install.update95.com

Corp New Ventures Services

Domain Information

The domain install.update95.com registered by Corp New Ventures Services was initially registered in May of 2014 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Zurich, Zurich within Switzerland which resides on the RIPE Network Coordination Centre network.
Remove Malware from install.update95.com - Powered by Reason Core Security
Registrar:
DOMAINHAWKS.NET LLC

Server location:
Zurich, Switzerland (CH)

Create date:
Friday, May 23, 2014

Expires date:
Monday, May 23, 2016

Updated date:
Wednesday, July 08, 2015

ASN:
AS40034 CONFLUENCE-NETWORK-INC - Confluence Networks Inc,VG

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.TuguuSLU.F, DownloadManager.AirSoftware.H, DownloadManager.AirSoftware.F, DownloadManager.Air Software, DownloadManager.Bundler.Air Software, PUP.Air Software.AirSoftware.Bundler (M)
100.00%

K7 Gateway Antivirus
Unwanted-Program
95.65%

K7 AntiVirus
Adware , Unwanted-Program
95.65%

F-Prot
W32/AirInstall.A.gen
95.65%

avast!
PUP-gen [PUP], Win32:Installer-L [PUP], Win32:Adware-CAH [PUP]
95.65%

Sophos
AirInstaller, PUA 'AirInstaller'
95.65%

Comodo Security
Application.Win32.Agent.AJ, Application.Win32.AirAdInstaller.A
95.65%

Dr.Web
Adware.Downware.963, Adware.Downware.897, Adware.Downware.1167, Trojan.SMSSend.4317, Adware.Downware.10718
95.65%

VIPRE Antivirus
AirInstaller
95.65%

Avira AntiVirus
Adware/Airinstall.J, ADWARE/Adware.Gen7, Adware/AirInst.1174
95.65%

Jiangmin
AdWare/AirAdInstaller.hm, AdWare/AirAdInstaller.w, AdWare/AirAdInstaller.an
95.65%

Antiy Labs AVL
GrayWare[AdWare:not-a-virus]/Win32.AirAdInstaller
95.65%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
95.65%

AhnLab V3 Security
PUP/Win32.AirAdInstaller
95.65%

ESET NOD32
Win32/AirAdInstaller.A potentially unwanted application
95.65%

The domain install.update95.com has been seen to resolve to the following 3 IP addresses.

May 5, 2015

February 28, 2015

August 7, 2014

File downloads found at URLs served by install.update95.com.

37 / 68    (Adware)

37 / 68    (Adware)

38 / 68    (Adware)

37 / 68    (Adware)

37 / 68    (Adware)

37 / 68    (Adware)

37 / 68    (Adware)

38 / 68    (Adware)

37 / 68    (Adware)

37 / 68    (Adware)

37 / 68    (Adware)

37 / 68    (Adware)

38 / 68    (Adware)

36 / 68    (Adware)

36 / 68    (Adware)

28 / 68    (Adware)

28 / 68    (Adware)

26 / 68    (Adware)

23 / 68    (Adware)

22 / 68    (Adware)

23 / 68    (Adware)

22 / 68    (Adware)

1 / 68      (Adware)

The following file have been seen to comunicate with install.update95.com in live environments.

URL:
http://install.update95.com/

Google Analytics:
UA-19309218

Title:
“update95.com”

Description:
“This website is for sale! update95.com is your first and best source for information about update95 . Here you will also find topics relating to issues of general interest. We hope you find what you are looking for!”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 34 related domains

Remove Malware from install.update95.com - Powered by Reason Core Security