The domain installdream.com is registered by proxy through INTERNET.BS CORP. and was originally registered in May of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Rivne, Rivnens'Ka Oblast' within Ukraine which resides on the RIPE Network Coordination Centre network.
Registrant:
Fundacion Private Whois
Registrar:
INTERNET.BS CORP.
Server location:
Rivnens'Ka Oblast', Ukraine (UA)
Create date:
Wednesday, May 7, 2014
Expires date:
Thursday, May 7, 2015
Updated date:
Thursday, June 19, 2014
ASN:
AS39084 UTKC SBA Dubrovskiy,UA
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
avast!
Win32:Rootkit-gen [Rtk], Win32:Malware-gen, Win32:Adware-gen [Adw]
100.00%
VIPRE Antivirus
Threat.4150696, MSIL.Adware.OxyPumper
100.00%
MicroWorld eScan
Gen:Variant.Adware.Graftor.145208, Trojan.Generic.11904225, Gen:Variant.Jaik.3106
100.00%
NANO AntiVirus
Trojan.Win32.Agent.dcasiz, Trojan.Win32.Amonetize.ddtgkc, Trojan.Win32.Agent.dfumgi
100.00%
Kaspersky
not-a-virus:Downloader.Win32.Agent, Trojan-Dropper.MSIL.Agent, Trojan-Dropper.Win32.Agent
100.00%
Bitdefender
Gen:Variant.Adware.Graftor.145208, Trojan.Generic.11904225, Gen:Variant.Jaik.3106
100.00%
Avira AntiVirus
Adware/Graftor.145208.175, TR/Drop.MSIL.Agent.asul.4, Adware/OxyPumper.CA
100.00%
Emsisoft Anti-Malware
Gen:Variant.Adware.Graftor.145208, Trojan.Generic.11904225, Gen:Variant.Jaik.3106
100.00%
G Data
Gen:Variant.Adware.Graftor.145208, Trojan.Generic.11904225, Gen:Variant.Jaik.3106
100.00%
IKARUS anti.virus
AdWare.OxyPumper, Trojan.SuspectCRC, PUA.OxyPumper
100.00%
AVG
Adware Generic5.AXXF, Downloader, Adware Generic5.BUZU
100.00%
Reason Heuristics
PUP.SOFTWAREAGILITYLIMITED.s, Threat.Win.Reputation.IMP
66.67%
ESET NOD32
Win32/AdWare.OxyPumper.B application, Win32/AdWare.OxyPumper.C application
66.67%
Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.145208, Trojan.Generic.11904225
66.67%
F-Secure
Gen:Variant.Adware.Graftor.145208, Trojan.Generic.11904225
66.67%
The domain installdream.com has been seen to resolve to the following IP address.
File downloads found at URLs served by installdream.com.
URL:
http://installdream.com/