install.ticno.com

Media Labs Ltd

Domain Information

The domain install.ticno.com registered by Media Labs Ltd was initially registered in December of 2009 through NAME.COM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
NAME.COM, INC.

Server location:
Moscow City, Russia (RU)

Create date:
Wednesday, December 30, 2009

Expires date:
Friday, December 30, 2016

Updated date:
Friday, December 25, 2015

ASN:
AS47918 GIGABASE Gigabase ltd,RU

Root domain:

Scanner detections:
Detections  (89% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MediaLabsLimited.N, PUP.Media Labs.MediaLabs (M), PUP.Media Labs.MediaLab.Installer (M), PUP.Installa.Installer (M)
77.78%

ESET NOD32
Win32/Multibar.AA (variant), Win32/Multibar (variant)
33.33%

Norman
Agent.BA
22.22%

avast!
Win32:Multibar-B [PUP], Win32:Agent-ANPG [PUP]
22.22%

Comodo Security
UnclassifiedMalware, ApplicUnwnt.Win32.WebToolbar.MultiBarDownloader.io
22.22%

VIPRE Antivirus
Trojan.Win32.Generic
22.22%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud), Win32.Troj.Generic.(kcloud)
22.22%

Baidu Antivirus
Trojan.Win32.Multibar
22.22%

Dr.Web
Tool.InstallToolbar.30, Tool.InstallToolbar.50
22.22%

Antiy Labs AVL
Trojan/Win32.Tgenic, Trojan/win32.agent.gen
22.22%

Jiangmin
Trojan/Agent.ishr
11.11%

Panda Antivirus
Trj/Agent.MIZ
11.11%

McAfee
Artemis!BF979EE4B01A
11.11%

Trend Micro House Call
TROJ_GEN.F47V1009
11.11%

Avira AntiVirus
APPL/Toolbar.Gen5
11.11%

The domain install.ticno.com has been seen to resolve to the following IP address.

April 14, 2014

File downloads found at URLs served by install.ticno.com.

2 / 68

6 / 68      (PUP)

1 / 68      (PUP)

18 / 68    (PUP)

12 / 68    (PUP)

URL:
http://install.ticno.com/

Web server:
nginx/1.4.7