The domain www.appkibb.com is registered by proxy through Moniker Online Services and was originally registered in July of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Registrant:
Moniker Privacy Services
Registrar:
Moniker Online Services
Server location:
Texas, United States (US)
Create date:
Tuesday, July 1, 2014
Expires date:
Wednesday, July 1, 2015
Updated date:
Tuesday, July 1, 2014
ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.PurpleTechSoftware.T, PUP.Performersoft.PurpleTechSoftware.Bundler (M), PUP.Performersoft.R2D2TechSoftware.Bundler (M), PUP.Performersoft.PurpleTe.Bundler (M), PUP.Performersoft.GiraffeT.Bundler (M), PUP.Performersoft (M)
100.00%
Dr.Web
Adware.Downware.8543, Trojan.Packed.28512, Adware.Downware.2473
37.50%
Avira AntiVirus
ADWARE/InstallBrain.Gen, APPL/InstallBrain.Gen
37.50%
AhnLab V3 Security
PUP/Win32.InstallBrain
37.50%
G Data
Win32.Application.InstallBrain, Adware.InstallBrain, Gen:Variant.Jaik.1231
37.50%
Vba32 AntiVirus
Trojan.Badur, AdWare.BrainInst
37.50%
AVG
Adware InstallBrain, Adware Generic_r
37.50%
Panda Antivirus
Trj/Genetic.gen
37.50%
Emsisoft Anti-Malware
Adware.InstallBrain, Gen:Variant.Jaik.1231
37.50%
MicroWorld eScan
Adware.InstallBrain.E, Gen:Variant.Jaik.1231
37.50%
NANO AntiVirus
Riskware.Win32.Downware.cypgup, Trojan.Win32.InstallBrain.derzsq, Riskware.Win32.Downware.cwmdeh
34.38%
F-Prot
W32/A-3442f84d, W32/IBrain.B2.gen
34.38%
Sophos
InstallBrain, PUA.InstallBrain, PUA 'InstallBrain'
34.38%
avast!
Malware-gen, Win32:Adware-gen [Adw]
31.25%
VIPRE Antivirus
Threat.4759033, InstallBrain
31.25%
The domain www.appkibb.com has been seen to resolve to the following 4 IP addresses.
173.192.190.226-static.reverse.softlayer.com
September 15, 2014
50.97.49.242-static.reverse.softlayer.com
September 15, 2014
50.97.44.130-static.reverse.softlayer.com
September 15, 2014
174.37.181.30-static.reverse.softlayer.com
September 15, 2014
File downloads found at URLs served by www.appkibb.com.
Latest 30 of 32 download URLs
The following 18 files have been seen to comunicate with www.appkibb.com in live environments.
URL:
http://www.appkibb.com/
Web server:
nginx/1.2.4 (PHP/5.3.16)