downloads.fastdld.com

WHOISGUARD, INC.  (Proxy Registrant)

Domain Information

The domain downloads.fastdld.com is registered by proxy through ENOM, INC. and was originally registered in August of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in New York City, New York within the United States which resides on the Digital Ocean, Inc. network.
Registrar:
ENOM, INC.

Server location:
New York, United States (US)

Create date:
Monday, August 19, 2013

Expires date:
Wednesday, August 19, 2015

Updated date:
Tuesday, July 22, 2014

ASN:
AS46652 SERVERSTACK-ASN - ServerStack, Inc.

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
DownloadManager.AirSoftware.F, PUP.Air Software.AirSoftw.Bundler (M)
100.00%

Malwarebytes
PUP.Optional.AirInstaller, PUP.Optional.AirAdInstaller
66.67%

K7 AntiVirus
Adware
66.67%

avast!
Win32:Installer-L [PUP], Win32:PUP-gen [PUP]
66.67%

Sophos
AirInstaller
66.67%

Comodo Security
Application.Win32.AirAdInstaller.A, Application.Win32.AirAdInstaller.B
66.67%

Dr.Web
Trojan.SMSSend.4653, Trojan.SMSSend.4689
66.67%

VIPRE Antivirus
Iminent
66.67%

ESET NOD32
Win32/AirAdInstaller.A potentially unwanted application
66.67%

Rising Antivirus
PE:PUF.Airinstall!1.9C4C
66.67%

Qihoo 360 Security
HEUR/Malware.QVM01.Gen, Malware.QVM18.Gen
66.67%

Avira AntiVirus
ADWARE/Adware.Gen
66.67%

IKARUS anti.virus
Win32.Malware, AdWare.Airinstall
66.67%

nProtect
Adware.Agent.OEW, Trojan-Clicker/W32.AirAdInstaller.824744
66.67%

F-Prot
W32/AirInstall.C.gen, W32/AirInstall.A8.gen
66.67%

The domain downloads.fastdld.com has been seen to resolve to the following 2 IP addresses.

173.192.195.226-static.reverse.softlayer.com
September 4, 2014

justice.airinstaller.com
September 4, 2014

File downloads found at URLs served by downloads.fastdld.com.

1 / 68      (Adware)

URL:
http://downloads.fastdld.com/

Title:
“Air Installer ™”

Description:
“Air Installer”

Web server:
Apache/2.2.22 (Ubuntu) (PHP/5.4.31-1+deb.sury.org~precise+1)

30 of 30 related domains