track.pcfilehelp.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain track.pcfilehelp.com is registered by proxy through ENOM, INC. and was originally registered in January of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network.
Registrar:
ENOM, INC.

Server location:
New York, United States (US)

Create date:
Tuesday, January 21, 2014

Expires date:
Thursday, January 21, 2016

Updated date:
Tuesday, January 21, 2014

ASN:
AS14061 DIGITALOCEAN-ASN - Digital Ocean, Inc.,US

Root domain:

Scanner detections:
Detections  (92% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DownloadManager.F, PUP.Installer.DownloadManagerCert.M, PUP.Installer.DownloadManager.M
91.67%

Avira AntiVirus
ADWARE/Adware.Gen
91.67%

Rising Antivirus
PE:PUF.Airinstall!1.9C4C
91.67%

AVG
BundleApp_r.D, Generic_r, Adware BundleApp_r.D, Adware InstallCore.QH
91.67%

Sophos
AirInstaller
91.67%

Qihoo 360 Security
Malware.QVM01.Gen
91.67%

IKARUS anti.virus
AdWare.Airinstall, Win32.Malware
91.67%

nProtect
Trojan-Clicker/W32.AirAdInstaller.824744
91.67%

AhnLab V3 Security
PUP/Win32.AirAdInstaller
91.67%

NANO AntiVirus
Riskware.Win32.AirAdInstaller.cwgpbr, Riskware.Win32.AirAdInstaller.cwbkcs
91.67%

Malwarebytes
PUP.Optional.AirAdInstaller
83.33%

Dr.Web
Adware.Downware.2035, Trojan.SMSSend.4785, Trojan.SMSSend.4904, Trojan.SMSSend.4790
83.33%

VIPRE Antivirus
Iminent
83.33%

avast!
Win32:Malware-gen, Win32:PUP-gen [PUP], Adware-gen [Adw]
83.33%

Agnitum Outpost
PUA.AirAdInstaller
83.33%

The domain track.pcfilehelp.com has been seen to resolve to the following IP address.

www.grldmd.com
April 13, 2014

File downloads found at URLs served by track.pcfilehelp.com.

33 / 68    (Adware)

27 / 68    (Adware)

27 / 68    (Adware)

36 / 68    (Adware)

1 / 68      (Adware)

2 / 68      (false positives)

URL:
http://track.pcfilehelp.com/

Title:
“Prosper202”

Description:
“description”

Web server:
Apache (PleskLin)