The domain mozilla-firefox.todownload.com is registered by proxy through GODADDY.COM, LLC and was originally registered in February of 2005. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrant:
Domains By Proxy, LLC
Registrar:
GODADDY.COM, LLC
Server location:
Virginia, United States (US)
Create date:
Sunday, February 13, 2005
Expires date:
Monday, February 13, 2017
Updated date:
Sunday, September 14, 2014
Scanner detections:
Detections (98% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.WeDownload.Bundler (M), PUP.installCore.Clickrun.Installer (M), Threat.Win.Reputation.IMP, PUP.installCore.Clickrun (M), PUP.installCore.IronInst.Installer (M), PUP.Downloader.Bundler.Soft32 (M), PUP.WeDownload (M), PUP.installCore (M)
97.96%
F-Prot
W32/InstallCore.V2.gen, W32/InstallCore.P.gen
12.24%
Dr.Web
Adware.InstallCore.45, Adware.InstallCore.72
12.24%
ESET NOD32
Win32/InstallCore.AU potentially unwanted application
10.20%
AVG
InstallCore, Adware InstallCore.FJ
8.16%
VIPRE Antivirus
Trojan.Win32.Generic, Threat.4754767
4.08%
Panda Antivirus
PUP/MultiToolbar.A
4.08%
Qihoo 360 Security
Win32/Trojan.Hoax.b0e
4.08%
MicroWorld eScan
Gen:Variant.Adware.Strictor.19792
2.04%
nProtect
Joke/W32.ArchSMS.1050088
2.04%
McAfee
Artemis!FC481AD05ADA
2.04%
SUPERAntiSpyware
Adware.InstallCore
2.04%
NANO AntiVirus
Trojan.Win32.WebToolbar.vkttl
2.04%
avast!
Win32:InstallCore-BG [PUP]
2.04%
The domain mozilla-firefox.todownload.com has been seen to resolve to the following 28 IP addresses.
ec2-52-208-66-250.eu-west-1.compute.amazonaws.com
August 21, 2016
ec2-52-19-104-236.eu-west-1.compute.amazonaws.com
August 21, 2016
ec2-54-194-255-153.eu-west-1.compute.amazonaws.com
August 21, 2016
ec2-52-208-7-26.eu-west-1.compute.amazonaws.com
July 22, 2016
ec2-54-194-84-36.eu-west-1.compute.amazonaws.com
July 22, 2016
ec2-50-16-204-217.compute-1.amazonaws.com
May 15, 2016
ec2-50-19-214-118.compute-1.amazonaws.com
February 3, 2016
ec2-50-17-197-66.compute-1.amazonaws.com
February 3, 2016
ec2-54-235-131-224.compute-1.amazonaws.com
January 26, 2016
ec2-50-16-236-171.compute-1.amazonaws.com
January 26, 2016
ec2-23-23-167-169.compute-1.amazonaws.com
May 6, 2015
ec2-184-73-238-150.compute-1.amazonaws.com
May 6, 2015
ec2-54-225-254-181.compute-1.amazonaws.com
May 6, 2015
ec2-50-16-187-48.compute-1.amazonaws.com
April 11, 2014
ec2-107-21-127-194.compute-1.amazonaws.com
February 14, 2014
ec2-23-21-46-174.compute-1.amazonaws.com
February 14, 2014
ec2-50-16-228-70.compute-1.amazonaws.com
February 14, 2014
ec2-54-243-188-246.compute-1.amazonaws.com
January 14, 2014
ec2-107-20-226-186.compute-1.amazonaws.com
January 14, 2014
ec2-184-73-232-174.compute-1.amazonaws.com
January 14, 2014
File downloads found at URLs served by mozilla-firefox.todownload.com.
Latest 30 of 189 download URLs
URL:
http://mozilla-firefox.todownload.com/
Network:
Amazon Web Services (AWS), running an EC2 instance
Statistics are for the previous month.