www.flvplayer-download.com

Whois Privacy Corp.

Domain Information

The domain www.flvplayer-download.com registered by Whois Privacy Corp. was initially registered in November of 2014 through TLD REGISTRAR SOLUTIONS LTD. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network.
Registrar:
TLD REGISTRAR SOLUTIONS LTD

Server location:
Dublin City, Ireland (IE)

Create date:
Sunday, November 2, 2014

Expires date:
Wednesday, November 2, 2016

Updated date:
Tuesday, November 3, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.RungnapaFongkerd.Q, PUP.VASSANAKONGSOONGNERN.Q, PUP.VASSANAKONGSOONGNERN.I, PUP.CoolMirage.VASSANAKONGSOONGNERN, PUP.Win.Reputation.PuvanatPumimart
100.00%

Dr.Web
Adware.Downware.6586, Adware.Downware.8319, Adware.Yontoo.54
86.67%

AVG
Rungnapa, Generic
86.67%

K7 AntiVirus
Adware
86.67%

Kaspersky
not-a-virus:AdWare.NSIS.Yontoo, not-a-virus:Downloader.Win32.TornTV
80.00%

VIPRE Antivirus
CoolMirage Ltd
73.33%

McAfee
Artemis!D78BDE0FE37C, Artemis!CF0F519D3F0A, Artemis!CB543C48E39E, Artemis!4507AEAEAB26, Artemis!9B3CEFC2E544, Artemis!E50423C905E2, Artemis!09D5F8F7551B
60.00%

Sophos
FT Downloader, CoolMirage, Generic PUA NP, Generic PUA GF, Generic PUA HF, Generic PUA GL, Generic PUA PO
60.00%

ESET NOD32
NSIS/TrojanDownloader.Adload.AA, NSIS/TrojanDropper.Agent.CB
60.00%

Qihoo 360 Security
HEUR/QVM42.0.Malware.Gen, Win32/Virus.Downloader.e28
60.00%

Trend Micro House Call
Suspicious_GEN.F47V1124, Suspicious_GEN.F47V1227, Suspicious_GEN.F47V0105, Suspicious_GEN.F47V0130, Suspici.EDD0D2A5, ADW_BUNDLER
53.33%

G Data
NSIS.Application.Adload
53.33%

Baidu Antivirus
Adware.NSIS.Yontoo, Hacktool.Win32.TornTV, Trojan.MSIL.ShimChanger
53.33%

AhnLab V3 Security
Win-PUP/CrossRider
53.33%

Panda Antivirus
Generic Suspicious
33.33%

The domain www.flvplayer-download.com has been seen to resolve to the following 4 IP addresses.

ns1.ibspark.com
November 7, 2015

ec2-50-18-116-110.us-west-1.compute.amazonaws.com
November 29, 2014

ec2-184-169-173-250.us-west-1.compute.amazonaws.com
November 10, 2014

ec2-50-18-57-94.us-west-1.compute.amazonaws.com
November 10, 2014

File downloads found at URLs served by www.flvplayer-download.com.

 
Latest 30 of 3,847 download URLs

The following 142 files have been seen to comunicate with www.flvplayer-download.com in live environments.

 
Latest 20 of 154 files

URL:
http://www.flvplayer-download.com/

Title:
“flvplayer-download.com”

Web server:
nginx