www.hdvidcodecs.com

Whois Privacy Corp.

Domain Information

The domain www.hdvidcodecs.com registered by Whois Privacy Corp. was initially registered in May of 2014 through INTERNET.BS CORP.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network.
Remove Malware from www.hdvidcodecs.com - Powered by Reason Core Security
Registrar:
INTERNET.BS CORP.

Server location:
Dublin City, Ireland (IE)

Create date:
Sunday, May 11, 2014

Expires date:
Wednesday, May 11, 2016

Updated date:
Tuesday, May 12, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (97% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.RungnapaFongkerd.Q, PUP.KantidaChanudrum.S, PUP.InstallLab.Q, PUP.BertaBridEco.U, PUP.InstallLab.U, PUP.SarinratSubindee.I, PUP.CHUTCHAIKIEWNOY.Q, PUP.CHUTCHAIKIEWNOY.K, PUP.CoolMirage, PUP.CoolMirage.Installer, PUP.OneClickDownloader.SarinratSubindee.Installer (M), PUP.OneClickDownloader.InstallLab.Installer (M), PUP.CoolMirage.Installer (M)
85.71%

G Data
NSIS.Adware.OneClickDownloader, Gen:Application.Bundler.DefaultTab, Win32.Application.Agent.3LIORS, NSIS.Application.Adload
65.71%

Dr.Web
Adware.Downware.6586, Adware.Downware.8319, Threat.Undefined, Adware.Yontoo.11, Adware.Downware.5516, Trojan.Yontoo.1803
60.00%

AVG
Rungnapa, Win.Threat.Medium, Generic, MultiBundle, Could be an adware MultiBundle
54.29%

NANO AntiVirus
Trojan.Nsis.Yotoon.deckrr
51.43%

Qihoo 360 Security
HEUR/Malware.QVM06.Gen, Win32/Virus.Adware.47b
45.71%

McAfee Web Gateway
BehavesLike.Win32.Trojan.fc, BehavesLike.Win32.BadFile.fc, BehavesLike.Win32.AdwareSweet.fc, BehavesLike.Win32.BadFile.kc
42.86%

Sophos
FT Downloader, Install Core, PUA.FT Downloader, 1 Click Downloader, Generic PUA LE, Kanchana Khiandee adware, CoolMirage
31.43%

VIPRE Antivirus
Adware.SweetIM, CoolMirage Ltd, Trojan.Win32.Generic, BubbleDock, Threat.4783938, Threat.4150696, Threat.4789396, Threat.4814330
31.43%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud), Test.Win32.Heur.KVML200064.a.(kcloud)
25.71%

Panda Antivirus
PUP/MultiToolbar.A, Trj/Chgt.K, Generic Suspicious, Trj/Chgt.A
25.71%

avast!
Win32:Adware-gen [Adw], Win32:Rootkit-gen [Rtk], Dropper-gen [Drp], Oneclick-AN [PUP], Win32:Crossrider-EC [Adw]
22.86%

Baidu Antivirus
Adware.Win32.1ClickDownload, Adware.NSIS.Yontoo, Hacktool.Win32.Lickone
20.00%

Kaspersky
not-a-virus:AdWare.NSIS.Yontoo, not-a-virus:Downloader.Win32.Lickone, not-a-virus:HEUR:AdWare.Win32.Yotoon, not-a-virus:AdWare.Win32.Yotoon
20.00%

ESET NOD32
Win32/AdWare.1ClickDownload.AW application, Win32/AdWare.1ClickDownload.AT application, Win32/AdWare.1ClickDownload.AV application
20.00%

The domain www.hdvidcodecs.com has been seen to resolve to the following 7 IP addresses.

ns1.ibspark.com
May 15, 2015

ec2-54-241-19-159.us-west-1.compute.amazonaws.com
October 20, 2014

ec2-184-72-35-168.us-west-1.compute.amazonaws.com
October 20, 2014

ec2-184-72-62-239.us-west-1.compute.amazonaws.com
October 9, 2014

ec2-54-241-246-97.us-west-1.compute.amazonaws.com
October 9, 2014

ec2-184-169-156-128.us-west-1.compute.amazonaws.com
May 31, 2014

ec2-50-18-52-109.us-west-1.compute.amazonaws.com
May 28, 2014

File downloads found at URLs served by www.hdvidcodecs.com.

1 / 68      (Adware)
https://www.hdvidcodecs.com/.../VideoPlayerSetup.exe  (dd1038b87c97023accf3b14009a6bfc7)

0 / 68
https://www.hdvidcodecs.com/.../HDvid-codec-Chrome.exe  (adbb3f89b97c1808911d1472811627d7)

5 / 68      (Adware)
https://www.hdvidcodecs.com/.../HDFlashPlayer-Chrome.exe  (731390aa1eba82eeaf5ec44ef8c2c323)

17 / 68    (PUP)
https://www.hdvidcodecs.com/.../FLVPlayer-Chrome.exe  (2de0c7ceb579f55775ab5f0d390aae92)

7 / 68      (Adware)

URL:
http://www.hdvidcodecs.com/

Google Analytics:
UA-48689684

Title:
“hdvidcodecs.com”

Web server:
nginx

Facebook:
Shares:  3

Statistics are for the previous month.

30 of 247 related domains

Remove Malware from www.hdvidcodecs.com - Powered by Reason Core Security