www.in4p.com

Sam Cohen-Brown

Domain Information

The domain www.in4p.com registered by Sam Cohen-Brown was initially registered in March of 2008 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the Input Output Flood LLC network.
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Sunday, March 30, 2008

Expires date:
Thursday, March 30, 2017

Updated date:
Thursday, March 31, 2016

ASN:
AS53755 IOFLOOD - Input Output Flood LLC

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.RSPARKLIMITEDLIABILITYCOMPANY.S, PUP.OutBrowse.RSPARKLIMITEDLIABILITYCOMPANY.Installer (M), PUP.OutBrowse.RSPARKLI.Installer (M)
87.50%

McAfee
Adware-OutBrowse, Adware-OutBrowse.a, Program.Adware-OutBrowse.e
50.00%

Malwarebytes
PUP.Optional.OutBrowse
50.00%

Dr.Web
infected with Trojan.Packed.28387, Trojan.Packed.28592
50.00%

VIPRE Antivirus
Threat.4823950, Threat.4150696
37.50%

K7 AntiVirus
Unwanted-Program
37.50%

Agnitum Outpost
PUA.OutBrowse
37.50%

AVG
Generic, Potentially harmful program Downloader.DBX, Win.Threat.Medium
37.50%

ESET NOD32
Win32/OutBrowse.AB, Win32/OutBrowse.AV
25.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.Outbrowse.1
25.00%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.Outbrowse
25.00%

ESET NOD32
Win32/OutBrowse.BU potentially unwanted application
25.00%

avast!
OutBrowse-FR [PUP], OutBrowse-FK [PUP]
25.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.Outbrowse.1
25.00%

Trend Micro House Call
Suspici.2F9E2453, TROJ_GE.4678174B
25.00%

The domain www.in4p.com has been seen to resolve to the following IP address.

we.love.servers.at.ioflood.com
August 12, 2014

File downloads found at URLs served by www.in4p.com.

1 / 68      (Adware)
http://www.in4p.com/.../pdfunlocker_setup.php  (pdfunlockerfree_setup.exe)

1 / 68      (Adware)
http://www.in4p.com/.../countdowntimer_setup.php  (countdowntimerfree_setup.exe)

1 / 68      (Adware)
http://www.in4p.com/.../facebookmonitoring_setup.php  (facebookmonitoringfree_setup.exe)

1 / 68      (Adware)
http://www.in4p.com/.../scantopdf_setup.php  (scantopdffree_setup.exe)

29 / 68    (Adware)
http://www.in4p.com/.../pdfunlocker_setup.php  (pdfunlockerfree_setup.exe)

22 / 68    (Adware)
http://www.in4p.com/.../scantopdf_setup.php  (scantopdffree_setup.exe)

9 / 68      (Adware)
http://www.in4p.com/.../pdftojpg_setup.php  (pdftojpgfree_setup.exe)

6 / 68      (PUP)

The following file have been seen to comunicate with www.in4p.com in live environments.

URL:
http://www.in4p.com/

Web server:
Apache/2.2.27 (Unix) mod_ssl/2.2.27 OpenSSL/0.9.8e-fips-rhel5 mod_bwlimited/1.4