The domain i.facemoods.com registered by VoloNet Ltd. was initially registered in July of 2009 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Providence, Utah within the United States which resides on the Hosting Services, Inc. network.
Registrar:
GODADDY.COM, LLC
Server location:
Utah, United States (US)
Create date:
Thursday, July 23, 2009
Expires date:
Saturday, July 23, 2016
Updated date:
Sunday, June 28, 2015
ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US
Scanner detections:
Detections (95% detected)
Scan engine
Details
Detections
ESET NOD32
Win32/InstallCore.BH (variant), Win32/InstallCore (variant), Win32/SweetIM (variant), Win32/InstallCore.AY (variant), Win32/InstallCore.AL (variant)
94.74%
Avira AntiVirus
ADWARE/InstallCore.Gen, TR/Agent.623420
84.21%
Reason Heuristics
PUP.Installer.Volonet.J, PUP.Installer.Volonet.M, PUP.InstallCore.ESTM, PUP.installCore.Installer (M)
84.21%
Dr.Web
Adware.Funmoods.3, Adware.InstallCore.6, Adware.InstallCore.75, Adware.InstallCore.59
84.21%
avast!
Win32:FunMood-A [PUP], Win32:InstallCore-J [PUP], Win32:InstallCore-BA [PUP], Win32:PUP-gen [PUP]
78.95%
F-Prot
W32/InstallCore.G4.gen, W32/InstallCore.I.gen, W32/InstallCore.P.gen, W32/InstallCore.I2.gen
73.68%
Trend Micro House Call
TROJ_GEN.F47V0722, TROJ_SPNR.0CE413, TROJ_GEN.RCBOHB7, TROJ_GEN.FCBCBKN, TROJ_GEN.RCBH1KM, TROJ_GEN.F47V0821
68.42%
Rising Antivirus
PE:PUF.InstallCore!1.9DE1, Trojan.Win32.Generic.128686F5, PE:Malware.XPACK-LNR/Heur!1.5594
68.42%
Fortinet FortiGate
Riskware/InstallCore, Riskware/SweetIM
63.16%
NANO AntiVirus
Riskware.Win32.InstallToolbar.crpgoq, Riskware.Win32.InstallCore.nxzhi, Riskware.Win32.InstallCore.debtzv
63.16%
Sophos
Generic PUA OF, Install Core, Install Core Installer
63.16%
McAfee
Artemis!2F4B6F6CEBFE, Artemis!23E6603D369E, Artemis!9D0F2E703DB6, Artemis!DD2AA6D5F31C
63.16%
Trend Micro
TROJ_SPNR.0CE413, TROJ_GEN.FCBCBKN
57.89%
K7 AntiVirus
Trojan , Unwanted-Program
52.63%
Baidu Antivirus
Trojan.Win32.InstallCore
52.63%
The domain i.facemoods.com has been seen to resolve to the following 6 IP addresses.
File downloads found at URLs served by i.facemoods.com.
The following 4 files have been seen to comunicate with i.facemoods.com in live environments.
URL:
http://i.facemoods.com/
Related Domains