files4.downloadnet1004.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain files4.downloadnet1004.com is registered by proxy through GODADDY.COM, LLC and was originally registered in May of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Seattle, Washington within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Washington, United States (US)

Create date:
Friday, May 22, 2015

Expires date:
Sunday, May 22, 2016

Updated date:
Friday, May 22, 2015

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US

Google Safe Browsing:
malware

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.TomorrowSoftware.TrueStreet.Installer (M), PUP.DownloadAdmin (M), PUP.TomorrowSoftware.SpiralMe.Bundler (M), PUP.DownloadAdmin.SuperCli.Installer (M), PUP.DownloadAdmin.RedLight.Installer (M), PUP.DownloadAdmin.RazorEdg.Installer (M), PUP.DownloadAdmin.SafeInst.Installer (M), PUP.BrokenSp.Installer (M)
93.75%

ESET NOD32
Win32/DownloadAdmin.Q potentially unwanted (variant)
12.50%

Emsisoft Anti-Malware
Gen:Variant.Razy.12439
12.50%

IKARUS anti.virus
PUA.DownloadAdmin
12.50%

Qihoo 360 Security
HEUR/QVM10.1.Malware.Gen, HEUR/QVM10.1.0000.Malware.Gen
12.50%

MicroWorld eScan
Gen:Variant.Razy.12439
6.25%

Bitdefender
Gen:Variant.Razy.12439
6.25%

AegisLab AV Signature
Variant.Application.Bundler.DownloadAdmin
6.25%

Lavasoft Ad-Aware
Gen:Variant.Razy.12439
6.25%

F-Secure
Gen:Variant.Razy.12439
6.25%

Arcabit
Trojan.Razy.D3097
6.25%

G Data
Gen:Variant.Razy.12439
6.25%

avast!
Win32:Malware-gen
6.25%

F-Secure
Variant.Razy.12439
6.25%

ESET NOD32
Win32/DownloadAdmin.Q potentially unwanted application
6.25%

The domain files4.downloadnet1004.com has been seen to resolve to the following 12 IP addresses.

a104-96-220-233.deploy.static.akamaitechnologies.com
May 26, 2016

a104-96-221-91.deploy.static.akamaitechnologies.com
May 22, 2016

a104-96-221-98.deploy.static.akamaitechnologies.com
May 22, 2016

a104-112-235-19.deploy.static.akamaitechnologies.com
May 17, 2016

a104-96-220-216.deploy.static.akamaitechnologies.com
May 17, 2016

a23-220-148-19.deploy.static.akamaitechnologies.com
April 21, 2016

a23-220-148-8.deploy.static.akamaitechnologies.com
April 21, 2016

a184-51-126-64.deploy.static.akamaitechnologies.com
April 12, 2016

a184-51-126-50.deploy.static.akamaitechnologies.com
April 12, 2016

a184-51-126-48.deploy.static.akamaitechnologies.com
April 12, 2016

a23-0-160-98.deploy.static.akamaitechnologies.com
January 6, 2016

a23-0-160-88.deploy.static.akamaitechnologies.com
January 6, 2016

File downloads found at URLs served by files4.downloadnet1004.com.

The following 41 files have been seen to comunicate with files4.downloadnet1004.com in live environments.

 
Latest 20 of 47 files