download-cdn.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain download-cdn.com is registered by proxy through ENOM, INC. and was originally registered in March of 2014. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in United, Pennsylvania within the United States which resides on the RIPE Network Coordination Centre network.
Registrar:
ENOM, INC.

Server location:
Pennsylvania, United States (US)

Create date:
Friday, March 28, 2014

Expires date:
Tuesday, March 28, 2017

Updated date:
Tuesday, March 29, 2016

ASN:
AS39572 ADVANCEDHOSTERS-AS ADVANCEDHOSTERS LIMITED,UA

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

AhnLab V3 Security
PUP/Win32.Amonetiz, PUP/Win32.Amonetize
100.00%

Reason Heuristics
PUP.Installer.KOMPANIYAR.k, PUP.Installer.ShetefSolutionsConsulting1998.l, PUP.Installer.AMGRUP.o, PUP.Installer.AMGRUP.DD
100.00%

McAfee
Artemis!0757F126DEE3, Artemis!597C143C0354, Artemis!3B2E4E1001CA, Trojan.Artemis!DE732793E0EA, Artemis!F23EBE58EE48, Artemis!A32DD2406EBA
87.50%

NANO AntiVirus
Riskware.Win32.Amonetize.dchxoa, Riskware.Win32.Amonetize.dffaha, Riskware.Win32.Amonetize.dkinix, Riskware.Win32.Amonetize.dlgsuu
87.50%

ESET NOD32
Win32/Amonetize.BI (variant), Win32/Amonetize.BO (variant), Win32/Amonetize.CH (variant), Win32/Amonetize.CK (variant), Win32/Amonetize.CS (variant)
87.50%

Avira AntiVirus
APPL/Bundler.Amonetize.N.102, ADWARE/Adware.Gen, ADWARE/Adware.Gen4, Adware/Amonetize.314368.1, Adware/Amonetize.478400.1
87.50%

Sophos
Generic PUA MC, Generic PUA MM, Generic PUA LA, Generic PUA GI, Amonetize, Generic PUA JG, Generic PUA DM
87.50%

AVG
Generic, Downloader.Generic14
75.00%

Qihoo 360 Security
Win32/Application.bcb, HEUR/Malware.QVM10.Gen, HEUR/QVM10.1.Malware.Gen
75.00%

avast!
Win32:Amonetize-CL [PUP], Win32:Adware-gen [Adw], Win32:Malware-gen, Win32:Amonetize-HQ [PUP]
62.50%

Dr.Web
Adware.Downware.5913, Adware.Downware.8564, Trojan.Amonetize.341, Trojan.Adfltnet.70, Trojan.Adfltnet.71
62.50%

K7 AntiVirus
Trojan , Unwanted-Program
62.50%

Trend Micro House Call
Suspicious_GEN.F47V0717, TROJ_GEN.R08NH09LM14, Suspicious_GEN.F47V1231, TROJ_GEN.R0C1H07A615, TROJ_GEN.R08OH07AB15
62.50%

MicroWorld eScan
Application.Bundler.Amonetize.N, Gen:Variant.Adware.Netfilter.2, Application.Bundler.Amonetize.AO, Gen:Variant.Application.Bundler.Amonetize.21
50.00%

Malwarebytes
PUP.Optional.Downloader, PUP.Optional.Amonetize, PUP.Optional.Bundle
50.00%

The domain download-cdn.com has been seen to resolve to the following 2 IP addresses.

April 6, 2016

September 27, 2014

File downloads found at URLs served by download-cdn.com.

10 / 68    (Adware)
http://download-cdn.com/direct/.../mediaplayer_setup.php?a=12355&s=0&t=1&fv=7  (heroes and generals hack october 2014 no survey no password__10967_i1436325746_il311680.exe)

26 / 68    (Adware)
http://download-cdn.com/direct/.../mediaplayer_setup.php?a=12355&s=0&t=1&fv=7  (microsoftoffice2013proplusx86x64fullserialkey,licensefreedownload__11057_il1437.exe)

10 / 68    (Adware)

25 / 68    (Adware)
http://download-cdn.com/.../download.php?aff=12423&saff=0&t=40&fv=7&product=damnvid&name=MediaPlayerSetup7.3.3  (shibori the inventive art of downloader__3687_i1445361786_il2416219.exe)

25 / 68    (Adware)
http://download-cdn.com/direct/.../mediaplayer_setup.php?a=12423&s=0&t=1&fv=7  (shibori the inventive art of downloader__3687_i1445361786_il2416219.exe)

19 / 68    (Adware)
http://download-cdn.com/direct/.../mediaplayer_setup.php?a=11971&s=0&t=1&fv=7  (mediaplayersetup.7.3.3__6629_i1428637349_il782.exe)

6 / 68      (Adware)

24 / 68    (Adware)

15 / 68    (Adware)

24 / 68    (Adware)

URL:
http://download-cdn.com/

Google Analytics:
UA-2249740

Title:
“Download-Cdn.com”

Description:
“Find Cash Advance, Debt Consolidation and more at Download-Cdn.com. Get the best of Insurance or Free Credit Report, browse our section on Cell Phones or learn about Life Insurance. Download-Cdn.com is the site for Cash Advance.”

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)

30 of 685 related domains