Download
Community
knowledgeBase
» new.getapplicationmy.info
Overview
Analysis
IPs Addresses (2)
Downloads (11)
Network (1)
Related Domains (27)
new.getapplicationmy.info
WEB PICK - INTERNET HOLDINGS LTD
Domain Information
getapplicationmy.info is a landing page for the download and installtion of software wrapped with the WebPick Internet Holdings InstalleRex download manager which distributes adware web browser extensions and utility offers in the installer. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter. The domain is associated with the publisher WEB PICK - INTERNET HOLDINGS LTD who is located in Ramat Hasharon, Israel.
Registrant:
PROTECTSERVICE, LTD. for
WEB PICK - INTERNET HOLDINGS LTD
Registrar:
EvoPlus Ltd.
Server location:
Oregon, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc.
Root domain:
getapplicationmy.info
Whois:
2 getapplicationmy.info records
Analysis
Scanner detections:
Detections (91% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Optional.SergeyPetrov.I, PUP.Optional.SergeyPetrov.n, PUP.SergeyPetrov.Y, PUP.WebPick.SergeyPetrov (M), Adware.WebPick.Installer (M), PUP.WebPick.SergeyPe (M), Adware (M)
100.00%
avast!
Win32:InstalleRex-BI [PUP]
10.00%
AVG
Generic_r.HY
10.00%
Bkav FE
W32.MultiPlugAZ.Adware
10.00%
MicroWorld eScan
Gen:Variant.Adware.Dropper.101
10.00%
McAfee
PUP-FID!3EA3DA69CEC2
10.00%
Malwarebytes
PUP.Optional.MultiPlug.A
10.00%
VIPRE Antivirus
Installerex/WebPick
10.00%
K7 AntiVirus
Adware
10.00%
NANO AntiVirus
Riskware.Win32.MultiPlug.cvshxw
10.00%
F-Prot
W32/MultiPlug.C.gen
10.00%
Kaspersky
not-a-virus:HEUR:AdWare.Win32.Agent
10.00%
Bitdefender
Gen:Variant.Adware.Dropper.101
10.00%
Agnitum Outpost
PUA.MultiPlug
10.00%
Lavasoft Ad-Aware
Gen:Variant.Adware.Graftor.139281
10.00%
IPs Addresses
The domain new.getapplicationmy.info has been seen to resolve to the following 2 IP addresses.
54.186.255.26
ec2-54-186-255-26.us-west-2.compute.amazonaws.com
May 21, 2014
54.201.215.30
ec2-54-201-215-30.us-west-2.compute.amazonaws.com
March 14, 2014
Downloads
File downloads found at URLs served by new.getapplicationmy.info.
1 / 68 (Adware)
http://new.getapplicationmy.info/v9477?&q=PreOnetSciP_6.pdf&product_name=PreOnetSciP_6.pdf&installer_file_name=PreOnetSciP_6.pdf&affiliate_id=2385&q=PreOnetSciP_6.pdf&external_id=1393164060132461700
(preonetscip_6.pdf.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/v9477?&q=Download&product_name=Download&installer_file_name=Download&affiliate_id=2385&external_id=1393166426817216285
(download.exe)
0 / 68
http://new.getapplicationmy.info/v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&product_name=tha.rar&installer_file_name=tha.rar&affiliate_id=v14new&aff_id=v14new&q=tha.rar&external_id=1398817317981707105&self_redirect=1
(tha.rar.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&product_name=antaracintadandusta.mp3&installer_file_name=antaracintadandusta.mp3&affiliate_id=v14new&aff_id=v14new&q=antaracintadandusta.mp3&external_id=1397960077678229770&self_redirect=1
(antaracintadandusta.mp3.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&product_name=EngP_6.doc&installer_file_name=EngP_6.doc&affiliate_id=v14new&aff_id=v14new&q=EngP_6.doc&external_id=1396956857325185265&self_redirect=1
(engp_6.doc.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/.../?&q=?????? ???? ????? ?????? ?????&product_name=?????? ???? ????? ?????? ?????&installer_file_name=?????? ???? ????? ?????? ?????&q=?????? ???? ????? ?????? ?????&external_id=1394141940402719692&self_redirect=1
(اوبريت صباح الخير لاطفال اليمن.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/.../v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&q=PetaSurabaya.exe&product_name=PetaSurabaya.exe&installer_file_name=PetaSurabaya.exe&affiliate_id=v14new&aff_id=v14new&external_id=1395812260065174006&self_redirect=1&filesize=&uuid=rbvSozlg8MKT335RMT968u5zHBI0323plNKEbYeDhUA7qEPrI86kKGpOvzBoFwBLxH7ZXCXJvvBB1l7pUpCj6Vfc76XOMKpSkfByPatRGNvzMB3BlBPQE17YYprpTXeWDLoP7fpgrmmytm6ICadg3do9nKne7TyXCSys6a7q4DbSYDTdf3kAbWX2NIt5Gt8fxma2cpNAvUb727KEGE6uLq0lxwe4ESn3tREFudYtNzoVZYrikgfin1t9ngLtFXfkY0nzQjjxxSNGgLtAEXNgOArHOiSlqdIIFVnPTTBpcHyT1VfWf2CpIjXTCLZZzOpQgGI1L4mKNTpbJRIxmqWSd1VsjHxYnZJi2vd1iOWa52Tfm8Igf35mbhe3aqmeQIm5LQ5WUig4pGu3PD1YepOdmbuR3uoHDJgY8noI36lhlFnRP6qVOzRueIuYWlq1yggTW8obj0B2AdJBGmWUcDFCB5fsGtfphTtBWYiUy1wbO6AGNrBOHvYTNXJwQRXdObNJd3u9O5oAkP2b7FPFlzwnSZwvBvUFH0dEsBhonrX96INRK2FanJsqQEFIwEs6CtELyKFTzbdNvLMWazsF1lkkZnf085uG73sQy6mQZBDOlZhScGdx5FZkIestcrXjEhChHa9kROEKtH0fPlMd4G9yrU7csi1j1yCFgoXuOguW1hJKx
(petasurabaya.exe.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&product_name=sentwork.doc&installer_file_name=sentwork.doc&affiliate_id=v14new&aff_id=v14new&q=sentwork.doc&external_id=1396543094335314833&self_redirect=1
(sentwork.doc.exe)
27 / 68 (Adware)
http://new.getapplicationmy.info/v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&product_name=SonicPDFCreator2.0link.txt&installer_file_name=SonicPDFCreator2.0link.txt&affiliate_id=v14new&aff_id=v14new&q=SonicPDFCreator2.0link.txt&external_id=1395470549462638317&self_redirect=1
(sonicpdfcreator2.0link.txt.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&product_name=Module18Installationdeserveurs-MicrosoftP2.rar&installer_file_name=Module18Installationdeserveurs-MicrosoftP2.rar&affiliate_id=v14new&q=Module18Installationdeserveurs-MicrosoftP2.rar&external_id=1394579637292140183&self_redirect=1
(module18installationdeserveurs-microsoftp2.rar.exe)
1 / 68 (Adware)
http://new.getapplicationmy.info/v945?preloader_version=1&installer_version=3&installer_type=IX_2013&q=appllicatiionew.com&product_name=Download&installer_file_name=Download&affiliate_id=v14new&external_id=1394455286991267389&self_redirect=1
(download.exe)
Network Communications
The following file have been seen to comunicate with new.getapplicationmy.info in live environments.
TCP »
54.201.215.30
:80
whd 7.2.exe (SnowApp)
Related Domains
installerex.com
web-pick.com
storebox1.info
toolkitfreefast.com
surfandkeep.info
downloadkeeper.info
greatsaver.info
ytbookmarks.info
weekapp.net
optonthing.info
magnipic.info
savebyclick.info
download-n-save.com
allpremiumsoft.com
easylifeapp.com
takeinstalleraddon.info
take-the-file.info
placefordownloads.info
getmonitized.com
addoncommon.info
ezdownloadpro.info
websavers.info
34stateshare.com
continuetosave.info
saveneto.info
stylezip.info
reportbox3.info
X