setup.dj-reserve.com

Privacy Protection Service INC d/b/a PrivacyProtect.org  (Proxy Registrant)

Domain Information

The domain setup.dj-reserve.com is registered by proxy through PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM and was originally registered in October of 2009. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Steinsel, Luxembourg within Luxembourg which resides on the RIPE Network Coordination Centre network.
Registrar:
PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM

Server location:
Luxembourg, Luxembourg (LU)

Create date:
Tuesday, October 6, 2009

Expires date:
Thursday, October 6, 2016

Updated date:
Wednesday, October 7, 2015

ASN:
AS5577 ROOT root SA,LU

Root domain:

Google Safe Browsing:
unwanted

Scanner detections:
Detections  (78% detected)

Scan engine
Details
Detections

Dr.Web
Adware.Downware.10568, Program.VKontakteDJ.6
77.78%

McAfee
Artemis!20CF604ABDA3, Artemis!DB57B93C100B, Artemis!69189E75169D, Artemis!2191893E7DBB, Artemis!A7DB5068833B, Artemis!BAC52FE3BEFE
66.67%

MicroWorld eScan
Gen:Variant.Application.Downloader.207, Gen:Variant.Kazy.708558, Trojan.Generic.15512166
55.56%

Bitdefender
Gen:Variant.Application.Downloader.207, Gen:Variant.Kazy.708558, Trojan.Generic.15512166
55.56%

Arcabit
Trojan.Application.Downloader.207, Trojan.Kazy.DACFCE, Trojan.Generic.DECB266
55.56%

IKARUS anti.virus
AdWare.AdInstaller, AdWare.BundleApp
55.56%

G Data
Gen:Variant.Application.Downloader.207, Gen:Variant.Kazy.708558, Trojan.Generic.15512166
55.56%

AVG
VkontakteDJ, AdInstaller.kontakte
44.44%

Bkav FE
W32.HfsAdware
44.44%

VIPRE Antivirus
Trojan.Win32.Generic
44.44%

K7 AntiVirus
Adware
44.44%

ESET NOD32
MSIL/Downloader.Agent.P potentially unwanted (variant), MSIL/VKontakteDJ.A potentially unwanted (variant)
44.44%

Lavasoft Ad-Aware
Gen:Variant.Application.Downloader.207, Gen:Variant.Kazy.708558
44.44%

F-Secure
Gen:Variant.Application.Downloader, Trojan.Generic.15512166
44.44%

Kaspersky
UDS:DangerousObject.Multi.Generic, not-a-virus:Downloader.MSIL.VKontakteDJ
44.44%

The domain setup.dj-reserve.com has been seen to resolve to the following IP address.

ip-static-94-242-221-153.as5577.net
August 11, 2015

File downloads found at URLs served by setup.dj-reserve.com.

16 / 68    (Adware)

The following 2 files have been seen to comunicate with setup.dj-reserve.com in live environments.

URL:
http://setup.dj-reserve.com/

Web server:
nginx