download-host66.ru

Private Person  (Proxy Registrant)

Domain Information

The domain download-host66.ru is registered by proxy through REGTIME-RU and was originally registered in December of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Edinburgh, Scotland within United Kingdom which resides on the Latin American and Caribbean IP address Regional Registry network.
Registrar:
REGTIME-RU

Server location:
Scotland, United Kingdom (GB)

Create date:
Thursday, December 25, 2014

Expires date:
Friday, December 25, 2015

ASN:
AS59711 FORTUNIX-AS Fortunix Networks L.P.,GB

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP
100.00%

avast!
Downloader-VWK [PUP]
100.00%

Dr.Web
Trojan.Zadved.61
100.00%

VIPRE Antivirus
Threat.5064197
100.00%

Emsisoft Anti-Malware
Gen:Variant.Application.Bundler.DlHelper
100.00%

F-Secure
Riskware.Gen:Variant.Application.Bundler
100.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.DlHelper.2
100.00%

Norman
Gen:Variant.Graftor.163346
100.00%

Bkav FE
W32.HfsAdware
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.DlHelper.2
100.00%

Zillya! Antivirus
Trojan.Black.Win32.30247
100.00%

K7 AntiVirus
Unwanted-Program
100.00%

Bitdefender
Gen:Variant.Application.Bundler.DlHelper.2
100.00%

NANO AntiVirus
Trojan.Win32.Zadved.dqcozf
100.00%

G Data
Gen:Variant.Application.Bundler.DlHelper
100.00%

The domain download-host66.ru has been seen to resolve to the following IP address.

May 5, 2015

File downloads found at URLs served by download-host66.ru.

URL:
http://download-host66.ru/

Web server:
nginx/1.2.1 (PHP/5.4.36-0+deb7u3)