clipgrab.de

Domain Information

Remove Malware from clipgrab.de - Powered by Reason Core Security
Server location:
Berlin, Germany (DE)

ASN:
AS34011 DOMAINFACTORY domainfactory GmbH

Scanner detections:
Detections  (64% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/OpenCandy, Win32/OpenCandy (variant), Win32/OpenCandy.C potentially unsafe (variant), Win32/OpenCandy.A potentially unsafe (variant)
100.00%

AVG
Generic, AdLoad.OpenCandy
54.55%

Trend Micro House Call
Suspicious_GEN.F47V0723, Suspicious_GEN.F47V0730, Suspicious_GEN.F47V0826, Suspicious_GEN.F47V1115, Suspicious_GEN.F47V0128
45.45%

Dr.Web
Adware.OpenCandy.39, Adware.OpenCandy.115, Adware.OpenCandy.182
45.45%

VIPRE Antivirus
Trojan.Win32.Generic
27.27%

McAfee
Artemis!67567471B8C9, Artemis!F82F230F8BB1, Artemis!BF53303433F0
27.27%

McAfee Web Gateway
Artemis
18.18%

Fortinet FortiGate
Riskware/OpenCandy
18.18%

G Data
Win32.Application.OpenCandy
18.18%

Reason Heuristics
PUP.OpenCandy.Installer (L)
18.18%

Agnitum Outpost
PUA.OpenCandy
9.09%

NANO AntiVirus
Riskware.Win32.OpenCandy.dzackp
9.09%

Avira AntiVirus
PUA/OpenCandy.Gen
9.09%

The domain clipgrab.de has been seen to resolve to the following IP address.

vanbittern.com
February 2, 2014

File downloads found at URLs served by clipgrab.de.

8 / 68      (PUP)
http://clipgrab.de/.../clipgrab-3.5.6.exe  (ad6e5106a6489c1c07ec87a6c0985ee4)

4 / 68      (PUP)
http://clipgrab.de/.../clipgrab-3.5.1.exe  (0400c6ad1c93d19b2f3e177e409e5677)

7 / 68      (PUP)
http://clipgrab.de/.../clipgrab-3.4.9.exe  (bf53303433f0e97c45d1d2b202044529)

8 / 68      (PUP)
http://clipgrab.de/.../clipgrab-3.4.8.exe  (f82f230f8bb1d0e3c33993ee0d95e720)

8 / 68      (PUP)

5 / 68      (PUP)
http://clipgrab.de/.../clipgrab-3.4.7.exe  (67567471b8c9e6e9b0b326bb66c1ac99)

1 / 68      (inconclusive)
http://clipgrab.de/.../clipgrab-3.3.0.2.exe  (6cd78a64c53bbabb38b2f0679e01b516)

1 / 68      (inconclusive)
http://clipgrab.de/.../clipgrab-3.4.4.exe  (405a0a3c03865afed77a5505a91793c9)

4 / 68      (PUP)
http://clipgrab.de/.../clipgrab-3.4.4.exe  (3f3f629a8ee5d130704fb7f16e489512)

4 / 68      (PUP)
http://clipgrab.de/.../clipgrab-3.4.4.exe  (8e3d19f907dfb31cb27f0e4b465e383e)

1 / 68      (inconclusive)
http://clipgrab.de/.../clipgrab-3.4.3.exe  (02e093cbee639f6addf94a947afa844e)

1 / 68      (inconclusive)
http://clipgrab.de/.../clipgrab-3.3.0.4.exe  (c409f92f9258974dbe4430f9c741e5ae)

The following file have been seen to comunicate with clipgrab.de in live environments.

February 2, 2014

Remove Malware from clipgrab.de - Powered by Reason Core Security