install-cdn.plainsavingscenter.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain install-cdn.plainsavingscenter.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Wednesday, March 4, 2015

Expires date:
Saturday, March 4, 2017

Updated date:
Friday, March 4, 2016

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Yontoo.PlainSavings (M), PUP.Yontoo.PlainSav (M)
100.00%

Bkav FE
W32.BrowseFoxAC.Adware, W32.HfsAdware
66.67%

Bitdefender
Gen:Variant.Mikey.11547, Gen:Variant.Adware.Mikey.11547
66.67%

K7 AntiVirus
Adware
66.67%

F-Prot
W32/S-9c4b2ea6
66.67%

NANO AntiVirus
Trojan.Win32.Yontoo.dnkubo
66.67%

Rising Antivirus
PE:Adware.BrowseFox!6.1D8B
66.67%

Dr.Web
Trojan.Yontoo.1016, Trojan.Yontoo.1806
66.67%

Emsisoft Anti-Malware
Gen:Variant.Mikey.11547, Gen:Variant.Adware.Mikey.11547
66.67%

Avira AntiVirus
ADWARE/BrowseFox.Gen2
66.67%

G Data
Gen:Variant.Mikey.11547, Gen:Variant.Adware.Mikey.11547
66.67%

Vba32 AntiVirus
AdWare.MSIL.Agent
66.67%

ESET NOD32
Win32/BrowseFox.AE potentially unwanted (variant)
66.67%

IKARUS anti.virus
not-a-virus:AdWare.Win32.Agent
66.67%

Baidu Antivirus
Adware.Win32.BrowseFox
66.67%

The domain install-cdn.plainsavingscenter.com has been seen to resolve to the following 6 IP addresses.

a104-96-220-177.deploy.static.akamaitechnologies.com
May 18, 2016

a104-96-220-96.deploy.static.akamaitechnologies.com
May 18, 2016

May 17, 2016

May 17, 2016

a23-15-9-50.deploy.static.akamaitechnologies.com
April 12, 2016

a23-15-9-18.deploy.static.akamaitechnologies.com
April 12, 2016

File downloads found at URLs served by install-cdn.plainsavingscenter.com.

33 / 68    (Adware)

1 / 68      (Adware)

15 / 68    (Adware)

33 / 68    (Adware)

1 / 68      (Adware)

33 / 68    (Adware)

The following 17 files have been seen to comunicate with install-cdn.plainsavingscenter.com in live environments.

 
Latest 20 of 22 files

URL:
http://install-cdn.plainsavingscenter.com/

Web server:
Microsoft-IIS/7.5 (ASP.NET)