www.livestatscounter.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.livestatscounter.com is registered by proxy through GODADDY.COM, LLC and was originally registered in January of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the FDCservers.net network.
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Wednesday, January 21, 2015

Expires date:
Saturday, January 21, 2017

Updated date:
Saturday, January 16, 2016

ASN:
AS6461 ABOVENET - Abovenet Communications, Inc,US

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

avast!
Win32:Adware-gen [Adw], Win32:Vitro, Win32:Kukacka, Win32:RmnDrp, Win32:SaliCode, Win32:Virtu-A, Win32:Sality
89.58%

ESET NOD32
Win32/Adware.ConvertAd.XV application, Win32/Virut.NBP virus, Win32/Sality.NBA virus, Win32/Ramnit.H virus
89.58%

Dr.Web
Adware.ClickMeIn.4060, Adware.ClickMeIn.6974, Win32.Virut.56, Win32.Sector.30, Adware.ClickMeIn.6974, Win32.Rmnet.8, Adware.ClickMeIn.6974, Win32.Rmnet.12
72.92%

Norman
Gen:Variant.Adware.Zusy.159670, Win32.Virtob.Gen.12, Win32.Ramnit.N, Win32.Sality.3, Gen:Variant.Adware.Graftor.243081
70.83%

Emsisoft Anti-Malware
Adware.Win32.ConvertAd, Gen:Variant.Adware.ConvertAd.33, Gen:Variant.Adware.Zusy.159670, Win32.Virtob.Gen.12, Win32.Ramnit.N, Win32.Sality
60.42%

Reason Heuristics
Threat.Win.Reputation.IMP, Adware.Generic.AT (M), Adware.CMI.DB (M), PUP.ConvertAd (M)
54.17%

F-Prot
W32/Virut.AM, W32/Virut.AI!Generic, W32/Ramnit.B!Generic, W32/Virut.E.gen, W32/Heuristic-162!Eldorado (not disinfectable)
54.17%

AVG
Generic7, Adware Generic7.YVI, Win32/Virut, Win32/Zbot.G, Win32/Sality
50.00%

Microsoft Security Essentials
Threat.Undefined
50.00%

McAfee
Artemis!1E5EC0E5F9AF, Program.Artemis!EF1BEE3BFD62, Virus.W32/Virut.n.gen, Program.Artemis!237AAA173D67, Virus.W32/Ramnit.dr
31.25%

Kaspersky
Virus.Win32.Virut, Virus.Win32.Nimnul, Trojan.Win32.Hrup, Virus.Win32.Sality
27.08%

F-Secure
Variant.Adware.Zusy, Win32.Virtob.Gen.12, Win32.Ramnit.N
16.67%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4737366, Threat.4732184, Threat.4120919
14.58%

NANO AntiVirus
Trojan.Win32.Xpack.dsegrb, Riskware.Win32.ConvertAd.dymxaz, Riskware.Win32.ConvertAd.dzcopr, Riskware.Win32.ConvertAd.ebhmfh
8.33%

ESET NOD32
Win32/Adware.ConvertAd.QB (variant), Win32/Adware.ConvertAd.ABZ (variant), Win32/Adware.ConvertAd.ACO (variant), Win32/Adware.ConvertAd.XV (variant)
8.33%

The domain www.livestatscounter.com has been seen to resolve to the following 6 IP addresses.

dl17.clickmein.com
January 2, 2016

January 2, 2016

dl16.clickmein.com
January 2, 2016

dl21.clickmein.com
January 2, 2016

January 2, 2016

January 2, 2016

File downloads found at URLs served by www.livestatscounter.com.

9 / 68      (Malware)

The following 1270 files have been seen to comunicate with www.livestatscounter.com in live environments.

 
Latest 20 of 1,376 files

URL:
http://www.livestatscounter.com/

Google Analytics:
UA-21120979

Title:
“Download Servers”

SSL certificate subject:
CN=livestatscounter.com, OU=Domain Control Validated

SSL certificate issuer:
CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy.com, Inc."

Web server:
nginx/1.8.0