www.bitzipper.com

BITBERRY SOFTWARE APS

Domain Information

The domain www.bitzipper.com registered by BITBERRY SOFTWARE APS was initially registered in June of 2000 through ENOM, INC.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the pair Networks network.
Registrar:
ENOM, INC.

Server location:
New York, United States (US)

Create date:
Tuesday, June 13, 2000

Expires date:
Wednesday, February 8, 2017

Updated date:
Friday, October 18, 2013

ASN:
AS7859 PAIR-NETWORKS - pair Networks

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.W3i.Z, Adware.Installer.BitberrySoftware.AA, PUP.Installer.BitberrySoftware.b, PUP.Installer.W3i.d, PUP.Optional.Installer.Z, PUP.Bitberry.Installer (M), PUP.Bitberry.BitberrySoftware.Installer (M), PUP.Bitberry.Optional.Installer.Meta (L), PUP.Bitberry.Optional (L)
95.00%

Dr.Web
Adware.W3i.9, Adware.InstallCore.133, Adware.Downware.8536, Trojan.MulDrop5.38104, Trojan.MulDrop5.42416, Trojan.MulDrop5.46988
35.00%

McAfee
Artemis!370EA922FC3E, Artemis!A18FB9AD3B44, Artemis!A10501A69346, Artemis!823312082481, Artemis!9736DA48565C, Artemis!84350183700A, Artemis!E8E6486CBA16, Virus.W32/Sality.gen.z, Artemis!89465B284CA0
35.00%

K7 AntiVirus
Unwanted-Program , Trojan
35.00%

Sophos
InstallQ, Install Core, Install Core Click run software
32.50%

ESET NOD32
Win32/InstallIQ (variant), Win32/InstallCore.CU (variant), Win32/InstallCore.QF (variant), Win32/InstallCore.SX (variant)
32.50%

VIPRE Antivirus
InstallIQ Installer, InstallCore.b, Trojan.Win32.Generic
30.00%

Trend Micro House Call
TROJ_GEN.F47V1122, Suspicious_GEN.F47V1117, Suspicious_GEN.F47V1203, Suspicious_GEN.F47V0113, Suspicious_GEN.F47V0121, Suspicious_GEN.F47V0203
30.00%

Fortinet FortiGate
Riskware/InstallCore, Riskware/FileTypeAssistant
25.00%

Baidu Antivirus
Trojan.Win32.InstallIQ, Adware.Win32.InstallCore
20.00%

Avira AntiVirus
ADWARE/InstallCore.Gen9, ADWARE/InstallCore.Gen4, Adware/InstallCore.798016, Adware/InstallCore.782544, Adware/InstallCore.798424
20.00%

F-Secure
Application:W32/Generic.70053c248f!Online, Win32.Sality.3, Trojan.Generic.8613015
7.50%

Malwarebytes
PUP.Optional.InstallIQ.A, PUP.Optional.InstallCore
7.50%

Kaspersky
not-a-virus:Downloader.Win32.Agent, Virus.Win32.Sality, Trojan-Dropper.Win32.VB
7.50%

F-Prot
W32/InstallCore.R2.gen, W32/Sality.E.gen, W32/VB.AD.gen
7.50%

The domain www.bitzipper.com has been seen to resolve to the following IP address.

bitzipper.com
January 28, 2014

File downloads found at URLs served by www.bitzipper.com.

1 / 68      (PUP)

8 / 68      (Adware)

1 / 68      (PUP)
http://www.bitzipper.com/.../BitZipper2010.v20121001.TrialSetupEs.exe  (bitzipper2010.v20120427.trialsetupes.exe)

13 / 68    (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.bitzipper.com/.../BitZipper2010.v20120512.TrialSetupEs.exe  (bitzipper2010.v20120427.trialsetupes.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.bitzipper.com/.../BitZipper2010.v20120605.TrialSetupEs.exe  (bitzipper2010.v20120427.trialsetupes.exe)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.bitzipper.com/.../BitZipper2010.v12062974.TrialSetupEs.exe  (bitzipper2010.v20120427.trialsetupes.exe)

14 / 68    (PUP)

1 / 68      (PUP)
http://www.bitzipper.com/.../BitZipper2010.v20120227.TrialSetupEs.exe  (bitzipper2010.v20120427.trialsetupes.exe)

1 / 68      (PUP)

1 / 68      (PUP)

5 / 68      (Adware)
http://www.bitzipper.com/.../BitZipperH2010.v6319351.TrialSetupEn.exe  (bitzipperh2010.v12894975.trialsetupen.exe)

5 / 68      (Adware)
http://www.bitzipper.com/.../BitZipperH2010.v20110116.TrialSetupEn.exe  (bitzipperh2010.v12894975.trialsetupen.exe)

2 / 68      (PUP)

1 / 68      (PUP)
http://www.bitzipper.com/.../BitZipper2010.v856499.TrialSetupFr.exe  (bitzipper2010.v1524658.trialsetupfr.exe)

The following file have been seen to comunicate with www.bitzipper.com in live environments.

URL:
http://www.bitzipper.com/

Google Analytics:
UA-1821578

Title:
“Create ZIP files, open RAR files, open ZIPX files, open ISO files and many other file types as easy as 1-2-3!”

Description:
“Unzip WinZip, WinRAR, WinAce and many other types of archives as easy as 1-2-3! If you download files from the Internet, BitZipper is what you need to access them.”

Web server:
Apache/2.2.31

Facebook:
Likes:  29
Shares:  38
Comments:  29

Statistics are for the previous month.