go34down.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain go34down.com is registered by proxy through GODADDY.COM, LLC and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Haarlem, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Remove Malware from go34down.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Monday, July 01, 2013

Expires date:
Friday, July 01, 2016

Updated date:
Thursday, July 02, 2015

ASN:
AS30633 LEASEWEB-US - Leaseweb USA, Inc.,US

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (92% detected)

Scan engine
Details
Detections

K7 Gateway Antivirus
Unwanted-Program , Trojan , Adware
80.00%

ESET NOD32
Win32/Somoto, Win32/DownWare
80.00%

Sophos
Somoto BetterInstaller, Generic PUA IM
76.00%

VIPRE Antivirus
Trojan.Win32.Generic, BetterInstaller, Threat.4150696
76.00%

NANO AntiVirus
Trojan.Nsis.Mazel.cwhyud, Riskware.Nsis.Adware.dbnhrj, Trojan.Win32.Somoto.csrqje, Riskware.Win32.Downware.digcac
76.00%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.Somoto.A
72.00%

Clam AntiVirus
Trojan.Agent-267630, Win.Adware.Somoto
72.00%

Dr.Web
Trojan.MulDrop4.11744, Trojan.Packed.27732, Adware.Somoto.17, Adware.Downware.6183, Trojan.Packed.28357
72.00%

AVG
Downloader, Somoto, AdInstaller.Somoto, Generic
72.00%

Reason Heuristics
PUP.SomotoIsrael.X, PUP.SomotoIsrael.DD, PUP.SomotoIsrael.FF, PUP.SomotoLimited.m, PUP.SomotoLimited.EE, PUP.SomotoLimited.W, PUP.SomotoLimited.Y, PUP.Somoto.EE, PUP.SomotoLimited.e, PUP.Somoto.Bundler (M)
68.00%

Comodo Security
Application.Win32.Somoto.DE, Application.Win32.Somoto.CK, Application.Win32.Somoto.A
68.00%

Baidu Antivirus
Adware.Win32.DownWare, Trojan.Win32.DownWare, Adware.Win32.Somoto, Hacktool.Win32.Downloader, Adware.Win32.Agent
64.00%

K7 AntiVirus
Unwanted-Program , Trojan , Adware
60.00%

Kaspersky
not-a-virus:AdWare.Win32.Agent, not-a-virus:Downloader.NSIS.Agent
60.00%

Bitdefender
Application.Bundler.Somoto.J, Application.Bundler.Somoto.I
60.00%

The domain go34down.com has been seen to resolve to the following IP address.

April 13, 2014

File downloads found at URLs served by go34down.com.

1 / 68      (Adware)

31 / 68    (PUP)

1 / 68      (Adware)

25 / 68    (Adware)

26 / 68    (Adware)

1 / 68      (Adware)
http://go34down.com/.../The_downloader-I3gY4CYSw.exe  (fb12c285b303e0878521620becafb884)

5 / 68      (PUP)
http://go34down.com/dwnld/.../HD Codec setup.exe  (9aada1efde2648b91ba368f97757beed)

4 / 68      (PUP)
http://go34down.com/dwnld/y/.../FIle Installer.exe  (424386363836b254ba078deb49ce766f)

3 / 68      (inconclusive)
http://go34down.com/dwnld/.../HD Codec Download.exe  (f9db3e427da7c63676c66b053301872a)

18 / 68    (Adware)

28 / 68    (Adware)

20 / 68    (Adware)

29 / 68    (Adware)

18 / 68    (Adware)

27 / 68    (Adware)
http://go34down.com/.../The_downloader-I7ZbqIecp.exe  (b7bae9297a7f2b491c9df339955bbb45)

26 / 68    (PUP)

28 / 68    (Adware)
http://go34down.com/.../E_downloader-I77S2oaZH.exe  (82f7f5a3f0544b40752b7004c3f54458)

31 / 68    (PUP)
http://go34down.com/dwnld/.../HD CODEC5 setup.exe  (6bee151483dd5b8f820f087495c2df74)

23 / 68    (Adware)

28 / 68    (PUP)
http://go34down.com/dwnld/.../HD CODEC5 setup.exe  (35a6c3828215ecb8fc76b232126053cf)

45 / 68    (Adware)

7 / 68      (inconclusive)
http://go34down.com/dwnld/.../FreeTranslator.exe  (4f6aca3a8bb9139d3ada3f6ec663940a)

17 / 68    (Adware)

24 / 68    (Adware)

15 / 68    (Adware)
http://go34down.com/.../HugeFiles_downloader-f0AoP2a7.exe  (9d97fbfd87ba1e195e4858abd0fcb257)

14 / 68    (Adware)
http://go34down.com/.../Qun_downloader-8YpgaH1R.exe  (7a663f452674c964152ff5622d959b57)

URL:
http://go34down.com/

Web server:
Apache

Remove Malware from go34down.com - Powered by Reason Core Security