ms-office-2013.free-safe.com
WHOISGUARD, INC. (Proxy Registrant)
Domain Information
The domain ms-office-2013.free-safe.com is registered by proxy through ENOM, INC. and was originally registered in April of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Provo, Utah within the United States which resides on the Unified Layer network.
Registrant:
WHOISGUARD, INC.
Server location:
Utah, United States (US)
Create date:
Wednesday, April 30, 2014
Expires date:
Saturday, April 30, 2016
Updated date:
Tuesday, March 31, 2015
ASN:
AS46606 UNIFIEDLAYER-AS-1 - Unified Layer,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Installer.QUALITYSCORESL.V, PUP.Installer.QUALITYSCORESL.I, PUP.Installer.QUALITYSCORESL.U
100.00%
IKARUS anti.virus
AdWare.MSIL.Colooader
66.67%
MicroWorld eScan
Application.Bundler.FY
33.33%
Bitdefender
Application.Bundler.FY
33.33%
Rising Antivirus
PE:Trojan.Win32.Generic.178A5D38!394943800
33.33%
Lavasoft Ad-Aware
Application.Bundler.FY
33.33%
F-Secure
Application.Bundler.FY
33.33%
Dr.Web
Adware.Colooader.4
33.33%
G Data
Application.Bundler.FY
33.33%
ESET NOD32
MSIL/Adware.Colooader
33.33%
The domain ms-office-2013.free-safe.com has been seen to resolve to the following 2 IP addresses.
get.get-instant.com
March 15, 2015
162-144-91-108.unifiedlayer.com
August 17, 2014
File downloads found at URLs served by ms-office-2013.free-safe.com.
The following 2 files have been seen to comunicate with ms-office-2013.free-safe.com in live environments.
URL:
http://ms-office-2013.free-safe.com/
Web server:
Apache/2.2.26 (Unix) mod_ssl/2.2.26 OpenSSL/1.0.1e-fips DAV/2 mod_bwlimited/1.4 (PHP/5.4.26)
Related Domains