files8.downloadster.org

Downloadster  (via a Proxy Registrant)

Domain Information

downloadster distributes apps with its download manager which bundles adware toolbars such as Babylon and Rally as well as other potentially unwanted software. "We're able to offer free software because we are advertiser supported. When you download software, it gives our advertisers a chance to speak to you. ALL OFFERS ARE OPTIONAL. Users may be offered to change their browser homepage during install." The domain files8.downloadster.org is registered by proxy through GoDaddy.com, LLC. This domain has been known to host and distribute potentially unwanted software. The hosted servers are located in Beaumaris, Victoria within Australia which resides on the Asia Pacific Network Information Centre network. The domain is associated with the publisher Downloadster who is located in SAN FRANCISCO, California in the United States.
Registrar:
GoDaddy.com, LLC

Server location:
Victoria, Australia (AU)

ASN:
AS133618 TRELLIAN-AS-AP Trellian Pty. Limited,AU

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Downloadster.U, PUP.Installer.DownloadAdmin.U, PUP.Tightrope.Bundler, PUP.Installer.Statscom.U, PUP.Installer.Tightrope, PUP.Tightrope.DownloadAdmin.Bundler (M), PUP.Tightrope.Sanflex.Bundler (M), PUP.Tightrope.Download.Bundler (M), PUP.Tightrope.Zoobam.Bundler (M)
100.00%

VIPRE Antivirus
Threat.4783369, Threat.4150696
73.91%

AVG
Generic
69.57%

K7 AntiVirus
Adware , Unwanted-Program
65.22%

Avira AntiVirus
ADWARE/Adware.Gen
65.22%

Dr.Web
Adware.Downware.2220, Threat.Undefined, Adware.DAdmin.151, Trojan.Vittalia.2
60.87%

ESET NOD32
Win32/DownloadAdmin.G potentially unwanted application, Win32/DownloadAdmin.H potentially unwanted application
56.52%

Sophos
Download Admin, PUA 'Download Admin', PUA 'DownloadAdmin' (of type Adware)
56.52%

Malwarebytes
PUP.Optional.DownloadAdmin
52.17%

Agnitum Outpost
Riskware.Agent
52.17%

Clam AntiVirus
Win.Adware.Downloadadmin, Win.Adware.Downloadadmin-1
52.17%

F-Secure
Adware:W32/WebInstallBundle
47.83%

AhnLab V3 Security
PUP/Win32.Downware
39.13%

NANO AntiVirus
Riskware.Win32.Downware.crgjbr, Riskware.Win32.Downware.djahkt, Trojan.Win32.DAdmin.djhtdm, Riskware.Nsis.Downware.dlgjls
34.78%

F-Secure
Spyware: Adware:W32/WebInstallBundle
26.09%

The domain files8.downloadster.org has been seen to resolve to the following 5 IP addresses.

lb-182-244.above.com
May 27, 2016

50.22.63.140-static.reverse.softlayer.com
October 9, 2014

50.22.63.138-static.reverse.softlayer.com
October 9, 2014

108.168.160.45-static.reverse.softlayer.com
September 3, 2014

50.97.63.217-static.reverse.softlayer.com
September 3, 2014

File downloads found at URLs served by files8.downloadster.org.

 
Latest 30 of 37 download URLs

The following 237 files have been seen to comunicate with files8.downloadster.org in live environments.

 
Latest 20 of 320 files