zr3mzw.bn1.livefilestore.com

Microsoft Corporation

Domain Information

The domain zr3mzw.bn1.livefilestore.com registered by Microsoft Corporation was initially registered in January of 2007 through CSC CORPORATE DOMAINS, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Redmond, Washington within the United States which resides on the Microsoft Corp network.
Remove Malware from zr3mzw.bn1.livefilestore.com - Powered by Reason Core Security
Registrar:
CSC CORPORATE DOMAINS, INC.

Server location:
Washington, United States (US)

Create date:
Tuesday, January 30, 2007

Expires date:
Friday, January 30, 2015

Updated date:
Monday, January 27, 2014

ASN:
AS8075 MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation

Root domain:

Scanner detections:
Detections  (67% detected)

Scan engine
Details
Detections

F-Prot
W32/FakeInstall.A.gen, W32/D_Downloader!GSA
100.00%

Dr.Web
Adware.Downware.2013
66.67%

ESET NOD32
Win32/InstallMonetizer.AQ
66.67%

McAfee
Artemis!8FB155F3CF4E
33.33%

VIPRE Antivirus
Trojan.Win32.Generic
33.33%

Agnitum Outpost
Riskware.Agent
33.33%

Norman
Suspicious_Gen4.GDKHD
33.33%

Trend Micro House Call
TROJ_GEN.R0CBC0ODD14
33.33%

Avira AntiVirus
DR/Delphi.Gen
33.33%

Trend Micro
TROJ_GEN.R0CBC0ODD14
33.33%

McAfee Web Gateway
Artemis!8FB155F3CF4E
33.33%

Fortinet FortiGate
Riskware/InstallMonetizer
33.33%

The domain zr3mzw.bn1.livefilestore.com has been seen to resolve to the following 13 IP addresses.

August 13, 2014

August 13, 2014

August 13, 2014

March 14, 2014

March 14, 2014

March 14, 2014

March 14, 2014

March 14, 2014

March 14, 2014

March 14, 2014

March 14, 2014

February 6, 2014

February 6, 2014

File downloads found at URLs served by zr3mzw.bn1.livefilestore.com.

3 / 68      (PUP)

1 / 68

12 / 68    (PUP)

1 / 68

1 / 68

1 / 68

The following 5 files have been seen to comunicate with zr3mzw.bn1.livefilestore.com in live environments.

URL:
http://zr3mzw.bn1.livefilestore.com/

SSL certificate subject:
CN=storage.live.com, OU=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=WA, C=US

SSL certificate issuer:
CN=Microsoft IT SSL SHA2, OU=Microsoft IT, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

Web server:
Microsoft-HTTPAPI/2.0

Remove Malware from zr3mzw.bn1.livefilestore.com - Powered by Reason Core Security