cdn.uspcworks.com

pcvark software

Domain Information

The domain cdn.uspcworks.com registered by pcvark software was initially registered in November of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the Limelight Networks, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Thursday, November 19, 2015

Expires date:
Saturday, November 19, 2016

Updated date:
Thursday, November 19, 2015

ASN:
AS22822 LLNW-AS Limelight Networks, INC. proxy AS object

Root domain:

Scanner detections:
Detections  (75% detected)

Scan engine
Details
Detections

Reason Heuristics
(M), PUP.PCSpeedupPro.uspcwork.Installer.Meta (L), PUP.PCSeepdupPro.pcspeedu.Installer.Meta (M), PUP.USSystemCare.uspcwork.Installer.Meta (M), PUP.PCSeepdupPro.pcspeedu.Installer.Meta (L)
80.00%

Dr.Web
Program.Unwanted.1339, riskware program Program.Unwanted.1339
20.00%

Microsoft Security Essentials
Worm:Win32/NeksMiner.A
10.00%

F-Secure
Application:W32/Generic.70053c248f!Online
10.00%

Malwarebytes
PUP.Optional.USSystemCare
10.00%

AVG
Optimizer
10.00%

The domain cdn.uspcworks.com has been seen to resolve to the following 2 IP addresses.

cdn-208-111-161-254.iad.llnw.net
May 24, 2016

cdn-208-111-160-6.iad.llnw.net
May 24, 2016

File downloads found at URLs served by cdn.uspcworks.com.

2 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscfstspring.exe  (2cbc513d2e6196662bf12119bc267304)

3 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscmtmyussc1.exe  (9aff487f03ba2a7d4f3c783c04f7006d)

1 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscvelmw2.exe  (4cebfa66d6edbe8164a23df283669dda)

1 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscsetupunad2.exe  (7af72d4fff753e0cf3da349ad1dc00e9)

1 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscsetupunad2.exe  (50ff3fe533165a1aee236d309a6dca21)

0 / 68
http://cdn.uspcworks.com/ussc/.../usscsetupunad2.exe  (19c6cf0c5505b12e576637e559bb3c43)

0 / 68
http://cdn.uspcworks.com/ussc/.../usscsetupunad2.exe  (51a5afc9-8286-652b-9b90-30d92f9f1ef1_1d1c68cb2c34eeb)

2 / 68      (false positives)

1 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscsetupunad2.exe  (acd5873d180b8a7b35706dfffee7262f)

1 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscfstspring.exe  (834299475c5d19e16e326ca340864fef)

1 / 68      (Malware)
http://cdn.uspcworks.com/ussc/.../usscvelmw2.exe  (fbe35de783c5eb53e99ce838269e350e)

1 / 68      (PUP)
http://cdn.uspcworks.com/ussc/.../usscsetupunad2.exe  (bd1f8e8fdae2e45bb46e17935f060874)

The following 85 files have been seen to comunicate with cdn.uspcworks.com in live environments.

 
Latest 20 of 135 files

URL:
http://cdn.uspcworks.com/

Web server:
nginx/1.6.2