www.experimentalscene.com

Domain Name Proxy Service, Inc Privacy ID# 10747050  (Proxy Registrant)

Domain Information

The domain www.experimentalscene.com is registered by proxy through DNC HOLDINGS, INC. and was originally registered in July of 2003. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Scottsdale, Arizona within the United States which resides on the GoDaddy.com, LLC network.
Registrar:
DNC HOLDINGS, INC.

Server location:
Arizona, United States (US)

Create date:
Saturday, July 12, 2003

Expires date:
Thursday, July 12, 2018

Updated date:
Sunday, February 8, 2015

ASN:
AS26496 AS-26496-GO-DADDY-COM-LLC - GoDaddy.com, LLC,US

Scanner detections:
Detections  (57% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BetterInstaller.Somoto.CC, PUP.SomotoIsrael.d, PUP.OpenCandy.Installer (L), PUP.TomorrowSoftware.SpiralMedia.Bundler (M), PUP.DownloadAdmin.RazorEdgeMedia.Installer (M), PUP.DownloadAdmin.RedLightMedia.Installer (M), PUP.NewMedia.NMH.Bundler (M)
71.43%

K7 AntiVirus
Trojan , Unwanted-Program
35.71%

ESET NOD32
Win32/Somoto, Win32/DownWare, Win32/OpenCandy potentially unsafe, Win32/OpenCandy.C potentially unsafe (variant), Win32/OpenCandy.A potentially unsafe (variant)
35.71%

VIPRE Antivirus
BetterInstaller, Trojan.Win32.Generic, Opencandy, OpenCandy (PUA) (not malicious), Threat.4763461
32.14%

Dr.Web
Adware.Somoto.17, Adware.OpenCandy.7, Adware.OpenCandy.152, Adware.OpenCandy.137, Trojan.Siggen6.54687
28.57%

Malwarebytes
PUP.Optional.Somoto, PUP.Optional.OpenCandy
25.00%

F-Prot
W32/SomotoBetterInstaller.A, W32/OpenCandy.B, W32/OpenCandy.A.gen, W32/VB.AD.gen
25.00%

avast!
Win32:PUP-gen [PUP], Win32:Adware-gen [Adw], Win32:VB-OJQ [Wrm], Win32:Evo-gen [Susp]
25.00%

G Data
Win32.Application.BetterInstaller, Win32.Adware.OpenCandy, Win32.Application.OpenCandy
25.00%

AVG
AdInstaller.Somoto, OpenCandy
25.00%

Sophos
Somoto BetterInstaller, Generic PUA PN, OpenCandy (PUA)
21.43%

Rising Antivirus
PE:Trojan.Win32.Generic.13B1FE4B!330432075, PE:PUF.OpenCandy!1.9DE5, PE:Malware.Generic(Thunder)!1.A1C4 [F], PE:Malware.Generic/QRS!1.9E2D [F]
21.43%

McAfee
Artemis!EB9A79F79F67, Artemis!FC0EE793E9C6, Artemis!AB80C698B7EF, Artemis!B78CA587EDBF, Artemis!26E40E62728C, Artemis!F7042BC7F4B0
21.43%

Agnitum Outpost
Riskware.OpenCandy, Riskware.Agent
21.43%

NANO AntiVirus
Trojan.Nsis.Mazel.cwhyud, Riskware.Win32.OpenCandy.dqxwev, Riskware.Win32.OpenCandy.dvwkcv
17.86%

The domain www.experimentalscene.com has been seen to resolve to the following 2 IP addresses.

ip-160-153-92-67.ip.secureserver.net
May 15, 2015

February 5, 2014

File downloads found at URLs served by www.experimentalscene.com.

1 / 68      (Adware)

3 / 68      (PUP)

1 / 68      (Adware)

0 / 68

4 / 68      (PUP)

20 / 68    (PUP)

1 / 68      (PUP)

0 / 68

17 / 68    (PUP)

0 / 68
http://www.experimentalscene.com/.../DGenR8-VST-4.3.9.exe  (badc8251a5fe72de6b4973149ef5c022)

0 / 68

0 / 68

1 / 68      (Adware)

0 / 68

1 / 68      (PUP)

19 / 68    (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

14 / 68    (PUP)

14 / 68    (PUP)

14 / 68    (PUP)

0 / 68
http://www.experimentalscene.com/.../DGenR8-VST-4.3.0.exe  (25f65c5cb83612e179ab45cee6d66807)

4 / 68      (PUP)

1 / 68      (Adware)

URL:
http://www.experimentalscene.com/

Title:
“ExperimentalScene”

Web server:
Apache/2.4.12 (PHP/5.4.43)

Facebook:
Likes:  4
Shares:  19
Comments:  2

Statistics are for the previous month.