www.srv2trking.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.srv2trking.com is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Lindon, Utah within the United States which resides on the C7 Data Centers, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Utah, United States (US)

Create date:
Wednesday, June 27, 2012

Expires date:
Wednesday, June 27, 2018

Updated date:
Tuesday, April 05, 2016

ASN:
AS32421 BLCC - Black Lotus Communications,US

Root domain:

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.BechiroSL.O, PUP.Installer.BechiroSL.F, PUP.Optional.Installer, PUP.Installer.Solimba, PUP.Bundler.Solimba, PUP.Solimba.Bechiro.Bundler (M), PUP.Adknowledge.OptimumInstaller.Installer (M), PUP.Adknowledge.PremiumI.Bundler (M), PUP.Adknowledge.OptimumI.Bundler (M)
100.00%

Dr.Web
Trojan.DownLoader11.4114, Adware.Downware.1302, Program.Unwanted.90, Adware.Downware.1108, Adware.Downware.1203
57.14%

Malwarebytes
PUP.Optional.InstallCore, PUP.Optional.Solimba, PUP.Optional.Ibryte
52.38%

K7 AntiVirus
Unwanted-Program , Trojan , Adware
52.38%

K7 Gateway Antivirus
Unwanted-Program , Trojan , Backdoor
52.38%

Comodo Security
Application.Win32.Solimba.L, ApplicUnwnt.Win32.AdWare.iBryte.H
52.38%

VIPRE Antivirus
DownloadMR, Optimum Installer, Threat.4778314
52.38%

Vba32 AntiVirus
Downware.Morstar, TScope.Trojan.MSIL, SScope.Adware.OptimusInstaller.26607
52.38%

Rising Antivirus
PE:Malware.FirseriaInstaller!6.17AF, PE:PUF.FirseriaInstaller@CV!1.5C42, PE:Trojan.Win32.Rouge.d!1075354374, PE:Malware.Agent!6.63F
52.38%

Agnitum Outpost
PUA.Firseria, PUA.Solimba, Adware.iBryte, Adware.Agent
52.38%

Avira AntiVirus
APPL/Firseria.A.15, APPL/Solimba.Gen, Adware/Agent.909545, Adware/Agent.aece.30
52.38%

AhnLab V3 Security
PUP/Win32.AppsInstaller, PUP/Win32.Solimba, Adware/Win32.Agent, PUP/Win32.IBryte
52.38%

AVG
BundleApp, Adware Skodna.Generic, Adware Skodna.Generic.AMG, Adware Generic5
52.38%

Sophos
Solimba Installer, PUA 'Solimba Installer', iBryte Optimum Installer, PUA 'iBryte Optimum Installer'
47.62%

ESET NOD32
MSIL/Solimba potentially unwanted application, Win32/Adware.iBryte.G application
47.62%

The domain www.srv2trking.com has been seen to resolve to the following 2 IP addresses.

209-41-65-43.c7dc.com
May 5, 2015

April 14, 2014

File downloads found at URLs served by www.srv2trking.com.

The following 16 files have been seen to comunicate with www.srv2trking.com in live environments.

URL:
http://www.srv2trking.com/

Title:
“Status”

SSL certificate subject:
CN=*.srv2trking.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 4.0.30319)