www.filewin.com

Vittalia Internet SL

Domain Information

The domain www.filewin.com registered by Vittalia Internet SL was initially registered in January of 2008 through SOLUCIONES CORPORATIVAS IP,SLU. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Madrid, Madrid within Spain which resides on the RIPE Network Coordination Centre network.
Remove Malware from www.filewin.com - Powered by Reason Core Security
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Madrid, Spain (ES)

Create date:
Tuesday, January 29, 2008

Expires date:
Sunday, January 29, 2017

Updated date:
Monday, December 14, 2015

ASN:
AS45037 HISPAWEB-NETWORK Propelin Consulting S.L.U.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.100BlogsSL.a, PUP.VittaliaLimited.q, PUP.FreeSoftware.b, PUP.FreeSoftware.f, PUP.VittaliaInternetSL.g, PUP.VittaliaInternetSL.AA, PUP.installCore.MaxSetup (M)
100.00%

VIPRE Antivirus
InstallCore.b, Threat.4782551, Threat.4783262, Vittalia Installer
66.67%

Agnitum Outpost
PUA.InstallCore, Riskware.Agent
55.56%

Comodo Security
Application.Win32.InstallCore.HYE, ApplicUnwnt, TrojWare.Win32.Agent.IEXT, Application.Win32.Vittalia.L
55.56%

Avira AntiVirus
Adware/InstallCore.144181, ADWARE/InstallCore.Gen9, APPL/Vittalia.onema
55.56%

Fortinet FortiGate
Riskware/InstallCore, Riskware/Vittalia
55.56%

Qihoo 360 Security
Win32/Virus.Adware.f76, Win32/Trojan.Adware.37e, Trojan.Generic, Malware.QVM10.Gen
55.56%

Malwarebytes
PUP.Optional.InstallCore, PUP.Optional.Vittalia, PUP.Optional.VIT
44.44%

McAfee
Artemis!D2CFE8BA58A5, Artemis!7A9D7AE0343D, Trojan.Artemis!A54A0D88CF48
44.44%

Trend Micro House Call
TROJ_GEN.F47V0428, Suspici.8683C5F7, Suspici.6E220AF5
44.44%

McAfee Web Gateway
Artemis!D2CFE8BA58A5, Artemis!7A9D7AE0343D, Artemis!1DCF4A8D70A2
44.44%

Sophos
Install Core Click run software, Generic PUA KE
44.44%

AVG
Generic_c, Adware Generic_r.JR
44.44%

K7 Gateway Antivirus
Unwanted-Program , Trojan
44.44%

ESET NOD32
Win32/InstallCore.MW, Win32/InstallCore.PS (variant)
33.33%

The domain www.filewin.com has been seen to resolve to the following 2 IP addresses.

February 13, 2016

rack6u11.hispaweb.net
April 13, 2014

File downloads found at URLs served by www.filewin.com.

1 / 68      (Adware)

15 / 68    (Adware)
http://www.filewin.com/Terraria/.../do  (installer_terraria_english.exe)

1 / 68      (Adware)
http://www.filewin.com/GTA-San-Andreas/.../do  (installer_gta_san_andreas_english.exe)

16 / 68    (Adware)
http://www.filewin.com/Microsoft-PowerPoint/.../do  (installer_microsoft_powerpoint_english.exe)

1 / 68      (Adware)

16 / 68    (Adware)

13 / 68    (Adware)

17 / 68    (Adware)
http://www.filewin.com/Microsoft-PowerPoint/.../do  (314063e7ffb473dc1f24605bf7d8df6d.exe)

17 / 68    (Adware)
http://www.filewin.com/GTA-San-Andreas/.../do  (f3f7cbd869cba284e3f3f470dcb8cab1.exe)

URL:
http://www.filewin.com/

Google Analytics:
UA-63402811

Title:
“Download your favorite software - Filewin.com”

Description:
“Download thousands of freeware, shareware and demo for Windows, Mac, mobile devices, Linux. - Filewin.com”

Web server:
Apache/2.4.7 (Ubuntu) (PHP/5.5.9-1ubuntu4.11)

Facebook:
Likes:  7
Shares:  29

Statistics are for the previous month.

Remove Malware from www.filewin.com - Powered by Reason Core Security