Download
Community
knowledgeBase
» www.laboratorycleantour.com
Overview
Analysis
IPs Addresses (19)
Downloads (24)
Network (36)
www.laboratorycleantour.com
Communigal Communication Ltd
Domain Information
The domain www.laboratorycleantour.com registered by Communigal Communication Ltd was initially registered in January of 2016 through GAL COMMUNICATION (COMMUNIGAL) LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Portland, Oregon within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform from the US West (Oregon) region datacenter.
Registrant:
Communigal Communication Ltd
Registrar:
GAL COMMUNICATION (COMMUNIGAL) LTD.
Server location:
Oregon, United States (US)
Create date:
Thursday, January 28, 2016
Expires date:
Saturday, January 28, 2017
Updated date:
Thursday, January 28, 2016
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US
Root domain:
laboratorycleantour.com
Whois:
1 laboratorycleantour.com record
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.InstallCore.Installer.Installer (M), PUP.InstallCore.Bundler (M), PUP.InstallCore (M), PUP.InstallCore.FC.Installer (M), PUP.InstallCore.RE11 (M), PUP.InstallCore.FC (M)
100.00%
ESET NOD32
Win32/InstallCore.ADX.gen potentially unwanted application
4.35%
IPs Addresses
The domain www.laboratorycleantour.com has been seen to resolve to the following 19 IP addresses.
52.41.114.34
ec2-52-41-114-34.us-west-2.compute.amazonaws.com
August 14, 2016
52.33.46.229
ec2-52-33-46-229.us-west-2.compute.amazonaws.com
August 14, 2016
52.10.159.134
ec2-52-10-159-134.us-west-2.compute.amazonaws.com
August 14, 2016
54.200.224.121
ec2-54-200-224-121.us-west-2.compute.amazonaws.com
August 14, 2016
54.148.183.210
ec2-54-148-183-210.us-west-2.compute.amazonaws.com
August 14, 2016
52.32.12.104
ec2-52-32-12-104.us-west-2.compute.amazonaws.com
June 8, 2016
52.38.209.219
ec2-52-38-209-219.us-west-2.compute.amazonaws.com
June 8, 2016
52.33.165.25
ec2-52-33-165-25.us-west-2.compute.amazonaws.com
June 8, 2016
52.25.41.73
ec2-52-25-41-73.us-west-2.compute.amazonaws.com
May 16, 2016
52.24.26.116
ec2-52-24-26-116.us-west-2.compute.amazonaws.com
May 16, 2016
52.26.95.11
ec2-52-26-95-11.us-west-2.compute.amazonaws.com
April 19, 2016
54.148.57.212
ec2-54-148-57-212.us-west-2.compute.amazonaws.com
April 16, 2016
54.69.198.37
ec2-54-69-198-37.us-west-2.compute.amazonaws.com
April 16, 2016
54.69.11.66
ec2-54-69-11-66.us-west-2.compute.amazonaws.com
February 24, 2016
52.88.159.85
ec2-52-88-159-85.us-west-2.compute.amazonaws.com
February 24, 2016
52.35.10.15
ec2-52-35-10-15.us-west-2.compute.amazonaws.com
February 24, 2016
52.34.170.106
ec2-52-34-170-106.us-west-2.compute.amazonaws.com
February 24, 2016
52.25.23.136
ec2-52-25-23-136.us-west-2.compute.amazonaws.com
February 24, 2016
54.191.37.5
ec2-54-191-37-5.us-west-2.compute.amazonaws.com
February 24, 2016
Downloads
File downloads found at URLs served by www.laboratorycleantour.com.
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=yEF4IPManKSZjDV1VzCFgh3V2Wsy7N00gHJHGzMmU/s=&c=KuuyNj7P6cQGp1wkGv00GtnuZCx/H51NVQ8k08fHUnCljYoIyLdbVA6TK4dT0EhKnn6zzaNP tePl9FRvWR6khQ5tDP1dpA0Crkgg FX70CvRVPjnX8kRX2IHrRzCSImiaZhvyIXs43/ULtW4YMgmM7mwGWyBKLGWNQ9DYV2zqQ=&fallback_url=http://.../ableword.exe&downloadAs=AbleWord-56940-dp.exe
(5ca8aa65f925779e43e6009ff0a2f967)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=UpLkxuVrKsy6 tvRtlpLbWoMoDTSS6PJAfPHHxcrrXo=&c=Mwo0tvHdX1FrWTeGpsjGGYtlFMEJhCYws/ZfiNu5W8yThCHhB/8hzic5K1nlpuE/0rmWLC48e0YFwtEd5MAtcrLzegmSmRret7Pm0ld/oznCIjsbYfYkJ3t cqK1VpMMVG84BC y52HcXmSzqn8MlaJbfPCh/d9VjFG4DCa3DAw=&fallback_url=http://storage.dobreprogramy.pl/.../SweetHome3D-5.1-windows.exe&downloadAs=Sweet-Home-3D-12842-dp.exe
(dcf2b3a198af9df82134383f654f11ff)
1 / 68 (PUP)
http://www.laboratorycleantour.com/c?x=thpyl73zxC DHUPkt5STTZs0hQC2GhdDFOWt 5KXiN0=&c=QAFC2fXKX0EbFm CM7h4NNeFT3t72V5UMEPqZCHY1gpMHiJem4XHzrgqOjzRt T9D0oMGY4C/yoILAT6owDZIk3tpg6wY7VtNN039E66Y6ccnXB2coL/UmW4aoPOtUoZiVXLkUnzKYPjF08jzwsR7RP66n3qQeJ5VBBsTjq3Q=&fallback_url=http://www.yworks.com/products/yed/.../yEd-3.14.4_with-JRE_32-bit_setup.exe&downloadAs=yEd-Graph-Editor-57462-dp.exe
(75b227f3a1e555d0dea248ba5e3daa4a)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=vBjd2 Oh7bj6u jyLf8hakmUQhAlFDoJrfrpmWmVsOg=&c=RKw duo67pRa233Qupvmu/2QlkabHt3msv AJuTGxYOhrBmDimwgLO1N871ifW/kNLqcfBrXzu LHtbL3nwTyoAaNFIsTDJQMP4wwF3f 0EC1KKobY0R7Xmg1WzcjuMa&fallback_url=http://download.teamviewer.com/.../TeamViewer_Setup_pl.exe&downloadAs=TeamViewer-13319-dp.exe
(a4266a09e4f50c63a21f57533307b1e7)
1 / 68 (PUP)
http://www.laboratorycleantour.com/c?x=9gsN29L9vnu5mCYphzxl1RlyPFNflmUShwABolAOFuk=&c=VLxXNtGko fxSfsHRH3EeP07GmhZTVkJF8jtOTQeYDG17aihBmpl gtgRK/yoVlh9ZWIbTQldDOyGKRQuEOCVEeBMUSIUtQ5wqC9OPtGVm7yMag6KJc1yNxWcSLex8uc&fallback_url=http://storage.dobreprogramy.pl/.../ATF-Cleaner(dobreprogramy.pl).exe&downloadAs=ATF-11943-dp.exe
(dc0dc9ca307c207f5fcb9678cc1a4d38)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=J7qzMobJXVA1hNJSgit4GNrXh1udqFFx8Lu4AkNveoM=&c=x6FO c53n1Q/BotAI7iwt2s74XqERTBL9SW0ZYknsXoqV XgNVMLtl5P2mvU2E9Bo6bM2WJEr 42a9dU4mCT8Ro7KK6tgUkvyz skWB10Aw6U/s hM5kLMNlHVVeH9J4&fallback_url=http://ardownload.adobe.com/pub/adobe/reader/win/9.x/9.5.0/.../AdbeRdr950_pl_PL.exe&downloadAs=Adobe-Reader-12627-dp.exe
(835c3c4f26abca02332bf8f1b09fb21d)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=I2o 8I6vSh8wrcG0ruZasZFw7gblOgoGPu4FFP Bano=&c=svzdi7owJNfakOO9MIiojO9oNVjphPCyIgQA9jky6417UBlZDLnnO2p3ysBF82AVo1CV47ApZbqRhfUexda41Nvene82wAkLTXY/veDYJ6Pr5dhP/kZ/W1/MKo8fqd68&fallback_url=http://ftp.adobe.com/pub/adobe/reader/win/11.x/11.0.00/.../AdbeRdr11000_pl_PL.exe&downloadAs=Adobe-Reader-XI-21590-dp.exe
(81a2492f6e04b35a7fdb6cb7995332c0)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=Ut0bPfLpmu heyXMs78dNda/CK4AKu7avs6exADxO88=&c=zdaMVZxxWUiN9e9qUYXAamjNiffLngR6zn7BRCPaPKPWuW0qbrJqIKlHAuIEPtOQGZzyZaVweDQYiudHBVLkyi naZ2Ij/x44YDvfwVuL/DsKs8Muqz/Jq0ZAZPcOXlC&fallback_url=http://www.dopdf.com/download/.../dopdf.exe&downloadAs=doPDF-15410-dp.exe
(a4854dbcd2a403547d8f85e33408cb16)
1 / 68 (PUP)
http://www.laboratorycleantour.com/c?x=gRu7W2orhu56BrUAaM4285UDuyGstDPKLpWS8jmMtW0=&c=CEw6GcbdyvU2rXTGm1RqcK6erxHrIkeZcDmS1x6cVtioLKf6gY8tL6sZm7CKw8ibJO85gkq4kK2XVlcDiDCSIChj6BBBbBDPq esBUEZag6t iprWBSyP4iO9JGT9Cza&fallback_url=http://download.microsoft.com/download/c/e/1/.../wordview_pl-pl.exe&downloadAs=Word-Viewer-12113-dp.exe
(c73e550a177ec8b588d09508ba7aa858)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=ma Xi hO49RPIqlNqGWTYuCx0v/qSh1WMJEDtZyCa40=&c=V/j18oudQezC1lXNYqxhGsbUzzQAnDCWihkYb9/eOR90HkNCI06exkFVRi KUpfkfvDUbfxl4RIYqAATiKpNQk3sqp7k4E9MTKZJduYuHa8lbukdaqm5Nn4mYlNv9ZrM&fallback_url=http://ashampoo.downloadcluster.com/ashampoo/.../ashampoo_photo_card_2_e2.0.3_sm.exe&downloadAs=Ashampoo-Photo-Card-48318-dp.exe
(2ccec9a23c65e007c9e48bc0a90eaa59)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=YMA/Wk3 YAYQZ0MrkPTm2BCjjI71YvJB8sWHQKhyRVs=&c=pEoC0KrOtL8A6YR6NXYj3YyXyQcdlCPTEy1 ayQig4Tkf199R4WqTZuqjeIWsZg42 vwe4/FzMr/QZE7Pqo3GQbO/yxbPVIGXCbDu8vw19ASirki0D91R5jcGZpLXbSI&fallback_url=http://www.abiword.org/downloads/abiword/2.9.4/.../abiword-setup-2.9.4.exe&downloadAs=AbiWord-12889-dp.exe
(9d3714dc539e76805354f988bd0d3069)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=O9rB0jcZegfgvFy969vC95Duut1W0i67lIenX3KO6DM=&c=YFOFrepOdCKP3bEjpFzZdk0AEnAwT8DvoIt/agdcbpAK4Hmdxj/me8yc6hpUJ8Hz090LH6lh3XjPSi762Gs6cz81a8P4geTWpCfy54N1dkhpGfqXeYd/6lhTyMbaFEnP&fallback_url=http://storage.dobreprogramy.pl/.../icytower_install(dobreprogramy.pl).exe&downloadAs=Icy-Tower-13960-dp.exe
(9740e58b20709eddc8d2fa43ec1f8c8e)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=AR H GEtmZTDv6kxE7yuwd8oB3U2d 58VF q1vjtYJ4=&c=9nOSu1nCc42hIjf0cpOBmE9Zuc52XVpyk0GdKwOLw9q3c7hAqW72HH9FFQfXuYfUGLy6cnLsGjwON97uvhIesGpP44BbTr2lwTSY0D3wDaNajF7d8MDzeaSEJubi7Tkg&fallback_url=http://.../bdcamsetup.exe&downloadAs=Bandicam-30315-dp.exe
(3d6f197719e7226d1339bba06375b68a)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=QfOLMgqkPmGB/1RxV0f0P9K26ox4Pr7GQxqd6jwWu5Y=&c=wOn3CIMpqBkn5SQSihqGU0axslvKa3v6Vmdp80UYz8D1VnUwjSAelfPbPRJw5l2Ad/sTifk/fIkv6uXbNnbriwYgSPCXQQqj/OkTcJc5e5rNKDtDQbyUXmbIUPHrKxgTE9spTqSAzygVg7mI1fUeoaUqz2JHpk LgDqaiVT6Pww=&fallback_url=https://download.fosshub.com/Protected/expiretime=1453310892;badurl=aHR0cDovL3d3dy5mb3NzaHViLmNvbS9BdWRhY2l0eS5odG1s/624463d1a399bd9b516145735ed66db82d2e787d9228a1d0b76239f64cc72e8a/.../audacity-win-2.1.2.exe&downloadAs=Audacity-11826-dp.exe
(586b3c73db55d86c6fbccbe9c5325297)
2 / 68 (PUP)
http://www.laboratorycleantour.com/c?x=5HIHUPE Gvf0NLeazSU5Q8EYNhEMd34hG7INY42VV9I=&c=w/kinXd3mxkgo3dnleFORlFgtdQjSIwdRFYQ4WCSkrl66TvBxXv8mL/uwQ0RbFOg8GO3H0/uIMv1nUUpAQNt9BiD8TB76XWk8v3A3bZ/fc0kxyw8lMsc1PDRKYP12K8f&fallback_url=http://ftp.adobe.com/pub/adobe/reader/win/11.x/11.0.00/.../AdbeRdr11000_pl_PL.exe&downloadAs=Adobe-Reader-XI-21590-dp.exe
(e3d3486b952187c43dc0e6a1ee3c1e87)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=bsSIPYJOUPGnQ690E7NZCzrVDeORcnVonIncB5WS7ME=&c=A o0icDOPzeLHHBpJ1hm07/Alymx3x3kYKDfI2DhIGcDvmHadmkjEHNMw1ztq3ErQ2pbJ6xWmTrrSEkgOXKfUIT0gTFCXqHmvhIZ0Aw4PV0FE/hFDDURnV68IvRA4kO&fallback_url=http://fpdownload.adobe.com/get/flashplayer/pdc/.../install_flash_player.exe&downloadAs=Adobe-Flash-Player-13091-dp.exe
(d04402f72d643d78546f9eb646ec0bf9)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=CUAyat5Lei44l wHAzfb5Il6qG565G5gWGuTMMmRsjA=&c=8nSbaZcRe7/OXHkRFtA7wTbkw19XxxefTMlo6CVtiywP0I1ch69W 0cUf0CZrUogstGrGW76NnCVks3qroRD O4rbhct51MOMCW6/eJ0ETnbF8phNtI6QMpb/XkZk4Gg&fallback_url=http://.../winzip200-64.msi&downloadAs=WinZip-12854-dp.exe
(5816c239f1c47c6449f608947d7611da)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=yGJyZO7C3UcsJDDGNjgQN7ZshlS4pYlf1L6qkYJx50I=&c=40StOHaikdlVMus2QmmdLMiPlXcVATBT/Qo977ov1TqGROP460yJJVviNlxFbw8V8zV7FhmOBbRpueEPxp3yAk7K7lBcMfnJXoh WcMX2W9 UvWuu8wepsExJZdcMHt5&fallback_url=http://ftp.adobe.com/pub/adobe/reader/win/11.x/11.0.00/.../AdbeRdr11000_pl_PL.exe&downloadAs=Adobe-Reader-XI-21590-dp.exe
(81a2492f6e04b35a7fdb6cb7995332c0)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=CMeVxiHe3Y8/Xp6iVMC4kKHedCyiCwrDJKa3O1tiz U=&c=gl/pmq6E8ETYJ0Ole77yKh6UgMW6QkEQk6c9sMx90EctnP9WcCPjYWwakYzOrqPpn3sqKrxRWOavEHUJJfUlSxnKfEVOGURjGHROKLiSqa68cpS8CCXeE/O7uPJYcGxg&fallback_url=https://ftp.mozilla.org/pub/firefox/releases/44.0/win64/.../Firefox Setup 44.0.exe&downloadAs=Firefox-13108-dp.exe
(c54744dacd9ef2fe173f185d2f1bb1d5)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=QvYckcpI/3SvsvQavlya1A4qTcafiD4n4i6hrFbFK3U=&c=q2HvMg/bcYrxl4ZZ2SX/M0977MNLUTH4qPcnGOzHUU3TP7nOYcprverDBfQlxroTTG9vqAFyf9gOnBY966qrU2cM1o70FcQ79xVZMG6PTOpoAfi VbP7r1yF6BIzjymzfaccK7weBnmQxBquXDjE6wCH/bP5LyRj/MlBnivghE4=&fallback_url=http://white.download.pdfforge.org/pdfcreator/.../PDFCreator-2_2_2-setup.exe&downloadAs=PDFCreator-12691-dp.exe
(86519b88310cfb458eb7e92590a3eec8)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=l8jxbrA5U87vVoLKCP6rfcWxRjgtcntIeBOHRHTERy4=&c=BbjHH/EikHxdxU xs WyT7BKCUkzblFocEvGEpXIzVzgq/GdDa 2DVKWhPp6mS7We3AwObGAIpRZbPwnl4KizaIRDkznqqJS 8h9kxNC1 Wvjq5uzLjuhhiX0Kfk 9T&fallback_url=http://www.rarlab.com/.../winrar-x64-530.exe&downloadAs=WinRAR-12398-dp.exe
(16a199f2eddd9aeda4756c580cb72dc8)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=THcXAGM9COHCk2k1kOTskeZcT8FU4Y4IOMEz2 utEjs=&c=N0KQ3uyrCE6hnvF1tN2xV870Ky/Ej9f mF74YHTP12VwyD1J0509cZT05vWQm7JEgusz6Y6/9 WBulCgWCFL670Hg/sGM5aCY2zQMXVTsz DX91Su6u10nXVvcB39xpb&fallback_url=https://ftp.mozilla.org/pub/firefox/releases/44.0/win64/.../Firefox Setup 44.0.exe&downloadAs=Firefox-13108-dp.exe
(50217b9d73389b07e58dfee48638ad49)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=qEiBYS9xeAs6HvBQvYOGLBcvTgXrTI9wG7rt3Vefq7o=&c=rBlB/KHpTtDmUyGCel7jbDvAZflFboJdckKQx//9wIsrqbUP1NbdWrbSf 70zdsLgnsA0UMcVvMeVG6Vofmge5GGYl7tB7iftEZLfTXLs8BU5KKMHAEdVBJ6MS3i5WUW&fallback_url=http://storage.dobreprogramy.pl/.../windows.8.codec.pack.v2.0.2.setup.exe&downloadAs=Windows-8-Codec-Pack-39542-dp.exe
(29456430db8e1030cd07212200e2cc85)
1 / 68 (Adware)
http://www.laboratorycleantour.com/c?x=xP1WTgt5x7VzGJTBAhcFJbQ8qgaBov4KnDUeuuiXINg=&c=KnPFdz/eFjHt0SGYtn8f7Z9gl8vqJ6oJAZ7OhQuDhKCt8OngdSIi1r ovVc/vHagHL8NYhKvnR4RWWwBVo0ojhnuMq YC4gUKulsD5XKpzOy3lpgIFcKpTn YTruK67L&fallback_url=https://cdn2.ashampoo.net/ashampoo/.../ashampoo_burning_studio_16_e16.0.2_sm.exe&downloadAs=Ashampoo-Burning-Studio-13141-dp.exe
(040af51f316ae86d735a78279cc3c623)
Network Communications
The following 36 files have been seen to comunicate with www.laboratorycleantour.com in live environments.
TCP »
52.38.209.219
:80
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.33.46.229
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
52.33.46.229
:80
browserairexec.exe (BrowserAir by Goobzo)
TCP »
52.38.209.219
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
52.38.209.219
:80
browserairexec.exe (BrowserAir by Goobzo)
TCP »
54.200.224.121
:80
browser.exe (Browser)
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
54.200.224.121
:80
kometa.exe (Kometa by @COMPANY_FULLNAME@)
TCP »
52.38.209.219
:80
browser.exe (Browser)
TCP »
52.33.46.229
:80
citrio.exe (Citrio by CatalinaGroup)
TCP »
54.200.224.121
:80
UCBrowser.exe (UC Browser by UCWeb)
TCP »
54.200.224.121
:80
ShopAtHome_BAC_Service.exe (by ShopAtHome.com)
TCP »
54.200.224.121
:80
browser.exe (Browser)
TCP »
52.33.46.229
:80
Client.exe
TCP »
54.200.224.121
:80
kmplayer_3.8.0.123.exe.exe (The KMPlayer by PandoraTV)
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
036629fbd4864725737a8ba8fe7e8cd6.exe
TCP »
52.33.46.229
:80
ShopAtHome_BAC_Service.exe (by ShopAtHome.com)
TCP »
52.33.46.229
:80
rlvknlg.exe (Relevant-Knowledge by TMRG)
Latest 20 of 77 files
X