logiciels-france.com

BERNEX APLICACIONES SL

Domain Information

The domain logiciels-france.com registered by BERNEX APLICACIONES SL was initially registered in August of 2014 through SOLUCIONES CORPORATIVAS IP,SLU. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Madrid, Madrid within Spain which resides on the RIPE Network Coordination Centre network.
Registrar:
SOLUCIONES CORPORATIVAS IP, SL

Server location:
Madrid, Spain (ES)

Create date:
Wednesday, August 13, 2014

Expires date:
Saturday, August 13, 2016

Updated date:
Monday, July 13, 2015

ASN:
AS57286 ASGIGAS GIGAS HOSTING S.L.,ES

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.BERNEXAPLICACIONESSL.c, PUP.Installer.BERNEXAPLICACIONESSL.DD, PUP.Installer.BERNEXAPLICACIONESSL.FF, PUP.Installer.BERNEXAPLICACIONESSL.AA, PUP.BERNEXAPLICACIONES.Installer (M), PUP.BERNEXAP.Installer (M)
100.00%

McAfee
Artemis!78471D3E2B33, Artemis!6EE99A48AA4C, Artemis!40719A046E8B, Artemis!B675039A3F3D, Artemis!52574BF87976, Artemis!131C17C1298E, Artemis!326004DF1FC4, Artemis!8D07F39B983F
58.82%

ESET NOD32
NSIS/Hoax.ArchSMS
58.82%

AVG
Generic
58.82%

Sophos
Generic PUA EL, Generic PUA II, Generic PUA HD, Generic PUA KI, Generic PUA EI, Generic PUA PN, Generic PUA BB, Generic PUA NI
52.94%

Malwarebytes
PUP.SmsPay
47.06%

VIPRE Antivirus
Trojan.Win32.Generic
47.06%

Trend Micro House Call
Suspicious_GEN.F47V1024, Suspicious_GEN.F47V1027, Suspicious_GEN.F47V1023, Suspicious_GEN.F47V047
41.18%

K7 AntiVirus
JokeProgram , Unwanted-Program
35.29%

Baidu Antivirus
Trojan.NSIS.ArchSMS
29.41%

ESET NOD32
NSIS/Hoax.ArchSMS.W application
17.65%

Comodo Security
UnclassifiedMalware
5.88%

Panda Antivirus
Generic Suspicious
5.88%

Rising Antivirus
PE:Trojan.Win32.Generic.137A42C9!326779593
5.88%

herdProtect (fuzzy)
a variant of d8157b269b249b13ec70ffc25ca038aab5f7df7e
5.88%

The domain logiciels-france.com has been seen to resolve to the following IP address.

mail.phpriot.com
May 4, 2015

File downloads found at URLs served by logiciels-france.com.

10 / 68    (Adware)

10 / 68    (Adware)

10 / 68    (Adware)
http://logiciels-france.com/.../?download=2310&start=download  (windows_movie_maker_2014_fr_setup.exe)

7 / 68      (Adware)

1 / 68      (Adware)

8 / 68      (Adware)
http://logiciels-france.com/.../?download=2235&start=download  (internet_explorer_2014_fr_setup.exe)

10 / 68    (Adware)
http://logiciels-france.com/.../?download=685&start=download  (windows_movie_maker_2014_fr_setup.exe)

7 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://logiciels-france.com/.../?download=760&start=download  (comodo_antivirus_2014_fr_setup.exe)

8 / 68      (Adware)
http://logiciels-france.com/.../?download=2237&start=download  (internet_explorer_2014_fr_setup.exe)

1 / 68      (Adware)

10 / 68    (Adware)

8 / 68      (Adware)

6 / 68      (Adware)

10 / 68    (Adware)

2 / 68      (Malware)

2 / 68      (Malware)

9 / 68      (Adware)

9 / 68      (Adware)

9 / 68      (Adware)

10 / 68    (Adware)
http://logiciels-france.com/.../downloadavast.php  (avast_antivirus_2014_fr_setup.exe)

10 / 68    (Adware)

5 / 68      (Adware)
http://logiciels-france.com/.../?download=791&start=download  (free_pdf_to_word_converter_2014_fr_setup.exe)

9 / 68      (Adware)

10 / 68    (Adware)

8 / 68      (Adware)

8 / 68      (Adware)
http://logiciels-france.com/.../?download=408&start=download  (internet_explorer_2014_fr_setup.exe)

9 / 68      (Adware)
http://logiciels-france.com/.../downloadwindowsmediaplayer.php  (windows_media_player_2014_fr_setup.exe)

9 / 68      (Adware)
http://logiciels-france.com/.../?download=682&start=download  (windows_media_player_2014_fr_setup.exe)

 
Latest 30 of 30 download URLs