files4.downloadnet1002.com
Domains By Proxy, LLC (Proxy Registrant)
Domain Information
The domain files4.downloadnet1002.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seattle, Washington within the United States which resides on the Akamai Technologies, Inc. network.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Washington, United States (US)
Create date:
Friday, May 22, 2015
Expires date:
Sunday, May 22, 2016
Updated date:
Friday, May 22, 2015
ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.DownloadAdmin.SAFEINSTALLSOFTWARE.Installer (M), PUP.DownloadAdmin.SuperCli.Installer (M), PUP.TomorrowSoftware.TRUSTEDI.Bundler (M)
83.33%
VIPRE Antivirus
Threat.4150696, DownloadAdmin
33.33%
avast!
Win32:Malware-gen
16.67%
ESET NOD32
Win32/DownloadAdmin.Q potentially unwanted application
16.67%
Emsisoft Anti-Malware
Gen:Variant.Graftor.274815
16.67%
The domain files4.downloadnet1002.com has been seen to resolve to the following 12 IP addresses.
a104-96-221-98.deploy.static.akamaitechnologies.com
June 5, 2016
a104-96-221-91.deploy.static.akamaitechnologies.com
June 5, 2016
a23-220-148-19.deploy.static.akamaitechnologies.com
June 5, 2016
a23-220-148-8.deploy.static.akamaitechnologies.com
June 5, 2016
a104-96-220-233.deploy.static.akamaitechnologies.com
May 23, 2016
a104-96-220-227.deploy.static.akamaitechnologies.com
May 23, 2016
a104-96-220-216.deploy.static.akamaitechnologies.com
May 23, 2016
a104-96-220-192.deploy.static.akamaitechnologies.com
May 23, 2016
a23-0-160-98.deploy.static.akamaitechnologies.com
March 1, 2016
a23-0-160-88.deploy.static.akamaitechnologies.com
March 1, 2016
File downloads found at URLs served by files4.downloadnet1002.com.
The following 29 files have been seen to comunicate with files4.downloadnet1002.com in live environments.