media.oneinstaller.com

Only contact by email, all postal mail will be rejected  (Proxy Registrant)

Domain Information

The domain media.oneinstaller.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in January of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Madrid, Madrid within Spain which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Madrid, Spain (ES)

Create date:
Tuesday, January 15, 2013

Expires date:
Sunday, January 15, 2017

Updated date:
Monday, December 14, 2015

ASN:
AS45037 HISPAWEB-NETWORK Propelin Consulting S.L.U.,ES

Root domain:

Scanner detections:
Detections  (63% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallX.Bundle, PUP.VisualTools.N, PUP.OnekitInternetSL.I
100.00%

VIPRE Antivirus
Babylon, Onekit Installer
80.00%

Rising Antivirus
PE:Trojan.Win32.Generic.15816E51!360803921, PE:Malware.AntiWare!1.5593, PE:Trojan.Win32.Generic.135D0B5B!324864859
80.00%

Malwarebytes
PUP.Optional.Babylon.A, PUP.Optional.Spigot.A, PUP.Optional.Onekit.A
60.00%

AVG
MalSign.Skodna.Bundle.bb4
60.00%

Bkav FE
W32.Clod966.Trojan, W32.Clodd0b.Trojan
40.00%

ESET NOD32
Win32/Toolbar.Babylon, Win32/Bundled.Toolbar.Ask (variant)
40.00%

NANO AntiVirus
Riskware.Win32.Babylon.craswq
20.00%

Dr.Web
Adware.Toolbar.175
20.00%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud)
20.00%

AhnLab V3 Security
PUP/Win32.Babylon
20.00%

Antiy Labs AVL
Trojan/Win32.Tgenic
20.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
20.00%

XVirus List
Win.Detected
20.00%

McAfee
Artemis!E84C5B4B4096
20.00%

The domain media.oneinstaller.com has been seen to resolve to the following 2 IP addresses.

rack24u28.hispaweb.net
February 27, 2016

rack15u9.hispaweb.net
May 1, 2014

File downloads found at URLs served by media.oneinstaller.com.

2 / 68      (PUP)

11 / 68    (Adware)

3 / 68      (Adware)

The following 24 files have been seen to comunicate with media.oneinstaller.com in live environments.

 
Latest 20 of 25 files

URL:
http://media.oneinstaller.com/

Web server:
Apache/2.2.22 (Ubuntu)