i_kuyawacrelefi-info_ares-plus.figloreglasxu.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain i_kuyawacrelefi-info_ares-plus.figloreglasxu.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Nord-Pas-De-Calais, France (FR)

Create date:
Tuesday, December 30, 2014

Expires date:
Friday, December 30, 2016

Updated date:
Monday, November 23, 2015

ASN:
AS16276 OVH OVH SAS,FR

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.OnekitInternet.Bundler (M), PUP.installCore (M)
100.00%

Trend Micro House Call
TROJ_GEN.F47V0317
50.00%

Dr.Web
Adware.Downware.2227, Trojan.Vittalia.140
50.00%

VIPRE Antivirus
Onekit Installer
50.00%

Rising Antivirus
PE:Trojan.Win32.Generic.135D0B5B!324864859
50.00%

The domain i_kuyawacrelefi-info_ares-plus.figloreglasxu.com has been seen to resolve to the following IP address.

ns3014179.ip-149-202-192.eu
February 10, 2016

File downloads found at URLs served by i_kuyawacrelefi-info_ares-plus.figloreglasxu.com.

The following 40 files have been seen to comunicate with i_kuyawacrelefi-info_ares-plus.figloreglasxu.com in live environments.

 
Latest 20 of 41 files

URL:
http://i_kuyawacrelefi-info_ares-plus.figloreglasxu.com/

Web server:
nginx

30 of 39 related domains