pleaseupdate.theperferct24updater.net

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain pleaseupdate.theperferct24updater.net is registered by proxy through REGISTRAR OF DOMAIN NAMES REG.RU LLC and was originally registered in March of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Server location:
Moscow City, Russia (RU)

Create date:
Monday, March 23, 2015

Expires date:
Thursday, March 23, 2017

Updated date:
Thursday, March 24, 2016

ASN:
AS197695 AS-REGRU _Domain names registrar REG.RU_, Ltd,RU

Google Safe Browsing:
phishing

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.installCore.OOOADVERTM.Installer (M), PUP.installCore.OOOPremierService.Installer (M), PUP.installCore.OOOGrossMauntin.Installer (M), PUP.installCore.DigitalV.Installer (M), PUP.installCore.OOOMadAd.Installer (M), PUP.installCore (M)
100.00%

ESET NOD32
Win32/InstallCore.ZC potentially unwanted application
33.33%

Dr.Web
Trojan.InstallCore.576, Trojan.InstallCore.620
33.33%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
33.33%

avast!
Malware-gen, Trojan-gen
33.33%

Bkav FE
W32.HfsAdware
33.33%

Malwarebytes
PUP.Optional.DigiServ, PUP.Optional.InstallCore, PUP.Optional.InstallCore.A
33.33%

K7 AntiVirus
Adware
33.33%

AVG
Generic, InstallCore
33.33%

herdProtect (fuzzy)
a variant of 8740c9ed51b75bfb1f829a30a47851fffbad9515
11.11%

Comodo Security
Application.Win32.InstallCore.DQY
11.11%

AhnLab V3 Security
PUP/Win32.BundleInstaller
11.11%

Vba32 AntiVirus
Malware-Cryptor.InstallCore.gen
11.11%

The domain pleaseupdate.theperferct24updater.net has been seen to resolve to the following 4 IP addresses.

April 21, 2016

April 14, 2016

April 8, 2016

April 3, 2016

File downloads found at URLs served by pleaseupdate.theperferct24updater.net.

URL:
http://pleaseupdate.theperferct24updater.net/

Google Analytics:
UA-55552418

Title:
“Истёк срок регистрации доменаtheperferct24updater.net”

Web server:
nginx

30 of 151 related domains