minilua-miniluacom.netdna-ssl.com

NetDNA, LLC.

Domain Information

The domain minilua-miniluacom.netdna-ssl.com registered by NetDNA, LLC. was initially registered in February of 2011 through MARKMONITOR INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in London, England within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
MARKMONITOR INC.

Server location:
England, United Kingdom (GB)

Create date:
Wednesday, February 02, 2011

Expires date:
Thursday, February 02, 2017

Updated date:
Wednesday, October 16, 2013

ASN:
AS17025 ABOVENET-CUSTOMER - Abovenet Communications, Inc

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ExtendedSetup.O, PUP.Installer.MaxSetup.O, PUP.Installer.STMSetup.O
87.50%

K7 AntiVirus
Unwanted-Program , Trojan
87.50%

K7 Gateway Antivirus
Unwanted-Program , Trojan
87.50%

Dr.Web
Trojan.Packed.24524, Adware.InstallCore.386, Trojan.DownLoader11.13453
87.50%

Sophos
Install Core Click run software
87.50%

VIPRE Antivirus
InstallCore, InstallCore.b, Threat.4786018
75.00%

Avira AntiVirus
ADWARE/InstallCore.A.9, ADWARE/InstallCore.Gen7, Adware/InstallCore.A.439, Adware/InstallCore.A.577, ADWARE/InstallCore.Gen9
75.00%

Vba32 AntiVirus
Downware.InstallCore, AdWare.InstallCore
62.50%

AVG
MalSign.InstallC, Generic
62.50%

Qihoo 360 Security
Malware.QVM20.Gen, Win32/Virus.Adware.f22
50.00%

ESET NOD32
Win32/InstallCore.OU potentially unwanted application, Win32/InstallCore.ON potentially unwanted application
50.00%

Baidu Antivirus
Trojan.Win32.InstallCore, Adware.Win32.Somoto
50.00%

ESET NOD32
Win32/InstallCore.IJ (variant), Win32/Kryptik.BWAM (variant), Win32/Somoto
37.50%

Norman
InstallCore.CERT
37.50%

McAfee Web Gateway
CryptInno, BehavesLike.Win32.CryptInno.bc, Artemis
37.50%

The domain minilua-miniluacom.netdna-ssl.com has been seen to resolve to the following 2 IP addresses.

May 31, 2014

94.31.29.224.IPYX-077437-ZYO.above.net
February 8, 2014

File downloads found at URLs served by minilua-miniluacom.netdna-ssl.com.

10 / 68    (PUP)

12 / 68    (Adware)

29 / 68    (Adware)

10 / 68    (Adware)

12 / 68    (Adware)

1 / 68      (Adware)

10 / 68    (Adware)

12 / 68    (Adware)

The following file have been seen to comunicate with minilua-miniluacom.netdna-ssl.com in live environments.

URL:
http://minilua-miniluacom.netdna-ssl.com/

Google Analytics:
UA-16008425

Title:
“Minilua”

SSL certificate subject:
CN=*.netdna-ssl.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
NetDNA-cache/2.2