downloadreimage.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain downloadreimage.com is registered by proxy through GODADDY.COM, LLC and was originally registered in November of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Phoenix, Arizona within the United States which resides on the CloudFlare, Inc. network. The domain uses the CloudFlare CDN, a distributed domain name server service which utilizes a number of reverse proxy IP Addresses (see below).
Registrar:
GODADDY.COM, LLC

Server location:
Arizona, United States (US)

Create date:
Friday, November 13, 2015

Expires date:
Sunday, November 13, 2016

Updated date:
Saturday, November 14, 2015

ASN:
AS13335 CLOUDFLARENET - CloudFlare, Inc.,US

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Reimage (L), Win32.Generic.Reimage.Installer.Meta, PUP.Reimage.ReimageR.Installer.Meta (L), PUP.Reimage.Installer.Meta (L)
100.00%

Dr.Web
riskware program Program.Unwanted.493, riskware program Program.Unwanted.497, riskware program Program.Unwanted.1470
57.14%

Bkav FE
W32.HfsAdware
28.57%

McAfee
Artemis!72CB31555DA5, Artemis!D7830F8B35ED
28.57%

Malwarebytes
PUP.Optional.ReImageRepair.A
28.57%

Fortinet FortiGate
Riskware/ReImageRepair
28.57%

Baidu Antivirus
PUA.Win32.ReImageRepair
28.57%

Trend Micro House Call
Suspicious_GEN.F47V0520
28.57%

ESET NOD32
Detection.Undefined
14.29%

Kaspersky
not-a-virus:AdWare.Win32.Pibee
14.29%

ESET NOD32
Win32/ReImageRepair.F potentially unwanted
14.29%

Clam AntiVirus
Win.Trojan.Slugin-260
14.29%

The domain downloadreimage.com has been seen to resolve to the following 2 IP addresses.

December 7, 2015

December 7, 2015

File downloads found at URLs served by downloadreimage.com.

2 / 68      (PUP)

1 / 68      (PUP)

10 / 68    (PUP)

1 / 68      (Malware)

2 / 68      (Malware)

1 / 68      (Malware)

10 / 68    (PUP)