mediamagnet.cc

Walter Kavaliauskas

Domain Information

The domain mediamagnet.cc registered by Walter Kavaliauskas was initially registered in December of 2014 through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Friday, December 12, 2014

Updated date:
Sunday, October 11, 2015

ASN:
AS200130 DIGITALOCEAN-ASN-1 Digital Ocean, Inc.,EU

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DigitalPine.K, PUP.Installer.ZAXAR.Q, PUP.DigitalPine.AA, PUP.DigitalPine.u, PUP.DigitalPine.b, PUP.DigitalPine.R, PUP.DigitalPine.EE, Threat.DigitalPine, PUP.DigitalPine (M)
98.00%

McAfee
Artemis!1E641259E54C, Artemis!3F177D822D3B, PUP-CryptMagnet, Artemis!C625F1785140, PUP-CryptMagnet!B6EE09A1D3A2, PUP-CryptMagnet!D94CA010F3DE
16.00%

Dr.Web
Adware.Downware.3564, Trojan.DownLoader11.3101, Adware.Downware.8482, Adware.Downware.6272
16.00%

McAfee Web Gateway
Artemis!1E641259E54C, Artemis!3F177D822D3B, BehavesLike.Win32.PUPCryptMagnet.hh, Artemis!C625F1785140, PUP-CryptMagnet, BehavesLike.Win32.PUPCryptMagnet.gh
16.00%

Panda Antivirus
Trj/Genetic.gen, Trj/CI.A
16.00%

Malwarebytes
PUP.Optional.MediaMagnet.A
14.00%

avast!
Win32:Adware-gen [Adw], Win32:PUP-gen [PUP], Win32:Malware-gen, Win32:MediaMagnet-B [PUP]
12.00%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696, Trojan.Win32.Generic.pak!cobra
12.00%

Vba32 AntiVirus
Downware.MediaMagnet.gen, AdWare.MMag
12.00%

NANO AntiVirus
Riskware.Win32.MMag.darpbc, Riskware.Win32.MMag.ddpwoa, Riskware.Win32.MMag.ddbjzj, Riskware.Win32.Downware.degipo
10.00%

ESET NOD32
Win32/MediaMagnet (variant), Win32/ZaxarGames (variant)
10.00%

AVG
Generic5
10.00%

Sophos
Generic PUA GG, MediaMagnet
10.00%

G Data
Gen:Variant.Graftor.146416, Gen:Variant.Symmi.46708, Gen:Variant.Adware.Strictor.64373, Win32.Application.Mediamagnet
10.00%

Trend Micro House Call
Suspicious_GEN.F47V0610, Suspicious_GEN.F47V0721, TROJ_GEN.F47V0524, Suspicious_GEN.F47V0726
8.00%

The domain mediamagnet.cc has been seen to resolve to the following 11 IP addresses.

ec2-52-18-157-175.eu-west-1.compute.amazonaws.com
April 16, 2016

February 25, 2016

May 6, 2015

ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
December 30, 2014

209-99-40-219.fwd.datafoundry.com
September 28, 2014

ipv4.at.netrouting.net
June 21, 2014

st5.mediamagnet.cc
May 29, 2014

st1.mediamagnet.cc
May 29, 2014

st3.mediamagnet.cc
May 29, 2014

st4.mediamagnet.cc
May 29, 2014

st2.mediamagnet.cc
May 29, 2014

File downloads found at URLs served by mediamagnet.cc.

1 / 68      (Adware)
http://mediamagnet.cc/fm/89/9b/.../Teorema_Zero.899b7.exe  (05d736f86b4595145f51e48aa79eb5a2)

14 / 68    (Adware)
http://mediamagnet.cc/fm/b5/47/.../GTA_4.b5477.exe  (1e641259e54c4fab40934da7ee4cbdab)

1 / 68      (Adware)

1 / 68      (Adware)
http://mediamagnet.cc/fm/3a/7b/.../captureonepro.3a7b.exe  (8dcbfa466757151c6fbcef36556a90e3)

1 / 68      (Adware)

 
Latest 30 of 67 download URLs

The following 227 files have been seen to comunicate with mediamagnet.cc in live environments.

TCP » 54.72.9.51:80

 
Latest 20 of 236 files

URL:
http://mediamagnet.cc/

Google Analytics:
UA-48689684

Title:
“mediamagnet.cc”

Web server:
nginx

30 of 618 related domains