download.installspeed.com
NameFind LLC
Domain Information
The domain download.installspeed.com registered by NameFind LLC was initially registered in June of 2014 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Tel Aviv, Tel Aviv within Israel which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC
Server location:
Tel Aviv, Israel (IL)
Create date:
Tuesday, June 10, 2014
Expires date:
Friday, June 10, 2016
Updated date:
Thursday, April 7, 2016
ASN:
AS6461 MFNX MFN - Metromedia Fiber Network
Google Safe Browsing:
unwanted
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Bandoo.BandooMedia.Installer (M), PUP.Bandoo.BandooMe.Installer (M), Win32.Generic, PUP.ILivid.WebBar (M), PUP.Bandoo (M)
100.00%
Kaspersky
not-a-virus:WebToolbar.Win32.SearchSuite, not-a-virus:WebToolbar.Win64.SearchSuite
4.00%
Malwarebytes
PUP.Optional.Bandoo
2.00%
F-Prot
W32/SearchSuite.B
2.00%
NANO AntiVirus
Riskware.Win32.Bandoo.dgnlaz
2.00%
Dr.Web
Adware.Bandoo.194
2.00%
VIPRE Antivirus
iLivid
2.00%
Avira AntiVirus
PUA/SeaSuite.inze
2.00%
G Data
Win32.Application.Agent.QWTDFV
2.00%
AhnLab V3 Security
PUP/Win32.SearchSuite
2.00%
ESET NOD32
Win32/Toolbar.SearchSuite potentially unwanted application
2.00%
IKARUS anti.virus
PUA.Soffer
2.00%
Trend Micro House Call
Suspicious_GEN.F47V0221
2.00%
The domain download.installspeed.com has been seen to resolve to the following 3 IP addresses.
94.31.0.25.IPYX-076665-ZYO.above.net
June 26, 2014
File downloads found at URLs served by download.installspeed.com.
The following 20 files have been seen to comunicate with download.installspeed.com in live environments.
URL:
http://download.installspeed.com/