rufile.net

Private Person  (Proxy Registrant)

Domain Information

The domain rufile.net is registered by proxy through REGISTRAR OF DOMAIN NAMES REG.RU LLC and was originally registered in November of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Sofia, Grad Sofiya within BG which resides on the RIPE Network Coordination Centre network.
Registrar:
REGISTRAR OF DOMAIN NAMES REG.RU LLC

Server location:
Grad Sofiya, BG (BG)

Create date:
Sunday, November 30, 2014

Expires date:
Wednesday, November 30, 2016

Updated date:
Tuesday, April 19, 2016

ASN:
AS59729 ITL-BG ITL Company, BG

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BestProg (M), PUP.Inergen (M), PUP.ProfAssi (M), PUP.SilverSo (M), PUP (M), PUP.AbiSourc.Installer (M), PUP.GhislerS (M), PUP.PlanetaI (M), PUP.OracleCo (M), PUP.Installer (M), PUP.Speedbit.SMARTUM (M), Adware.Downloader (M), PUP.FileTour (M)
98.00%

ESET NOD32
Win32/Neshta.B virus, Win32/Adware.LoadMoney.AWD application
4.00%

VIPRE Antivirus
Threat.4276445, Threat.4749053
4.00%

Dr.Web
Trojan.LoadMoney.1509
2.00%

F-Prot
W32/HLLP.41472
2.00%

avast!
Win32:Apanas [Trj]
2.00%

Emsisoft Anti-Malware
Win32.Nestha
2.00%

Norman
Win32.Nestha.C
2.00%

Microsoft Security Essentials
Threat.Undefined
2.00%

The domain rufile.net has been seen to resolve to the following 7 IP addresses.

ddos-guard.net
August 16, 2016

May 26, 2016

May 21, 2016

May 19, 2016

May 19, 2016

s5.friendhosting.net
May 19, 2016

s5.friendhosting.net
April 21, 2016

File downloads found at URLs served by rufile.net.

1 / 68      (Adware)
http://rufile.net/-DTB  (chit na ks 1 6.exe)

1 / 68      (Adware)

1 / 68      (PUP)
http://rufile.net/-8zJ  (avatariacheat(c)2.0.exe)

1 / 68      (Malware)
http://rufile.net/-vtJ  (rey hak.exe)

1 / 68      (Adware)
http://rufile.net/-MMD  (chit aktualen na 8 06 16.exe)

1 / 68      (PUP)
http://rufile.net/-PB9  (cs1.6.exe)

1 / 68      (Malware)
http://rufile.net/-Iqy  (winlockers 2014 by gprog11 bonus.exe)

1 / 68      (Malware)

1 / 68      (PUP)
http://rufile.net/-zdJ  (arhiv winrar 15.exe)

1 / 68      (Malware)
http://rufile.net/-tY9  (chit na tanki onlayn.exe)

1 / 68      (Adware)
http://rufile.net/file/.../116492  (quick text logo reveal template.exe)

3 / 68      (PUP)
http://rufile.net/-kND  (bandicam i vzlom.exe)

1 / 68      (Malware)
http://rufile.net/-9f2  (napodhvate.exe)

1 / 68      (Malware)
http://rufile.net/-zVG  (cffhook warface - installer.exe)

1 / 68      (Malware)
http://rufile.net/-rVG  (rustbycff- installer.exe)

1 / 68      (Adware)

1 / 68      (PUP)
http://rufile.net/file/.../153257  (mod menu fof 1 34.exe)

7 / 68      (Malware)
http://rufile.net/-EjD  (srpgruzchik.exe)

1 / 68      (Malware)
http://rufile.net/-ie9  (avagoldhack.exe)

1 / 68      (Adware)
http://rufile.net/-i5H  (vimeworld 17 07 2016 chity.exe)

1 / 68      (PUP)
http://rufile.net/-bzD  (xray-hack.exe)

1 / 68      (Adware)
http://rufile.net/file/.../132185  (hurtworld 0 3 4 2a.exe)

1 / 68      (Adware)

1 / 68      (Adware)
http://rufile.net/-jcA  (cf 41t.exe)

1 / 68      (Adware)
http://rufile.net/-kg0  (xxswagxx cheat hack 100.exe)

1 / 68      (Adware)
http://rufile.net/-hbB  (abitsmarter multihack 8 1 7.exe)

URL:
http://rufile.net/

Google Analytics:
UA-61929420

Title:
“Файлообменник - rufile.net”

Description:
“файлообменник Ska4ay.com. Загружайте файлы на бесплатный хостинг файлов, зарабатывайте на файлах, скачивайте на быстрой и неограниченной скорости”

Web server:
nginx/1.8.1 (PHP/5.4.45)