winwiki.org

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain winwiki.org is registered by proxy through GoDaddy.com, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tampa, Florida within the United States which resides on the NOC4Hosts Inc. network.
Registrar:
GoDaddy.com, LLC

Server location:
Florida, United States (US)

ASN:
AS29802 HVC-AS - HIVELOCITY VENTURES CORP,US

Scanner detections:
Detections  (93% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ParetoLogic.Optional.Installer.Meta (L), PUP.Optional.ReimageLimited.N, PUP.Optional.Installer, PUP.Reimage (L), PUP.MicroFastPC.OPTIMUMS.Installer.Meta (L), Win32.Generic, PUP.Reimage.ReimageR.Installer.Meta (L), PUP.Reimage.Installer.Meta (L)
100.00%

Dr.Web
Adware.Plugin.171, Trojan.Crossrider1.1621, riskware program Program.Unwanted.493, riskware program Program.Unwanted.1470
48.00%

McAfee
Artemis!8DDC6C3D11DC, Artemis!F620E63D0D2A, Artemis!0729B968E846, Artemis!9B8D97161AE5, Artemis!72CB31555DA5, Artemis!D7830F8B35ED
40.00%

Fortinet FortiGate
Riskware/ReImageRepair
40.00%

Baidu Antivirus
PUA.Win32.VMDetect, PUA.Win32.ReImageRepair
40.00%

Trend Micro House Call
Suspicious_GEN.F47V1116, Suspicious_GEN.F47V1117, Suspicious_GEN.F47V0429, Suspicious_GEN.F47V0520
36.00%

ESET NOD32
Win32/ReImageRepair (variant), Win32/ReImageRepair.E potentially unwanted (variant), Win32/ReImageRepair.F potentially unwanted
36.00%

Agnitum Outpost
Riskware.Agent
32.00%

Zillya! Antivirus
Downloader.Agent.Win32.227126, Downloader.Agent.Win32.241821
28.00%

AhnLab V3 Security
Trojan/Win32.FakeAV
24.00%

avast!
Win32:Rootkit-gen [Rtk]
24.00%

G Data
Win32.Application.VMDetect, Win32.Application.ReImageRepair
24.00%

Bkav FE
W32.HfsAdware
8.00%

Malwarebytes
PUP.Optional.ReImageRepair.A
8.00%

herdProtect (fuzzy)
a variant of 3d37449f32d1a44822a2eb9df54648f27564eb7d
4.00%

The domain winwiki.org has been seen to resolve to the following 4 IP addresses.

January 5, 2016

January 5, 2016

68-233-238-30.static.hvvc.us
July 16, 2015

September 6, 2014

File downloads found at URLs served by winwiki.org.

1 / 68      (PUP)
http://winwiki.org/.../repair  (reimagerepair.exe)

12 / 68    (PUP)
http://winwiki.org/.../download  (ReimageRepair.exe)

1 / 68      (PUP)

URL:
http://winwiki.org/

Title:
“Windows Wiki”

Description:
“How to Fix Windows Mail Error 0x800cccd2 Errors Windows operating system misconfiguration is the main cause of Windows Mail Error 0x800cccd2 error”

SSL certificate subject:
CN=sni109463.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (PHP/5.5.30)