download.vmusice.net

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain download.vmusice.net is registered by proxy through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM and was originally registered in May of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Remove Malware from download.vmusice.net - Powered by Reason Core Security
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Friday, May 04, 2012

Expires date:
Wednesday, May 04, 2016

Updated date:
Thursday, March 06, 2014

ASN:
AS16265 FIBERRING LeaseWeb B.V.

Root domain:

Scanner detections:
Detections  (89% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.CORLEONGROUP.u, PUP.CORLEONGROUP.HH, PUP.CORLEONGROUP.n, PUP.CORLEONGROUP.?, PUP.CORLEONGROUP.j, PUP.Bundler.ProfitServis, Win32.Generic.MailRu.Meta
88.89%

Avira AntiVirus
W32/Sality.AT, APPL/InstallMonster.Gen, APPL/InstallMon.enib, PUA/LoadMoney.Gen7
66.67%

Dr.Web
Win32.Sector.21, Trojan.InstallMonster.242, Trojan.InstallMonster.51, Trojan.InstallMonster.1017, Adware.Downware.915, Trojan.DownLoader9.19157
66.67%

avast!
Win32:InstallMonstr-DY [PUP], Win32:InstallMonstr-GC [PUP], Win32:LoadMoney-UX [PUP], Win32:LoadMoney-DP [PUP]
55.56%

VIPRE Antivirus
Threat.4845009, Threat.4150696, Threat.4785536
55.56%

ESET NOD32
Win32/InstallMonstr.ER.Gen potentially unwanted application, Win32/InstallMonstr.DL potentially unwanted application, Win32/InstallMonstr.GC potentially unwanted application
55.56%

K7 Gateway Antivirus
Adware , Unwanted-Program , Trojan
55.56%

K7 AntiVirus
Adware , Unwanted-Program , Trojan
55.56%

NANO AntiVirus
Riskware.Win32.InstallMonster.dbceas, Trojan.Win32.InstallMonster.dbipfy, Riskware.Win32.InstallMonster.dkiijo, Trojan.Win32.Downware.cqkxrj
55.56%

Sophos
Install Monster, PUA 'Install Monster', Virus 'Troj/LdMon-A'
55.56%

Antiy Labs AVL
Trojan/Win32.TSGeneric, RiskWare[Downloader:not-a-virus]/Win32.Monstruos, GrayWare[AdWare:not-a-virus]/Win32.InstallMonster
55.56%

G Data
Win32.Application.Installmonstr, Trojan.Generic.12390890, Application.LoadMoney, Gen:Variant.Application.LoadMoney.70
55.56%

Vba32 AntiVirus
BScope.P2P-Worm.Palevo, Signed-Downware.InstallMonstr, TScope.Trojan.Delf, Downloader.LMN
55.56%

F-Secure
Win32.Sality.3, Trojan.Generic.12390890, Riskware.Application.LoadMoney.K, Riskware.Gen:Variant.Application.LoadMoney
44.44%

AVG
Adware Generic5.AWDC, Potentially harmful program Downloader.FNF, Potentially harmful program MLoader.A
44.44%

The domain download.vmusice.net has been seen to resolve to the following 3 IP addresses.

June 18, 2015

July 7, 2014

hosted-by.leaseweb.com
March 20, 2014

File downloads found at URLs served by download.vmusice.net.

37 / 68    (PUP)

37 / 68    (PUP)

25 / 68    (Adware)

1 / 68      (Adware)

15 / 68    (Adware)
http://download.vmusice.net/audio/.../Oj_chto_ya_slyshu_nahuj-znachit_chto_vas_poslali_nahuj(vmusice.net)  (oj_chto_ya_slyshu_nahuj-znachit_chto_vas_poslali_nahuj(vmusice.net).exe)

18 / 68    (Adware)
http://download.vmusice.net/audio/.../Muzyka_iz_filma-1_1_Neprikasaemye(vmusice.net)  (muzyka_iz_filma-1_1_neprikasaemye(vmusice.net).exe)

1 / 68      (Adware)
http://download.vmusice.net/audio/.../Neizvesten-pesnya_iz_filma_quotgitler_kaput_quot(vmusice.net)  (neizvesten-pesnya_iz_filma_quotgitler_kaput_quot(vmusice.net).exe)

1 / 68      (Adware)
http://download.vmusice.net/audio/.../V.V.P_33_33_33-S_dnyom_rozhdeniya_Lyudmila(vmusice.net)  (v.v.p_33_33_33-s_dnyom_rozhdeniya_lyudmila(vmusice.net).exe)

URL:
http://download.vmusice.net/

Title:
“ mp3”

Description:
“ mp3 , ”

Web server:
nginx (PHP/5.3.29)

Remove Malware from download.vmusice.net - Powered by Reason Core Security