cdn1.file.org

File.org

Domain Information

This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States.
Registrar:
eNom, Inc.

Server location:
Illinois, United States (US)

ASN:
AS30081 CACHENETWORKS - CacheNetworks, Inc.

Root domain:

Scanner detections:
Detections  (88% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Task.TrustedSoftware.I, PUP.Installer.W3i.J, PUP.Systweak.Installer.Meta (L), PUP.Installer.W3i.X, PUP.FTAAPS.Installer (M)
87.50%

ESET NOD32
Win32/FileTypeAssistant (variant), Win32/InstallIQ (variant)
37.50%

Avira AntiVirus
Adware/InstallCore.CK.8, APPL/InstallIQ.Gen5
37.50%

VIPRE Antivirus
InstallIQ Installer, Threat.4729122
37.50%

F-Prot
W32/Backdoor2.HTOA, W32/InstallCore.L.gen
25.00%

AVG
InstallCore, AdInstaller.InstallQ
25.00%

Bkav FE
HW32.Laneul, HW32.Pedka
25.00%

MicroWorld eScan
APPL/InstallIQ.Gen5
25.00%

McAfee
Artemis!CB411E39B84F, Artemis!E4DB96135082
25.00%

Malwarebytes
PUP.Optional.InstallIQ.A
25.00%

K7 AntiVirus
Unwanted-Program
25.00%

Trend Micro House Call
TROJ_GEN.R0CBH0AJ913, TROJ_GEN.R0CBH0AI813
25.00%

Sophos
InstallQ
25.00%

Dr.Web
Adware.W3i.9
25.00%

Rising Antivirus
PE:PUF.InstallIQ!1.9E4F
25.00%

The domain cdn1.file.org has been seen to resolve to the following IP address.

vip1.g.cachefly.net
February 6, 2014

File downloads found at URLs served by cdn1.file.org.

24 / 68    (Adware)
http://cdn1.file.org/fo/.../FreeFileViewer2012Setup.exe  (e4db961350821f70701e327b8dd82510)

1 / 68      (PUP)
http://cdn1.file.org/fo/.../ufhsetup.exe  (cc59be85b06790bb055f5776d4fe2b13)

1 / 68      (PUP)

3 / 68      (inconclusive)
http://cdn1.file.org/fo/downloads/.../rcpsetup_15294.exe  (6f9c76d1aa1a88661419e325bcda4aa8)

1 / 68      (PUP)
http://cdn1.file.org/fo/downloads/.../rcpsetup_15294.exe  (1772e77b5952114ac8380a603cea22fa)

1 / 68      (PUP)
http://cdn1.file.org/fo/downloads/.../rcpsetup_15294.exe  (77fa32e233059dd9a80ddddc0635779e)

13 / 68    (Adware)

7 / 68      (Adware)
http://cdn1.file.org/fo/.../tsasetup.exe  (cec66e3ca216a4783c6fc54b4fe36dbd)

The following 197 files have been seen to comunicate with cdn1.file.org in live environments.

 
Latest 20 of 267 files

URL:
http://cdn1.file.org/

Web server:
CFS 0213