load.win9soft.ru

Private Person  (Proxy Registrant)

Domain Information

The domain load.win9soft.ru is registered by proxy through REGRU-REG-RIPN and was originally registered in November of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
REGRU-REG-RIPN

Server location:
Moscow City, Russia (RU)

Create date:
Sunday, November 25, 2012

Expires date:
Tuesday, November 25, 2014

ASN:
AS42632 MNOGOBYTE-AS MnogoByte LLC

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.MailRu.O
100.00%

The domain load.win9soft.ru has been seen to resolve to the following IP address.

loadmoney.ru
April 25, 2014

File downloads found at URLs served by load.win9soft.ru.

URL:
http://load.win9soft.ru/

Web server:
nginx (PHP/5.3.10)