ukrep.efix.com

Reimage Limited

Domain Information

The domain ukrep.efix.com registered by Reimage Limited was initially registered in January of 2004 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States.
Registrar:
GODADDY.COM, LLC

Server location:
Virginia, United States (US)

Create date:
Thursday, January 29, 2004

Expires date:
Sunday, January 29, 2017

Updated date:
Saturday, January 30, 2016

ASN:
AS19994 RACKSPACE - Rackspace Hosting,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.ReimageLimited.O, PUP.Optional.Installer, Win32.Generic.Reimage.Installer.Meta
100.00%

Dr.Web
Adware.Plugin.171, Trojan.Crossrider1.1621
66.67%

Vba32 AntiVirus
AdWare.MSIL.OutBrowse
66.67%

Trend Micro House Call
Suspicious_GEN.F47V0118, Suspicious_GEN.F47V0311
50.00%

ESET NOD32
Win32/ReImageRepair (variant), Win32/ReImageRepair.E potentially unwanted (variant)
50.00%

IKARUS anti.virus
PUA.ReImageRepair
50.00%

Baidu Antivirus
PUA.Win32.ReImageRepair
16.67%

Fortinet FortiGate
Riskware/ReImageRepair
16.67%

McAfee
Artemis!91A6D8A06EC7
16.67%

The domain ukrep.efix.com has been seen to resolve to the following IP address.

February 19, 2016

File downloads found at URLs served by ukrep.efix.com.

6 / 68      (PUP)

1 / 68      (Malware)
http://ukrep.efix.com/.../eFixProPackage1826.exe  (76d9cd93e0030f4c9f823879a43f5027)

6 / 68      (PUP)

1 / 68      (Malware)
http://ukrep.efix.com/.../eFixProPackage1826x64.exe  (25f5f2f139fee01684e78d1c688dab2f)

9 / 68      (PUP)

3 / 68      (PUP)

URL:
http://ukrep.efix.com/

Web server:
Microsoft-IIS/8.0