logiciel-bureau.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain logiciel-bureau.com is registered by proxy through ENOM, INC. and was originally registered in January of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Amsterdam, Noord-Holland within Netherlands which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Noord-Holland, Netherlands (NL)

Create date:
Friday, January 10, 2014

Expires date:
Tuesday, January 10, 2017

Updated date:
Friday, December 11, 2015

ASN:
AS202018 DIGITALOCEAN-ASN-3 , NL

Scanner detections:
Detections  (78% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.QUALITYSCORESL.K, PUP.Installer.QUALITYSCORESL.O, PUP.Installer.QUALITYSCORESL.L, PUP.Installer.QUALITYSCORESL.T, PUP.installCore.Secursof.Installer (M)
100.00%

Malwarebytes
PUP.Optional.QualityScore
62.50%

Comodo Security
ApplicUnwnt
37.50%

ESET NOD32
MSIL/Adware.Colooader, MSIL/Adware.Colooader (variant)
37.50%

McAfee
Artemis!A02B99D4242F, Artemis!A4B9DCBAE424
25.00%

Trend Micro House Call
Suspicious_GEN.F47V0707, TROJ_GEN.F47V0414
25.00%

Qihoo 360 Security
Win32/Trojan.Adware.2bf
12.50%

avast!
Win32:Malware-gen
12.50%

AhnLab V3 Security
PUP/Win32.Cacaoweb
12.50%

VIPRE Antivirus
MSIL.Adware.Colooader
12.50%

IKARUS anti.virus
PUA.Downloader
12.50%

Fortinet FortiGate
Adware/Colooader
12.50%

AVG
Downloader
12.50%

The domain logiciel-bureau.com has been seen to resolve to the following 2 IP addresses.

web.m0k1.org
June 19, 2016

ns3262829.ip-37-59-9.eu
September 6, 2014

File downloads found at URLs served by logiciel-bureau.com.

10 / 68    (Adware)

1 / 68
http://logiciel-bureau.com/bin/.../cacaoweb.exe  (39dca7506c56288dfa6cc243a0802a2d)

0 / 68
http://logiciel-bureau.com/bin/.../adwcleaner.exe  (fd56d60df14a003884849cf3d032e97a)

1 / 68      (PUP)
http://logiciel-bureau.com/bin/.../virtual-dj.exe  (e1ca08ae879037491b409bfbd4dc17b3)

2 / 68      (Adware)

2 / 68      (Adware)

5 / 68      (Adware)

3 / 68      (Adware)

2 / 68      (Adware)

6 / 68      (Adware)