pcregistryshield.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain pcregistryshield.com is registered by proxy through GODADDY.COM, LLC and was originally registered in January of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Sunday, January 22, 2012

Expires date:
Sunday, January 22, 2017

Updated date:
Friday, January 15, 2016

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.X, PUP.Optional.Installer.V, PUP.Optional.Installer.EE, Threat.Installer.ShieldApps, Win32.Generic.ShieldApps.Installer.Meta
100.00%

Trend Micro House Call
TROJ_GEN.F47V0909, TROJ_GEN.F47V0108, Suspicious_GEN.F47V1112
41.18%

ESET NOD32
Detection.Undefined
17.65%

IKARUS anti.virus
not-a-virus:Downloader.Agent
17.65%

Zillya! Antivirus
Trojan.Agent.Win32.491146, Tool.ArchSMS.Win32.25536
11.76%

McAfee
Artemis!44328256C4F6
5.88%

Vba32 AntiVirus
Downloader.Agent
5.88%

The domain pcregistryshield.com has been seen to resolve to the following 2 IP addresses.

ip-50-63-202-10.ip.secureserver.net
May 25, 2016

p3nlhg23c046.shr.prod.phx3.secureserver.net
April 16, 2014

File downloads found at URLs served by pcregistryshield.com.

5 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

5 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/download_usa  (pcregistryshieldsetupeu.exe)

1 / 68      (PUP)
http://pcregistryshield.com/download_sa_eu  (pcregistryshieldsetupeu.exe)

2 / 68      (PUP)
http://pcregistryshield.com/download_usa  (pcregistryshieldwwsetup.exe)

2 / 68      (PUP)
http://pcregistryshield.com/download_sa_us  (pcregistryshieldwwsetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/download_usa  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (pcregistryshieldsetupeu.exe)

4 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

4 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (pcregistryshieldsetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

5 / 68      (PUP)
http://pcregistryshield.com/.../  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

2 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

2 / 68      (PUP)
http://pcregistryshield.com/dwon  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (pcregistryshieldsetupeu.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/download_usa  (PCRegistryShieldSetup.exe)

1 / 68      (PUP)
http://pcregistryshield.com/.../  (PCRegistryShieldSetup.exe)

The following 7 files have been seen to comunicate with pcregistryshield.com in live environments.

URL:
http://pcregistryshield.com/

Google Analytics:
UA-31149553

Title:
“Boost Your PC Speed >> PC Registry Shield”

Description:
“PC Registry Shield is a Registry Cleaner and PC Speed Optimizer that utilizes advanced technologies to analyze and fix PC errors and registry malfunctions”

Web server:
Apache