www.mediaplayerlite.net

Moniker Privacy Services  (Proxy Registrant)

Domain Information

The domain www.mediaplayerlite.net is registered by proxy through Moniker Online Services and was originally registered in September of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Cloudfront CDN service which utilizes a number of proxy IP Addresses (see below).
Remove Malware from www.mediaplayerlite.net - Powered by Reason Core Security
Registrar:
Moniker Online Services

Server location:
Virginia, United States (US)

Create date:
Saturday, September 24, 2011

Expires date:
Saturday, September 24, 2016

Updated date:
Sunday, September 13, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US

Scanner detections:
Detections  (86% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ISfreemium.U, PUP.WorldSetup.U, PUP.Installer.BestDownloadManager.P, PUP.MaxSetup.U, PUP.Installer.Statscom.V, PUP.Installer.DownloadAdmin.V, PUP.Installer.CodeTechno.V, PUP.AmnisTechnology.Optional.Installer.Meta (L), PUP.STMSetup.U, PUP.Tightrope.DownloadAdmin.Bundler (M), PUP.installCore.MaxSetup (M), PUP.InstallX.Installer (M)
90.00%

Dr.Web
Win32.Sector.21, Trojan.Packed.25266, Adware.Plugin.85, Trojan.Packed.24524, Adware.DAdmin.151, Adware.InstallCore.386, Adware.Downware.2220
75.00%

VIPRE Antivirus
InstallCore, sterkly LLC, Threat.4788237, Threat.4783369, DownloadAdmin, Threat.4786018, InstallIQ Installer
70.00%

McAfee Web Gateway
Artemis!8D4C47D900B9, Artemis!339651B4EDF0, Artemis!69C9B09B9E20, CryptInno , Artemis!2A7B349E86B2, BehavesLike.Win32.Downloader.bc
60.00%

AVG
AdInject.Bdmngr, InstallCore, Generic, InstallIQ.F
60.00%

Agnitum Outpost
Riskware.Agent, PUA.Downware
50.00%

Avira AntiVirus
W32/Sality.AT, ADWARE/InstallCore.Gen7, ADWARE/InstallCore.Gen9, APPL/Downloader.Gen, ADWARE/Adware.Gen, Adware/InstallIQ.N
45.00%

Trend Micro House Call
TROJ_GEN.F47V1217, TROJ_GEN.F47V0920, Suspici.B577CD42, Suspicious_GEN.F47V0708, TROJ_GEN.F47V0815
45.00%

K7 Gateway Antivirus
Unwanted-Program , Trojan , Riskware
40.00%

ESET NOD32
Win32/InstallCore.DO (variant), Win32/KBM (variant), Win32/InstallCore.CH (variant), Win32/DownloadAdmin, Win32/InstallIQ (variant)
40.00%

McAfee
Artemis!8D4C47D900B9, Artemis!339651B4EDF0, Artemis!69C9B09B9E20, CryptInno, Artemis!2A7B349E86B2, Artemis!131D712F5509
40.00%

Malwarebytes
PUP.Optional.Freemium.A, PUP.Optional.BundleInstaller.A, PUP.Optional.DownloadAdmin, PUP.PlayPickle
35.00%

herdProtect (fuzzy)
a variant of 894e872b5dd00d1524d4b6741e781f62a4c0bbea, a variant of e596438def6d56847c7d59c71eb149400d673f95, a variant of b45d582494005d694750177c3eb6b00a6857914e
30.00%

Fortinet FortiGate
Riskware/MultiPlug, Riskware/FirseriaInstaller, Riskware/DownloadAdmin, Riskware/InstallIQ
30.00%

ESET NOD32
Win32/InstallCore.MJ potentially unwanted application, Win32/DownloadAdmin.G potentially unwanted application, Win32/InstallCore.PL potentially unwanted application, Win32/DownloadAdmin.H potentially unwanted application
30.00%

The domain www.mediaplayerlite.net has been seen to resolve to the following 84 IP addresses.

server-54-230-102-141.iad2.r.cloudfront.net
February 13, 2016

server-54-230-102-105.iad2.r.cloudfront.net
February 13, 2016

server-54-230-102-97.iad2.r.cloudfront.net
February 13, 2016

server-54-230-102-81.iad2.r.cloudfront.net
February 13, 2016

server-54-230-102-62.iad2.r.cloudfront.net
February 13, 2016

server-54-230-102-227.iad2.r.cloudfront.net
February 13, 2016

server-54-230-102-206.iad2.r.cloudfront.net
February 13, 2016

server-54-230-102-183.iad2.r.cloudfront.net
February 13, 2016

server-54-192-195-148.iad53.r.cloudfront.net
February 10, 2016

server-54-192-195-141.iad53.r.cloudfront.net
February 10, 2016

server-54-192-195-132.iad53.r.cloudfront.net
February 10, 2016

server-54-192-195-225.iad53.r.cloudfront.net
February 10, 2016

server-54-192-195-217.iad53.r.cloudfront.net
February 10, 2016

server-54-192-195-191.iad53.r.cloudfront.net
February 10, 2016

server-54-192-195-181.iad53.r.cloudfront.net
February 10, 2016

server-54-192-195-180.iad53.r.cloudfront.net
February 10, 2016

server-54-230-194-81.iad53.r.cloudfront.net
December 4, 2015

server-54-230-193-190.iad53.r.cloudfront.net
December 4, 2015

server-54-192-195-83.iad53.r.cloudfront.net
December 4, 2015

server-54-192-194-27.iad53.r.cloudfront.net
December 4, 2015

server-54-192-193-132.iad53.r.cloudfront.net
December 4, 2015

server-54-230-195-58.iad53.r.cloudfront.net
December 4, 2015

server-54-230-194-165.iad53.r.cloudfront.net
December 4, 2015

server-54-230-194-146.iad53.r.cloudfront.net
December 4, 2015

server-216-137-33-108.iad2.r.cloudfront.net
December 4, 2015

server-54-230-103-93.iad2.r.cloudfront.net
December 4, 2015

server-54-230-103-66.iad2.r.cloudfront.net
December 4, 2015

server-54-230-102-112.iad2.r.cloudfront.net
December 4, 2015

server-54-230-102-21.iad2.r.cloudfront.net
December 4, 2015

server-54-230-100-84.iad2.r.cloudfront.net
December 4, 2015

 
Showing 30 of 84 IP Addresses

File downloads found at URLs served by www.mediaplayerlite.net.

1 / 68      (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlitefam_d166370.exe)

0 / 68
http://www.mediaplayerlite.net/download  (mediaplayerlite-0.4.3.0.exe)

0 / 68
http://www.mediaplayerlite.net/download2  (setup-mediaplayerlite-0.5.3.2.exe)

1 / 68      (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-0.5.1.0.exe)

1 / 68      (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-setup.exe)

25 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlitefam_d8241996.exe)

17 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-setup.exe)

12 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-0.5.2.0.exe)

1 / 68      (PUP)
http://www.mediaplayerlite.net/download  (setup-mediaplayerliteu.exe)

10 / 68    (PUP)
http://www.mediaplayerlite.net/download  (mediaplayerlite-setup.exe)

10 / 68    (PUP)
http://www.mediaplayerlite.net/download  (mediaplayerlite-setup.exe)

13 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-setup.exe)

11 / 68    (Adware)

13 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-setup.exe)

10 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-setup.exe)

14 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-0.5.1.0.exe)

11 / 68    (Adware)

12 / 68    (Adware)

14 / 68    (PUP)
http://www.mediaplayerlite.net/download  (mediaplayerlite-0.4.4.0.exe)

1 / 68      (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-0.5.1.0.exe)

5 / 68      (false positives)

13 / 68    (Adware)
http://www.mediaplayerlite.net/download  (mediaplayerlite-0.5.1.0.exe)

The following 4 files have been seen to comunicate with www.mediaplayerlite.net in live environments.

URL:
http://www.mediaplayerlite.net/

Google Analytics:
UA-21970171

Title:
“Free Audio and Video Player Software - Free Audio and Video Player Software - Media Player LiteFree Audio and Video Player Software – Media Player Lite | MediaPlayerLite is a free open source ...”

Description:
“MediaPlayerLite is a free open source audio and video player on Windows. You can play DVD, AVI, mpeg, FLV, MP4, WMV, MOV, DivX, XviD & more! Play your video and audio now completely free! Features - what can MediaPlayerLite do? Video, Image &...”

Network:
Amazon Cloudfront

Web server:
AmazonS3

Facebook:
Likes:  2
Shares:  66
Comments:  3

Statistics are for the previous month.

Remove Malware from www.mediaplayerlite.net - Powered by Reason Core Security