www.trafficspeeders.com

Brains

Domain Information

The domain www.trafficspeeders.com registered by Brains was initially registered in July of 2006 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Kihei, Hawaii within the United States which resides on the ThePlanet.com Internet Services, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Hawaii, United States (US)

Create date:
Tuesday, July 18, 2006

Expires date:
Monday, July 18, 2016

Updated date:
Wednesday, July 8, 2015

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.

Scanner detections:
Detections  (64% detected)

Scan engine
Details
Detections

ESET NOD32
Win32/DownWare, Win32/DownWare.L potentially unwanted, MSIL/HipgnosisBrains.A potentially unwanted (variant)
57.14%

Reason Heuristics
PUP.HipgnosisVision.CC, PUP.HipgnosisVision.FF, PUP.ProsperaSoftware.FF, PUP.Installer.HipgnosisVision, PUP.HipgnosisVision.Installer (M), PUP.Hipgnosi.Installer (M)
57.14%

Zillya! Antivirus
Downloader.Agent.Win32.206468, Downloader.Somoto.Win32.1698, Downloader.Agent.Win32.240692, Trojan.Small.Win32.29166, Downloader.Agent.Win32.276323, Downloader.Agent.Win32.276303, Downloader.Agent.Win32.276326
57.14%

ESET NOD32
Win32/DownWare.L potentially unwanted application, MSIL/HipgnosisBrains.A potentially unwanted application
38.10%

Trend Micro House Call
TROJ_GEN.F47V1213, Suspicious_GEN.F47V0825, Suspicious_GEN.F47V0113, Suspicious_GEN.F47V0429
28.57%

Qihoo 360 Security
HEUR/Malware.QVM06.Gen, HEUR/QVM42.0.Malware.Gen, Win32/Virus.Downloader.2f0
19.05%

Dr.Web
Program.Unwanted.362, riskware program Program.Unwanted.397
19.05%

Baidu Antivirus
PUA.Win32.DownWare, PUA.MSIL.HipgnosisBrains
19.05%

Bkav FE
W32.HfsAdware
14.29%

avast!
Win32:Malware-gen
14.29%

VIPRE Antivirus
Trojan.Win32.Generic, Trojan-Downloader.Win32.Agent
14.29%

McAfee
Artemis!9A351B705EB0, Artemis!43CC855C1D04, Artemis!CF07729931DE
14.29%

AVG
Generic
14.29%

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F], Malware.Undefined!8.C-DtzVyB1XIeF (Cloud)
14.29%

K7 AntiVirus
Unwanted-Program
9.52%

The domain www.trafficspeeders.com has been seen to resolve to the following 5 IP addresses.

184.173.253.242-static.reverse.softlayer.com
April 21, 2016

February 27, 2016

March 16, 2015

November 18, 2014

April 16, 2014

File downloads found at URLs served by www.trafficspeeders.com.

2 / 68      (inconclusive)

2 / 68      (inconclusive)

5 / 68      (PUP)

4 / 68      (PUP)

1 / 68      (PUP)

2 / 68      (inconclusive)

1 / 68      (inconclusive)

2 / 68      (inconclusive)

3 / 68      (inconclusive)

6 / 68      (PUP)

2 / 68      (inconclusive)

21 / 68    (PUP)

11 / 68    (PUP)

3 / 68      (PUP)
http://www.trafficspeeders.com/bittorrent_ultra_accelerator_free.exe  (9ccd9e12a836cd247a80ebf2e2458397380d26cab7d4ea1da21c880a043ad9e6)

9 / 68      (PUP)

5 / 68      (PUP)

5 / 68      (PUP)

2 / 68      (PUP)

5 / 68      (PUP)

5 / 68      (PUP)

2 / 68      (PUP)

5 / 68      (PUP)

2 / 68      (PUP)

2 / 68      (PUP)

The following 101 files have been seen to comunicate with www.trafficspeeders.com in live environments.

 
Latest 20 of 101 files

URL:
http://www.trafficspeeders.com/

Title:
“TrafficSpeeders – Enjoy great download speed and simplicity!”

Web server:
Apache/2.4.7 (Ubuntu) (PHP/5.5.9-1ubuntu4.14)

Facebook:
Likes:  3
Shares:  11

Statistics are for the previous month.