www.wkwindowsflash.com

Whois Privacy Protection Service, Inc.  (Proxy Registrant)

Domain Information

The domain www.wkwindowsflash.com is registered by proxy through NAME.COM, INC. and was originally registered in October of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Airmont, New York within the United States which resides on the Google Inc. network.
Registrar:
NAME.COM, INC.

Server location:
New York, United States (US)

Create date:
Thursday, October 16, 2014

Expires date:
Friday, October 16, 2015

Updated date:
Thursday, October 16, 2014

ASN:
AS15169 GOOGLE - Google Inc.,US

Root domain:

Scanner detections:
Detections  (92% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Installer.PluginUpdateSL.F, PUP.Softpulse.PluginUpdate.Bundler (M), PUP.Softpulse.PluginUp.Bundler (M)
100.00%

Dr.Web
Trojan.DownLoader11.36367, Adware.SoftPules.3, Trojan.DownLoader11.36367
27.27%

avast!
Win32:GenMalicious-ADB [PUP], Win32:SoftPulse-AM [PUP]
27.27%

MicroWorld eScan
Gen:Variant.Application.Bundler.20, Gen:Variant.Application.Bundler.SoftPulse.2
27.27%

McAfee
Softpulse.a, Artemis!9DE8EC494A6C, SoftPulse.a, Program.SoftPulse.a
27.27%

Malwarebytes
PUP.Optional.DomaIQ
27.27%

K7 AntiVirus
Unwanted-Program
27.27%

Norman
Kryptik.CDHN, Gen:Variant.Application.Bundler.20
27.27%

Bitdefender
Gen:Variant.Application.Bundler.20, Gen:Variant.Application.Bundler.SoftPulse.2
27.27%

Sophos
SoftPulse, Smart Secure Software, PUA 'SoftPulse' (of type Adware)
27.27%

Avira AntiVirus
APPL/Bundler.20, APPL/Softpulse.aone
27.27%

G Data
Gen:Variant.Application.Bundler.20, Gen:Variant.Application.Bundler.SoftPulse
27.27%

AhnLab V3 Security
PUP/Win32.SoftPulse, Win-PUP/DomaIQ.Gen
27.27%

AVG
Generic
27.27%

VIPRE Antivirus
Threat.4150696, DomaIQ
27.27%

The domain www.wkwindowsflash.com has been seen to resolve to the following 13 IP addresses.

yv-in-f103.1e100.net
May 3, 2015

yv-in-f99.1e100.net
May 3, 2015

yv-in-f104.1e100.net
May 3, 2015

yv-in-f106.1e100.net
May 3, 2015

yv-in-f105.1e100.net
May 3, 2015

yv-in-f147.1e100.net
May 3, 2015

iad23s24-in-f18.1e100.net
October 24, 2014

iad23s24-in-f17.1e100.net
October 24, 2014

iad23s24-in-f16.1e100.net
October 24, 2014

iad23s24-in-f20.1e100.net
October 24, 2014

iad23s24-in-f19.1e100.net
October 24, 2014

October 20, 2014

October 20, 2014

File downloads found at URLs served by www.wkwindowsflash.com.

The following 32 files have been seen to comunicate with www.wkwindowsflash.com in live environments.

 
Latest 20 of 37 files

URL:
http://www.wkwindowsflash.com/

Title:
“Google”

Description:
“Search the world's information, including webpages, images, videos and more. Google has many special features to help you find exactly what you're looking for.”

Web server:
gws