blogdownloader.net

TJ COOP

Domain Information

The domain blogdownloader.net registered by TJ COOP was initially registered in December of 2012 through DOTNAME KOREA CORP. Currently this domain has been known to host various forms of malware. The hosted servers are located in Seoul, Seoul-T'Ukpyolsi within Korea which resides on the Asia Pacific Network Information Centre network.
Registrar:
DOTNAME KOREA CORP

Server location:
Seoul-T'Ukpyolsi, Korea (KR)

Create date:
Thursday, December 27, 2012

Expires date:
Tuesday, December 27, 2016

Updated date:
Tuesday, September 1, 2015

ASN:
AS9318 HANARO-AS Hanaro Telecom Inc.,KR

Scanner detections:
Malware distribution  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP (M)
100.00%

AhnLab V3 Security
PUP/Win32.Downloader
8.33%

The domain blogdownloader.net has been seen to resolve to the following IP address.

November 19, 2015

File downloads found at URLs served by blogdownloader.net.

1 / 68      (Malware)
http://blogdownloader.net/marks/han/.../D3Helper_Package_download.exe  (isaac_1.4.8_expansion_package_download.exe)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)
http://blogdownloader.net/marks/set/.../Hotspot_Shield_download.exe  (minecraft1.7.10_mode_vmashu_download.exe)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)

1 / 68      (Malware)
http://blogdownloader.net/marks/set/.../Minecraft_1.5.2_download.exe  (minecraft1.7.10_mode_vmashu_download.exe)

1 / 68      (Malware)

URL:
http://blogdownloader.net/

Title:
“네이트”

Web server:
Apache