mediadisk.net

Private Person  (Proxy Registrant)

Domain Information

The domain mediadisk.net is registered by proxy through REGISTRAR OF DOMAIN NAMES REG.RU LLC and was originally registered in July of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Nuremberg, Bayern within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Server location:
Bayern, Germany (DE)

Create date:
Wednesday, July 9, 2014

Expires date:
Sunday, July 9, 2017

Updated date:
Sunday, January 10, 2016

ASN:
AS24940 HETZNER-AS Hetzner Online GmbH,DE

Scanner detections:
Detections  (89% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.KOMPGARANT (M), PUP.PROFISOFT (M), PUP.PROFISOF (M), PUP.Somoto.PARTNERS (M), PUP.KOMPGARA (M), PUP.Amonitize (M), Threat.Win.Reputation.IMP, PUP.Inergen (M), PUP (M), PUP.ArchiveD (M), PUP.StrongMe (M), Adware.Strongmedia, PUP.Bundlore (M)
94.12%

Dr.Web
Trojan.LoadMoney.1440, Trojan.LoadMoney.336
5.88%

ESET NOD32
Win32/Adware.LoadMoney.AWD application, Win32/Kryptik.FAPN trojan
5.88%

Kaspersky
not-a-virus:Downloader.Win32.LMN
5.88%

Baidu Antivirus
Win32.Virus.Lamer
2.94%

avast!
Win32:Adware-gen [Adw]
2.94%

The domain mediadisk.net has been seen to resolve to the following 6 IP addresses.

ddos-guard.net
August 30, 2016

July 1, 2016

May 16, 2016

April 11, 2016

April 11, 2016

static.173.80.9.5.clients.your-server.de
November 18, 2015

File downloads found at URLs served by mediadisk.net.

1 / 68      (PUP)
http://mediadisk.net/go/.../1360274  (chit vaym robit.exe)

1 / 68      (PUP)
http://mediadisk.net/go/.../1336909  (vzlom lyuboy opki.exe)

 
Latest 30 of 39 download URLs

February 25, 2016

April 20, 2016

URL:
http://mediadisk.net/

Title:
“MediaDisk - файлообменник”

SSL certificate subject:
CN=sni147048.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (PHP/5.4.45)

Facebook:
Likes:  7
Shares:  12
Comments:  3

Statistics above are for the previous month of April 2024.