1.inst.securedownlaoder.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain 1.inst.securedownlaoder.com is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Northfield, Minnesota within the United States which resides on the Adknowledge, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Minnesota, United States (US)

Create date:
Wednesday, November 23, 2011

Expires date:
Wednesday, November 23, 2016

Updated date:
Tuesday, November 10, 2015

ASN:
AS32618 ADKNO-KC - Adknowledge, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
Threat.Win.Reputation.IMP, PUP.Installer.WARPINSTALL.K, PUP.Installer.OptimumInstaller.V, PUP.Adknowledge.OptimumInstaller.Installer (M), PUP.Adknowledge.OptimumI.Bundler (M), PUP.Adknowledge (M)
97.78%

Sophos
iBryte Optimum Installer, iBryte Desktop, PUA 'iBryte Optimum Installer'
17.78%

Malwarebytes
PUP.Optional.IBryte, PUP.Optional.OptimumInstaller.A, PUP.Bundle.Installer.OI
15.56%

K7 AntiVirus
Unwanted-Program , Adware
15.56%

VIPRE Antivirus
Optimum Installer, Threat.4778314
15.56%

Avira AntiVirus
ADWARE/Adware.Gen7, Adware/IBryte.19976
15.56%

Comodo Security
Application.Win32.Ibryte.DIU, ApplicUnwnt.Win32.AdWare.iBryte.F
13.33%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h, Adware.iBryte
13.33%

Fortinet FortiGate
Riskware/IBryte
13.33%

Kaspersky
not-a-virus:Downloader.Win32.Agent, not-a-virus:AdWare.Win32.iBryte
13.33%

AVG
MalSign.Generic, Adware Skodna.Generic.FH, AdPlugin, Adware AdInstaller.OptimumInstaller
13.33%

Norman
Agent.ASWDM, Application.Bundler.OptimumInstaller.Y
11.11%

avast!
Win32:Somoto-N [PUP], Win32:Installer-J [PUP], Win32:PUP-gen [PUP]
11.11%

Rising Antivirus
PE:Malware.Agent!6.1684, PE:AdWare.Win32.iBryte.c!1075350787
11.11%

F-Prot
W32/Optim.A.gen, W32/A-f4795586
11.11%

The domain 1.inst.securedownlaoder.com has been seen to resolve to the following IP address.

static-204-137-28-48.adknowledge.com
April 4, 2014

File downloads found at URLs served by 1.inst.securedownlaoder.com.

1 / 68      (Adware)

1 / 68      (Adware)
http://1.inst.securedownlaoder.com/o/.../Gimp_Setup.exe  (b7d7573892beabb2f15aa49825348b0e)

1 / 68      (Adware)
http://1.inst.securedownlaoder.com/o/.../GrooveStream.exe  (cb422b678e2c68e4651095a941b0f542)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)

1 / 68      (Adware)
http://1.inst.securedownlaoder.com/o/.../PacMan_Setup.exe  (a50b76bad55e6a68e1ed823043d9d3d9)

1 / 68      (Adware)

1 / 68      (Adware)

12 / 68    (PUP)
http://1.inst.securedownlaoder.com/o/.../impresssetup.exe  (0acc3781af02d688bd2be0ea773bae9c)

12 / 68    (PUP)