www.installadz1.com

Temp Organization

Domain Information

The domain www.installadz1.com registered by Temp Organization was initially registered in October of 2015 through NICS TELEKOMUNIKASYON TICARET LTD.STI.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Istanbul, Istanbul within Turkey which resides on the RIPE Network Coordination Centre network.
Registrar:
NICS TELEKOMUNIKASYON TICARET LTD.STI.

Server location:
Istanbul, Turkey (TR)

Create date:
Saturday, October 17, 2015

Expires date:
Monday, October 17, 2016

Updated date:
Saturday, October 17, 2015

ASN:
AS29262 IDEALHOSTING IDEALHOSTING SUNUCU INTERNET HIZ. TIC. LTD STI,TR

Root domain:

Scanner detections:
Detections  (80% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.MediaGet.Banner.Installer (M), PUP.MediaGet.Inbox.Installer (M)
100.00%

Bkav FE
W32.HfsAdware
75.00%

Malwarebytes
PUP.Optional.MediaGet
75.00%

ESET NOD32
Win32/MediaGet.AE potentially unwanted (variant)
75.00%

Kaspersky
not-a-virus:HEUR:Downloader.Win32.MediaGet
75.00%

Sophos
MediaGet (PUA)
75.00%

Comodo Security
Application.Win32.MediaGet.G
75.00%

Dr.Web
Program.MediaGet.133
75.00%

G Data
Win32.Adware.MediaGet
75.00%

AVG
Banne
75.00%

K7 AntiVirus
Unwanted-Program
50.00%

Baidu Antivirus
Adware.Win32.MediaGet
50.00%

IKARUS anti.virus
PUA.MediaGet
25.00%

Qihoo 360 Security
Win32/Virus.e7d
25.00%

The domain www.installadz1.com has been seen to resolve to the following IP address.

mail168164.dergireklam.com
October 29, 2015

File downloads found at URLs served by www.installadz1.com.

 
Latest 30 of 69 download URLs

The following 2 files have been seen to comunicate with www.installadz1.com in live environments.

URL:
http://www.installadz1.com/

Web server:
nginx