www.coolflvplayer.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.coolflvplayer.com is registered by proxy through GODADDY.COM, LLC and was originally registered in October of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Remove Malware from www.coolflvplayer.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Monday, October 12, 2015

Expires date:
Wednesday, October 12, 2016

Updated date:
Monday, October 12, 2015

Root domain:

Scanner detections:
Detections  (90% detected)

Scan engine
Details
Detections

Dr.Web
Trojan.Packed.24524, Trojan.Packed.32718, Trojan.MulDrop5.53987, Adware.InstallCore.174
62.22%

VIPRE Antivirus
Threat.4150696, Threat.4786018, Adware.InstallCore
62.22%

ESET NOD32
Win32/Kryptik.BWJC trojan, Win32/InstallCore.D potentially unwanted application, Win32/InstallCore.BL potentially unwanted application
60.00%

avast!
Win32:Adware-gen [Adw], Win32:Dropper-gen [Drp], Win32:Malware-gen
51.11%

Clam AntiVirus
Win.Adware.Installcore-720, Win.Adware.Installcore-786, Win.Adware.Installcore-602, Win.Adware.Agent-53542, Win.Trojan.Installcore-155
48.89%

Sophos
PUA 'Install Core Click run software'
48.89%

Reason Heuristics
PUP.installCore.Coolapptech.Installer (M), PUP.installCore.WorldSetup.Installer (M), PUP.InstallCore.Installer (M), PUP.InstallCore.Bundler (M)
44.44%

AVG
Adware InstallCore.VT, Adware InstallCore.WG, Adware Generic5.BDFY
40.00%

F-Prot
W32/InstallCore.R.gen, W32/A-42c63c6c
11.11%

Microsoft Security Essentials
Threat.Undefined
6.67%

F-Secure
Gen:Variant.Adware.Strictor, Gen:Adware.BrowseFox.1, Trojan.Heur.QGZ@IyGhfAli
6.67%

Norman
Gen:Variant.Adware.Strictor.66006, InstallCore.UMFM, Gen:Trojan.Heur.QGZ@IyGhfAli
6.67%

Emsisoft Anti-Malware
Gen:Variant.Adware.Strictor.66006, Gen:Trojan.Heur.QGZ@IyGhfAli
4.44%

Lavasoft Ad-Aware
Gen:Variant.Adware.Strictor.66006, Gen:Trojan.Heur.QGZ@IyGhfAli
4.44%

Malwarebytes
PUP.Optional.Cooltech
2.22%

The domain www.coolflvplayer.com has been seen to resolve to the following 27 IP addresses.

January 27, 2016

ec2-54-72-9-51.eu-west-1.compute.amazonaws.com
October 20, 2015

ec2-54-229-24-120.eu-west-1.compute.amazonaws.com
August 17, 2014

ec2-54-194-169-19.eu-west-1.compute.amazonaws.com
August 17, 2014

ec2-54-72-121-228.eu-west-1.compute.amazonaws.com
August 17, 2014

ec2-54-76-8-76.eu-west-1.compute.amazonaws.com
August 7, 2014

ec2-54-77-109-225.eu-west-1.compute.amazonaws.com
August 7, 2014

ec2-54-77-87-192.eu-west-1.compute.amazonaws.com
August 7, 2014

unallocated.barefruit.co.uk
August 1, 2014

ec2-176-34-134-148.eu-west-1.compute.amazonaws.com
July 3, 2014

ec2-54-229-43-71.eu-west-1.compute.amazonaws.com
July 3, 2014

ec2-54-76-179-126.eu-west-1.compute.amazonaws.com
July 3, 2014

ec2-54-72-168-34.eu-west-1.compute.amazonaws.com
June 13, 2014

ec2-54-229-230-101.eu-west-1.compute.amazonaws.com
June 13, 2014

ec2-54-229-96-115.eu-west-1.compute.amazonaws.com
June 13, 2014

ec2-54-229-74-109.eu-west-1.compute.amazonaws.com
May 1, 2014

ec2-54-229-130-160.eu-west-1.compute.amazonaws.com
May 1, 2014

ec2-54-229-168-240.eu-west-1.compute.amazonaws.com
May 1, 2014

ec2-54-72-149-41.eu-west-1.compute.amazonaws.com
March 27, 2014

ec2-54-246-208-251.eu-west-1.compute.amazonaws.com
March 27, 2014

ec2-54-72-141-38.eu-west-1.compute.amazonaws.com
March 27, 2014

ec2-54-229-252-112.eu-west-1.compute.amazonaws.com
February 12, 2014

ec2-54-194-189-187.eu-west-1.compute.amazonaws.com
February 12, 2014

ec2-54-194-46-187.eu-west-1.compute.amazonaws.com
February 12, 2014

ec2-54-244-249-150.us-west-2.compute.amazonaws.com
January 1, 2014

ec2-50-112-240-188.us-west-2.compute.amazonaws.com
December 28, 2013

ec2-54-244-119-198.us-west-2.compute.amazonaws.com
December 22, 2013

File downloads found at URLs served by www.coolflvplayer.com.

7 / 68      (PUP)

0 / 68

5 / 68      (PUP)

6 / 68      (PUP)

The following 144 files have been seen to comunicate with www.coolflvplayer.com in live environments.

 
Latest 20 of 144 files

URL:
http://www.coolflvplayer.com/

Google Analytics:
UA-48689684

Title:
“Loading”

Web server:
nginx/1.8.0

30 of 247 related domains

Remove Malware from www.coolflvplayer.com - Powered by Reason Core Security