141.101.113.10

RIPE Network Coordination Centre

IP Address Information

The Internet Service Provider (ISP) that owns the network address of 141.101.113.10 is RIPE Network Coordination Centre and located in Netherlands. Currently there are 6 domain names that utilize this address. The primary domain hosted by this IP is downloader2.downloadinfo.co along with 5 other domains which are known adware distribution web sites. The address and domain is leased to Downloadinfo.
Scanner detections:
Detections  (71% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.PremiumInstaller.F, PUP.Installer.QuickDownloader.FF, PUP.Installer.Downloadinfo.Q, PUP.Installer.OutBrowse.F, PUP.QuickDownloader.O, PUP.Installer.FastDownloads.M, PUP.OutBrowse.F, PUP.Installer.Rollnon.I, PUP.Installer.FastDownloads.K, PUP.Installer.INSTALLTHIS.F, PUP.OutBrowse.Z, PUP.Adlogica.FastDownloads.Bundler (M), PUP.Adknowledge.INSTALLDOTEXE.Installer (M), PUP.Adknowledge.PremiumInstaller.Installer (M), PUP.Adlogica.QuickDow.Bundler (M), PUP.Adknowledge.PremiumI.Bundler (M), PUP.installCore.SecureIn.Installer (M), PUP.installCore.ClickMeI.Installer (M), PUP.Adlogica.FastDown.Bundler (M), PUP.Outbrowse.Bundler (M)
83.33%

Dr.Web
Adware.InstallCore.133, Adware.Downware.2081, Adware.Downware.1664, Adware.InstallCore.86, Trojan.Packed.24524, Trojan.Packed.26807
50.00%

VIPRE Antivirus
InstallCore, Trojan.Win32.Generic, OutBrowse, Threat.4784459, Rocketfuel Installer, Threat.4786018, Threat.4778314, Threat.4823950
41.67%

Sophos
Install Core, OutBrowse, NextUp, Install Core Click run software, iBryte Optimum Installer, PUA 'Install Core'
38.89%

K7 Gateway Antivirus
Unwanted-Program , Trojan , Adware
36.11%

ESET NOD32
Win32/Bundled.Toolbar.Google, Win32/Toolbar.MyWebSearch (variant), Win32/OutBrowse, Win32/InstallCore.ES (variant), Win32/InstallCore.GQ
30.56%

K7 AntiVirus
Unwanted-Program , Trojan , Adware
30.56%

Comodo Security
Application.Win32.InstallCore.KAU, UnclassifiedMalware, Application.Win32.Outbrowse.G, Application.Win32.InstallCore.ILD
30.56%

Avira AntiVirus
Adware/InstallCore.AU.1, ADWARE/InstallCore.Gen7, APPL/Downloader.Gen, Adware/InstallCore.ILD, ADWARE/Adware.Gen7, PUA/Outbrowse.Gen
30.56%

ESET NOD32
Win32/InstallCore.BY potentially unwanted application, Win32/OutBrowse.K potentially unwanted application, Win32/InstallCore.IL potentially unwanted application
30.56%

The following domains resolved to the IP address 141.101.113.10.

File URLs download from 141.101.113.10.

 
Latest 30 of 1,200 download URLs

The geographical location of this IP address.

Country:
United Kingdom (GB)

Region:
England

City:
London

Coordinates:
51.5085, -0.12574

The ARIN network assigned organization for IP address 141.101.113.10.

Org name:
RIPE Network Coordination Centre

Org identifier:
RIPE

Org country:
Netherlands (NL)

Org city:
Amsterdam

Org address:
P.O. Box 10096

ARIN WHOIS:
NetRange: 141.0.0.0 - 141.255.255.255
CIDR: 141.0.0.0/8
OriginAS:
NetName: RIPE-ERX-141
NetHandle: NET-141-0-0-0-0
Parent:
NetType: Early Registrations, Maintained by RIPE NCC
Comment: the RIPE NCC region. Contact information can be found in
RegDate: 1993-05-01
Updated: 2009-05-18
Ref: http://whois.arin.net/rest/net/NET-141-0-0-0-0

OrgName: RIPE Network Coordination Centre
OrgId: RIPE
Address: P.O. Box 10096
City: Amsterdam
StateProv:
PostalCode: 1001EB
Country: NL
RegDate:
Updated: 2013-07-29
Ref: http://whois.arin.net/rest/org/RIPE

OrgAbuseHandle: ABUSE3850-ARIN
OrgAbuseName: Abuse Contact
OrgAbusePhone: +31205354444
OrgAbuseEmail: abuse@ripe.net
OrgAbuseRef: http://whois.arin.net/rest/poc/ABUSE3850-ARIN

OrgTechHandle: RNO29-ARIN
OrgTechName: RIPE NCC Operations
OrgTechPhone: +31 20 535 4444
OrgTechEmail: hostmaster@ripe.net
OrgTechRef: http://whois.arin.net/rest/poc/RNO29-ARIN


Autonomous System Assignment
ASNumber:
13335

ASName:
CLOUDFLARENET - CloudFlare, Inc.

ASHandle:
AS13335

Remove Malware from 141.101.113.10 - Powered by Reason Core Security