download.screencapture.ru
Private Person (Proxy Registrant)
Domain Information
The domain download.screencapture.ru is registered by proxy through REGGI-RU and was originally registered in April of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrant:
Private Person
Server location:
Moscow City, Russia (RU)
Create date:
Monday, April 16, 2012
Expires date:
Saturday, April 16, 2016
ASN:
AS199860 SDN-AS Stack Data Network LLC,RU
Scanner detections:
Detections (80% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.iTVA.T, PUP.Installer.ITVA, PUP.iTVA.ITVALimitedLiabilityCompany.Installer.Meta (M)
80.00%
Dr.Web
Adware.Downware.6456, Adware.Downware.10462, Adware.Downware.12375
60.00%
ESET NOD32
Win32/Itva, Win32/Itva.D potentially unwanted (variant)
40.00%
McAfee
Artemis!2C315B2E5CF5
20.00%
K7 AntiVirus
Trojan
20.00%
Agnitum Outpost
Riskware.Agent
20.00%
NANO AntiVirus
Riskware.Win32.Downware.dgvnpv
20.00%
VIPRE Antivirus
Trojan.Win32.Generic
20.00%
IKARUS anti.virus
PUA.Itva
20.00%
Fortinet FortiGate
Riskware/Itva
20.00%
Sophos
Generic PUA KC
20.00%
Zillya! Antivirus
Downloader.Agent.Win32.245868
20.00%
Vba32 AntiVirus
Downloader.Agent
20.00%
ESET NOD32
Win32/Itva.F potentially unwanted application
20.00%
The domain download.screencapture.ru has been seen to resolve to the following IP address.
File downloads found at URLs served by download.screencapture.ru.
URL:
http://download.screencapture.ru/
Related Domains