allmyapps.fr

DOMAIN DIRECTORS

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
INSTRA CORPORATION PTY LTD

Server location:
Nord-Pas-De-Calais, France (FR)

ASN:
AS16276 OVH OVH Systems

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Allmyapps.S, PUP.ClientConnect.T, PUP.OpenCandy (M), PUP.Perion.Bundler.Conduit (M), PUP.Allmyapp.Installer (M), PUP.ALLMYAPP.Installer (M), PUP.Allmyapp (M)
92.31%

Dr.Web
Adware.InstallCore.133, Adware.Conduit.27, Adware.InstallCore.122
53.85%

F-Prot
W32/InstallCore.R2.gen, W32/InstallCore.R.gen
38.46%

VIPRE Antivirus
Conduit, Threat.4150696
30.77%

ESET NOD32
Win32/InstallCore.BL potentially unwanted application, Win32/InstallCore.CH potentially unwanted application
30.77%

AVG
MalSign.Generic, Adware InstallCore.ALD
23.08%

Emsisoft Anti-Malware
Gen:Variant.Strictor.70718, Trojan.GenericKD.2917360
23.08%

Norman
Gen:Variant.Strictor.70718, Trojan.GenericKD.2917360
23.08%

Agnitum Outpost
PUA.InstallCore
15.38%

Sophos
Install Core, PUA 'Install Core'
15.38%

Vba32 AntiVirus
Downware.InstallCore
15.38%

ESET NOD32
Win32/InstallCore.CH (variant), Win32/Wajam (variant)
15.38%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594, PE:Malware.InstallCore!6.4
15.38%

Malwarebytes
PUP.Optional.Conduit
15.38%

Trend Micro House Call
TROJ_GE.582CF559, TROJ_GE.527A01D9
15.38%

The domain allmyapps.fr has been seen to resolve to the following 2 IP addresses.

redirect.ovh.net
April 8, 2016

allmyappsfr.typhon.net
December 26, 2013

File downloads found at URLs served by allmyapps.fr.

1 / 68      (PUP)
http://allmyapps.fr/download/.../8584  (the-visible-body_allmyapps.exe)

1 / 68      (PUP)
http://allmyapps.fr/download/.../9281  (whatsapp_allmyapps.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://allmyapps.fr/download/.../17529  (bluestacks_allmyapps.exe)

7 / 68      (PUP)

1 / 68      (PUP)
http://allmyapps.fr/download/.../9281  (whatsapp_allmyapps.exe)

7 / 68      (PUP)
http://allmyapps.fr/download/.../9281  (whatsapp_allmyapps.exe)

1 / 68      (Adware)
http://allmyapps.fr/download/.../9281  (whatsapp__allmyapps_tsa388yp.exe)

8 / 68      (PUP)
http://allmyapps.fr/download/.../17689  (snapchat_allmyapps.exe)

10 / 68    (PUP)
http://allmyapps.fr/download/.../8002  (skout_allmyapps.exe)

9 / 68      (PUP)
http://allmyapps.fr/download/.../9281  (whatsapp_allmyapps.exe)

The following 20 files have been seen to comunicate with allmyapps.fr in live environments.

 
Latest 20 of 20 files

URL:
http://allmyapps.fr/

Title:
“Webmail - OVH”

Description:
“Accédez à vos e-mails depuis n’importe quel appareil, 24h/24 et 7 jours/7, et en toute sécurité grâce au SSL. Roundcube, Hostedemail, Exchange”

Web server:
Apache

Facebook:
Likes:  10,465
Shares:  9,239
Comments:  3,354

Statistics above are for the previous month of April 2017.