www.anysend.com

ClickMeIn Limited

Domain Information

The domain www.anysend.com registered by ClickMeIn Limited was initially registered in November of 2010 through DOMAIN.COM, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Salt Lake City, Utah within the United States which resides on the Hosting Services, Inc. network.
Remove Malware from www.anysend.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Utah, United States (US)

Create date:
Wednesday, November 10, 2010

Expires date:
Thursday, November 10, 2016

Updated date:
Thursday, August 13, 2015

ASN:
AS29854 WESTHOST - WestHost, Inc.

Root domain:

Scanner detections:
Detections  (96% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ironSource, PUP.Installer.ClickMeInLimited.F, PUP.Optional.Installer.F, PUP.Installer.AnySend, PUP.Installer.ClickMeInLimited.K, PUP.Installer.OUTBROWSE.F, Threat.ironSource.Installer, PUP.Outbrowse.TIKiTAKa.Bundler (M), PUP.installCore (M), PUP.installCore.ClickMeIn.Installer (M)
92.00%

Dr.Web
Trojan.Packed.24524, Adware.Downware.8528, Adware.InstallCore.110, Adware.Downware.2081, Adware.ClickMeIn.494, Trojan.Packed.24524
76.00%

ESET NOD32
Win32/InstallCore.JA (variant), Win32/AnySend, Win32/InstallCore.ES (variant), Win32/OutBrowse.AB
48.00%

AVG
Generic_c, Clickmein, Adware InstallCore.LA
44.00%

G Data
NSIS.Application.Vopackage, Win32.Application.Outbrowse, Win32.Application.InstallCore.CJ
36.00%

Trend Micro House Call
TROJ_GEN.F47V1017, TROJ_GE.5735175C
32.00%

Vba32 AntiVirus
Downware.InstallCore, Hoax.PornoAsset
32.00%

Avira AntiVirus
ADWARE/InstallCore.Gen7, ADWARE/InstallCore.Gen9, APPL/Downloader.Gen, PUA/InstallCore.Gen7
32.00%

McAfee
Artemis!F8A33A46E403, Adware-OutBrowse
32.00%

McAfee Web Gateway
BehavesLike.Win32.Downloader.fc, BehavesLike.Win32.AdwareOutBrowse.hc
32.00%

avast!
Win32:Malware-gen
28.00%

Baidu Antivirus
PUA.Win32.AnySend
28.00%

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
24.00%

Agnitum Outpost
PUA.InstallCore, PUA.OutBrowse
20.00%

ESET NOD32
Win32/InstallCore.JA potentially unwanted application, Win32/InstallCore.BY potentially unwanted application
16.00%

The domain www.anysend.com has been seen to resolve to the following 5 IP addresses.

dl6.clickmein.com
December 27, 2013

dl4.clickmein.com
December 27, 2013

dl2.clickmein.com
December 27, 2013

dl5.clickmein.com
December 27, 2013

dl3.clickmein.com
December 27, 2013

File downloads found at URLs served by www.anysend.com.

10 / 68    (Adware)

5 / 68      (Adware)

11 / 68    (Adware)

7 / 68      (Adware)

23 / 68    (Adware)

5 / 68      (Adware)

4 / 68      (Adware)

10 / 68    (PUP)

5 / 68      (PUP)

5 / 68      (Adware)

The following 7 files have been seen to comunicate with www.anysend.com in live environments.

URL:
http://www.anysend.com/

Google Analytics:
UA-30594637

Title:
“Send Large Files for FREE. AnySize, AnyFile, AnyWhere | AnySend”

Description:
“Send Large Files for FREE. Send AnyFile, AnySize, AnyWhere. Sending files was never so easy. Send unlimited size, Send as much as you wantSend & Share your files or folders & it's totaly FREE. Start using AnySend.com!”

Web server:
nginx

Facebook:
Likes:  84
Shares:  97
Comments:  19

Statistics are for the previous month.

Remove Malware from www.anysend.com - Powered by Reason Core Security