ttb.gs5xxsb8.com

Whois Privacy Protection Service, Inc.  (Proxy Registrant)

Domain Information

The domain ttb.gs5xxsb8.com is registered by proxy through NAME.COM, INC. and was originally registered in February of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
NAME.COM, INC.

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Monday, February 16, 2015

Expires date:
Tuesday, February 16, 2016

Updated date:
Monday, February 16, 2015

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Softpulse.Bundler, PUP.Softpulse.Softforce.Bundler (M), PUP.Softpulse (M)
100.00%

VIPRE Antivirus
Threat.4150696
20.00%

F-Secure
Gen:Variant.Adware.Strictor
20.00%

Dr.Web
Trojan.Domaiq.175
20.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Strictor.84776
20.00%

avast!
Win32:SoftPulse-GN [PUP]
20.00%

Lavasoft Ad-Aware
Gen:Variant.Adware.Strictor.84776
20.00%

Norman
Gen:Variant.Adware.Strictor.84776
20.00%

AVG
Adware AdPlugin.DKB
20.00%

Clam AntiVirus
Win.Trojan.Softpulse-145
20.00%

Bkav FE
W32.HfsAdware
20.00%

MicroWorld eScan
Gen:Variant.Adware.Strictor.84776
20.00%

Malwarebytes
PUP.Optional.SoftPulse
20.00%

K7 AntiVirus
Unwanted-Program
20.00%

Bitdefender
Gen:Variant.Adware.Strictor.84776
20.00%

The domain ttb.gs5xxsb8.com has been seen to resolve to the following IP address.

unallocated.barefruit.co.uk
June 18, 2015

File downloads found at URLs served by ttb.gs5xxsb8.com.

The following 230 files have been seen to comunicate with ttb.gs5xxsb8.com in live environments.

 
Latest 20 of 230 files

URL:
http://ttb.gs5xxsb8.com/

Web server:
nginx/1.0.15