getyoutubedownloader.com

HOW Inc.

Domain Information

The domain getyoutubedownloader.com registered by HOW Inc. was initially registered in July of 2010 through REALTIME REGISTER BV. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Nuremberg, Bayern within Germany which resides on the RIPE Network Coordination Centre network.
Registrar:
REALTIME REGISTER BV

Server location:
Bayern, Germany (DE)

Create date:
Sunday, July 4, 2010

Expires date:
Monday, July 4, 2016

Updated date:
Saturday, July 4, 2015

ASN:
AS24940 HETZNER-AS Hetzner Online AG

Scanner detections:
Detections  (91% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.BonjoySoftware, Threat.Installer.BonjoySoftware, PUP.How.FYTDownloader.Bundler.Installer.Meta (M), PUP.Vitzo.Installer (M), PUP.NewMedia.NMH.Bundler (M), PUP.InstallCore.RE11 (M), PUP.InstallCore.AC.Installer (M), PUP.BonjoyVe.Installer (M), PUP (M), PUP.How.FYTDownloader.Bundler (M)
93.02%

Dr.Web
Adware.OpenCandy.72, Adware.OpenCandy.139, Win32.Sector.30, Trojan.Inject1.28681, Adware.OpenCandy.194
11.63%

ESET NOD32
Win32/Sality.NBA virus, Win32/Delf.NRJ worm, Win32/OpenCandy.A potentially unsafe application
9.30%

VIPRE Antivirus
Opencandy, Threat.4775899
6.98%

McAfee
Artemis!61CC5EB8581F, Artemis!E8C3BC80F1D0, Program.Artemis!7C3AB0DF36A5
6.98%

Microsoft Security Essentials
Threat.Undefined
6.98%

avast!
Win32:SaliCode, Win32:Agent-AODJ [Trj]
6.98%

F-Prot
W32/Sality.gen2, W32/Renamer.A.gen
6.98%

Emsisoft Anti-Malware
Win32.Sality, Gen:Win32.FileInfector.GKW@aW!lBFdi, Worm.Generic.377772
6.98%

Norman
Win32.Sality.3, Gen:Win32.FileInfector.GKW@aW!lBFdi, Worm.Generic.377772
6.98%

Trend Micro House Call
Suspicious_GEN.F47V0305, TROJ_GEN.R0C1H07DH15
4.65%

ESET NOD32
Win32/OpenCandy.A potentially unsafe (variant)
4.65%

Fortinet FortiGate
W32/Virut.CE.gen, Riskware/OpenCandy
4.65%

Panda Antivirus
W32/Sality.AO, Generic Suspicious
4.65%

G Data
Win32.Virtob.Gen.12, Win32.Trojan.Agent.95WKEY
4.65%

The domain getyoutubedownloader.com has been seen to resolve to the following 16 IP addresses.

July 13, 2016

July 13, 2016

July 7, 2016

July 7, 2016

June 18, 2016

June 18, 2016

June 18, 2016

June 18, 2016

June 18, 2016

January 5, 2016

January 5, 2016

July 23, 2015

July 23, 2015

May 4, 2015

May 4, 2015

dc-63567025.softcdn.com
February 3, 2014

File downloads found at URLs served by getyoutubedownloader.com.

1 / 68      (PUP)
http://getyoutubedownloader.com/FreeYTD_Setup.exe  (6d86523a0fa8a660c6fcb8c93277dfd8)

1 / 68      (Malware)
http://getyoutubedownloader.com/FYD_Setup.exe  (7d489df5b8ad5a40caf0179dd9b929e3)

0 / 68

1 / 68      (PUP)

15 / 68    (Adware)

1 / 68      (PUP)
http://getyoutubedownloader.com/.../FYDSetup.exe  (4fbf1b2a25b1805baa2f3f7cec1d517c)

1 / 68      (PUP)

1 / 68      (PUP)
http://getyoutubedownloader.com/.../FYDSetup.exe  (e135d4ae41ad43c953b211dbf08a31f8)

1 / 68      (PUP)
http://getyoutubedownloader.com/.../FYDSetup.exe  (c9a2ed5cdea4e206cc96d4d8dadd6355)

1 / 68      (PUP)
http://getyoutubedownloader.com/.../FYDSetup.exe  (a117dd3503224e806be3ab317c1da462)

URL:
http://getyoutubedownloader.com/

Google Analytics:
UA-19260618

Title:
“Downloading Free YouTube Downloader!”

Description:
“Download ANY video from YouTube. Simply copy-and-paste or use built-in search. Up to 4K resolution, including 60fps videos.”

SSL certificate subject:
CN=ssl276652.cloudflaressl.com, OU=PositiveSSL Multi-Domain, OU=Domain Control Validated

SSL certificate issuer:
CN=COMODO RSA Domain Validation Secure Server CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Web server:
cloudflare-nginx (PHP/5.6.4)