sf-addon.com

Domain Privacy Service FBO Registrant.  (Proxy Registrant)

Domain Information

The domain sf-addon.com is registered by proxy through DOMAIN.COM, LLC and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Berlin, Berlin within Germany which resides on the RIPE Network Coordination Centre network.
Remove Malware from sf-addon.com - Powered by Reason Core Security
Registrar:
DOMAIN.COM, LLC

Server location:
Berlin, Germany (DE)

Create date:
Friday, July 26, 2013

Expires date:
Wednesday, July 26, 2017

Updated date:
Sunday, April 12, 2015

ASN:
AS24940 HETZNER-AS Hetzner Online GmbH,DE

Scanner detections:
Detections  (67% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SaveForm.Optional.Installer.Meta (L)
75.00%

AVG
Generic
37.50%

ByteHero BDV
Trojan.Malware.Obscu.Gen.001
12.50%

Malwarebytes
PUP.Optional.OpenCandy
12.50%

The domain sf-addon.com has been seen to resolve to the following 2 IP addresses.

static.155.42.243.136.clients.your-server.de
December 7, 2015

mail.2iki.net
February 7, 2014

File downloads found at URLs served by sf-addon.com.

0 / 68

0 / 68

3 / 68      (PUP)

1 / 68      (PUP)

0 / 68

0 / 68

1 / 68      (PUP)

1 / 68

1 / 68      (PUP)

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

0 / 68

 
Latest 30 of 642 download URLs

The following 102 files have been seen to comunicate with sf-addon.com in live environments.

 
Latest 20 of 102 files

URL:
http://sf-addon.com/

Title:
“SF Addon”

SSL certificate subject:
E=webmaster@sf-addon.com, CN=*.sf-addon.com, O=Mikhail Samokhvalov, L=Saint Petersburg, S=Saint Petersburg City, C=RU

SSL certificate issuer:
CN=StartCom Class 2 Primary Intermediate Server CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Web server:
nginx

Facebook:
Shares:  1
Comments:  12

Statistics above are for the previous month of November 2016.

Remove Malware from sf-addon.com - Powered by Reason Core Security