installads.net

Temp Organization

Domain Information

The domain installads.net registered by Temp Organization was initially registered in August of 2015 through NICS TELEKOMUNIKASYON TICARET LTD.STI.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Istanbul, Istanbul within Turkey which resides on the RIPE Network Coordination Centre network.
Registrar:
NICS TELEKOMUNIKASYON TICARET LTD.STI.

Server location:
Istanbul, Turkey (TR)

Create date:
Friday, August 21, 2015

Expires date:
Sunday, August 21, 2016

Updated date:
Friday, August 21, 2015

ASN:
AS29262 IDEALHOSTING IDEALHOSTING SUNUCU INTERNET HIZ. TIC. LTD STI,TR

Scanner detections:
Detections  (71% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MediaGet.Banner.Installer (M), PUP.MediaGet.Inbox.Installer (M)
100.00%

Kaspersky
not-a-virus:HEUR:Downloader.Win32.MediaGet
60.00%

Sophos
MediaGet (PUA), PUA 'MediaGet' (of type Hacktool)
60.00%

Dr.Web
Program.MediaGet.133, riskware program Program.MediaGet.142
60.00%

Bkav FE
W32.HfsAdware
40.00%

Malwarebytes
PUP.Optional.MediaGet
40.00%

ESET NOD32
Win32/MediaGet.AE potentially unwanted (variant)
40.00%

Comodo Security
Application.Win32.MediaGet.G
40.00%

G Data
Win32.Adware.MediaGet
40.00%

AVG
Banne
40.00%

Baidu Antivirus
Adware.Win32.MediaGet
40.00%

K7 AntiVirus
Unwanted-Program
20.00%

IKARUS anti.virus
PUA.MediaGet
20.00%

Qihoo 360 Security
Win32/Virus.e7d
20.00%

ESET NOD32
Win32/MediaGet.AE potentially unwanted application
20.00%

The domain installads.net has been seen to resolve to the following IP address.

mail168164.dergireklam.com
October 20, 2015

File downloads found at URLs served by installads.net.

1 / 68      (PUP)

5 / 68      (PUP)

1 / 68      (PUP)

5 / 68      (PUP)

The following 2 files have been seen to comunicate with installads.net in live environments.

October 20, 2015

URL:
http://installads.net/

Web server:
Apache