magicode.me

WhoisGuard, Inc.  (Proxy Registrant)

Domain Information

The domain magicode.me is registered by proxy through NameCheap, Inc.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Roubaix, Nord-Pas-De-Calais within France which resides on the RIPE Network Coordination Centre network.
Registrar:
NameCheap, Inc.

Server location:
Nord-Pas-De-Calais, France (FR)

ASN:
AS16276 OVH , FR

Scanner detections:
Detections  (67% detected)

Scan engine
Details
Detections

F-Prot
W32/RemoteAdmin.Ammyy
100.00%

Kaspersky
not-a-virus:RemoteAdmin.Win32.Ammyy
100.00%

Dr.Web
Program.RemoteAdmin.701, riskware program Program.RemoteAdmin.701
100.00%

Rising Antivirus
PE:Malware.Ammyy!6.1139
100.00%

Reason Heuristics
PUP.Ammyy.F, Win32.Generic
100.00%

McAfee
Artemis!F8CD52B70A11
50.00%

Trend Micro House Call
Suspicious_GEN.F47V0703
50.00%

NANO AntiVirus
Riskware.Win32.RemoteAdmin.dbybgd
50.00%

ESET NOD32
Win32/RemoteAdmin.Ammyy (variant)
50.00%

Fortinet FortiGate
Riskware/Ammyy
50.00%

K7 AntiVirus
Unwanted-Program
50.00%

avast!
Win32:RemoteAdmin-B [PUP]
50.00%

ESET NOD32
Win32/RemoteAdmin.Ammyy.B potentially unsafe application
50.00%

The domain magicode.me has been seen to resolve to the following IP address.

ns389016.ip-176-31-96.eu
June 5, 2016

File downloads found at URLs served by magicode.me.

10 / 68    (Adware)

8 / 68      (PUP)

0 / 68
http://magicode.me/send-file/file/.../download  (תוכנה לשליטה מהמחשב בעברית.exe)

URL:
http://magicode.me/

Google Analytics:
UA-26532647

Title:
“MAGICODE - magic online tools”

Web server:
Apache/2.4.7 (Ubuntu) (Express)