skinpacks.com

Hamed Soleimani

Domain Information

The domain skinpacks.com registered by Hamed Soleimani was initially registered in September of 2011 through REALTIME REGISTER BV. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in North York, Ontario within Canada which resides on the Yesup Ecommerce Solutions Inc. network.
Remove Malware from skinpacks.com - Powered by Reason Core Security
Registrar:
REALTIME REGISTER BV

Server location:
Ontario, Canada (CA)

Create date:
Sunday, September 04, 2011

Expires date:
Friday, September 04, 2015

Updated date:
Tuesday, August 26, 2014

ASN:
AS22923 YESUP-389 - Yesup Ecommerce Solutions Inc.

Scanner detections:
Detections  (90% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.SomotoIsrael.FF, PUP.SomotoIsrael.y, PUP.SomotoIsrael.t, PUP.SomotoIsrael.s
90.00%

Dr.Web
Win32.Sector.21, Trojan.MulDrop4.11744
70.00%

K7 Gateway Antivirus
Unwanted-Program
70.00%

Clam AntiVirus
Trojan.Agent-267630
70.00%

VIPRE Antivirus
Trojan.Win32.Generic
70.00%

ESET NOD32
Win32/Somoto
70.00%

Panda Antivirus
Adware/MultiToolbar, PUP/MultiToolbar.A
70.00%

K7 AntiVirus
Unwanted-Program , Trojan
50.00%

AhnLab V3 Security
Trojan/Win32.Agent, Win-Adware/Somoto.237016
50.00%

Malwarebytes
PUP.Optional.Somoto.A
50.00%

F-Prot
W32/Sality.gen2, W32/Sefnit.C
40.00%

nProtect
Adware/W32.Agent.239064, Adware/W32.Agent.237016
40.00%

Trend Micro House Call
ADW_TOMOS, TROJ_GEN.F47V0202, TROJ_GEN.F47V0407, TROJ_GEN.F47V0321
40.00%

McAfee Web Gateway
Artemis!A672D5094C80, Artemis!EA72B0C74EE1, Artemis!603452E8CB1B, Artemis!A9E11043E575
40.00%

Antiy Labs AVL
Trojan/Win32.Sefnit.gen, Riskware[not-a-virus]/Win32.Mazel.a, Riskware[:not-a-virus]/Win32.Mazel.a
40.00%

The domain skinpacks.com has been seen to resolve to the following IP address.

January 23, 2014

File downloads found at URLs served by skinpacks.com.

20 / 68    (Adware)

15 / 68    (Adware)

13 / 68    (Adware)

9 / 68      (Adware)

14 / 68    (Adware)

1 / 68      (Adware)

17 / 68    (Adware)

22 / 68    (Adware)
http://skinpacks.com/.../SkinPack-Kitkat-win8-ver1_Downloader_downloader-cfcd3SJX.exe  (code_of_honor_the_french_foreign_legion_downloader-a9gnwzel.exe)

1 / 68      (Adware)

December 2, 2014

URL:
http://skinpacks.com/

Google Analytics:
UA-35451827

Title:
“Skin Pack”

Description:
“Theme and Transformation Pack”

Web server:
Apache/2 (PHP/5.3.26)

Remove Malware from skinpacks.com - Powered by Reason Core Security