setupupgrade.setnewupgrades.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain setupupgrade.setnewupgrades.com is registered by proxy through ENOM, INC. and was originally registered in November of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the SingleHop, Inc. network.
Registrar:
ENOM, INC.

Server location:
Illinois, United States (US)

Create date:
Thursday, November 12, 2015

Expires date:
Saturday, November 12, 2016

Updated date:
Thursday, November 12, 2015

ASN:
AS32475 SINGLEHOP-INC - SingleHop,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.installCore.OOODigit (M), PUP.installCore.OOODIGIT (M), PUP.InstallCore.OOOKodIn (M), PUP.Amonetize.OOOKodIn (M), PUP.installCore (M)
100.00%

The domain setupupgrade.setnewupgrades.com has been seen to resolve to the following IP address.

usdedi2.cipo.me
April 20, 2016

File downloads found at URLs served by setupupgrade.setnewupgrades.com.

URL:
http://setupupgrade.setnewupgrades.com/

Google Analytics:
UA-24411584

Title:
“Reimage Repair”

Web server:
Apache/2.2.15 (CentOS)

30 of 35 related domains