www.experimentalscene.com

Domain Name Proxy Service, Inc Privacy ID# 10747050  (Proxy Registrant)

Domain Information

The domain www.experimentalscene.com is registered by proxy through DNC HOLDINGS, INC. and was originally registered in July of 2003. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
DNC HOLDINGS, INC.

Server location:
Arizona, United States (US)

Create date:
Saturday, July 12, 2003

Expires date:
Thursday, July 12, 2018

Updated date:
Sunday, February 08, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Scanner detections:
Detections  (60% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BetterInstaller.Somoto.CC, PUP.SomotoIsrael.d, PUP.OpenCandy.Installer (L), PUP.TomorrowSoftware.SpiralMedia.Bundler (M), PUP.DownloadAdmin.RazorEdgeMedia.Installer (M), PUP.DownloadAdmin.RedLightMedia.Installer (M), PUP.NewMedia.NMH.Bundler (M)
68.97%

K7 AntiVirus
Trojan , Unwanted-Program
34.48%

ESET NOD32
Win32/Somoto, Win32/DownWare, Win32/OpenCandy potentially unsafe, Win32/OpenCandy.C potentially unsafe (variant), Win32/OpenCandy.A potentially unsafe (variant)
34.48%

K7 Gateway Antivirus
Trojan , Unwanted-Program
31.03%

VIPRE Antivirus
BetterInstaller, Trojan.Win32.Generic, Opencandy, OpenCandy (PUA) (not malicious), Threat.4763461
31.03%

Dr.Web
Adware.Somoto.17, Adware.OpenCandy.7, Adware.OpenCandy.152, Adware.OpenCandy.137, Trojan.Siggen6.54687
27.59%

McAfee Web Gateway
BehavesLike.Win32.PUP.vc, BehavesLike.Win32.BadFile.vc, BehavesLike.Win32.Pate.vc, BehavesLike.Win32.Downloader.vc, BehavesLike.Win32.Sytro.vc
27.59%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.OpenCandy
24.14%

F-Prot
W32/SomotoBetterInstaller.A, W32/OpenCandy.B, W32/OpenCandy.A.gen, W32/VB.AD.gen
24.14%

avast!
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:VB-OJQ [Wrm], Win32:Evo-gen [Susp]
24.14%

G Data
Win32.Application.BetterInstaller, Win32.Adware.OpenCandy, Win32.Application.OpenCandy
24.14%

AVG
AdInstaller.Somoto, OpenCandy
24.14%

Sophos
Somoto BetterInstaller, Generic PUA PN, OpenCandy (PUA)
20.69%

Rising Antivirus
PE:Trojan.Win32.Generic.13B1FE4B!330432075, PE:PUF.OpenCandy!1.9DE5, PE:Malware.Generic(Thunder)!1.A1C4 [F], PE:Malware.Generic/QRS!1.9E2D [F]
20.69%

McAfee
Artemis!EB9A79F79F67, Artemis!FC0EE793E9C6, Artemis!AB80C698B7EF, Artemis!B78CA587EDBF, Artemis!26E40E62728C, Artemis!F7042BC7F4B0
20.69%

The domain www.experimentalscene.com has been seen to resolve to the following 2 IP addresses.

ip-160-153-92-67.ip.secureserver.net
May 15, 2015

February 5, 2014

File downloads found at URLs served by www.experimentalscene.com.

1 / 68      (Adware)

3 / 68      (PUP)

1 / 68      (Adware)

0 / 68

5 / 68      (PUP)

23 / 68    (PUP)

1 / 68      (PUP)

0 / 68

19 / 68    (PUP)

0 / 68
http://www.experimentalscene.com/.../DGenR8-VST-4.3.9.exe  (badc8251a5fe72de6b4973149ef5c022)

0 / 68

0 / 68

1 / 68      (Adware)

0 / 68

1 / 68      (PUP)

22 / 68    (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

16 / 68    (PUP)

16 / 68    (PUP)

14 / 68    (PUP)

0 / 68
http://www.experimentalscene.com/.../DGenR8-VST-4.3.0.exe  (25f65c5cb83612e179ab45cee6d66807)

5 / 68      (PUP)

1 / 68      (Adware)

URL:
http://www.experimentalscene.com/

Title:
“ExperimentalScene”

Web server:
Apache/2.4.12 (PHP/5.4.43)

Facebook:
Likes:  4
Shares:  19
Comments:  2

Statistics are for the previous month.