The domain www.trafficspeeders.com registered by Brains was initially registered in July of 2006 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Kihei, Hawaii within the United States which resides on the ThePlanet.com Internet Services, Inc. network.
Registrar:
GODADDY.COM, LLC
Server location:
Hawaii, United States (US)
Create date:
Tuesday, July 18, 2006
Expires date:
Monday, July 18, 2016
Updated date:
Wednesday, July 8, 2015
ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.
Scanner detections:
Detections (64% detected)
Scan engine
Details
Detections
ESET NOD32
Win32/DownWare, Win32/DownWare.L potentially unwanted, MSIL/HipgnosisBrains.A potentially unwanted (variant)
57.14%
Reason Heuristics
PUP.HipgnosisVision.CC, PUP.HipgnosisVision.FF, PUP.ProsperaSoftware.FF, PUP.Installer.HipgnosisVision, PUP.HipgnosisVision.Installer (M), PUP.Hipgnosi.Installer (M)
57.14%
Zillya! Antivirus
Downloader.Agent.Win32.206468, Downloader.Somoto.Win32.1698, Downloader.Agent.Win32.240692, Trojan.Small.Win32.29166, Downloader.Agent.Win32.276323, Downloader.Agent.Win32.276303, Downloader.Agent.Win32.276326
57.14%
ESET NOD32
Win32/DownWare.L potentially unwanted application, MSIL/HipgnosisBrains.A potentially unwanted application
38.10%
Trend Micro House Call
TROJ_GEN.F47V1213, Suspicious_GEN.F47V0825, Suspicious_GEN.F47V0113, Suspicious_GEN.F47V0429
28.57%
Qihoo 360 Security
HEUR/Malware.QVM06.Gen, HEUR/QVM42.0.Malware.Gen, Win32/Virus.Downloader.2f0
19.05%
Dr.Web
Program.Unwanted.362, riskware program Program.Unwanted.397
19.05%
Baidu Antivirus
PUA.Win32.DownWare, PUA.MSIL.HipgnosisBrains
19.05%
Bkav FE
W32.HfsAdware
14.29%
avast!
Win32:Malware-gen
14.29%
VIPRE Antivirus
Trojan.Win32.Generic, Trojan-Downloader.Win32.Agent
14.29%
McAfee
Artemis!9A351B705EB0, Artemis!43CC855C1D04, Artemis!CF07729931DE
14.29%
Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F], Malware.Undefined!8.C-DtzVyB1XIeF (Cloud)
14.29%
K7 AntiVirus
Unwanted-Program
9.52%
The domain www.trafficspeeders.com has been seen to resolve to the following 5 IP addresses.
184.173.253.242-static.reverse.softlayer.com
April 21, 2016
File downloads found at URLs served by www.trafficspeeders.com.
The following 101 files have been seen to comunicate with www.trafficspeeders.com in live environments.
URL:
http://www.trafficspeeders.com/
Title:
“TrafficSpeeders – Enjoy great download speed and simplicity!”
Web server:
Apache/2.4.7 (Ubuntu) (PHP/5.5.9-1ubuntu4.14)
Statistics are for the previous month.