vlcplayer.blupak.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain vlcplayer.blupak.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Microsoft Corporation network.
Registrar:
GODADDY.COM, LLC

Server location:
Dublin City, Ireland (IE)

Create date:
Wednesday, March 27, 2013

Expires date:
Monday, March 27, 2017

Updated date:
Monday, March 28, 2016

ASN:
AS8075 MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation,US

Root domain:

Scanner detections:
Detections  (90% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.BluPakSoftware.F, PUP.BluPakSoftware.Installer (M), PUP.BluPakSo.Installer (M), PUP (M)
100.00%

IKARUS anti.virus
Trojan.Kazy
46.43%

Avira AntiVirus
TR/Kazy.kjh, TR/Agent.386648
42.86%

VIPRE Antivirus
Threat.5065747
42.86%

SUPERAntiSpyware
Trojan.Agent/Gen-Kazy
42.86%

avast!
Win32:Malware-gen
39.29%

AVG
Generic
35.71%

ESET NOD32
Win32/Adware.TrueDownloader.A application
35.71%

K7 AntiVirus
Adware
35.71%

Agnitum Outpost
PUA.TrueDownloader
35.71%

The domain vlcplayer.blupak.com has been seen to resolve to the following 4 IP addresses.

April 11, 2016

October 26, 2015

waws-prod-db3-015.cloudapp.net
November 18, 2014

November 1, 2014

File downloads found at URLs served by vlcplayer.blupak.com.

1 / 68      (PUP)
http://vlcplayer.blupak.com/.../Setup.exe  (476267451f2c42971b99e8a7f3f7283c)

The following 16 files have been seen to comunicate with vlcplayer.blupak.com in live environments.

URL:
http://vlcplayer.blupak.com/

Title:
“blupak.com”

Web server:
Apache

Facebook:
Shares:  11

Statistics are for the previous month.