files4.downloadmanager149.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain files4.downloadmanager149.com is registered by proxy through GODADDY.COM, LLC and was originally registered in September of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Cambridge, Massachusetts within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Massachusetts, United States (US)

Create date:
Wednesday, September 2, 2015

Expires date:
Friday, September 2, 2016

Updated date:
Wednesday, September 2, 2015

Scanner detections:
Detections  (95% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.DownloadAdmin.Recode.Installer (M), PUP.FindwideToo.Installer (M), PUP.TomorrowSoftware.PowerPlayMedia.Bundler (M), PUP.DownloadAdmin.Sundex.Installer (M), PUP.TomorrowSoftware.TrustedInstallSoftware.Installer (M), PUP.TomorrowSoftware.TrueStreet.Installer (M), PUP.DownloadAdmin.FullSpectrumInteractive.Installer (M), PUP.Tightrope.PourOverDigital.Bundler (M), PUP.DownloadAdmin.SafeInstallSoftware.Installer (M), PUP.DownloadAdmin.Groovecom.Installer (M), PUP.TomorrowSoftware.GoldenBanners.Bundler (M), PUP.TomorrowSoftware.UprightMedia.Installer (M), PUP.TomorrowSoftware.TrustedI.Bundler (M), PUP.TomorrowSoftware.PowerPla.Bundler (M), PUP.DownloadAdmin.Grooveco.Installer (M), PUP.TomorrowSoftware.TrueStre.Installer (M), PUP.TomorrowSoftware.UprightM.Installer (M)
94.44%

VIPRE Antivirus
Trojan.Win32.Generic, Threat.4721115
25.00%

G Data
Gen:Variant.Application.Bundler.DownloadAdmin, Win32.Trojan.Agent.NKNX5P
22.22%

ESET NOD32
Win32/DownloadAdmin.P potentially unwanted (variant)
22.22%

AVG
Generic, Win32/Sality
22.22%

MicroWorld eScan
Gen:Variant.Application.Bundler.DownloadAdmin.4
19.44%

Bitdefender
Gen:Variant.Application.Bundler.DownloadAdmin.4
19.44%

F-Secure
Gen:Variant.Application.Bundler
19.44%

Dr.Web
Trojan.Vittalia.884, Trojan.Vittalia.963, Trojan.Vittalia.1074, Trojan.Vittalia.961, Trojan.Vittalia.1198, Win32.Sector.30
19.44%

Bkav FE
W32.HfsAdware
16.67%

McAfee
Artemis!15C783916007, Artemis!A0CD4A49149D, Artemis!224A13399DFF, Artemis!9C054EA85BAD, Artemis!AD8E3B6ACF3E
16.67%

Fortinet FortiGate
Riskware/DownloadAdmin
16.67%

Agnitum Outpost
Riskware.Agent
13.89%

K7 AntiVirus
Adware
13.89%

Rising Antivirus
PE:Malware.Generic/QRS!1.9E2D [F], PE:Adware.DownloadAdmin!1.A243 [F]
11.11%

The domain files4.downloadmanager149.com has been seen to resolve to the following 100 IP addresses.

a23-219-88-158.deploy.static.akamaitechnologies.com
August 25, 2016

a23-219-88-159.deploy.static.akamaitechnologies.com
August 25, 2016

a104-96-221-81.deploy.static.akamaitechnologies.com
July 22, 2016

a104-96-221-58.deploy.static.akamaitechnologies.com
July 22, 2016

a104-96-221-138.deploy.static.akamaitechnologies.com
July 22, 2016

a104-96-221-107.deploy.static.akamaitechnologies.com
July 22, 2016

a104-96-221-99.deploy.static.akamaitechnologies.com
July 22, 2016

a23-15-7-136.deploy.static.akamaitechnologies.com
July 20, 2016

a23-15-7-104.deploy.static.akamaitechnologies.com
July 20, 2016

a23-15-7-153.deploy.static.akamaitechnologies.com
July 20, 2016

a23-15-8-66.deploy.static.akamaitechnologies.com
July 17, 2016

a104-96-220-193.deploy.static.akamaitechnologies.com
July 17, 2016

a104-96-220-224.deploy.static.akamaitechnologies.com
July 17, 2016

a23-62-6-74.deploy.static.akamaitechnologies.com
July 7, 2016

a23-62-6-91.deploy.static.akamaitechnologies.com
July 7, 2016

a23-15-9-18.deploy.static.akamaitechnologies.com
July 7, 2016

a23-15-9-58.deploy.static.akamaitechnologies.com
July 7, 2016

a23-15-8-33.deploy.static.akamaitechnologies.com
July 6, 2016

a23-15-8-89.deploy.static.akamaitechnologies.com
July 6, 2016

a23-62-6-104.deploy.static.akamaitechnologies.com
June 28, 2016

a23-220-148-11.deploy.static.akamaitechnologies.com
June 6, 2016

a118-214.160-177.deploy.akamaitechnologies.com
May 25, 2016

a118-214.160-176.deploy.akamaitechnologies.com
May 25, 2016

a104-96-220-233.deploy.static.akamaitechnologies.com
May 16, 2016

a104-96-220-226.deploy.static.akamaitechnologies.com
May 16, 2016

a104-96-220-203.deploy.static.akamaitechnologies.com
May 16, 2016

a104-96-220-248.deploy.static.akamaitechnologies.com
May 16, 2016

a104-96-220-241.deploy.static.akamaitechnologies.com
May 16, 2016

a104-96-220-217.deploy.static.akamaitechnologies.com
May 16, 2016

May 16, 2016

 
Showing 30 of 100 IP Addresses

File downloads found at URLs served by files4.downloadmanager149.com.

 
Latest 30 of 276 download URLs

The following 643 files have been seen to comunicate with files4.downloadmanager149.com in live environments.

 
Latest 20 of 768 files