swissconverter.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain swissconverter.com is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Friday, June 29, 2012

Expires date:
Wednesday, June 29, 2016

Updated date:
Tuesday, June 30, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Conduit.R, PUP.ClientConnect.Y, PUP.Conduit.Installer, PUP.Conduit.Bundler (M)
100.00%

Dr.Web
Adware.Toolbar.156, Adware.Downware.1237, Adware.Conduit.87
45.45%

Trend Micro House Call
Suspicious_GEN.F47V0614, TROJ_GEN.F47V0508, TROJ_GEN.F47V0319
27.27%

VIPRE Antivirus
Conduit
27.27%

ESET NOD32
Win32/ClientConnect (variant), Win32/Toolbar.Conduit.AE
27.27%

Boost by Reason
Adware.Conduit.R
18.18%

McAfee
Artemis!EC7B9D480576, Artemis!417AD814DFB5
18.18%

avast!
Win32:Adware-BRM [PUP]
18.18%

IKARUS anti.virus
PUA.Toolbar.Conduit, PUA.ClientConnect
18.18%

Fortinet FortiGate
Riskware/Toolbar_Conduit
18.18%

AVG
Generic
18.18%

Baidu Antivirus
Trojan.Win32.ClientConnect, Adware.Win32.Conduit
18.18%

Malwarebytes
PUP.Optional.ClientConnect, PUP.Optional.Conduit
18.18%

McAfee Web Gateway
Artemis!EC7B9D480576
9.09%

Sophos
Generic PUA FD
9.09%

The domain swissconverter.com has been seen to resolve to the following 2 IP addresses.

ip-50-63-202-60.ip.secureserver.net
July 20, 2016

67.228.76.184-static.reverse.softlayer.com
May 29, 2014

File downloads found at URLs served by swissconverter.com.

1 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

1 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

1 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

6 / 68      (Adware)
http://swissconverter.com/.../downloadsp.php  (c7811a18730fb975ca5faa15f1517dcf588813a8e8937c39e2da7d5290d50305)

2 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

1 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

12 / 68    (Adware)
http://swissconverter.com/.../downloadsp.php  (swissconverter_tsa13aqez.exe)

2 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

2 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

13 / 68    (Adware)
http://swissconverter.com/.../downloadsp.php  (swissconverter_tsv3amaze.exe)

2 / 68      (PUP)
http://swissconverter.com/.../download.php  (swissconverter_2.1.exe)

The following 140 files have been seen to comunicate with swissconverter.com in live environments.

 
Latest 20 of 140 files

URL:
http://swissconverter.com/

Title:
“Download Now”

Web server:
nginx/1.5.0 (PHP/5.3.29)

Facebook:
Shares:  1

Statistics above are for the previous month of October 2017.

30 of 31 related domains