install-cdn.sourceapp.info

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain install-cdn.sourceapp.info is registered by proxy through GoDaddy.com, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Fort Myers, Florida within the United States which resides on the Akamai Technologies, Inc. network.
Registrar:
GoDaddy.com, LLC

Server location:
Florida, United States (US)

ASN:
AS20940 AKAMAI-ASN1 Akamai International B.V.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.BHO.SourceApp.M, PUP.SourceApp.J, PUP.SourceApp.g, PUP.BHO.Yontoo, PUP.Yontoo, PUP.Yontoo.SourceApp (M), PUP.Yontoo.SourceAp (M)
100.00%

Malwarebytes
PUP.Optional.SourceApp.A, PUP.Optional.Zebar.A
85.19%

K7 AntiVirus
Trojan , Unwanted-Program
85.19%

Comodo Security
Application.Win32.BrowseFox.JM, Application.Win32.Altbrowse.AK, ApplicUnwnt
85.19%

Dr.Web
Trojan.BPlug.141, Trojan.BPlug.215, Trojan.Yontoo.1016, Trojan.Yontoo.1734
85.19%

Avira AntiVirus
ADWARE/BrowseFox.Gen2, APPL/BrowseFox.Gen2
85.19%

Vba32 AntiVirus
AdWare.SwiftBrowse, AdWare.Kranet, AdWare.MSIL.Agent
85.19%

AVG
BrowseFox.F, Adware BrowseFox.F, Generic, AdPlugin
85.19%

NANO AntiVirus
Trojan.Win32.BPlug.ddwtte, Riskware.Win32.Agent.czmzab, Riskware.Win32.Kranet.dkvuxq, Trojan.Win32.Yontoo.dnkubo
81.48%

McAfee
Artemis!CE773AF223CA, Artemis!CD96DF17AA75, Artemis!32C2692952A0, Artemis!DB435BA9DBE1, Artemis!E2ED7DD5CA59, Artemis!FA873B50ED99
81.48%

Fortinet FortiGate
Riskware/BrowseFox, Adware/Agent
81.48%

Sophos
Generic PUA CN, BrowseSmart, Generic PUA MF, Generic PUA DA, Generic PUA LA, Generic PUA DP, Generic PUA PK, Generic PUA CK
77.78%

Baidu Antivirus
Adware.Win32.BrowseFox
77.78%

Qihoo 360 Security
HEUR/QVM30.1.Malware.Gen, HEUR/Malware.QVM30.Gen
74.07%

MicroWorld eScan
Gen:Variant.Adware.BHO.Agent.4, Adware.BrowseFox.BP
70.37%

The domain install-cdn.sourceapp.info has been seen to resolve to the following 14 IP addresses.

June 7, 2016

June 7, 2016

a104-96-220-131.deploy.static.akamaitechnologies.com
May 16, 2016

a104-96-220-147.deploy.static.akamaitechnologies.com
May 16, 2016

a23-62-6-145.deploy.static.akamaitechnologies.com
April 14, 2016

a23-62-6-139.deploy.static.akamaitechnologies.com
April 14, 2016

a23-62-6-88.deploy.static.akamaitechnologies.com
April 13, 2016

a23-62-6-72.deploy.static.akamaitechnologies.com
April 13, 2016

a184-51-126-169.deploy.static.akamaitechnologies.com
March 4, 2016

a184-51-126-121.deploy.static.akamaitechnologies.com
March 4, 2016

a23-0-160-51.deploy.static.akamaitechnologies.com
February 23, 2016

a23-0-160-8.deploy.static.akamaitechnologies.com
February 23, 2016

a23-15-8-208.deploy.static.akamaitechnologies.com
February 22, 2016

a23-15-8-209.deploy.static.akamaitechnologies.com
February 22, 2016

File downloads found at URLs served by install-cdn.sourceapp.info.

31 / 68    (Adware)

1 / 68      (Adware)

31 / 68    (Adware)

25 / 68    (Adware)

14 / 68    (Adware)
http://install-cdn.sourceapp.info/bed?bet=3  ({e0b15870-68bd-415d-a378-f546e5bb9699})

31 / 68    (Adware)

31 / 68    (Adware)

1 / 68      (Adware)

31 / 68    (Adware)

17 / 68    (Adware)

25 / 68    (Adware)

38 / 68    (Adware)

38 / 68    (Adware)

28 / 68    (Adware)

38 / 68    (Adware)

1 / 68      (Adware)

38 / 68    (Adware)

31 / 68    (Adware)

38 / 68    (Adware)

11 / 68    (Adware)

34 / 68    (Adware)

1 / 68      (Adware)

31 / 68    (Adware)

37 / 68    (Adware)

11 / 68    (Adware)

38 / 68    (Adware)

37 / 68    (Adware)

29 / 68    (Adware)

38 / 68    (Adware)

The following 113 files have been seen to comunicate with install-cdn.sourceapp.info in live environments.

 
Latest 20 of 124 files

URL:
http://install-cdn.sourceapp.info/

Web server:
Microsoft-IIS/7.5 (ASP.NET)