upnow2app.theupdateschecker.org

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain upnow2app.theupdateschecker.org is registered by proxy through Registrar of Domain Names REG.RU LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
Registrar of Domain Names REG.RU LLC

Server location:
Moscow City, Russia (RU)

ASN:
AS197695 AS-REGRU _Domain names registrar REG.RU_, Ltd,RU

Google Safe Browsing:
phishing

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.installCore.Installer, PUP.installCore.OOOServisM.Installer (M)
100.00%

avast!
Malware-gen
100.00%

ESET NOD32
Win32/InstallCore.YL potentially unwanted application
100.00%

Avira AntiVirus
PUA/InstallCore.Gen
100.00%

K7 AntiVirus
Adware
100.00%

Dr.Web
Trojan.InstallCore.314
100.00%

Baidu Antivirus
Adware.Win32.InstallCore
100.00%

Qihoo 360 Security
HEUR/QVM06.1.Malware.Gen
100.00%

VIPRE Antivirus
Threat.4150696
100.00%

Bkav FE
W32.HfsAdware
100.00%

AVG
Generic
100.00%

Comodo Security
Application.Win32.InstallCore.DBX
100.00%

Vba32 AntiVirus
Malware-Cryptor.InstallCore.gen
66.67%

herdProtect (fuzzy)
a variant of 64d30119197dcba37247a27bd9aae89b4d5dbc83
33.33%

The domain upnow2app.theupdateschecker.org has been seen to resolve to the following 2 IP addresses.

February 12, 2016

May 15, 2015

File downloads found at URLs served by upnow2app.theupdateschecker.org.