setup.vkontakte.dj

Domain Information

Server location:
Luxembourg, Luxembourg (LU)

ASN:
AS5577 ROOT root SA,LU

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.MediaDrug, Threat.Win.Reputation.IMP, Win32.Generic.MediaDrug.Installer.Meta, PUP.RECORD (M)
94.74%

MicroWorld eScan
Gen:Variant.Strictor.79116, Trojan.GenericKD.2180998, Gen:Variant.Application.Downloader.207, Application.Generic.1535113
63.16%

Bitdefender
Gen:Variant.Strictor.79116, Trojan.GenericKD.2180998, Gen:Variant.Application.Downloader.207, Application.Generic.1535113
63.16%

F-Secure
Gen:Variant.Strictor.79116, Trojan.GenericKD.2180998, Gen:Variant.Application.Downloader, Application.Generic.1535113
63.16%

G Data
Gen:Variant.Strictor.79116, Trojan.GenericKD.2180998, Gen:Variant.Application.Downloader.207, Application.Generic.1535113
63.16%

ESET NOD32
Win32/VKontakteDJ.C potentially unwanted (variant), Win32/VKontakteDJ (variant), MSIL/Downloader.Agent.P potentially unwanted (variant)
63.16%

Dr.Web
Adware.Downware.9488, Adware.Downware.5924, Adware.Downware.8837, Program.VKontakteDJ.1, Program.VKontakteDJ.9
57.89%

Lavasoft Ad-Aware
Gen:Variant.Strictor.79116, Trojan.GenericKD.2180998, Gen:Variant.Application.Downloader.207, Application.Generic.1535113
52.63%

Emsisoft Anti-Malware
Gen:Variant.Strictor.79116, Trojan.GenericKD.2180998
52.63%

VIPRE Antivirus
Trojan.Win32.Generic
52.63%

Baidu Antivirus
PUA.Win32.VKontakteDJ, PUA.MSIL.Agent, PUA.MSIL.VKontakteDJ
52.63%

AVG
Generic6, BundleApp, Quant LLC, AdInstaller.kontakte
52.63%

NANO AntiVirus
Riskware.Win32.Downware.dnxjoc, Riskware.Win32.Downware.dpgajc
47.37%

Agnitum Outpost
Riskware.Agent
47.37%

Fortinet FortiGate
Riskware/VKontakteDJ
21.05%

The domain setup.vkontakte.dj has been seen to resolve to the following IP address.

ip-static-94-242-221-153.as5577.net
August 20, 2014

File downloads found at URLs served by setup.vkontakte.dj.

1 / 68      (Malware)
http://setup.vkontakte.dj/.../?advert_key=ZWMwMDAyMDA2NTAwMDA4YTAwMDAwMDdjMDAwMDdjMDAwMDdjMGI3NjljNzg2Yg==&name=????? ?????????-?? ??????? ? ?? ???????, ?? ??????? ???  (руки_вверх-пусть_говорят,_что_ты_некрасива,_некрасива_и_не_стройна.exe)

14 / 68    (PUP)

The following 2 files have been seen to comunicate with setup.vkontakte.dj in live environments.