li.ru
Ventail Limited
Domain Information
The domain li.ru registered by Ventail Limited was initially registered in March of 2000 through RU-CENTER-REG-RIPN. Currently this domain has been known to host various forms of malware. The hosted servers are located in Moscow, Moscow City within Russia which resides on the RIPE Network Coordination Centre network.
Registrant:
Ventail Limited
Server location:
Moscow City, Russia (RU)
Create date:
Thursday, March 16, 2000
Expires date:
Saturday, April 1, 2017
ASN:
AS39134 UNITEDNET United Network LLC
Scanner detections:
Malware distribution (61% detected)
Scan engine
Details
Detections
Reason Heuristics
Optional.MediaGetApp.Installer.X, PUP.MediaGet.Banner.Installer (M), PUP.MediaGet.Inbox.Installer (M), PUP.InstallMonster.CORLEONG (M), Win32.Generic, PUP.NewMedia.NMH.Bundler (M), PUP.MailRu (L)
96.77%
Malwarebytes
PUP.Adware.MediaGet, PUP.Optional.MediaGet
12.90%
Kaspersky
not-a-virus:Downloader.Win32.MediaGet, not-a-virus:HEUR:Downloader.Win32.MediaGet
12.90%
Dr.Web
Program.MediaGet.21, Adware.Downware.9040, Program.MediaGet.133
12.90%
Sophos
MediaGet, MediaGet (PUA)
12.90%
G Data
Win32.Adware.MediaGet
12.90%
ESET NOD32
Win32/MediaGet.AE (variant), Win32/MediaGet.AF (variant), Win32/MediaGet.AE potentially unwanted (variant)
12.90%
Avira AntiVirus
APPL/MediaGet.Gen5
6.45%
Bkav FE
W32.HfsAdware
6.45%
K7 AntiVirus
Unwanted-Program
6.45%
Comodo Security
Application.Win32.MediaGet.G
6.45%
Baidu Antivirus
Adware.Win32.MediaGet
6.45%
Trend Micro House Call
HV_ZYX_BL132900.TOMC
3.23%
Emsisoft Anti-Malware
Gen:Variant.Strictor.46875
3.23%
The domain li.ru has been seen to resolve to the following 4 IP addresses.
host135.rax.ru
May 28, 2016
host138.rax.ru
May 28, 2016
host48.rax.ru
February 16, 2014
host47.rax.ru
February 16, 2014
File downloads found at URLs served by li.ru.
The following 5 files have been seen to comunicate with li.ru in live environments.
Title:
“Мобильный LiveInternet”
Facebook:
Likes: 55
Shares: 41
Comments: 55
Statistics above are for the previous month of October 2024.
Related Domains