stapi.getinstall.com

Francis COHEN

Domain Information

The domain stapi.getinstall.com registered by Francis COHEN was initially registered in May of 2012 through GANDI SAS. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Hastings, England within United Kingdom which resides on the RIPE Network Coordination Centre network.
Registrar:
GANDI SAS

Server location:
England, United Kingdom (GB)

Create date:
Monday, May 7, 2012

Expires date:
Saturday, May 7, 2016

Updated date:
Wednesday, December 24, 2014

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.GetNow.Sien.Bundler (M)
100.00%

Bkav FE
W32.HfsAdware
100.00%

MicroWorld eScan
Gen:Variant.Application.Bundler.49
100.00%

Bitdefender
Gen:Variant.Application.Bundler.49
100.00%

Lavasoft Ad-Aware
Gen:Variant.Application.Bundler.49
100.00%

F-Secure
Gen:Variant.Application.Bundler
100.00%

Dr.Web
Adware.Iminent.26
100.00%

AhnLab V3 Security
PUP/Win32.Bundler
100.00%

G Data
Gen:Variant.Application.Bundler.49
100.00%

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen
100.00%

AVG
Generic
100.00%

Panda Antivirus
PUP/GetNowUpdater.A
100.00%

VIPRE Antivirus
Trojan.Win32.Generic
100.00%

The domain stapi.getinstall.com has been seen to resolve to the following IP address.

January 4, 2016

File downloads found at URLs served by stapi.getinstall.com.

13 / 68    (Adware)

URL:
http://stapi.getinstall.com/

Web server:
Microsoft-IIS/8.0 (ASP.NET) (Version: 4.0.30319)