bestversiong.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain bestversiong.com is registered by proxy through ENOM, INC. and was originally registered in March of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Wilmington, Delaware within the United States which resides on the Black Lotus Communications network.
Registrar:
ENOM, INC.

Server location:
Delaware, United States (US)

Create date:
Sunday, March 16, 2014

Expires date:
Monday, March 16, 2015

Updated date:
Sunday, March 16, 2014

ASN:
AS32421 BLCC - Black Lotus Communications

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PaymentsInteractiveSL.E, PUP.Tuguu.PaymentsInteractive.Bundler (M), PUP.Tuguu.Payments.Bundler (M), Threat.Win.Reputation.IMP, PUP.Tuguu (M)
100.00%

McAfee
Artemis!567633413948, PUP-FJP!5F7D138A0EA0, CryptDomaIQ
23.53%

Malwarebytes
PUP.Optional.DomalQ, PUP.Optional.DomaIQ, PUP.Optional.BundleInstaller.A
23.53%

K7 Gateway Antivirus
Unwanted-Program , Trojan
23.53%

Agnitum Outpost
PUA.DomaIQ
23.53%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ, not-a-virus:HEUR:AdWare.MSIL.DomaIQ
23.53%

Dr.Web
Adware.Downware.2259, Trojan.DownLoader9.21779
23.53%

VIPRE Antivirus
DomaIQ, Threat.4783235, Threat.4783262
23.53%

Avira AntiVirus
APPL/DomaIQ.Gen
23.53%

McAfee Web Gateway
Artemis!567633413948, Heuristic.BehavesLike.Win32.Suspicious.H, BehavesLike.Win32.CryptDoma.fm
23.53%

Sophos
DomainIQ pay-per install
23.53%

Antiy Labs AVL
GrayWare[AdWare:not-a-virus]/MSIL.DomaIQ, GrayWare[AdWare:not-a-virus,HEUR]/MSIL.DomaIQ
23.53%

Rising Antivirus
PE:Malware.DomaIQ!6.1627, PE:Trojan.Win32.Generic.16886C0D!378039309
23.53%

IKARUS anti.virus
AdWare.DomaIQ
23.53%

AVG
DomaIQ_r.G, Adware DomaIQ_r.G, Adware Skodna.Bundle_r.Y
23.53%

The domain bestversiong.com has been seen to resolve to the following IP address.

March 20, 2014

File downloads found at URLs served by bestversiong.com.

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (ced684afc64b53606901078a2bab0adc)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (b9e99af362af4a1c463b4afc61273b1d)

1 / 68      (Malware)
http://bestversiong.com/.../Java.exe  (9c584d5410056ea01474470cc24a21aa)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (be700da92460450907906d86eb86a16b)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (d542648e224d16ad57c5cb5f329e285b)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (5719b7e430cdb56c3d26331aef1054cb)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (9fd22af9a852fb491a7012830e1914e7)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (76fced8a7336328705433a2ee4e37e6e)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (a5ec8f794e5339b54403c138f3b9f8b1)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (af94173e038dd987b282d0b6031d141a)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (b9f1f7cb4cc1b411e8dcec821bbe9091)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (e628a100cf99569235b1e0a24365e3d9)

1 / 68      (Adware)
http://bestversiong.com/.../Java.exe  (e9e8c1a3a091209f990531a575e3f39d)

37 / 68    (Adware)
http://bestversiong.com/.../Java.exe  (0cf822942c5e67222ab74ebea589d8ff)

38 / 68    (Adware)
http://bestversiong.com/.../Java.exe  (84ec7eb739d94fc43cc85e4a62cf8fc4)

32 / 68    (Adware)
http://bestversiong.com/.../Java.exe  (0947afec4466b6377208de1581a2b8fd)

17 / 68    (Adware)
http://bestversiong.com/.../Java.exe  (cb8be774ad382ad7c3afdf88e6aa1903)

URL:
http://bestversiong.com/

Google Analytics:
UA-69192

Title:
“bestversiong.com - Registered at Namecheap.com”

Web server:
nginx (ASP.NET,ARR/2.5,ASP.NET) (Version: 4.0.30319)

Facebook:
Likes:  4
Shares:  6

Statistics above are for the previous month of May 2017.

30 of 36 related domains