www.oxid.it

Montoro Massimiliano

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cagliari, Sardegna within Italy which resides on the RIPE Network Coordination Centre network.
Server location:
Sardegna, Italy (IT)

ASN:
AS8612 TISCALI-IT Tiscali Italia S.P.A.

Root domain:

Scanner detections:
Detections  (58% detected)

Scan engine
Details
Detections

K7 AntiVirus
Trojan , Hacktool , Riskware
63.16%

Norman
Troj_Generic.LQVFN, Troj_Generic.RQRWL, Troj_Generic.RZYZE, Suspicious_Gen4.FKTEN, Troj_Generic.SELAS, Troj_Generic.SSGJJ
57.89%

Kaspersky
not-a-virus:PSWTool.Win32.Cain, Packed.Multi.SuspiciousPacker
57.89%

K7 Gateway Antivirus
Trojan , Hacktool
57.89%

Kingsoft AntiVirus
Win32.Troj.Generic.a.(kcloud), Win32.Malware.Generic.a.(kcloud)
52.63%

Fortinet FortiGate
Riskware/CainAbel, W32/Multi.SUSPICIOUSPACKER, HackTool/Cain, W32/Cain.20!tr, Riskware/CainNAbel
52.63%

NANO AntiVirus
Riskware.Win32.Cain.capget, Trojan.Win32.Cain.crmfza, Riskware.Win32.Cain.coldhg, Riskware.Win32.Cain.hrrt, Trojan.Win32.CainAbel.cvddbb
52.63%

ESET NOD32
Win32/CainAbel (variant), Win32/CainAbel potentially unsafe (variant)
42.11%

McAfee
PWCrack-Cain, Artemis!DAF6A425BDE9, Artemis!9C627850434B, Generic PUP.g, Artemis!BAC971593859, Artemis!4F1CAEDD6510, Artemis!1D261902DA6D, Artemis!2D4268DCF6E5
42.11%

McAfee Web Gateway
PWCrack-Cain, Artemis!DAF6A425BDE9, Artemis!9C627850434B, Generic PUP.g, Artemis!BAC971593859, Artemis!4F1CAEDD6510, Artemis!1D261902DA6D
42.11%

Dr.Web
Tool.Cain.109, Tool.Cain.71, Tool.Cain.107
36.84%

IKARUS anti.virus
not-a-virus:PSWTool.Cain, not-a-virus:PSWTool.Win32.Cain, Win32.Malware, Virus.Win32.Dropper
36.84%

Trend Micro House Call
TROJ_GEN.R0CBC0OLM13, HKTL_CAIN, TROJ_GEN.R0CBH07LK13, TROJ_GEN.R047H07D714, HKTL_CAIN.AF
36.84%

avast!
Win32:PUP-gen [PUP], Win32:Dropper-gen [Drp]
31.58%

VIPRE Antivirus
Cain & Abel (not malicious), Threat.4150696, Email-Worm.Win32.GOPworm.196
31.58%

The domain www.oxid.it has been seen to resolve to the following IP address.

web-vip-it.eu.tiscali.it
August 5, 2013

File downloads found at URLs served by www.oxid.it.

0 / 68
http://www.oxid.it/.../ca_setup.exe  (ceee77c24fe96c6406c51d42d16cf725)

0 / 68
http://www.oxid.it/.../ca_setup.exe  (fab13dd2161703ebf851fcbda18ccefb)

0 / 68
http://www.oxid.it/.../ca_setup.exe  (33dea033c209da9058814260ff3cc2a3)

0 / 68
http://www.oxid.it/.../ca_setup.exe  (216af05674a1db54d048a71353b0e587)

2 / 68      (inconclusive)
http://www.oxid.it/.../ca_setup.exe  (bac7700e3260e96b27b26cfdf9140fed)

1 / 68      (Adware)
http://www.oxid.it/.../ca_setup.exe  (f44b8efd11555476ce75f0b1bbe7a000)

13 / 68    (PUP)

0 / 68
http://www.oxid.it/.../ca_setup.exe  (a7e27d817486f67594d105b8c3236862)

15 / 68    (Malware)
http://www.oxid.it/.../ca_setup.exe  (2d4268dcf6e57739c0013c8cbb51062c)

2 / 68      (false positives)

3 / 68      (inconclusive)
http://www.oxid.it/.../sterm17.exe  (094aa82d9bd41a6483e74cca7799646b)

14 / 68    (Malware)
http://www.oxid.it/.../arpworks10.exe  (61f048ae6dd0bb719ce4bb9d91689c60)

2 / 68      (inconclusive)
http://www.oxid.it/.../irs20.exe  (aa1c784301887b7d6da15addef57977d)

11 / 68    (Malware)
http://www.oxid.it/.../ca_setup.exe  (ca_setup_4.9.54.exe)

17 / 68    (PUP)
http://www.oxid.it/.../ca_setup.exe  (b834105299960cc2b86ce33cce8c14ce)

13 / 68    (PUP)
http://www.oxid.it/.../ca_setup.exe  (ea2ef30c99ececb1eda9aa128631ff31)

14 / 68    (Malware)
http://www.oxid.it/.../ca_setup.exe  (bac971593859b6c96b876ea5625ab4ec)

21 / 68    (Malware)
http://www.oxid.it/.../ca_setup.exe  (1d261902da6dc36a665aef4f5bd2de09)

33 / 68    (PUP)
http://www.oxid.it/.../cain20.exe  (a14185fafc1a0a433752a75c0b8ce15d)

7 / 68      (inconclusive)
http://www.oxid.it/.../ca_setup.exe  (6d5b70b9f512cf801a170539ce18613c)

10 / 68    (Malware)
http://www.oxid.it/.../ca_setup.exe  (9c627850434b8c5a24cf37b45acaea42)

15 / 68    (PUP)

20 / 68    (PUP)
http://www.oxid.it/.../ca_setup.exe  (cain_and_abel 4.9.43_setup.exe)

20 / 68    (PUP)
http://www.oxid.it/.../ca_setup.exe  (7769b28d5786d07fbcad8c8c0d4b0c09)

URL:
http://www.oxid.it/

Title:
“oxid.it - Home”

Web server:
Apache

Facebook:
Likes:  122
Shares:  349
Comments:  123

Statistics are for the previous month.