update-com.info

DomCollect International GmbH

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Hollywood, Florida within the United States which resides on the Prolexic Technologies, Inc. network.
Registrar:
1&1 Internet SE

Server location:
Florida, United States (US)

ASN:
AS32787 PROLEXIC-TECHNOLOGIES-DDOS-MITIGATION-NETWORK - Prolexic Technologies, Inc.

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.OptimumInstaller.W, Threat.Adknowledge.Bundler, PUP.Adknowledge.OptimumInstaller.Installer (M), PUP.Adknowledge.PremiumInstaller.Installer (M), PUP.Air Software.AirSoftware.Bundler (M), PUP.Adknowledge.OptimumI.Bundler (M), PUP.Adknowledge.INSTALLD.Installer (M), PUP.Adknowledge.PremiumI.Bundler (M), PUP.Adknowledge (M)
100.00%

VIPRE Antivirus
Threat.4778314, Optimum Installer, Threat.4150696
38.46%

avast!
Win32:Installer-J [PUP], Win32:IBryte-BQ [PUP]
38.46%

Dr.Web
Adware.Downware.1285, Adware.Downware.1245, Adware.Downware.1272
38.46%

F-Prot
W32/Ibryte.C.gen, W32/Ibryte.C3.gen
38.46%

AVG
Adware Generic5, Adware Generic5.AASA
38.46%

Kaspersky
not-a-virus:AdWare.Win32.Agent
38.46%

nProtect
Trojan-Clicker/W32.Agent.884008, Trojan-Clicker/W32.Agent.909608
38.46%

McAfee
Adware-FOO!7FE73CC9063B, Adware-FOO!83E1F4ED3B1B, Adware-FOO!CF9E2CA512D7
38.46%

Malwarebytes
PUP.Optional.Ibryte
38.46%

K7 Gateway Antivirus
Unwanted-Program , Backdoor
38.46%

K7 AntiVirus
Unwanted-Program , Adware
38.46%

Agnitum Outpost
Trojan.StartPage, Adware.iBryte
38.46%

Norman
Agent.ASWDM
38.46%

Clam AntiVirus
Win.Adware.Downware-510, WIN.Adware.Ibryte-137
38.46%

The domain update-com.info has been seen to resolve to the following 2 IP addresses.

unknown.prolexic.com
April 2, 2016

host.update-com.info
December 15, 2013

File downloads found at URLs served by update-com.info.

1 / 68      (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)

1 / 68      (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)

1 / 68      (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)

1 / 68      (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)
http://update-com.info/.../tracka_oi_us_g987.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)

42 / 68    (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

1 / 68      (Adware)

42 / 68    (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

42 / 68    (Adware)

42 / 68    (Adware)

42 / 68    (Adware)
http://update-com.info/.../tracka_oi_us_g987.php  (flash_player_pro_setup.exe)

42 / 68    (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

42 / 68    (Adware)

40 / 68    (Adware)
http://update-com.info/.../tracka_oi_us_g987.php  (flash_player_pro_setup.exe)

40 / 68    (Adware)

33 / 68    (Adware)
http://update-com.info/.../tracka.php  (flash_player_pro_setup.exe)

The following 244 files have been seen to comunicate with update-com.info in live environments.

 
Latest 20 of 250 files

URL:
http://update-com.info/

Title:
“update-com.info - This website is for sale! - update-com Resources and Information.”

Description:
“This website is for sale! update-com.info is your first and best source for all of the information you’re looking for. From general topics to more of what you would expect to find here, update-com.info has it all. We hope you find what you are s...”

Web server:
Apache (PHP/5.3.3-7+squeeze28)

Facebook:
Likes:  1

Statistics above are for the previous month of April 2017.