startfreedownload.com

Contact Privacy Inc. Customer 0135242542  (Proxy Registrant)

Domain Information

The domain startfreedownload.com is registered by proxy through TUCOWS DOMAINS INC. and was originally registered in July of 2013. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Ashburn, Virginia within the United States which resides on the Amazon Technologies Inc. network. The domain uses the Amazon Web Services (AWS) cloud computing platform.
Registrar:
TUCOWS DOMAINS INC.

Server location:
Virginia, United States (US)

Create date:
Wednesday, July 31, 2013

Expires date:
Sunday, July 31, 2016

Updated date:
Friday, August 7, 2015

ASN:
AS14618 AMAZON-AES - Amazon.com, Inc.,US

Scanner detections:
Detections  (89% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.FileMonarch.F, PUP.Installer.Fileadventure.F, PUP.Adknowledge.InstallBeta.Installer (M), PUP.Adknowledge.Liquidbuild.Installer (M), PUP.Adknowledge.Fileange.Bundler (M), PUP.Adknowledge.FileMona.Bundler (M), PUP.Adknowledge.TigerDow.Bundler (M), PUP.Adknowledge.Fileadve.Bundler (M)
100.00%

Malwarebytes
PUP.Optional.OptimunInstaller, PUP.Optional.OptimumInstaller.A, PUP.Optional.IBryte, PUP.Optional.Ibryte
50.00%

Norman
IBryte.PDB, IBryte.STR, Gen:Variant.Adware.Strictor.71370, Gen:Variant.Adware.Strictor.67514
50.00%

avast!
Win32:PUP-gen [PUP], Win32:IBryte-HH [PUP], Win32:Adware-gen [Adw]
50.00%

Comodo Security
Application.Win32.AgentCV.HWYE, Application.Win32.iBryte.WRP, Application.Win32.Ibryte.NW
50.00%

VIPRE Antivirus
Optimum Installer, Threat.4778314, Threat.4798837
50.00%

Avira AntiVirus
Adware/iBryte.bxoh, ADWARE/Adware.Gen7, APPL/OpenInst.pepri, TR/Kazy.439479.2
50.00%

ESET NOD32
Win32/AdWare.iBryte.AX application, Win32/AdWare.iBryte.AR application, Win32/Adware.iBryte.BR application, Win32/AdWare.iBryte.BG application
50.00%

AVG
Adware AdPlugin.AAE, Adware AdPlugin.BUN
50.00%

Panda Antivirus
Trj/Genetic.gen
50.00%

Kaspersky
Trojan.Win32.Buzus, Trojan-Downloader.Win32.Genome, not-a-virus:AdWare.Win32.iBryte
50.00%

McAfee
Trojan.Artemis!46F8749DEF37, Trojan.Artemis!2BDA97A3EE62, Program.IBryte-FSO, Program.IBryte-FSW
50.00%

Emsisoft Anti-Malware
Gen:Variant.Adware.Strictor.61512, Gen:Variant.Adware.Graftor.145314, Gen:Variant.Adware.Strictor.71370, Gen:Variant.Adware.Strictor.67514
50.00%

AhnLab V3 Security
PUP/Win32.IBryte
50.00%

MicroWorld eScan
Adware.IBryte.AF, Application.Bundler.Agent.B, Gen:Variant.Strictor.71370, Gen:Variant.Kazy.439479
50.00%

The domain startfreedownload.com has been seen to resolve to the following 6 IP addresses.

ec2-54-84-187-203.compute-1.amazonaws.com
May 29, 2016

ec2-54-210-180-22.compute-1.amazonaws.com
April 17, 2016

ec2-52-22-129-36.compute-1.amazonaws.com
February 7, 2016

ec2-52-20-41-248.compute-1.amazonaws.com
January 28, 2016

ec2-107-21-120-240.compute-1.amazonaws.com
November 29, 2014

ec2-50-16-246-149.compute-1.amazonaws.com
August 28, 2014

File downloads found at URLs served by startfreedownload.com.

URL:
http://startfreedownload.com/

Network:
Amazon Web Services (AWS), running an EC2 instance

Web server:
Microsoft-IIS/8.5 (ASP.NET) (Version: 4.0.30319)