shieldapps.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain shieldapps.com is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Sunday, February 13, 2011

Expires date:
Tuesday, February 13, 2018

Updated date:
Saturday, February 13, 2016

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.S, PUP.Optional.Installer.V, Win32.Generic.Installer.ShieldApps.Meta, Win32.Generic.ShieldApps.Installer.Meta, Threat.Win.Reputation.IMP
100.00%

Vba32 AntiVirus
TrojanFakeAV.Agent
8.33%

Trend Micro House Call
Suspicious_GEN.F47V0430
8.33%

McAfee
Artemis!AD02C6BEE5AA
8.33%

ESET NOD32
MSIL/Rebrand.LittleRegClean.B potentially unwanted (variant)
8.33%

The domain shieldapps.com has been seen to resolve to the following 3 IP addresses.

box1290.bluehost.com
May 17, 2016

p3nlhg750c1750.shr.prod.phx3.secureserver.net
August 17, 2014

p3nlhg57c102.shr.prod.phx3.secureserver.net
February 27, 2014

File downloads found at URLs served by shieldapps.com.

1 / 68      (PUP)
http://shieldapps.com/downloads/.../  (shieldantivirussetup.exe)

4 / 68      (PUP)

1 / 68      (PUP)
http://shieldapps.com/downloads/.../  (PCPrivacyShieldSetup.exe)

1 / 68      (PUP)
http://shieldapps.com/downloads/.../  (PcPrivacyShieldSetup.exe)

1 / 68      (Malware)
http://shieldapps.com/downloads/.../  (pcregistryshieldsetup.exe)

1 / 68      (PUP)
http://shieldapps.com/downloads/.../  (shieldantivirussetup.exe)

2 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://shieldapps.com/.../  (pcspeedrepairsetup.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://shieldapps.com/.../  (PCSpeedRepairSetup.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

The following 9 files have been seen to comunicate with shieldapps.com in live environments.

URL:
http://shieldapps.com/

Google Analytics:
UA-45654615

Title:
“ShieldApps”

Description:
“ShieldApps is a software company specializing in security software, privacy software and white label software.”

Web server:
Apache

Facebook:
Shares:  5
Comments:  1

Statistics above are for the previous month of September 2017.