www.appfusu.com

c/o whoisproxy.com Ltd.

Domain Information

The domain www.appfusu.com registered by c/o whoisproxy.com Ltd. was initially registered in April of 2015 through Moniker Online Services. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Remove Malware from www.appfusu.com - Powered by Reason Core Security
Registrar:
KEY-SYSTEMS GMBH

Server location:
Texas, United States (US)

Create date:
Sunday, April 05, 2015

Expires date:
Tuesday, April 05, 2016

Updated date:
Sunday, April 05, 2015

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.GiraffeTechSoftware.BB, PUP.Installer.Performersoft, PUP.Bundler.Performersoft, Threat.Performersoft.Bundler, PUP.Performersoft.GreenTechSoftware.Bundler (M), Threat.Win.Reputation.IMP, PUP.Performersoft.PurpleTechSoftware.Bundler (M)
97.56%

K7 Gateway Antivirus
Unwanted-Program , Adware , Unwanted-File
95.12%

Dr.Web
Trojan.DownLoader9.5231, Trojan.DownLoader9.51862, Adware.Downware.1988, Adware.Downware.2448, Adware.Downware.2269, Trojan.DownLoader9.43505
95.12%

VIPRE Antivirus
Adware.Win32.InstallBrain.a, Threat.4759033
95.12%

avast!
Win32:Dropper-gen [Drp], Win32:Malware-gen, Win32:Adware-gen [Adw], Win32:PUP-gen [PUP], Win32:InstallBrain-BI [PUP], Win32:InstallBrain-CD [PUP]
92.68%

Sophos
Generic PUA DD, PUA 'InstallBrain', PUA.InstallBrain
92.68%

IKARUS anti.virus
Virus.Win32.Dropper, AdWare.InstallBrain, Win32.Malware, APPL.InstallBrain, Trojan.Win32.Spy
92.68%

Malwarebytes
PUP.Optional.InstallBrain.A, PUP.Optional.CodecPerformer.A, PUP.Optional.PCPerformer.A
92.68%

K7 AntiVirus
Unwanted-Program , Adware
92.68%

NANO AntiVirus
Trojan.Win32.MLW.cufiqf, Riskware.Win32.Downware.cvyhnz, Riskware.Win32.Downware.cwmdeh, Trojan.Win32.Badur.cwagzh, Trojan.Win32.InstallBrain.cyrega
92.68%

Agnitum Outpost
Riskware.Agent, PUA.InstallBrain
90.24%

Rising Antivirus
PE:Malware.Obscure!1.9C59, PE:Adware.Graftor!6.18FC, PE:PUF.SmartInstaller!1.9EA6
90.24%

AVG
Adware InstallBrain.Q, Adware InstallBrain.G, Adware InstallBrain.O, Skodna.Downloader, Adware InstallBrain.A, MalSign.InstallBrain
90.24%

Avira AntiVirus
APPL/InstallBrain.Gen, PUA/InstallBrain.Gen, Adware/Graftor.abx
90.24%

Comodo Security
Application.Win32.Installbrain.BM, Application.Win32.InstallBrain.BF, Application.Win32.InstallBrain.BE
90.24%

The domain www.appfusu.com has been seen to resolve to the following 12 IP addresses.

May 4, 2015

May 4, 2015

May 4, 2015

May 4, 2015

174.37.181.30-static.reverse.softlayer.com
March 27, 2014

50.97.44.130-static.reverse.softlayer.com
March 27, 2014

50.97.49.242-static.reverse.softlayer.com
March 27, 2014

173.192.190.226-static.reverse.softlayer.com
March 27, 2014

50.97.44.131-static.reverse.softlayer.com
March 20, 2014

173.192.190.227-static.reverse.softlayer.com
March 20, 2014

50.97.49.243-static.reverse.softlayer.com
March 20, 2014

174.37.181.31-static.reverse.softlayer.com
March 20, 2014

File downloads found at URLs served by www.appfusu.com.

32 / 68    (Adware)

40 / 68    (Adware)

1 / 68      (Adware)

23 / 68    (Adware)

23 / 68    (Adware)

 
Latest 30 of 75 download URLs

The following 3 files have been seen to comunicate with www.appfusu.com in live environments.

URL:
http://www.appfusu.com/

Title:
“appfusu.com”

Web server:
Apache

Remove Malware from www.appfusu.com - Powered by Reason Core Security