The domain download.venturedownload.com registered by Web Domains By Proxy was initially registered in January of 2014 through PAKNIC (PRIVATE) LIMITED. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Strasbourg, Alsace within France which resides on the RIPE Network Coordination Centre network.
Registrant:
Web Domains By Proxy
Registrar:
PAKNIC (PRIVATE) LIMITED
Server location:
Alsace, France (FR)
Create date:
Saturday, January 18, 2014
Expires date:
Wednesday, January 18, 2017
Updated date:
Tuesday, December 29, 2015
ASN:
AS8972 PLUSSERVER-AS PlusServer AG,DE
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
ESET NOD32
Win32/Amonetize.AD (variant), Win32/Amonetize.AG (variant), Win32/Amonetize.AI (variant), Win32/Amonetize.AJ (variant), Win32/Amonetize.AO (variant)
88.24%
Malwarebytes
PUP.Optional.InstallMonetizer, PUP.Optional.Amonetize, PUP.Optional.Amonetize.A
85.29%
AhnLab V3 Security
PUP/Win32.Amonetiz
85.29%
McAfee
Adware-Amonetize!84F8A457C5D6, Adware-Amonetize!D10282E7955B, Adware-Amonetize!A344D0D1EA02, Adware-Amonetize!67C4C188D54D, Artemis!ED772E252D7D, Artemis!08D64DBFFD39, Artemis!CB11E5706DBD, Artemis!8098B5E36380, Artemis!B0A532E757C6, Artemis!89D5C8027460, Artemis!3B72CB23A3A3, RDN/Generic PUP.x!bxh, Artemis!EE825659E674, Artemis!54F271D88CCB, Artemis!49FA08528BA9, Artemis!27C1F7FD3B2B, Artemis!CD00420B9BEC, Artemis!06580B6B0AD9, Artemis!D398895D0274, Artemis!4D492568524B, Adware-Amonetize!AA2FDD8D837D
82.35%
avast!
Win32:Amonetize-E [PUP], Win32:Amonetize-F [PUP], Win32:Amonetize-N [PUP], Win32:Amonetize-AF [PUP], Win32:Amonetize-AM [PUP], Win32:Amonetize-AK [PUP]
82.35%
Reason Heuristics
PUP.Installer.Amonetizeltd.t, PUP.Installer.Amonetizeltd.V, PUP.Installer.Amonetizeltd.?, PUP.Installer.Amonetizeltd.j, PUP.Installer.Amonetizeltd.y, PUP.Installer.Amonetizeltd.i, Threat.Win.Reputation.IMP, PUP.Amonetize (M)
82.35%
Avira AntiVirus
ADWARE/Adware.Gen2
82.35%
Trend Micro House Call
TROJ_GEN.F47V0129, TROJ_GEN.F47V0130, TROJ_GEN.F47V0202, TROJ_GEN.F47V0205, TROJ_GEN.F47V0206, TROJ_GEN.F47V0218, TROJ_GEN.F47V0220
70.59%
Dr.Web
Adware.Downware.1655, Adware.Downware.2083, Adware.Downware.1575, Adware.Downware.2467, Adware.Downware.2250, Adware.Downware.3081
70.59%
VIPRE Antivirus
Amonetize, Trojan.Win32.Generic
61.76%
Fortinet FortiGate
Riskware/Amonetize
44.12%
Qihoo 360 Security
HEUR/Malware.QVM10.Gen, Win32/Virus.Adware.932, Win32/Trojan.Adware.37e, Win32/Trojan.Multi.daf
41.18%
Kaspersky
not-a-virus:HEUR:AdWare.Win32.Amonetize, not-a-virus:HEUR:Adware.Win32.Amonetize
38.24%
AVG
MalSign.Generic, Generic_r, MalSign.Wilmo, Adware Generic_r.JX
35.29%
The domain download.venturedownload.com has been seen to resolve to the following 9 IP addresses.
static-ip-62-75-207-166.inaddr.ip-pool.com
January 31, 2016
cf-173-245-61-26.cloudflare.com
December 1, 2014
cf-173-245-60-26.cloudflare.com
December 1, 2014
(CloudFlare)
February 14, 2014
(CloudFlare)
February 14, 2014
(CloudFlare)
February 2, 2014
(CloudFlare)
February 2, 2014
File downloads found at URLs served by download.venturedownload.com.
Latest 30 of 168 download URLs
URL:
http://download.venturedownload.com/
Web server:
nginx/1.0.15 (PHP/5.3.3)
Related Domains