saveneto.info

WEB PICK - INTERNET HOLDINGS LTD  (via a Proxy Registrant)

Domain Information

The domain saveneto.info is registered by proxy through Active Registrar, Inc. (R469-LRMS). This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Manassas, Virginia within the United States which resides on the Leaseweb USA, Inc. network. The domain is associated with the publisher WEB PICK - INTERNET HOLDINGS LTD who is located in Ramat Hasharon, Israel.
Registrar:
Active Registrar, Inc. (R469-LRMS)

Server location:
Virginia, United States (US)

ASN:
AS30633 LEASEWEB-US - Leaseweb USA, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Bkav FE
W32.Clodf96.Trojan
100.00%

McAfee
Artemis!BDFCC6FAACB9
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

Trend Micro House Call
TROJ_GEN.F47V1012
100.00%

Kaspersky
not-a-virus:Downloader.Win32.AdLoad
100.00%

Comodo Security
ApplicUnwnt
100.00%

Dr.Web
Adware.Downware.1521
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

Sophos
Generic PUA EF
100.00%

Panda Antivirus
Suspicious file
100.00%

ESET NOD32
Win32/Adware.MultiPlug (variant)
100.00%

IKARUS anti.virus
not-a-virus:Downloader.Win32.AdLoad
100.00%

Reason Heuristics
PUP.AntonMelnikov.H
100.00%

The domain saveneto.info has been seen to resolve to the following 2 IP addresses.

hosted-by.leaseweb.com
April 27, 2014

hosted-by.leaseweb.com
April 27, 2014

File downloads found at URLs served by saveneto.info.

13 / 68    (Adware)
http://saveneto.info/Savenet.exe  (bdfcc6faacb92849eba2ac8ee19705f2)

April 27, 2014

URL:
http://saveneto.info/

Title:
“Savenet”

Description:
“Here goes the description”

Web server:
ngx_openresty