icdn.pivotanimatorcontent.net

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain icdn.pivotanimatorcontent.net is registered by proxy through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM and was originally registered in July of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Monday, July 21, 2014

Expires date:
Thursday, July 21, 2016

Updated date:
Sunday, June 28, 2015

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (88% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/InstallCore.PR (variant), Win32/InstallCore.PY (variant), Win32/InstallCore.PL (variant), Win32/InstallCore.UE (variant)
85.71%

Avira AntiVirus
ADWARE/InstallCore.Gen9, ADWARE/InstallCore.Gen7
57.14%

Sophos
Generic PUA BC, Generic PUA JI, Generic PUA IJ
57.14%

Fortinet FortiGate
Riskware/InstallCore
42.86%

Reason Heuristics
PUP.InstallCore.Bundler (M)
42.86%

Trend Micro House Call
Suspicious_GEN.F47V0728
28.57%

Qihoo 360 Security
Win32/Virus.Adware.f22
28.57%

SUPERAntiSpyware
PUP.InstallCore/Variant
14.29%

McAfee
Artemis!2E5D9A91AEB3
14.29%

Rising Antivirus
PE:Trojan.Win32.Generic.177A3E79!393887353
14.29%

NANO AntiVirus
Riskware.Win32.InstallCore.dfuuod
14.29%

Baidu Antivirus
Adware.Win32.InstallCore
14.29%

K7 AntiVirus
Trojan
14.29%

Comodo Security
Application.Win32.InstallCore.DWS
14.29%

The domain icdn.pivotanimatorcontent.net has been seen to resolve to the following 31 IP addresses.

unallocated.barefruit.co.uk
May 3, 2015

server-54-192-101-98.iad2.r.cloudfront.net
January 29, 2015

server-54-192-101-82.iad2.r.cloudfront.net
January 29, 2015

server-54-230-103-242.iad2.r.cloudfront.net
January 29, 2015

server-54-230-103-191.iad2.r.cloudfront.net
January 29, 2015

server-54-230-103-110.iad2.r.cloudfront.net
January 29, 2015

server-54-230-103-94.iad2.r.cloudfront.net
January 29, 2015

server-54-230-101-43.iad2.r.cloudfront.net
January 29, 2015

server-54-192-101-73.iad2.r.cloudfront.net
November 29, 2014

server-216-137-33-157.iad2.r.cloudfront.net
November 29, 2014

server-216-137-33-108.iad2.r.cloudfront.net
November 29, 2014

server-54-230-103-20.iad2.r.cloudfront.net
November 29, 2014

server-54-230-102-254.iad2.r.cloudfront.net
November 29, 2014

server-54-230-101-139.iad2.r.cloudfront.net
November 29, 2014

server-54-192-101-115.iad2.r.cloudfront.net
November 29, 2014

server-216-137-33-253.iad2.r.cloudfront.net
August 23, 2014

server-216-137-33-192.iad2.r.cloudfront.net
August 23, 2014

server-54-230-103-156.iad2.r.cloudfront.net
August 23, 2014

server-54-230-103-112.iad2.r.cloudfront.net
August 23, 2014

server-54-230-103-93.iad2.r.cloudfront.net
August 23, 2014

server-54-230-102-206.iad2.r.cloudfront.net
August 23, 2014

server-54-230-101-127.iad2.r.cloudfront.net
August 23, 2014

server-54-230-100-116.iad2.r.cloudfront.net
August 23, 2014

server-216-137-41-84.ewr2.r.cloudfront.net
August 12, 2014

server-54-230-20-105.ewr2.r.cloudfront.net
August 12, 2014

server-216-137-41-36.ewr2.r.cloudfront.net
August 12, 2014

server-54-230-20-74.ewr2.r.cloudfront.net
August 12, 2014

server-54-230-21-178.ewr2.r.cloudfront.net
August 12, 2014

server-54-230-21-150.ewr2.r.cloudfront.net
August 12, 2014

server-216-137-41-236.ewr2.r.cloudfront.net
August 12, 2014

 
Showing 30 of 31 IP Addresses

File downloads found at URLs served by icdn.pivotanimatorcontent.net.

0 / 68
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (a4ea661e747b1d4b60b2b3194b4ce675)

5 / 68      (PUP)
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (f09538895935723085b945b07d0aa5dc)

4 / 68      (PUP)
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (71223e4496755a0ca9ab66cf3edbf4f0)

6 / 68      (PUP)
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (a5ec8994f0602d81c30436c052195fba)

2 / 68      (PUP)
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (e4ac1bf91bcfa7d1228a50583c080aa0)

5 / 68      (PUP)
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (2e5d9a91aeb309d195f14800c58e0d00)

3 / 68      (PUP)
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (c00c31ad53a770fc401857c10d903dab)

6 / 68      (PUP)
http://icdn.pivotanimatorcontent.net/Pivot_v4-1.exe  (02e83e2c8aee4056652f2fe08f80fa8c)

The following 232 files have been seen to comunicate with icdn.pivotanimatorcontent.net in live environments.

 
Latest 20 of 232 files