www.minecraft-cnet.com

ADLSoft  (via a Proxy Registrant)

Domain Information

The domain www.minecraft-cnet.com is registered by proxy through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM and was originally registered in July of 2013. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter. The domain is associated with the publisher ADLSoft who is located in Tel Aviv, Israel.
Remove Malware from www.minecraft-cnet.com - Powered by Reason Core Security
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM

Server location:
Oregon, United States (US)

Create date:
Thursday, July 11, 2013

Expires date:
Monday, July 11, 2016

Updated date:
Sunday, July 12, 2015

ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ADLSoft.O, PUP.installCore.ADLSoft.Installer (M), PUP.InstallCore.Bundler (M)
86.21%

F-Prot
W32/InstallCore.R.gen, W32/A-e0abbe7e, W32/A-2f590a8c, W32/A-dbe1ec51
75.86%

Dr.Web
Adware.InstallCore.133, Trojan.Packed.24524, Trojan.Packed.25266, Trojan.InstallCore.1318
75.86%

Sophos
Install Core Click run software, PUA.Install Core Click run software, PUA 'Install Core Click run software'
72.41%

Vba32 AntiVirus
Downware.InstallCore
65.52%

AVG
MalSign.InstallC, Adware InstallCore.LA
65.52%

Avira AntiVirus
TR/Agent.646600.7, ADWARE/InstallCore.Gen9
65.52%

Antiy Labs AVL
Trojan/Win32.Tgenic, Trojan/Win32.TSGeneric, Trojan/Win32.SGeneric
62.07%

Agnitum Outpost
PUA.InstallCore
58.62%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696, Threat.4786018
58.62%

ESET NOD32
Win32/InstallCore.JP (variant), Win32/InstallCore.FB
48.28%

McAfee Web Gateway
Artemis!6D6F8AEF5D4F, BehavesLike.Win32.CryptInno.jc, BehavesLike.Win32.Backdoor.jc, BehavesLike.Win32.Obfuscated.jc
37.93%

ESET NOD32
Win32/InstallCore.FB potentially unwanted application, Win32/InstallCore.JW potentially unwanted application, Win32/InstallCore.BY potentially unwanted application
31.03%

Norman
Kryptik.CDMO, Gen:Variant.Strictor.60617
24.14%

McAfee
Artemis!6D6F8AEF5D4F, Program.CryptInno
24.14%

The domain www.minecraft-cnet.com has been seen to resolve to the following IP address.

ec2-54-200-8-51.us-west-2.compute.amazonaws.com
February 27, 2014

File downloads found at URLs served by www.minecraft-cnet.com.

4 / 68      (PUP)

4 / 68      (PUP)

1 / 68      (Adware)

1 / 68      (Adware)

10 / 68    (PUP)

1 / 68      (Adware)

6 / 68      (PUP)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

24 / 68    (PUP)

16 / 68    (Adware)

18 / 68    (Adware)

15 / 68    (Adware)

12 / 68    (Adware)

11 / 68    (Adware)

15 / 68    (Adware)

11 / 68    (Adware)

11 / 68    (Adware)

11 / 68    (Adware)

11 / 68    (Adware)

15 / 68    (Adware)

15 / 68    (Adware)

15 / 68    (Adware)

15 / 68    (Adware)

15 / 68    (Adware)

11 / 68    (Adware)

11 / 68    (Adware)

21 / 68    (Adware)

Facebook:
Shares:  1

Statistics are for the previous month.

Remove Malware from www.minecraft-cnet.com - Powered by Reason Core Security