www.flashbean.net

WHOIS PRIVACY PROTECTION SERVICE, INC.  (Proxy Registrant)

Domain Information

The domain www.flashbean.net is registered by proxy through ENOM, INC. and was originally registered in February of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Montreal, Quebec within Canada which resides on the OVH Hosting, Inc. network.
Remove Malware from www.flashbean.net - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
Quebec, Canada (CA)

Create date:
Thursday, February 28, 2013

Expires date:
Sunday, February 28, 2016

Updated date:
Sunday, June 28, 2015

ASN:
AS16276 OVH OVH SAS,FR

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BRSOFTWARE, PUP.Midia Technologies, PUP.Bundler.Midia Technologies, Threat.BR Software.BRSOFTWARE, PUP.Midia Technologies.MidiaTechnologies.Bundler (M), PUP.BR Software.BRSOFTWARE (M), Threat.Win.Reputation.IMP
97.96%

avast!
Win32:Adware-BJA [PUP], Win32:Downloader-UHJ [PUP], Downloader-VKT [Trj], Win32:Downloader-UDY [PUP]
12.24%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
12.24%

Emsisoft Anti-Malware
Gen:Variant.Adware.DealPly, Gen:Variant.Adware.Graftor.140699, Adware.DealPly.N, Gen:Variant.Adware.Graftor.150937, Gen:Variant.Adware.PCMega
12.24%

MicroWorld eScan
Gen:Variant.Adware.DealPly.1, Gen:Variant.Adware.Graftor.140699, Adware.DealPly.N, Gen:Variant.Adware.Graftor.150937, Gen:Variant.Adware.PCMega.4
12.24%

Antiy Labs AVL
Trojan[Banker]/Win32.Lohmys, Trojan/MSIL.Zapchast
12.24%

G Data
Gen:Variant.Adware.DealPly, Gen:Variant.Adware.Graftor.140699, Win32.Trojan-Downloader.Agent.BP, Gen:Variant.Adware.Graftor.150937
12.24%

IKARUS anti.virus
PUA.Midia, Win32.SuspectCrc, Trojan.Msil, Trojan-Banker.Win32.Banker
12.24%

AVG
Skodna, Adware Generic5.ATPM, Trojan horse Generic36, Adware Generic5.AXCL
12.24%

ESET NOD32
Win32/AdWare.Midia.C application, Win32/AdWare.PCMega.R application, Win32/AdWare.Midia.D application, Detection.Undefined
10.20%

F-Secure
Gen:Variant.Adware.DealPly.1, Gen:Variant.Adware.Graftor.140699, Adware.DealPly.N, Gen:Variant.Adware.PCMega
10.20%

Norman
Gen:Variant.Adware.DealPly.1, Gen:Variant.Adware.Graftor.140699, Adware.DealPly.N, Gen:Variant.Adware.Graftor.150937, Gen:Variant.Adware.PCMega.4
10.20%

Lavasoft Ad-Aware
Gen:Variant.Adware.DealPly.1, Gen:Variant.Adware.Graftor.140699, Adware.DealPly.N, Gen:Variant.Adware.Graftor.150937, Gen:Variant.Adware.PCMega.4
10.20%

Sophos
PUA 'PCMega'
10.20%

Bitdefender
Gen:Variant.Adware.DealPly.1, Gen:Variant.Adware.Graftor.140699, Adware.DealPly.N, Gen:Variant.Adware.Graftor.150937
10.20%

The domain www.flashbean.net has been seen to resolve to the following 4 IP addresses.

March 9, 2015

onlinemidia.com
July 10, 2014

March 6, 2014

web01.onlinemidia.com
December 18, 2013

File downloads found at URLs served by www.flashbean.net.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.flashbean.net/ids/id131/.../Baixar.exe  (4c4d39a3181d4070364c45ba8e9c26e0)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.flashbean.net/ids/.../Avicii Wake Me Up.exe  (30a2581b7def0930b8422f0a64239703)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.flashbean.net/ids/.../Cone Crew Diretoria Com Os Neuronios Evoluindo.rar  (cone crew diretoria com os neuronios evoluindo.rar.exe)

1 / 68      (Adware)
http://www.flashbean.net/ids/.../arquivo.exe  (acba4bcfc9ea065638c9526279754ac6)

1 / 68      (Adware)
http://www.flashbean.net/ids/.../Capitão América 2: O Soldado Invernal – Dublado.exe  (capitão américa 2- o soldado invernal – dublado.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

 
Latest 30 of 95 download URLs

The following file have been seen to comunicate with www.flashbean.net in live environments.

URL:
http://www.flashbean.net/

Google Analytics:
UA-2249740

Title:
“Flashbean.net”

Description:
“Find Cash Advance, Debt Consolidation and more at Flashbean.net. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Flashbean.net is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 298 related domains

Remove Malware from www.flashbean.net - Powered by Reason Core Security