cdn.goodpackagescities.com

Communigal Communication Ltd

Domain Information

The domain cdn.goodpackagescities.com registered by Communigal Communication Ltd was initially registered in April of 2015 through GAL COMMUNICATION (COMMUNIGAL) LTD.. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Hollywood, Florida within the United States which resides on the Prolexic Technologies, Inc. network.
Registrar:
GAL COMMUNICATION (COMMUNIGAL) LTD.

Server location:
Florida, United States (US)

Create date:
Wednesday, April 22, 2015

Expires date:
Friday, April 22, 2016

Updated date:
Wednesday, April 22, 2015

ASN:
AS32787 PROLEXIC-TECHNOLOGIES-DDOS-MITIGATION-NETWORK - Prolexic Technologies, Inc.,US

Scanner detections:
Detections  (80% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.AnchorFree.Installer.Meta (L), PUP.Installer.InstallCore.Installer, PUP.InstallCore.Installer.Installer (M), PUP.installCore.DestinyD.Installer (M)
100.00%

VIPRE Antivirus
Threat.4786018, InstallCore
16.67%

Dr.Web
Trojan.InstallCore.306
16.67%

Bkav FE
W32.HfsAdware
16.67%

Malwarebytes
PUP.Optional.InstallCore.SID.C, PUP.Optional.InstallCore.SID.A
16.67%

Comodo Security
Application.Win32.InstallCore.AKZ
16.67%

G Data
Win32.Application.InstallCore.DI
16.67%

Baidu Antivirus
Adware.Win32.InstallCore
16.67%

ESET NOD32
Win32/InstallCore.ZC potentially unwanted (variant)
16.67%

AVG
Generic
16.67%

Avira AntiVirus
PUA/InstallCore.YH.103
8.33%

Trend Micro House Call
Suspicious_GEN.F47V0427
8.33%

McAfee
Artemis!83E2D2E591A8
8.33%

Fortinet FortiGate
Riskware/InstallCore
8.33%

herdProtect (fuzzy)
a variant of 4400ff6c0774cb7d1080dcf1d5f03aa770d1520a
8.33%

The domain cdn.goodpackagescities.com has been seen to resolve to the following 2 IP addresses.

unknown.prolexic.com
May 18, 2016

ec2-54-213-22-74.us-west-2.compute.amazonaws.com
May 21, 2015

File downloads found at URLs served by cdn.goodpackagescities.com.

The following 74 files have been seen to comunicate with cdn.goodpackagescities.com in live environments.

 
Latest 20 of 81 files