removal-tool.net

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain removal-tool.net is registered by proxy through GODADDY.COM, LLC and was originally registered in December of 2012. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Arlington Heights, Illinois within the United States which resides on the GigeNET network.
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Friday, December 21, 2012

Expires date:
Wednesday, December 21, 2016

Updated date:
Sunday, April 10, 2016

ASN:
AS32181 ASN-GIGENET - GigeNET

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.ParetoLogic.Optional.Installer.Meta (L)
100.00%

Baidu Antivirus
Trojan.Win32.FakeAV
33.33%

The domain removal-tool.net has been seen to resolve to the following 2 IP addresses.

shaynesherman.com
April 13, 2016

shaynesherman.com
February 8, 2014

File downloads found at URLs served by removal-tool.net.

2 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://removal-tool.net/recommends/.../m.php  (regcureprosetup_bing.exe)

The following 3 files have been seen to comunicate with removal-tool.net in live environments.

URL:
http://removal-tool.net/

Google Analytics:
UA-9081991

Title:
“Windows© Support: How to Uninstall Programs”

Description:
“Scan, detect and automatically fix all issues related to on your PC. how to guide.”

Web server:
Apache/2.4.12 (Unix) OpenSSL/1.0.1e-fips mod_bwlimited/1.4 (PHP/5.5.25)