cdn1.bitberry.com

BITBERRY SOFTWARE APS

Domain Information

The domain cdn1.bitberry.com registered by BITBERRY SOFTWARE APS was initially registered in April of 2000 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States.
Registrar:
ENOM, INC.

Server location:
Illinois, United States (US)

Create date:
Monday, April 24, 2000

Expires date:
Friday, February 08, 2019

Updated date:
Friday, October 18, 2013

ASN:
AS30081 CACHENETWORKS - CacheNetworks, Inc.

Root domain:

Scanner detections:
Detections  (93% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.InstallX.J, PUP.Optional.Installer.I, PUP.BitberrySoftware.M, PUP.Optional.Installer.Z, PUP.Installer.BitberrySoftware.Z, PUP.Installer.InstallX.X, PUP.Optional.Installer.R, Win32.Generic.Bitberry.Installer.Meta, PUP.Bitberry.BitberrySoftware.Installer (M)
100.00%

Sophos
InstallQ, Install Core, Install Core Click run software
74.36%

ESET NOD32
Win32/InstallIQ (variant), Win32/InstallCore.CU (variant), Win32/InstallCore.AY (variant), Win32/InstallCore.PO (variant)
74.36%

K7 AntiVirus
Riskware, Unwanted-Program , Trojan
66.67%

K7 Gateway Antivirus
Riskware, Unwanted-Program , Trojan
64.10%

McAfee Web Gateway
Artemis!A34F9AC02DB1, Artemis!370EA922FC3E, Artemis!7047F8FF4233, Artemis!Trojan, BehavesLike.Win32.CryptInno.bc, BehavesLike.Win32.CryptInno.jc
64.10%

Avira AntiVirus
Adware/InstallIQ.N, APPL/InstallIQ.Gen5, ADWARE/InstallCore.Gen, Adware/InstallC.B.1, Adware/InstallCore.A.1448, ADWARE/InstallCore.Gen9
58.97%

McAfee
Artemis!A34F9AC02DB1, Artemis!370EA922FC3E, Artemis!7047F8FF4233, Artemis!60B2B7B3015D, Artemis!D0F598D12D0E, Artemis!0E2058F729B5, Artemis!5346F0A11379, Artemis!4751EF504F58
53.85%

Fortinet FortiGate
Adware/Fam.NB, Riskware/InstallCore, Adware/InstallIQ, Riskware/InstallIQ
51.28%

Dr.Web
Adware.W3i.32, Adware.InstallCore.133, Adware.W3i.21, Adware.InstallCore.72, Adware.W3i.9, Trojan.MulDrop5.34526, Trojan.MulDrop5.39787
48.72%

Trend Micro House Call
TROJ_GEN.F47V0815, TROJ_GEN.F47V1122, TROJ_SPNR.0CB713, TROJ_FAKEAV.BMC, TROJ_GEN.F47V0306, TROJ_GEN.R0C1C0OJD14, Suspicious_GEN.F47V1203
43.59%

VIPRE Antivirus
InstallIQ Installer, InstallCore.b, Trojan.Win32.Generic, Adware.Win32.InstallCore.ba
41.03%

Baidu Antivirus
Trojan.Win32.InstallIQ, Adware.Win32.InstallCore
41.03%

Malwarebytes
PUP.PlayPickle, PUP.Optional.InstallCore, PUP.Optional.InstallIQ, PUP.Optional.InstallIQ.A, PUP.Optional.Bitberry, PUP.Optional.InstallCore.A
30.77%

Comodo Security
Application.Win32.InstallIQ.B, Application.Win32.InstallIQ.~A, UnclassifiedMalware, Application.Win32.InstallCore.~A, Application.Win32.InstallCore.BWAN
28.21%

The domain cdn1.bitberry.com has been seen to resolve to the following IP address.

vip1.g.cachefly.net
August 5, 2013

File downloads found at URLs served by cdn1.bitberry.com.

1 / 68      (PUP)

2 / 68      (PUP)

11 / 68    (PUP)

14 / 68    (PUP)

5 / 68      (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (icreinstall_finaltorrentsetup.exe)

1 / 68      (PUP)
http://cdn1.bitberry.com/.../FVD2011Update10SetupSFA.exe  (826d6c5003fb65bae13bd2d5ef146a92)

7 / 68      (PUP)

9 / 68      (PUP)

12 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (cc61cd7ce1467bd87b5e799cf8fc5763)

10 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (0f5f98a727b2964d934b167cb1f5f0f7)

9 / 68      (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (0a43c3c4a6d9d28df4cb7e7a3cef9335)

12 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (9f5b395b72f075773bbde0c60f1e04b8)

12 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (icreinstall_finaltorrentsetup.exe)

14 / 68    (PUP)

28 / 68    (Adware)

11 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (93649f40b0e83dc8ae1cef96547f7dbb)

12 / 68    (PUP)

0 / 68
http://cdn1.bitberry.com/ffv/.../MSYS-1.0.11.exe  (cf95067cc749b00bf5b81deb40a8e16c)

0 / 68
http://cdn1.bitberry.com/ffv/.../msysDTK-1.0.1.exe  (f7aeebb16dc3b0f19b018506ed743fbb)

10 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (f48ec5c69d7c66d447d79047d48b3689)

13 / 68    (PUP)

2 / 68      (PUP)

3 / 68      (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (icreinstall_finaltorrentsetup.exe)

23 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (0e2058f729b57332af74420f1dd70067)

17 / 68    (PUP)
http://cdn1.bitberry.com/icdlm/.../BitZipperSetup.exe  (icreinstall_bitzippersetup.exe)

4 / 68      (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (a00248c5ffbecdf64c44a5c8056dcde4)

11 / 68    (PUP)

5 / 68      (PUP)
http://cdn1.bitberry.com/icdlm/.../FinalTorrentSetup.exe  (f6975e3df3ec99ea388b01a2d9fc7474)

 
Latest 30 of 43 download URLs

The following 197 files have been seen to comunicate with cdn1.bitberry.com in live environments.

 
Latest 20 of 267 files

URL:
http://cdn1.bitberry.com/

Web server:
CFS 0213