storegid.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain storegid.com is registered by proxy through GODADDY.COM, LLC and was originally registered in June of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Saint Petersburg, Saint Petersburg City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Saint Petersburg City, Russia (RU)

Create date:
Friday, June 20, 2014

Expires date:
Monday, June 20, 2016

Updated date:
Sunday, June 21, 2015

ASN:
AS49505 SELECTEL OOO _Network of data-centers _Selectel_,RU

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.N, PUP.Optional.Installer.T, PUP.Optional.TRIORIS.b, Win32.Generic
90.91%

Dr.Web
Trojan.Triosir.5, Trojan.Triosir.6, Tool.NetFilter.1
63.64%

McAfee
Artemis!89E78C4581E1, Artemis!A7A486C929E1, Artemis!1CB4EDEBFCA5, Artemis!88205F405E6A, Artemis!0CB8AA6583BA, Artemis!65F3B686ED60
54.55%

AVG
Adware Generic5.BAFJ
54.55%

Trend Micro House Call
Suspici.F72B5B4F, Suspicious_GEN.F47V0710
50.00%

VIPRE Antivirus
Threat.4150696, Trojan.Win32.Generic
45.45%

ESET NOD32
Win32/AdWare.Agent.NFF (variant), Win32/RiskWare.NetFilter (variant)
45.45%

Comodo Security
ApplicUnwnt, UnclassifiedMalware
40.91%

MicroWorld eScan
Gen:Variant.Strictor.62885
31.82%

Bitdefender
Gen:Variant.Strictor.62885
31.82%

Lavasoft Ad-Aware
Gen:Variant.Strictor.62885
31.82%

Emsisoft Anti-Malware
Gen:Variant.Strictor.62885
31.82%

F-Secure
Gen:Variant.Strictor.62885
31.82%

G Data
Gen:Variant.Strictor.62885
31.82%

Fortinet FortiGate
Riskware/Agent
27.27%

The domain storegid.com has been seen to resolve to the following IP address.

February 27, 2016

File downloads found at URLs served by storegid.com.

18 / 68    (PUP)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup.exe  (42f1c1e6bae8c24b02ffe6c7e2203684)

1 / 68      (PUP)

18 / 68    (PUP)
http://storegid.com/.../storegidSetup.exe  (185f180b06e96ecea2474c1f412f91c0)

20 / 68    (PUP)
http://storegid.com/.../storegidSetup_16004.exe  (09ce03af974f077e811ab6cb12866fb1)

14 / 68    (PUP)
http://storegid.com/.../storegidSetup_16002.exe  (0c378914e4b56bcd5db0d5ae78d88ccc)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup.exe  (2a6a3283348f9196df683e96c987c3da)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup.exe  (98312746c40d5dccd8cfb068d412e896)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup_16004.exe  (581e2bae239382a15028a664e070f104)

6 / 68      (PUP)
http://storegid.com/.../storegidSetup_16002.exe  (ec3f9d182569738f6f0b90baf155ef04)

18 / 68    (PUP)

8 / 68      (PUP)
http://storegid.com/.../storegidSetup.exe  (1cb4edebfca5298c880f5b7c88255a02)

6 / 68      (PUP)
http://storegid.com/.../storegidSetup_16002.exe  (0cb8aa6583ba50ed31cd1e3833efdf30)

15 / 68    (PUP)
http://storegid.com/.../storegidSetup_16002.exe  (7264bb5d7e99b41648d9c18d0d4f4311)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup_16004.exe  (7e0e5b2e21fb15a7236ae607be25e1af)

16 / 68    (PUP)
http://storegid.com/.../storegidSetup_16002.exe  (8af0f18682deb8fff828f536a72d1d0b)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup.exe  (8dd037536bdadf560324d6d74b6f117c)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup_16002.exe  (abb6c0f2ae86e23944f385420a091872)

2 / 68      (PUP)

11 / 68    (PUP)

1 / 68      (PUP)
http://storegid.com/.../storegidSetup_16002.exe  (3a0660da885669d143a6599a3e071acb)

8 / 68      (PUP)
http://storegid.com/.../storegidSetup.exe  (89e78c4581e102fa7748a17d53e9a3b9)

URL:
http://storegid.com/

SSL certificate subject:
CN=storegid.com

SSL certificate issuer:
CN=WoSign CA Free SSL Certificate, O=WoSign CA Limited, C=CN

Web server:
nginx