i1.loverse.org

Yuval Risin

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Manassas, Virginia within the United States which resides on the Leaseweb USA, Inc. network.
Registrar:
Spot Domain LLC dba Domainsite.com

Server location:
Virginia, United States (US)

ASN:
AS30633 LEASEWEB-US - Leaseweb USA, Inc.,US

Root domain:

Scanner detections:
Detections  (83% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.EliDahan.J, PUP.EZDownloader.Installer.M, Adware.SInstaller.I, Threat.Win.Reputation.IMP
83.33%

Bkav FE
W32.Cloddb2.Trojan, HW32.Stranacty, W32.Vetor.PE
66.67%

Trend Micro House Call
ADW_EMOTICONS, TROJ_GEN.F47V0611, TROJ_GEN.R03WB01C614, PE_VIRUX.R
66.67%

Emsisoft Anti-Malware
Application.MPlug, Gen:Variant.Dropper.99, Trojan.GenericKD.1720404, Win32.Virtob.Gen.12
66.67%

avast!
Win32:Adware-AYT [PUP], Win32:SProtector-G [PUP], Win32:Vitro
50.00%

VIPRE Antivirus
Trojan.Win32.Generic!SB.0, Threat.4739697
50.00%

Vba32 AntiVirus
SScope.Malware-Cryptor.SProtector, Virus.Virut.14
50.00%

MicroWorld eScan
Gen:Variant.Dropper.99, Trojan.GenericKD.1720404, Win32.Virtob.Gen.12
50.00%

Bitdefender
Gen:Variant.Dropper.99, Trojan.GenericKD.1720404, Win32.Virtob.Gen.12
50.00%

Lavasoft Ad-Aware
Gen:Variant.Dropper.99, Trojan.GenericKD.1720404, Win32.Virtob.Gen.12
50.00%

Avira AntiVirus
TR/Graftor.woienwqm, TR/Crypt.ZPACK.82722, W32/Virut.Gen
50.00%

G Data
Gen:Variant.Dropper.99, Trojan.GenericKD.1720404, Win32.Virtob.Gen.12
50.00%

Comodo Security
Heur.Suspicious, Application.Win32.Preload.A
33.33%

Trend Micro
ADW_EMOTICONS, PE_VIRUX.R
33.33%

Panda Antivirus
Adware/TSUploader, Trj/Genetic.gen
33.33%

The domain i1.loverse.org has been seen to resolve to the following IP address.

February 4, 2016

File downloads found at URLs served by i1.loverse.org.

6 / 68      (inconclusive)

8 / 68      (Adware)
http://i1.loverse.org/.../sSetup-se.exe  (ef7d5227360e42058d25f27d9db95de0)

26 / 68    (PUP)

29 / 68    (Malware)

3 / 68      (Adware)
http://i1.loverse.org/.../ezdownloader.exe  (71f784969d24240764d5e5d752d55a41)

8 / 68      (Adware)
http://i1.loverse.org/.../sinstall.exe  (71c2ea2b936ba80f4bad80937b369adf)