www.converterlite.com

Moniker Privacy Services  (Proxy Registrant)

Domain Information

The domain www.converterlite.com is registered by proxy through Moniker Online Services and was originally registered in July of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).
Remove Malware from www.converterlite.com - Powered by Reason Core Security
Registrar:
Moniker Online Services

Server location:
Virginia, United States (US)

Create date:
Monday, July 25, 2011

Expires date:
Monday, July 25, 2016

Updated date:
Tuesday, July 14, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.InstallX.J, PUP.WorldSetup.R, PUP.ISfreemium.R, PUP.Installer.BestDownloadManager.S, PUP.Installer.InstallX.Z, PUP.MaxSetup.R, PUP.Installer.CodeTechno.T, PUP.STMSetup.S, PUP.Installer.DownloadAdmin.T, PUP.Installer.Zoobam.T, PUP.Installer.Tightrope, PUP.Tightrope.Bundler, PUP.Tightrope.Zoobam.Bundler (M), PUP.InstallCore.Installer (M), PUP.Adknowledge.SailMachine.Bundler (M), PUP.installCore.MaxSetup (M), PUP.Tightrope.DownloadAdmin.Bundler (M)
86.49%

Dr.Web
Adware.W3i.32, Tool.BtcMine.83, Trojan.Packed.24524, Trojan.Packed.25266, Adware.Plugin.85, Trojan.MulDrop4.48137, Adware.Downware.2512, Adware.Downware.2220
75.68%

VIPRE Antivirus
InstallIQ Installer, InstallCore.b, sterkly LLC, Threat.4788237, DownloadAdmin, Threat.4786018, Threat.4150696, Threat.4783369
72.97%

Avira AntiVirus
Adware/InstallIQ.N, SPR/BitCoinMiner.AP, ADWARE/InstallCore.Gen7, APPL/InstallIQ.Gen5, ADWARE/InstallCore.Gen9, APPL/Downloader.Gen
67.57%

AVG
Skodna.Generic_r, MalSign.Generic, AdInject.Bdmngr, InstallIQ.F, InstallCore, Potentially harmful program Downloader.GCT
56.76%

K7 Gateway Antivirus
Riskware, Unwanted-Program , Adware
56.76%

Sophos
InstallQ, Install Core, Install Core Click run software, PUA 'DownloadAdmin' (of type Adware)
54.05%

K7 AntiVirus
Riskware, Unwanted-Program , Adware
51.35%

Malwarebytes
PUP.PlayPickle, PUP.Optional.Freemium.A, PUP.Optional.BundleInstaller.A, PUP.Optional.InstallIQ, PUP.Optional.Downloader
48.65%

Comodo Security
Application.Win32.InstallIQ.B, UnclassifiedMalware, Application.Win32.InstallCore.BWAN, Application.Win32.Agent.AH, ApplicUnwnt
45.95%

Agnitum Outpost
Riskware.Agent, PUA.Downware, Trojan.Packed
40.54%

ESET NOD32
Win32/InstallIQ (variant), Win32/BitCoinMiner (variant), Win32/InstallCore.IO (variant), Win32/InstallCore.DO (variant)
37.84%

McAfee Web Gateway
Artemis!A34F9AC02DB1, Artemis!0F8785742717, Artemis!4624BABEBE66, Artemis!D5FA08152E4A, Artemis!2A7B349E86B2, BehavesLike.Win32.CryptInno.hc
37.84%

ESET NOD32
Win32/InstallCore.LB potentially unwanted application, Win32/InstallCore.MJ potentially unwanted application, Win32/InstallCore.OU potentially unwanted application, Win32/DownloadAdmin.H potentially unwanted application
37.84%

Antiy Labs AVL
Trojan/Win32.SGeneric, Trojan/Win32.TSGeneric
32.43%

The domain www.converterlite.com has been seen to resolve to the following 122 IP addresses.

server-54-192-195-247.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-230.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-191.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-186.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-181.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-113.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-82.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-63.iad53.r.cloudfront.net
January 31, 2016

server-54-192-195-142.iad53.r.cloudfront.net
January 6, 2016

server-54-192-195-123.iad53.r.cloudfront.net
January 6, 2016

server-54-192-195-116.iad53.r.cloudfront.net
January 6, 2016

server-54-192-195-71.iad53.r.cloudfront.net
January 6, 2016

server-54-192-195-50.iad53.r.cloudfront.net
January 6, 2016

server-54-192-195-239.iad53.r.cloudfront.net
January 6, 2016

server-54-192-195-223.iad53.r.cloudfront.net
January 6, 2016

server-54-192-195-207.iad53.r.cloudfront.net
January 6, 2016

server-54-230-193-221.iad53.r.cloudfront.net
October 19, 2015

server-54-192-193-52.iad53.r.cloudfront.net
October 19, 2015

server-54-192-192-193.iad53.r.cloudfront.net
October 19, 2015

server-54-192-192-39.iad53.r.cloudfront.net
October 19, 2015

server-54-230-195-11.iad53.r.cloudfront.net
October 19, 2015

server-54-230-194-216.iad53.r.cloudfront.net
October 19, 2015

server-54-230-194-148.iad53.r.cloudfront.net
October 19, 2015

server-54-230-194-84.iad53.r.cloudfront.net
October 19, 2015

server-54-230-192-106.iad53.r.cloudfront.net
September 10, 2015

server-54-192-192-85.iad53.r.cloudfront.net
September 10, 2015

server-54-230-193-136.iad53.r.cloudfront.net
September 10, 2015

server-54-230-192-241.iad53.r.cloudfront.net
August 12, 2015

server-54-230-103-100.iad2.r.cloudfront.net
July 1, 2015

server-54-230-102-99.iad2.r.cloudfront.net
July 1, 2015

 
Showing 30 of 122 IP Addresses

File downloads found at URLs served by www.converterlite.com.

17 / 68    (PUP)
http://www.converterlite.com/download  (converterlite-1.6.6.exe)

1 / 68
http://www.converterlite.com/download2  (setup-converterlite-1.6.11.0.exe)

The following 23 files have been seen to comunicate with www.converterlite.com in live environments.

 
Latest 20 of 24 files

URL:
http://www.converterlite.com/

Google Analytics:
UA-21970171

Title:
“Free Audio and Video Converter - dev.converterlite.comdev.converterlite.com | Just another WordPress site”

Description:
“ConverterLite is a free and simple audio and video batch converter utility. You can convert to AVI, mpeg, FLV, MP4, MP3 and more! Convert your audio and video now completely free! Features - what can ConverterLite do? Audio Converter You can conv...”

Network:
Amazon Cloudfront

Web server:
AmazonS3

Facebook:
Likes:  25
Shares:  310
Comments:  41

Statistics are for the previous month.

Remove Malware from www.converterlite.com - Powered by Reason Core Security