scdn.freeversions.ru

Private Person  (Proxy Registrant)

Domain Information

The domain scdn.freeversions.ru is registered by proxy through R01-RU and was originally registered in April of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Gunzenhausen, Bayern within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
R01-RU

Server location:
Bayern, Germany (DE)

Create date:
Monday, April 22, 2013

Expires date:
Friday, April 22, 2016

ASN:
AS24940 HETZNER-AS Hetzner Online AG,DE

Root domain:

Scanner detections:
Detections  (73% detected)

Scan engine
Details
Detections

Reason Heuristics
Win32.Generic.Installer.Meta, PUP.INSITEGROUP.Installer (M), PUP.INSITEGR.Installer (M), PUP (M)
85.00%

Trend Micro House Call
Suspicious_GEN.F47V0330, TROJ_GEN.R015H05F515
10.00%

Baidu Antivirus
Adware.Win32.iBryte.RuMail, PUA.Win32.Softobase
10.00%

Rising Antivirus
NS:PUF.SilenceInstaller!1.9DDF[F1]
10.00%

Comodo Security
UnclassifiedMalware
5.00%

Bkav FE
W32.HfsAdware
5.00%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
5.00%

Panda Antivirus
PUP/DownWare
5.00%

ESET NOD32
Win32/Softobase.D potentially unwanted application
5.00%

Avira AntiVirus
TR/Crypt.XPACK.Gen2
5.00%

Kaspersky
not-a-virus:HEUR:Downloader.NSIS.SoftBase
5.00%

NANO AntiVirus
Trojan.Nsis.SoftBase.dsyceu
5.00%

Clam AntiVirus
Win.Trojan.Agent-906217
5.00%

AhnLab V3 Security
PUP/Win32.Softobase
5.00%

avast!
Win32:Malware-gen
5.00%

The domain scdn.freeversions.ru has been seen to resolve to the following 4 IP addresses.

85-10-200-21.clients.your-server.de
December 15, 2015

static.85-10-196-94.clients.your-server.de
December 15, 2015

static.158.40.63.178.clients.your-server.de
December 15, 2015

butan137.startdedicated.de
August 11, 2015

File downloads found at URLs served by scdn.freeversions.ru.

5 / 68      (PUP)

The following 7 files have been seen to comunicate with scdn.freeversions.ru in live environments.

URL:
http://scdn.freeversions.ru/

Web server:
nginx/1.8.0