it.safe-setup.info

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain it.safe-setup.info is registered by proxy through GoDaddy.com, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon.com, Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
GoDaddy.com, LLC

Server location:
Virginia, United States (US)

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Firseria.G, PUP.Installer.AppsInstallerSL.F, PUP.Installer.BechiroSL.N, PUP.Solimba.AppsInstaller (M), PUP.Solimba.Firseria.Bundler (M), PUP.Solimba.AppsInst.Bundler (M), PUP.Solimba.EilioDev (M), PUP.Solimba.PopelerS.Installer (M)
100.00%

VIPRE Antivirus
Adware.Firseria, Threat.4150696, Threat.4782980
37.50%

K7 AntiVirus
Unwanted-Program , Trojan
37.50%

Sophos
Solimba Installer
37.50%

Dr.Web
Trojan.Packed.28116, Trojan.DownLoader11.4341, Trojan.DownLoader11.25003
37.50%

Avira AntiVirus
APPL/Firseria.Gen8, APPL/Firseria.A.32
37.50%

Vba32 AntiVirus
Downware.Morstar
37.50%

AVG
BundleApp, Adware BundleApp.DI, Generic
37.50%

Panda Antivirus
Trj/Genetic.gen, Adware/Firseria
37.50%

MicroWorld eScan
Application.Bundler.Firseria.A, Gen:Variant.Application.Bundler.3
25.00%

Malwarebytes
PUP.Optional.Firseria, PUP.Optional.AppsInstaller
25.00%

avast!
Win32:Firseria-C [PUP], Win32:Adware-BQN [Trj]
25.00%

Kaspersky
not-a-virus:AdWare.Win32.Fiseria
25.00%

Bitdefender
Application.Bundler.Firseria.A, Gen:Variant.Application.Bundler.3
25.00%

Lavasoft Ad-Aware
Application.Bundler.Firseria.A, Gen:Variant.Application.Bundler.3
25.00%

The domain it.safe-setup.info has been seen to resolve to the following 4 IP addresses.

ec2-52-20-26-1.compute-1.amazonaws.com
June 22, 2016

ec2-54-210-177-99.compute-1.amazonaws.com
April 4, 2016

ec2-52-86-173-174.compute-1.amazonaws.com
April 4, 2016

ec2-54-235-133-59.compute-1.amazonaws.com
July 10, 2014

File downloads found at URLs served by it.safe-setup.info.

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

14 / 68    (Adware)

23 / 68    (Adware)

URL:
http://it.safe-setup.info/

Google Analytics:
UA-49898377

Title:
“Safe-Setup”

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
nginx