bluesquad.revenuewire.net

REVENUEWIRE INC

Domain Information

This is the distribution delivery host for Smart PC Solutions, Inc. PC Speed Maximizer / PC Optimizer Pro (registry cleaner) through the RevenueWire affiliate/SafeCart payment processing service. The domain bluesquad.revenuewire.net registered by REVENUEWIRE INC was initially registered in September of 2003 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the Incapsula Inc network.
Remove Malware from bluesquad.revenuewire.net - Powered by Reason Core Security
Registrar:
ENOM, INC.

Server location:
Illinois, United States (US)

Create date:
Monday, September 08, 2003

Expires date:
Thursday, September 08, 2016

Updated date:
Saturday, December 19, 2015

ASN:
AS19551 INCAPSULA - Incapsula Inc,US

Root domain:

Scanner detections:
Detections  (77% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.SmartPCSolutions.Q, PUP.Optional.Installer.N, PUP.Optional.PCSpeed.Meta, PUP.Optional.SmartPCSolutions.V, PUP.Optional.SmartPCSolutions.S
100.00%

Trend Micro House Call
TROJ_GEN.F47V1221, TROJ_GEN.F47V1207, TROJ_GEN.F47V0514, TROJ_GEN.F47V0330, Suspicious_GEN.F47V0711, Suspicious_GEN.F47V0727
60.00%

AVG
DriverCleaner.A, Smartpcso
50.00%

Comodo Security
UnclassifiedMalware
40.00%

ESET NOD32
Win32/SpeedingUpMyPC (variant)
40.00%

Dr.Web
Program.Unwanted.16, Program.Unwanted.54, Program.Unwanted.297
40.00%

McAfee
Artemis!7E4D9D7B7E02, Artemis!80986ED55348, Artemis!85E3C019F5EC
30.00%

McAfee Web Gateway
Artemis!7E4D9D7B7E02, Artemis!80986ED55348, Artemis!85E3C019F5EC
30.00%

F-Prot
W32/PCSpeedMax.A
20.00%

Fortinet FortiGate
W32/Foreign.CKLF!tr
20.00%

Antiy Labs AVL
Trojan[Backdoor]/Win32.Agent
20.00%

Avira AntiVirus
TR/Patched.Ren.Gen
10.00%

Agnitum Outpost
Riskware.SpeedingUpMyPC
10.00%

Vba32 AntiVirus
BScope.P2P-Worm.Palevo
10.00%

The domain bluesquad.revenuewire.net has been seen to resolve to the following 7 IP addresses.

199.83.132.38.ip.incapdns.net
February 9, 2016

199.83.128.38.ip.incapdns.net
May 4, 2015

199.83.128.23.ip.incapdns.net
January 8, 2015

199.83.132.231.ip.incapdns.net
December 1, 2014

199.83.128.157.ip.incapdns.net
May 5, 2014

April 3, 2014

199.83.132.157.ip.incapdns.net
February 7, 2014

File downloads found at URLs served by bluesquad.revenuewire.net.

9 / 68      (PUP)

3 / 68      (PUP)

0 / 68

0 / 68
http://bluesquad.revenuewire.net/.../download  (stellar-photo-recovery.exe)

6 / 68      (PUP)

6 / 68      (PUP)

4 / 68      (PUP)

1 / 68      (PUP)

6 / 68      (PUP)

2 / 68      (PUP)

9 / 68      (PUP)

2 / 68      (PUP)

Remove Malware from bluesquad.revenuewire.net - Powered by Reason Core Security