The domain ttb.totalvideoplugin.com registered by Whois Privacy Shield Services was initially registered in August of 2014 through SOLUCIONES CORPORATIVAS IP,SLU. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Redwood City, California within the United States which resides on the SKYE network.
California, United States (US)
Saturday, August 16, 2014
Tuesday, August 16, 2016
Monday, August 17, 2015
AS26008 NOMINUM-SKYE1 - SKYE
Detections (90% detected)
PUP.Installer.Awimba.F, PUP.TuguuSL.N, PUP.Installer.TuguuSL.M, PUP.PaymentsInteractiveSL.I, PUP.Installer.PaymentsInteractiveSL.F, PUP.Tuguu.TuguuU.Bundler (M), PUP.Tuguu.Bundler (M), PUP.Tuguu.PaymentsInteractive.Bundler (M)
PUP.Optional.BundleInstaller.A, Adware.DomaIQ, PUP.Adware.DomaIQ, PUP.Optional.Domalq
Trojan.Win32.DomaIQ.csuxpi, Trojan.Win32.Stealer.cwxrck, Trojan.Win32.W3i.csnylo, Riskware.Win32.DomaIQ.csmxcm, Trojan.Win32.PayInt.csficn
Generic PUA OF, DomainIQ pay-per install, Generic PUA PL
Trojan.DownLoader9.15042, Adware.W3i.28, Trojan.DownLoader10.474, Trojan.PackedENT.24553, Trojan.PayInt.14
DomaIQ, Threat.4783235, Threat.4783262
APPL/DomaIQ.Gen, APPL/DomaIQ.Gen7, APPL/DomaIQ.Gen2
Adware-DomaIQ!4019C3F4733F, Artemis!DDA4AB6E17E1, CryptDomaIQ
K7 Gateway Antivirus
Unwanted-Program , Trojan
Win32.Application.DomalQ, Trojan.Agent.BAAB, Win32.Adware.Silp, Dropped:Application.Bundler.DomaIQ
BScope.Downware.DomaIQ, Downloader.Agent, OScope.Downware.DomaIQ
Skodna.Bundle_r.U, Generic, Adware Skodna.Generic_r.IA
NSIS:DomaIQ-C [PUP], PUP-gen [PUP], DomaIQ-AP [PUP], Win32:DomaIQ-CM [PUP]
APPL, AdWare.SuspectCRC, AdWare.DomaIQ, Trojan-Dropper.Agent
The domain ttb.totalvideoplugin.com has been seen to resolve to the following 4 IP addresses.
February 12, 2016
May 15, 2014
March 14, 2014
File downloads found at URLs served by ttb.totalvideoplugin.com.
The following 53 files have been seen to comunicate with ttb.totalvideoplugin.com in live environments.