media.oneinstaller.com
Only contact by email, all postal mail will be rejected (Proxy Registrant)
Domain Information
The domain media.oneinstaller.com is registered by proxy through SOLUCIONES CORPORATIVAS IP, SL and was originally registered in January of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Madrid, Madrid within Spain which resides on the RIPE Network Coordination Centre network.
Registrant:
Only contact by email, all postal mail will be rejected
Registrar:
SOLUCIONES CORPORATIVAS IP, SL
Server location:
Madrid, Spain (ES)
Create date:
Tuesday, January 15, 2013
Expires date:
Sunday, January 15, 2017
Updated date:
Monday, December 14, 2015
ASN:
AS45037 HISPAWEB-NETWORK Propelin Consulting S.L.U.,ES
Scanner detections:
Detections (63% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.InstallX.Bundle, PUP.VisualTools.N, PUP.OnekitInternetSL.I
100.00%
VIPRE Antivirus
Babylon, Onekit Installer
80.00%
Rising Antivirus
PE:Trojan.Win32.Generic.15816E51!360803921, PE:Malware.AntiWare!1.5593, PE:Trojan.Win32.Generic.135D0B5B!324864859
80.00%
Malwarebytes
PUP.Optional.Babylon.A, PUP.Optional.Spigot.A, PUP.Optional.Onekit.A
60.00%
AVG
MalSign.Skodna.Bundle.bb4
60.00%
Bkav FE
W32.Clod966.Trojan, W32.Clodd0b.Trojan
40.00%
ESET NOD32
Win32/Toolbar.Babylon, Win32/Bundled.Toolbar.Ask (variant)
40.00%
NANO AntiVirus
Riskware.Win32.Babylon.craswq
20.00%
Dr.Web
Adware.Toolbar.175
20.00%
AhnLab V3 Security
PUP/Win32.Babylon
20.00%
Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
20.00%
XVirus List
Win.Detected
20.00%
McAfee
Artemis!E84C5B4B4096
20.00%
The domain media.oneinstaller.com has been seen to resolve to the following 2 IP addresses.
rack24u28.hispaweb.net
February 27, 2016
rack15u9.hispaweb.net
May 1, 2014
File downloads found at URLs served by media.oneinstaller.com.
The following 24 files have been seen to comunicate with media.oneinstaller.com in live environments.
URL:
http://media.oneinstaller.com/
Web server:
Apache/2.2.22 (Ubuntu)
Related Domains