l4ep2fiy5vhgi5a.mediasnooper.ru

Private Person  (Proxy Registrant)

Domain Information

The domain l4ep2fiy5vhgi5a.mediasnooper.ru is registered by proxy through REGRU-RU and was originally registered in April of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
REGRU-RU

Server location:
Moscow City, Russia (RU)

Create date:
Monday, April 6, 2015

Expires date:
Wednesday, April 6, 2016

ASN:
AS197695 AS-REGRU _Domain names registrar REG.RU_, Ltd, RU

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.InstallMonster.Samson, PUP.InstallMonster.Samson (M)
100.00%

F-Prot
W32/Trojan5.LXL
40.00%

Bkav FE
W32.HfsAdware
40.00%

Dr.Web
Trojan.InstallMonster.1222
40.00%

Malwarebytes
PUP.Optional.InstallMonster
20.00%

Avira AntiVirus
APPL/InstallMontsr.J
20.00%

G Data
Win32.Application.InstallMon
20.00%

ESET NOD32
Win32/InstallMonstr.JT potentially unwanted (variant)
20.00%

herdProtect (fuzzy)
a variant of 3af926755a344dc12fe14a4c04d88f813dde786a
20.00%

VIPRE Antivirus
Threat.4150696
20.00%

ESET NOD32
Win32/InstallMonstr.JT potentially unwanted application
20.00%

Agnitum Outpost
Trojan.InstallMonster
20.00%

AVG
BundleApp
20.00%

The domain l4ep2fiy5vhgi5a.mediasnooper.ru has been seen to resolve to the following 2 IP addresses.

April 8, 2016

May 5, 2015

File downloads found at URLs served by l4ep2fiy5vhgi5a.mediasnooper.ru.

URL:
http://l4ep2fiy5vhgi5a.mediasnooper.ru/

Google Analytics:
UA-55552418

Title:
“Истёк срок регистрации доменаmediasnooper.ru”

Web server:
nginx

30 of 151 related domains