www.appassa.com

Moniker Privacy Services  (Proxy Registrant)

Domain Information

The domain www.appassa.com is registered by proxy through Moniker Online Services and was originally registered in July of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
Moniker Online Services

Server location:
Texas, United States (US)

Create date:
Tuesday, July 1, 2014

Expires date:
Wednesday, July 1, 2015

Updated date:
Tuesday, July 1, 2014

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.PurpleTechSoftware.T, PUP.Performersoft.PurpleTe.Bundler (M), PUP.Performersoft (M)
100.00%

avast!
Malware-gen
20.00%

VIPRE Antivirus
Threat.4759033
20.00%

ESET NOD32
Win32/InstallBrain.CP potentially unwanted application
20.00%

Malwarebytes
PUP.Optional.InstallBrain.A
20.00%

Zillya! Antivirus
Trojan.Black.Win32.16744
20.00%

SUPERAntiSpyware
Questionable.Resource
20.00%

K7 AntiVirus
Unwanted-Program
20.00%

NANO AntiVirus
Riskware.Win32.Downware.cypgup
20.00%

F-Prot
W32/IBrain.B2.gen
20.00%

Sophos
PUA.InstallBrain
20.00%

Dr.Web
Adware.Downware.8543
20.00%

Avira AntiVirus
APPL/InstallBrain.Gen
20.00%

AhnLab V3 Security
PUP/Win32.InstallBrain
20.00%

G Data
Win32.Application.InstallBrain
20.00%

The domain www.appassa.com has been seen to resolve to the following 4 IP addresses.

50.97.44.131-static.reverse.softlayer.com
October 20, 2014

174.37.181.31-static.reverse.softlayer.com
October 20, 2014

173.192.190.227-static.reverse.softlayer.com
October 20, 2014

50.97.49.243-static.reverse.softlayer.com
October 20, 2014

File downloads found at URLs served by www.appassa.com.

The following 15 files have been seen to comunicate with www.appassa.com in live environments.

URL:
http://www.appassa.com/

Title:
“Contact Us”

Web server:
nginx/1.2.4 (PHP/5.3.16)