www.hansotools.com

BRAINS

Domain Information

The domain www.hansotools.com registered by BRAINS was initially registered in March of 2010 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Kihei, Hawaii within the United States which resides on the ThePlanet.com Internet Services, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Hawaii, United States (US)

Create date:
Thursday, March 25, 2010

Expires date:
Sunday, March 25, 2018

Updated date:
Wednesday, February 13, 2013

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Root domain:

Scanner detections:
Detections  (80% detected)

Scan engine
Details
Detections

Kaspersky
not-a-virus:Downloader.Win32.AdLoad, not-a-virus:Downloader.Win32.Agent
75.00%

Reason Heuristics
PUP.Installer.HipgnosisVision.S, PUP.Prospera.Installer (M)
50.00%

ESET NOD32
MSIL/HipgnosisBrains.A potentially unwanted application
50.00%

Dr.Web
Detection.Undefined
50.00%

K7 AntiVirus
Unwanted-Program
25.00%

Trend Micro House Call
TROJ_GEN.F47V0311
25.00%

Sophos
Generic PUA JJ
25.00%

Vba32 AntiVirus
Downloader.AdLoad
25.00%

ESET NOD32
Win32/DownWare
25.00%

IKARUS anti.virus
not-a-virus:Downloader.Win32.AdLoad
25.00%

Qihoo 360 Security
Win32/Virus.Downloader.d92
25.00%

VIPRE Antivirus
Threat.4725220
25.00%

The domain www.hansotools.com has been seen to resolve to the following IP address.

184.173.253.242-static.reverse.softlayer.com
April 16, 2014

File downloads found at URLs served by www.hansotools.com.

3 / 68      (PUP)

4 / 68      (PUP)
http://www.hansotools.com/.../hanso-burner-setup.exe  (a987a2915cd85bf703c40eae86562172)

1 / 68      (PUP)
http://www.hansotools.com/.../hanso-recorder-setup.exe  (2bb4b78a69e70ffe8f8e976cfb054abe)

0 / 68
http://www.hansotools.com/.../hanso-burner-setup.exe  (1a1012a5fdedcffbf0248641df4671f9)

9 / 68      (PUP)
http://www.hansotools.com/.../hanso-burner-setup.exe  (6bea9f89ad8525468174562646392a1a)

The following 69 files have been seen to comunicate with www.hansotools.com in live environments.

 
Latest 20 of 69 files

URL:
http://www.hansotools.com/

Google Analytics:
UA-21451450

Title:
“HansoTools -Multimedia tools for everyone”

Description:
“Hansotools - Multimedia tools for everyone”

Web server:
Apache/2.2.22 (Unix) mod_ssl/2.2.22 OpenSSL/1.0.0-fips mod_bwlimited/1.4 (PHP/5.3.16)

Facebook:
Shares:  7

Twitter:
Shares:  1

Statistics are for the previous month.