download.lovivideo.ru

Private Person  (Proxy Registrant)

Domain Information

The domain download.lovivideo.ru is registered by proxy through REGGI-RU and was originally registered in July of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
REGGI-RU

Server location:
Moscow City, Russia (RU)

Create date:
Saturday, July 23, 2011

Expires date:
Saturday, July 23, 2016

ASN:
AS199860 SDN-AS Stack Data Network LLC,RU

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.iTVA.O, PUP.Installer.ITVA, PUP.ITVA.Installer (M)
100.00%

IKARUS anti.virus
PUA.Itva
66.67%

Bkav FE
W32.HfsAdware
33.33%

MicroWorld eScan
Adware.Generic.1270134
33.33%

Malwarebytes
PUP.Optional.BundleInstaller.A
33.33%

Bitdefender
Adware.Generic.1270134
33.33%

K7 AntiVirus
Adware
33.33%

Agnitum Outpost
Riskware.Agent
33.33%

ESET NOD32
Win32/Itva.E potentially unwanted
33.33%

NANO AntiVirus
Riskware.Win32.Downware.dsdvwr
33.33%

Lavasoft Ad-Aware
Adware.Generic.1270134
33.33%

F-Secure
Adware.Generic.1270134
33.33%

VIPRE Antivirus
Trojan.Win32.Generic
33.33%

Trend Micro
TROJ_GEN.R047C0EFM15
33.33%

Emsisoft Anti-Malware
Adware.Generic.1270134
33.33%

The domain download.lovivideo.ru has been seen to resolve to the following IP address.

February 4, 2015

File downloads found at URLs served by download.lovivideo.ru.

1 / 68      (PUP)

20 / 68    (Adware)
http://download.lovivideo.ru/LoviVideoSetupRU.exe  (d681ccdff2c401cd35c307562c02f7d1)

20 / 68    (Adware)

2 / 68      (Adware)
http://download.lovivideo.ru/LoviVideoSetupRU.exe  (2dcdf5bebe76fc8a1d9147dd5d9ca40d)

URL:
http://download.lovivideo.ru/

Web server:
nginx/1.9.9

30 of 34 related domains