lp.ilivid.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain lp.ilivid.com is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 2009. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Tel Aviv, Israel (IL)

Create date:
Sunday, June 21, 2009

Expires date:
Wednesday, June 21, 2017

Updated date:
Wednesday, March 9, 2016

ASN:
AS6461 MFNX MFN - Metromedia Fiber Network

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Dr.Web
Adware.Bandoo.12, Adware.Bandoo.13, Adware.InstallCore.101
90.91%

Reason Heuristics
PUP.Optional.Installer.BandooMedia.U, PUP.Optional.Installer.BandooMedia.V, PUP.Optional.Installer.L, PUP.Optional.Installer.N, PUP.Air Software.Installe.Installer (M)
90.91%

Malwarebytes
PUP.Optional.Bandoo, PUP.Optional.Vid, PUP.Optional.InstallCore.A
81.82%

ESET NOD32
Win32/Toolbar.SearchSuite, Win32/iLivid (variant), Win32/InstallCore.BL
63.64%

Comodo Security
Application.Win32.Adware.ad, Application.Win32.WebToolbar.SearchSuite.~A, ApplicUnwnt
27.27%

Boost by Reason
Adware.Installer.BandooMedia.20, Adware.Installer.BandooMedia.V
18.18%

Trend Micro House Call
TROJ_GEN.F47V0314, TROJ_GEN.F47V0419
18.18%

Rising Antivirus
PE:Trojan.Dropper!6.1BE
9.09%

Bkav FE
W32.Cloda82.Trojan
9.09%

Quick Heal
Trojan.Agent.gen
9.09%

Kaspersky
not-a-virus:AdWare.Win32.Bandoo
9.09%

NANO AntiVirus
Trojan.Win32.Downware.crewao
9.09%

Vba32 AntiVirus
AdWare.Bandoo
9.09%

Baidu Antivirus
Trojan.Win32.Toolbar
9.09%

Fortinet FortiGate
Riskware/SearchSuite
9.09%

The domain lp.ilivid.com has been seen to resolve to the following IP address.

94.31.0.27.IPYX-076665-ZYO.above.net
December 18, 2013

File downloads found at URLs served by lp.ilivid.com.

4 / 68      (PUP)
http://lp.ilivid.com/download?appid=781  (ilividsetup-r362-n-bf.exe)

5 / 68      (PUP)

4 / 68      (PUP)

9 / 68      (PUP)

4 / 68      (PUP)

5 / 68      (PUP)

4 / 68      (PUP)

4 / 68      (PUP)

5 / 68      (PUP)

4 / 68      (PUP)

5 / 68      (PUP)

9 / 68      (PUP)

4 / 68      (PUP)

4 / 68      (PUP)

5 / 68      (PUP)

4 / 68      (PUP)

9 / 68      (PUP)

5 / 68      (PUP)

9 / 68      (PUP)

4 / 68      (PUP)
http://lp.ilivid.com/download?appid=367  (ilividsetup-r362-n-bf.exe)

4 / 68      (PUP)

4 / 68      (PUP)

 
Latest 30 of 191 download URLs

The following 9 files have been seen to comunicate with lp.ilivid.com in live environments.

URL:
http://lp.ilivid.com/

Google Analytics:
UA-30208384

Title:
“Torch Web Browser - Your All in One Internet Browser”

Description:
“Get more from the web with Torch Browser. Learn more about this unique browser here.”

Facebook:
Likes:  5
Shares:  60
Comments:  3

Statistics are for the previous month.