersoft.com/

Web server:
BSWS/1.1