version-update2.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain version-update2.com is registered by proxy through ENOM, INC. and was originally registered in March of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Wilmington, Delaware within the United States which resides on the Black Lotus Communications network.
Registrar:
ENOM, INC.

Server location:
Delaware, United States (US)

Create date:
Sunday, March 16, 2014

Expires date:
Monday, March 16, 2015

Updated date:
Sunday, March 16, 2014

ASN:
AS32421 BLCC - Black Lotus Communications,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.PaymentsInteractiveSL.E, PUP.Tuguu.Payments.Bundler (M)
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.DomaIQ.3
66.67%

McAfee
RDN/Generic PUP.x!b2k
66.67%

Malwarebytes
PUP.Optional.Domalq
66.67%

K7 AntiVirus
Unwanted-Program
66.67%

Agnitum Outpost
PUA.DomaIQ
66.67%

Total Defense
Win32/Tnega.KCDcKOB
66.67%

Kaspersky
not-a-virus:AdWare.MSIL.DomaIQ
66.67%

Bitdefender
Gen:Variant.Application.Bundler.DomaIQ.3
66.67%

NANO AntiVirus
Riskware.Win32.Downware.cvxwqc
66.67%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.DomaIQ.3, Gen:Variant.Application.Bundler.DomaIQ.5
66.67%

Sophos
DomainIQ pay-per install
66.67%

Comodo Security
Application.Win32.DomaIQ.PUP
66.67%

F-Secure
Adware:W32/DomaIQ
66.67%

Dr.Web
Adware.Downware.2259
66.67%

The domain version-update2.com has been seen to resolve to the following IP address.

May 1, 2014

File downloads found at URLs served by version-update2.com.

1 / 68      (Adware)
http://version-update2.com/.../Java.exe  (55c9a7635c8b56d70a803f4398f03328)

27 / 68    (Adware)
http://version-update2.com/.../Java.exe  (ea0763ee488f2e8d6dcda4836465dfd5)

25 / 68    (Adware)
http://version-update2.com/.../Java.exe  (30fae48ed8c02e9124b095f5c8ea8d16)

URL:
http://version-update2.com/

Google Analytics:
UA-69192

Title:
“version-update2.com - Registered at Namecheap.com”

30 of 36 related domains