br.keweek.com

China Capital Investment Limited

Domain Information

The domain br.keweek.com registered by China Capital Investment Limited was initially registered in November of 2015 through SOLUCIONES CORPORATIVAS IP,SLU. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Vitoria-Gasteiz, Pais Vasco within Spain which resides on the RIPE Network Coordination Centre network.
Registrar:
INTERWEB ADVERTISING D.B.A. PROFILE BUILDER

Server location:
Pais Vasco, Spain (ES)

Create date:
Saturday, November 7, 2015

Expires date:
Monday, November 7, 2016

Updated date:
Saturday, November 7, 2015

ASN:
AS57910 SCIP-AS Soluciones Corporativas IP, SL,ES

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.AstroDeliveryFriedCookie.Y, PUP.installCore.FreeSoftware (M), PUP.InstallCore.Installer.Installer (M), PUP.Air Software.DownloadAssistant.Bundler (M), PUP.InstallCore.Installer (M), PUP.InstallCore.FC (M), PUP.InstallCore.FC.Installer (M), PUP.Air Software.Download.Bundler (M), PUP.Tightrope.Sanflex.Bundler (M), PUP.installCore.FreeSoft (M), PUP.Vittalia.Bundler (M), PUP.Air Software (M), PUP.Tightrope (M), PUP.installCore (M)
100.00%

Dr.Web
Trojan.InstallCore.15
2.86%

VIPRE Antivirus
Threat.4150696
2.86%

ESET NOD32
Win32/InstallCore.RO potentially unwanted application
2.86%

Malwarebytes
PUP.Optional.InstallCore
2.86%

K7 AntiVirus
Trojan
2.86%

Comodo Security
Application.Win32.InstallCore.RFPA
2.86%

Avira AntiVirus
ADWARE/InstallCore.Gen7
2.86%

AVG
Generic
2.86%

The domain br.keweek.com has been seen to resolve to the following 6 IP addresses.

192.230.92.93.ip.incapdns.net
August 6, 2016

199.83.132.93.ip.incapdns.net
June 26, 2016

April 2, 2016

50-56-220-58.static.cloud-ips.com
February 10, 2016

www.renewyourexpireddomain.com
September 21, 2015

rack6u11.hispaweb.net
November 1, 2014

File downloads found at URLs served by br.keweek.com.

 
Latest 30 of 35 download URLs

The following 13 files have been seen to comunicate with br.keweek.com in live environments.

URL:
http://br.keweek.com/

Web server:
nginx/1.8.1

Facebook:
Likes:  688

Statistics are for the previous month.