forces.red-apples.ru

Private Person  (Proxy Registrant)

Domain Information

The domain forces.red-apples.ru is registered by proxy through REGRU-REG-RIPN and was originally registered in January of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Redwood City, California within the United States which resides on the SKYE network.
Registrar:
REGRU-REG-RIPN

Server location:
California, United States (US)

Create date:
Thursday, January 16, 2014

Expires date:
Friday, January 16, 2015

ASN:
AS26008 NOMINUM-SKYE1 - SKYE

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Dr.Web
Trojan.LoadMoney.15
100.00%

VIPRE Antivirus
Threat.4823650
100.00%

MicroWorld eScan
Gen:Variant.Kazy.339124
100.00%

Quick Heal
Trojan.Sisproc.A6
100.00%

McAfee
PUP-FNB
100.00%

SUPERAntiSpyware
Trojan.Agent/Gen-Strictor
100.00%

NANO AntiVirus
Trojan.Win32.LMN.csrrki
100.00%

F-Prot
W32/LoadMoney.W2.gen
100.00%

Bitdefender
Gen:Variant.Kazy.339124
100.00%

Lavasoft Ad-Aware
Gen:Variant.Kazy.339124
100.00%

Emsisoft Anti-Malware
Gen:Variant.Kazy.339124
100.00%

Comodo Security
TrojWare.Win32.Kryptik.BAJ
100.00%

F-Secure
Gen:Variant.Kazy.339124
100.00%

Avira AntiVirus
TR/Symmi.hgz
100.00%

Sophos
Mal/LdMon-B
100.00%

The domain forces.red-apples.ru has been seen to resolve to the following IP address.

search.dnsassist.verizon.net
March 28, 2014

File downloads found at URLs served by forces.red-apples.ru.

The following 46 files have been seen to comunicate with forces.red-apples.ru in live environments.

 
Latest 20 of 46 files

URL:
http://forces.red-apples.ru/

Web server:
Apache