www.mediaprolab.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.mediaprolab.com is registered by proxy through GODADDY.COM, LLC and was originally registered in August of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Vernon Hills, Illinois within the United States which resides on the CIFNet, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Friday, August 17, 2012

Expires date:
Thursday, August 17, 2017

Updated date:
Friday, January 01, 2016

ASN:
AS14585 CIFNET - CIFNet, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SoftIntegrator.Bundle.Installer.Meta (M)
100.00%

ESET NOD32
Win32/OpenCandy
66.67%

Dr.Web
Adware.Downware.8466, Adware.Downware.12244, Adware.Downware.13782
58.33%

Trend Micro House Call
ADW_OPENCANDY, Suspicious_GEN.F47V1009
25.00%

McAfee
Artemis!E21FE0A13A30, Artemis!91663C07011B
25.00%

McAfee Web Gateway
Artemis!E21FE0A13A30
25.00%

G Data
Win32.Application.OpenCandy
25.00%

Bkav FE
W32.HfsAdware
25.00%

Vba32 AntiVirus
BScope.Downware.InstallMonstr
16.67%

Fortinet FortiGate
Riskware/OpenCandy
16.67%

NANO AntiVirus
Riskware.Win32.OpenCandy.cyducd
8.33%

Emsisoft Anti-Malware
Trojan.Generic.10334886
8.33%

Trend Micro
ADW_OPENCANDY
8.33%

AegisLab AV Signature
Troj.W32.Agent
8.33%

Clam AntiVirus
Win.Trojan.Application-1470
8.33%

The domain www.mediaprolab.com has been seen to resolve to the following IP address.

www.umfosoft.com
March 13, 2014

File downloads found at URLs served by www.mediaprolab.com.

10 / 68    (PUP)

4 / 68      (PUP)

4 / 68      (PUP)
http://www.mediaprolab.com/.../lyrics-finder.exe  (6d3c2c801a18d64ef1ee01fe9b1e1af6)

1 / 68      (PUP)
http://www.mediaprolab.com/.../video-player.exe  (18bc45c1b90144a3d2cb388276f9ea6a)

10 / 68    (PUP)

2 / 68      (PUP)
http://www.mediaprolab.com/.../video-player.exe  (534a4e8750eb8ef76b0c637e9cc37f12)

2 / 68      (PUP)
http://www.mediaprolab.com/mp4-to-mp3-converter.exe  (1a2f6582178e1eab6de2e1babdcda918)

3 / 68      (PUP)
http://www.mediaprolab.com/youtube-to-mp3-converter.exe  (30a405e111d465868235ae9f6ce2ad73)

7 / 68      (PUP)

7 / 68      (PUP)
http://www.mediaprolab.com/youtube-to-mp3-converter.exe  (91663c07011b9b55f37b3d1d86f4cf66)

7 / 68      (PUP)

2 / 68      (PUP)
http://www.mediaprolab.com/.../lyrics-finder.exe  (16e49d8f54e4ea011aa89c64c6fcd605)

4 / 68      (PUP)

4 / 68      (PUP)
http://www.mediaprolab.com/youtube-to-mp3-converter.exe  (a548a11dfc742c6737a97595c840b184)

4 / 68      (PUP)

2 / 68      (PUP)

10 / 68    (PUP)
http://www.mediaprolab.com/youtube-to-mp3-converter.exe  (8dc4e6d876f838fdc6966b97fa97c28a)

10 / 68    (PUP)

2 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (PUP)
http://www.mediaprolab.com/.../lyrics-finder.exe  (16e49d8f54e4ea011aa89c64c6fcd605)

The following 2 files have been seen to comunicate with www.mediaprolab.com in live environments.

URL:
http://www.mediaprolab.com/

Google Analytics:
UA-35598145

Title:
“Media Pro Lab: Free Multimedia Software”

Web server:
Apache/2.2.22 (FreeBSD) PHP/5.4.6 mod_ssl/2.2.22 OpenSSL/0.9.8y mod_perl/2.0.7 Perl/v5.14.2