install-cdn.viewplay.net

Yontoo LLC  (via a Proxy Registrant)

Domain Information

install-cdn.viewplay.net is operated by Sambreel's (now QuestPoint) subsidiary Yontoo. The domain install-cdn.viewplay.net is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2013. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Warsaw, Mazowieckie within Poland which resides on the Akamai Technologies, Inc. network. The domain is associated with the publisher Yontoo LLC who is located in Carlsbad, California in the United States.
Registrar:
GODADDY.COM, LLC

Server location:
Mazowieckie, Poland (PL)

Create date:
Tuesday, November 19, 2013

Expires date:
Saturday, November 19, 2016

Updated date:
Wednesday, March 30, 2016

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V., US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

AhnLab V3 Security
PUP/Win32.Downloader
100.00%

Rising Antivirus
NS:PUF.SilenceInstaller!1.9DDF
100.00%

Reason Heuristics
PUP.Installer.ViewPlay.N
100.00%

The domain install-cdn.viewplay.net has been seen to resolve to the following 2 IP addresses.

a104-96-221-113.deploy.static.akamaitechnologies.com
June 5, 2016

a104-96-221-57.deploy.static.akamaitechnologies.com
June 5, 2016

File downloads found at URLs served by install-cdn.viewplay.net.

3 / 68      (Adware)

The following 3 files have been seen to comunicate with install-cdn.viewplay.net in live environments.

URL:
http://install-cdn.viewplay.net/

Web server:
Microsoft-IIS/7.5 (ASP.NET)

Facebook:
Shares:  1

Statistics are for the previous month.

30 of 37 related domains