www.pcrpr.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.pcrpr.com is registered by proxy through GODADDY.COM, LLC and was originally registered in March of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Wednesday, March 4, 2015

Expires date:
Saturday, March 4, 2017

Updated date:
Saturday, March 5, 2016

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer, PUP.Reimage (L), Win32.Generic.Reimage.Installer.Meta, PUP.Reimage.Optional.Meta (L)
100.00%

Dr.Web
Trojan.Crossrider1.1621, riskware program Program.Unwanted.493
75.00%

McAfee
Artemis!9B8D97161AE5, Artemis!72CB31555DA5, Artemis!D7830F8B35ED
75.00%

Fortinet FortiGate
Riskware/ReImageRepair
75.00%

Baidu Antivirus
PUA.Win32.ReImageRepair
75.00%

Trend Micro House Call
Suspicious_GEN.F47V0429, Suspicious_GEN.F47V0520
75.00%

ESET NOD32
Win32/ReImageRepair.F potentially unwanted
50.00%

Bkav FE
W32.HfsAdware
50.00%

Malwarebytes
PUP.Optional.ReImageRepair.A
50.00%

Agnitum Outpost
Riskware.Agent
25.00%

herdProtect (fuzzy)
a variant of 3d37449f32d1a44822a2eb9df54648f27564eb7d
25.00%

AVG
Adware Skodna.Generic
25.00%

Zillya! Antivirus
Downloader.Agent.Win32.241821
25.00%

ESET NOD32
Detection.Undefined
25.00%

Kaspersky
not-a-virus:AdWare.Win32.Pibee
25.00%

The domain www.pcrpr.com has been seen to resolve to the following 2 IP addresses.

August 27, 2015

August 27, 2015

File downloads found at URLs served by www.pcrpr.com.

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

11 / 68    (PUP)

1 / 68      (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

10 / 68    (PUP)

 
Latest 30 of 42 download URLs

URL:
http://www.pcrpr.com/

Title:
“PCRPR |”

SSL certificate subject:
CN=sni96032.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO ECC Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (PHP/5.3.29)

Facebook:
Likes:  66
Shares:  7

Statistics are for the previous month.