harvestmoon.pagesperso-orange.fr

ORANGE

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Paris, Ile-De-France within France which resides on the RIPE Network Coordination Centre network.
Registrar:
NORDNET

Server location:
Ile-De-France, France (FR)

ASN:
AS24600 WANADOOPORTAILS-AS Orange S.A.,FR

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.TuguuSL.F
100.00%

Dr.Web
Trojan.DownLoader9.62498
100.00%

VIPRE Antivirus
Threat.4150696
100.00%

ESET NOD32
Win32/DomaIQ.BG potentially unwanted application
100.00%

AVG
Adware DomaIQ.CM
100.00%

avast!
DomaIQ-CC [PUP]
100.00%

Kaspersky
not-a-virus:AdWare.Win32.Lollipop
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.DomaIQ.3
100.00%

McAfee
Adware-DomaIQ!28DD8479B51F
100.00%

Malwarebytes
PUP.Optional.Domalq
100.00%

K7 AntiVirus
Trojan
100.00%

Agnitum Outpost
PUA.Lollipop
100.00%

Bitdefender
Gen:Variant.Application.Bundler.DomaIQ.3
100.00%

NANO AntiVirus
Riskware.Win32.Lollipop.cyidtu
100.00%

SUPERAntiSpyware
Adware.DomaIQ/Variant
100.00%

The domain harvestmoon.pagesperso-orange.fr has been seen to resolve to the following IP address.

pagesperso-orange.fti.net
June 9, 2014

File downloads found at URLs served by harvestmoon.pagesperso-orange.fr.

25 / 68    (Adware)
http://harvestmoon.pagesperso-orange.fr/.../setup.exe  (28dd8479b51f21121d8efd29bb5445cd)

The following 3 files have been seen to comunicate with harvestmoon.pagesperso-orange.fr in live environments.

URL:
http://harvestmoon.pagesperso-orange.fr/

Title:
“HARVEST MOON”

Web server:
Apache