www.instalki.pl

Domain Information

Server location:
Lodzkie, Poland (PL)

ASN:
AS48505 KYLOS-AS Kylos s.c.

Root domain:

Scanner detections:
Detections  (92% detected)

Scan engine
Details
Detections

Reason Heuristics
Win32.Generic.NewSoftware.Bundler.Meta, PUP.InstallCore.Bundler (M), PUP.installCore.IronPremium (M), PUP.installCore.NewSoftware (M), PUP.InstallCore.Installer (M), PUP.installCore.NewSoftw (M), PUP.installCore.Clickrun (M), PUP.installCore (M)
85.11%

Dr.Web
Adware.InstallCore.122, Adware.InstallCore.75, Adware.InstallCore.127, Adware.InstallCore.124, Adware.InstallCore.603, Trojan.Packed.24524
40.43%

F-Prot
W32/InstallCore.R3.gen, W32/InstallCore.P.gen, W32/InstallCore.R2.gen, W32/InstallCore.R4.gen, W32/InstallCore.R.gen, W32/InstallCore.V.gen
36.17%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4150696, InstallCore.b, Threat.4754767
34.04%

Avira AntiVirus
ADWARE/InstallCore.Gen, Adware/InstCore.6321, Adware/InstallCor.C, ADWARE/InstallCore.Gen7, APPL/InstallCore.AE.509, APPL/InstallCore.QL.133
29.79%

ESET NOD32
Win32/InstallCore.AZ (variant), Win32/InstallCore.BL potentially unwanted, Win32/InstallCore.CA.gen (variant), Win32/InstallCore.CF (variant)
27.66%

McAfee
Artemis!26F6944A0CB2, Artemis!160884B904B5, Program.Artemis!FE27512665C2, Artemis!EB82107E528D, Artemis!EFEFEBE075AB, RDN/Generic PUP.x!b2r, Artemis!846A78590BAE
23.40%

Comodo Security
UnclassifiedMalware, ApplicUnwnt
23.40%

ESET NOD32
Win32/InstallCore.AW potentially unwanted application, Win32/InstallCore.D potentially unwanted application, Win32/InstallCore.BL potentially unwanted application, Win32/InstallCore.BX potentially unwanted application, Win32/Kryptik.BWJC trojan
21.28%

Vba32 AntiVirus
Downware.InstallCore, BScope.Malware-Cryptor.InstallCore.2691
17.02%

Trend Micro House Call
TROJ_GEN.RCBH1A3, TROJ_GEN.R0CBH08HT13, TROJ_GEN.R0CBH01GO13, TROJ_GEN.R0CBC0OGT13, TROJ_GEN.F47V1024, HV_INSTALLCORE_CG093E8F.RDXN
17.02%

SUPERAntiSpyware
PUP.InstallCore/Variant
14.89%

K7 AntiVirus
Unwanted-Program , Trojan
12.77%

IKARUS anti.virus
PUA.SoftwareBundler, AdWare.SuspectCRC
12.77%

Bkav FE
HW32.Laneul, W32.Cloda69.Trojan, W32.Clod7c1.Trojan
12.77%

The domain www.instalki.pl has been seen to resolve to the following IP address.

s1.instalki.kylos.net.pl
December 13, 2013

File downloads found at URLs served by www.instalki.pl.

1 / 68      (Adware)
http://www.instalki.pl/.../get_Samsung_PC_Studio.php  (samsung_pc_studio_downloader.exe)

0 / 68

21 / 68    (PUP)

2 / 68      (PUP)

1 / 68      (Adware)
http://www.instalki.pl/.../get_Skype.php  (skypesetupfull_downloader.exe)

1 / 68      (Adware)
http://www.instalki.pl/.../get_Gimp.php  (gimp-setup_downloader.exe)

19 / 68    (PUP)
http://www.instalki.pl/.../get_VLC.php  (vlc-2.0.7-win32_downloader.exe)

9 / 68      (PUP)
http://www.instalki.pl/.../get_Alcohol_120.php  (alcohol120_trial_downloader.exe)

1 / 68      (Adware)
http://www.instalki.pl/.../get_K-Lite_Codec_Pack_Full.php  (k-lite_codec_pack_full_downloader.exe)

1 / 68      (Adware)
http://www.instalki.pl/.../get_Hamachi.php  (hamachi_downloader.exe)

1 / 68      (inconclusive)
http://www.instalki.pl/.../get_Nero_Free.php  (nero-free_downloader.exe)

1 / 68      (Adware)
http://www.instalki.pl/.../get_BitTorrent.php  (bittorrent_downloader.exe)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://www.instalki.pl/.../get_Minecraft.php  (minecraft_downloader.exe)

0 / 68

11 / 68    (PUP)

1 / 68      (PUP)
http://www.instalki.pl/.../get_Real_Alternative.php  (real_alternative_downloader.exe)

11 / 68    (PUP)

4 / 68      (PUP)
http://www.instalki.pl/.../get_Photoscape.php  (photoscape_downloader.exe)

2 / 68      (PUP)
http://www.instalki.pl/.../get_Winamp.php  (winamp563_downloader.exe)

1 / 68      (Adware)
http://www.instalki.pl/.../get_ALLPlayer.php  (allplayer_downloader.exe)

5 / 68      (PUP)
http://www.instalki.pl/.../get_Light_Image_Resizer.php  (light_image_resizer4_downloader.exe)

1 / 68      (Adware)
http://www.instalki.pl/.../get_Winrar.php  (wrar501pl_downloader.exe)

11 / 68    (PUP)

4 / 68      (Adware)
http://www.instalki.pl/.../get_Java_SE-32bit.php  (jre-7u21-windows_downloader.exe)

1 / 68      (Adware)
http://www.instalki.pl/.../get_TeamSpeak.php  (teamspeak3-client-win32_downloader.exe)

4 / 68      (PUP)
http://www.instalki.pl/.../get_Winrar_64bit.php  (winrar-x64-420pl_downloader.exe)

 
Latest 30 of 221 download URLs

The following 5 files have been seen to comunicate with www.instalki.pl in live environments.