mediaplayercodecpack.com

Cole Williams

Domain Information

The domain mediaplayercodecpack.com registered by Cole Williams was initially registered in April of 2007 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH (NWK) network.
Remove Malware from mediaplayercodecpack.com - Powered by Reason Core Security
Registrar:
GANDI SAS

Server location:
Quebec, Canada (CA)

Create date:
Wednesday, April 18, 2007

Expires date:
Wednesday, April 18, 2018

Updated date:
Thursday, June 04, 2015

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
Opencandy
100.00%

K7 Gateway Antivirus
Unwanted-Program
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

NANO AntiVirus
Riskware.Win32.OpenCandy.dvwkdm
100.00%

Agnitum Outpost
Riskware.Agent
100.00%

Dr.Web
Adware.OpenCandy.137
100.00%

McAfee Web Gateway
BehavesLike.Win32.Suspicious.wc
100.00%

F-Prot
W32/OpenCandy.A2.gen
100.00%

Kingsoft AntiVirus
VIRUS_UNKNOWN
100.00%

G Data
Win32.Application.OpenCandy
100.00%

McAfee
Artemis!2A69647E32A1
100.00%

ESET NOD32
Win32/OpenCandy.C potentially unsafe (variant)
100.00%

Fortinet FortiGate
Riskware/OpenCandy
100.00%

AVG
OpenCandy
100.00%

Reason Heuristics
PUP.OpenCandy.Installer (L)
100.00%

The domain mediaplayercodecpack.com has been seen to resolve to the following 5 IP addresses.

li362-65.members.linode.com
May 3, 2015

li255-141.members.linode.com
May 3, 2015

vps-us-nj.puregeni.us
March 14, 2014

vps-us-ca.puregeni.us
March 14, 2014

February 6, 2014

File downloads found at URLs served by mediaplayercodecpack.com.

15 / 68    (PUP)

URL:
http://mediaplayercodecpack.com/

Google Analytics:
UA-27079580

Title:
“Media Player Codec Pack for Microsoft Windows”

SSL certificate subject:
CN=www.mediaplayercodecpack.com, OU=COMODO EV SSL, O=Cole Williams Software Limited, STREET=36 High Street, L=Cleethorpes, S=South Humberside, PostalCode=DN35 8JN, C=GB, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.3=GB, SERIALNUMBER=08633225

SSL certificate issuer:
CN=COMODO RSA Extended Validation Secure Server CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips PHP/5.4.16 (PHP/5.4.16)

Facebook:
Likes:  4,553
Shares:  1,077
Comments:  118

Statistics above are for the previous month of November 2016.

Remove Malware from mediaplayercodecpack.com - Powered by Reason Core Security