inst.winzip.com

WinZip Computing LLC

Domain Information

The domain inst.winzip.com registered by WinZip Computing LLC was initially registered in November of 1994 through Network Solutions, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Remove Malware from inst.winzip.com - Powered by Reason Core Security
Registrar:
Network Solutions, LLC

Server location:
Virginia, United States (US)

Create date:
Tuesday, November 01, 1994

Expires date:
Monday, October 31, 2016

Updated date:
Monday, September 02, 2013

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Dr.Web
Adware.Downware.1923, Trojan.MulDrop5.10078, Adware.Downware.1348, Adware.Downware.9329
100.00%

Sophos
Open Install, PUA 'Open Install', Generic PUA CM (PUA)
97.92%

K7 Gateway Antivirus
Unwanted-Program , Trojan
97.92%

K7 AntiVirus
Unwanted-Program , Trojan
97.92%

Trend Micro House Call
TROJ_GEN.F47V0318, TROJ_GEN.F47V0331, TROJ_GEN.F47V1010, TROJ_GEN.F47V0118, TROJ_GEN.F47V0609, TROJ_GEN.F47V0905, TROJ_GEN.F47V0830, TROJ_GEN.F47V0718, TROJ_GEN.F47V0809, HV_ZYX_CA08282F.TOMC
97.92%

Fortinet FortiGate
Riskware/OpenInstall, Riskware/InstallCore, Riskware/EmployeeActMon
95.83%

McAfee
Artemis!43CA6E7A6F56, Artemis!6ED6AF019F8B, Artemis!AD7A90655937, Artemis!939158CA4778, Artemis!0AB167625A7A, Artemis!49D7E42C6B3A, Artemis!809C74DFCC63
93.75%

Agnitum Outpost
Riskware.OpenInstall, PUA.InstallCore
93.75%

McAfee Web Gateway
Artemis!43CA6E7A6F56, Artemis!6ED6AF019F8B, Artemis!AD7A90655937, Artemis!939158CA4778, Artemis!0AB167625A7A, Artemis!49D7E42C6B3A
93.75%

ESET NOD32
Win32/OpenInstall (variant), Win32/InstallCore.LF (variant)
75.00%

Bkav FE
W32.Clod5eb.Trojan, W32.Clod1bf.Trojan, W32.HfsAdware, W32.Clodbe5.Trojan
66.67%

Antiy Labs AVL
Trojan/Win32.Autoit, Spyware[AdWare:not-a-virus]/Win32.OpenInstall
58.33%

XVirus List
Win.Detected, Win32.Detected
56.25%

Zillya! Antivirus
Dropper.Autoit.Win32.1746, Trojan.Fsysna.Win32.8857, Adware.PullUpdate.Win32.73128
52.08%

Emsisoft Anti-Malware
Application.InstallAd, Trojan.Generic.10143455, Trojan.Win32.OpenInstall.AMN
43.75%

The domain inst.winzip.com has been seen to resolve to the following 24 IP addresses.

ec2-52-71-138-213.compute-1.amazonaws.com
February 1, 2016

ec2-52-73-2-4.compute-1.amazonaws.com
February 1, 2016

ec2-52-72-154-52.compute-1.amazonaws.com
January 31, 2016

ec2-54-85-122-232.compute-1.amazonaws.com
January 31, 2016

ec2-54-86-143-86.compute-1.amazonaws.com
January 27, 2016

ec2-52-4-35-225.compute-1.amazonaws.com
January 27, 2016

ec2-52-5-25-102.compute-1.amazonaws.com
January 3, 2016

ec2-54-85-221-118.compute-1.amazonaws.com
January 3, 2016

ec2-52-5-218-108.compute-1.amazonaws.com
December 19, 2015

ec2-54-175-166-39.compute-1.amazonaws.com
December 19, 2015

ec2-54-172-229-232.compute-1.amazonaws.com
November 19, 2015

ec2-52-1-134-10.compute-1.amazonaws.com
November 19, 2015

ec2-52-4-160-110.compute-1.amazonaws.com
November 10, 2015

ec2-54-174-92-102.compute-1.amazonaws.com
November 10, 2015

ec2-52-7-147-195.compute-1.amazonaws.com
November 7, 2015

ec2-54-208-220-40.compute-1.amazonaws.com
November 7, 2015

ec2-54-210-168-104.compute-1.amazonaws.com
October 6, 2015

ec2-52-7-100-174.compute-1.amazonaws.com
October 6, 2015

ec2-54-209-207-34.compute-1.amazonaws.com
October 1, 2015

ec2-54-164-38-126.compute-1.amazonaws.com
October 1, 2015

ec2-107-23-150-14.compute-1.amazonaws.com
August 28, 2015

ec2-54-236-64-89.compute-1.amazonaws.com
August 28, 2015

April 4, 2014

December 25, 2013

File downloads found at URLs served by inst.winzip.com.

17 / 68    (PUP)

11 / 68    (PUP)

8 / 68      (PUP)

URL:
http://inst.winzip.com/

Google Analytics:
UA-229838

Title:
“WinZip for Windows, Mac and Mobile - Zip Files, Unzip Files”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx/1.2.1

Facebook:
Likes:  64
Shares:  400
Comments:  92

Compete.com:
US visitors:  255

Statistics are for the previous month.

Remove Malware from inst.winzip.com - Powered by Reason Core Security