ic5.besplatnyeprogrammy.ru

Private Person  (Proxy Registrant)

Domain Information

The domain ic5.besplatnyeprogrammy.ru is registered by proxy through NAUNET-RU and was originally registered in November of 2008. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Nuremberg, Bayern within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
NAUNET-RU

Server location:
Bayern, Germany (DE)

Create date:
Monday, November 03, 2008

Expires date:
Thursday, November 03, 2016

ASN:
AS24940 HETZNER-AS Hetzner Online AG

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallCore.Installer.k, PUP.OpenCandy (M), PUP.INSITEGR.Installer (M), PUP.InstallCore.ENG (M)
100.00%

Malwarebytes
PUP.Optional.Freemium.A
83.33%

Sophos
Install Core Click run software
83.33%

Comodo Security
Application.Win32.InstallCore.CM, ApplicUnwnt
83.33%

VIPRE Antivirus
InstallCore
83.33%

Avira AntiVirus
ADWARE/InstallCore.Gen7
83.33%

Dr.Web
Adware.InstallCore.133
66.67%

ESET NOD32
Win32/InstallCore.CU (variant), Win32/InstallCore.BY (variant)
66.67%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
66.67%

McAfee
Artemis!405F966C8772, Artemis!30F021F2E3F8, Artemis!48DBB0943878
50.00%

K7 Gateway Antivirus
Unwanted-Program
50.00%

K7 AntiVirus
Unwanted-Program
50.00%

Trend Micro House Call
TROJ_GEN.R0CBH07JO13
50.00%

McAfee Web Gateway
Artemis!405F966C8772, Artemis!30F021F2E3F8, Artemis!48DBB0943878
50.00%

Bkav FE
W32.Clodf6b.Trojan, W32.Clode7d.Trojan
33.33%

The domain ic5.besplatnyeprogrammy.ru has been seen to resolve to the following 3 IP addresses.

static.140.40.63.178.clients.your-server.de
February 7, 2014

static.113.69.4.46.clients.your-server.de
February 7, 2014

static.229.109.46.78.clients.your-server.de
February 7, 2014

File downloads found at URLs served by ic5.besplatnyeprogrammy.ru.

8 / 68      (PUP)

12 / 68    (PUP)

1 / 68      (Adware)
http://ic5.besplatnyeprogrammy.ru/7-Zip_x32_Rus_Setup.exe  (510ffa218e9e43b99f46f2477160a551)

16 / 68    (PUP)
http://ic5.besplatnyeprogrammy.ru/uTorrent_Rus_Setup.exe  (30f021f2e3f84fa3955925ec26967b3e)

13 / 68    (PUP)
http://ic5.besplatnyeprogrammy.ru/KMPlayer_Rus_Setup.exe  (200e247cff339eedb8a29902d6120549)

15 / 68    (Adware)
http://ic5.besplatnyeprogrammy.ru/Avast_Free_Antivirus_Rus_Setup.exe  (icreinstall_avast_free_antivirus_rus_setup.exe)