5302014.installic.com
Fundacion Private Whois (Proxy Registrant)
Domain Information
The domain 5302014.installic.com is registered by proxy through INTERNET.BS CORP. and was originally registered in April of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dublin, Dublin City within Ireland which resides on the Amazon Technologies Inc. network.
Registrant:
Fundacion Private Whois
Registrar:
INTERNET.BS CORP.
Server location:
Dublin City, Ireland (IE)
Create date:
Monday, April 14, 2014
Expires date:
Tuesday, April 14, 2015
Updated date:
Monday, April 14, 2014
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.INSTALLTHIS.F, PUP.Adknowledge.Bundler.Installer.Meta (M)
100.00%
VIPRE Antivirus
Threat.4778314
50.00%
Kaspersky
Trojan.Win32.Badur
50.00%
K7 AntiVirus
Unwanted-Program
50.00%
Sophos
iBryte Optimum Installer
50.00%
Avira AntiVirus
APPL/OpenInst.pepqu
50.00%
Panda Antivirus
Trj/Genetic.gen
50.00%
ESET NOD32
Win32/AdWare.iBryte.AR application
50.00%
AhnLab V3 Security
PUP/Win32.IBryte
50.00%
avast!
Adware-gen [Adw]
50.00%
Agnitum Outpost
Trojan.Buzus
50.00%
SUPERAntiSpyware
PUP.OptimumInstaller/Variant
50.00%
Comodo Security
Application.Win32.AgentCV.HWYE
50.00%
The domain 5302014.installic.com has been seen to resolve to the following 3 IP addresses.
ns1.ibspark.com
May 18, 2016
ec2-54-243-244-249.compute-1.amazonaws.com
August 17, 2014
ec2-23-21-189-120.compute-1.amazonaws.com
August 17, 2014
File downloads found at URLs served by 5302014.installic.com.
The following 142 files have been seen to comunicate with 5302014.installic.com in live environments.
URL:
http://5302014.installic.com/
Web server:
Microsoft-IIS/7.5 (ASP.NET) (Version: 2.0.50727)