The domain download.atube.me is registered by proxy through ME-NET R4-ME (800096) and was originally registered in December of 2011. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dulles, Virginia within the United States which resides on the RIPE Network Coordination Centre network.
Registrant:
Privacy Protection Service INC d/b/a PrivacyProtect.org
Registrar:
ME-NET R4-ME (800096)
Server location:
Virginia, United States (US)
Create date:
Wednesday, December 28, 2011
Expires date:
Monday, December 28, 2020
Updated date:
Monday, September 15, 2014
ASN:
AS16265 LEASEWEB LeaseWeb B.V.
Scanner detections:
Detections (93% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.DsNET.aTube.Installer.Meta (M), PUP.aTubeCatcher.DsNETCor.Installer.Meta (L), PUP.DsNET.aTube.Meta (M), PUP.DiegoUscanga.M, PUP.Atube.Optional.Installer.Meta (M), PUP.aTubeCacther.DsNETCor.Installer.Meta (L)
88.89%
ESET NOD32
Win32/Bundled.Toolbar.Ask (variant), Win32/Bundled.Toolbar.Ask.G potentially unsafe (variant)
59.26%
Dr.Web
Adware.Downware.1417, Adware.Toolbar.282
25.93%
Rising Antivirus
PE:Trojan.VBInject!1.6546
25.93%
Malwarebytes
PUP.Optional.Spigot.A
22.22%
Trend Micro House Call
TROJ_GEN.F47V1102, TROJ_GEN.F47V0321, TROJ_GEN.F47V0325, TROJ_GEN.F47V0402, TROJ_GEN.F47V0609
22.22%
McAfee
Artemis!87E86BB05CE7, Artemis!57DD30D91A91, Artemis!51A688A1FE54, Artemis!856A378DEF95
18.52%
AhnLab V3 Security
PUP/Win32.WindowNM
18.52%
Comodo Security
TrojWare.Win32.Agent.ASSP
7.41%
G Data
Win32.Trojan.Agent.YE043L
7.41%
Bkav FE
W32.Clod396.Trojan
3.70%
Fortinet FortiGate
Riskware/Ask
3.70%
The domain download.atube.me has been seen to resolve to the following IP address.
hosted-by.leaseweb.com
December 29, 2013
File downloads found at URLs served by download.atube.me.
URL:
http://download.atube.me/