i1.magnipic.info

WEB PICK - INTERNET HOLDINGS LTD  (via a Proxy Registrant)

Domain Information

The site is an adware distribution website that distributes a web browser extension using the InstalleRex download manager from WebPick Internet Holdings. The web browser plug is designed to collect a user's information as they browse online and displays numerous advertisements. The domain i1.magnipic.info is registered by proxy through eNom, Inc.. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Kirkland, Washington within the United States which resides on the eNom, Incorporated network. The domain is associated with the publisher WEB PICK - INTERNET HOLDINGS LTD who is located in Ramat Hasharon, Israel.
Registrar:
eNom, Inc.

Server location:
Washington, United States (US)

ASN:
AS26415 VERISIGN-INC - VeriSign Global Registry Services,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Bkav FE
W32.Clod005.Trojan, W32.Clod5bf.Trojan, W32.Clodcf2.Trojan, W32.Clod715.Trojan
100.00%

McAfee
Artemis!2041AF161372, Artemis!00F2C3AB92EE, RDN/Generic StartPage!c, Artemis!83D40C46E2E2
100.00%

Comodo Security
Application.Win32.Bundledz.C, UnclassifiedMalware
75.00%

Vba32 AntiVirus
Downware.TSU, Backdoor.Hupigon
75.00%

Rising Antivirus
PE:Trojan.InstallRex!1.9CB0, Trojan.Win32.Generic.146E0050, PE:Trojan.Win32.Generic.13F8D894!335075476
75.00%

MicroWorld eScan
Adware.Generic.513696, Trojan.Generic.8543085, Gen:Variant.Adware.BHO.Bprotector.1
75.00%

Bitdefender
Adware.Generic.513696, Trojan.Generic.8543085, Gen:Variant.Adware.BHO.Bprotector.1
75.00%

F-Secure
Gen:Variant.Adware.BHO.Bprotector.1, Trojan.Generic.8543085
75.00%

VIPRE Antivirus
Trojan.Win32.Generic
75.00%

Emsisoft Anti-Malware
Adware.Generic.513696, Trojan.Generic.8543085, Gen:Variant.Adware.BHO.Bprotector
75.00%

ViRobot
Backdoor.Win32.A.Hupigon.1584068, Trojan.Win32.A.StartPage.268288, Trojan.Win32.Agent.87672
75.00%

G Data
Adware.Generic.513696, Trojan.Generic.8543085, Gen:Variant.Adware.BHO.Bprotector
75.00%

ESET NOD32
Win32/SProtector, Win32/GenUpdater, Win32/SProtector (variant)
75.00%

IKARUS anti.virus
Backdoor.Win32.Hupigon, Trojan.Win32.StartPage, Win32.SuspectCrc
75.00%

Baidu Antivirus
Trojan.Win32.Agent, Trojan.Win32.StartPage
75.00%

The domain i1.magnipic.info has been seen to resolve to the following IP address.

February 7, 2016

File downloads found at URLs served by i1.magnipic.info.

31 / 68    (PUP)
http://i1.magnipic.info/.../pvtzd_agent_setup.exe  (0c154f58f9649cc00bbb459abf89269c)

22 / 68    (PUP)
http://i1.magnipic.info/addons/.../prvtzd_dup.exe  (00f2c3ab92ee1cb7d59d0bc7f9e31641)

22 / 68    (PUP)

31 / 68    (PUP)
http://i1.magnipic.info/.../adown.exe  (pvtzd_agent_setup.exe)

17 / 68    (PUP)

8 / 68      (Adware)
http://i1.magnipic.info/.../uninstaller.exe  (2041af161372f15b11295c48411ab2d2)

URL:
http://i1.magnipic.info/

Google Analytics:
UA-2249740

Title:
“Magnipic.info”

Description:
“Find Cash Advance, Debt Consolidation and more at Magnipic.info. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Magnipic.info is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 711 related domains