Download
Community
knowledgeBase
» v.everydownloader.com
Overview
Analysis
IPs Addresses (2)
Downloads (15)
Network (32)
Website Detail
v.everydownloader.com
WHOISGUARD, INC. (Proxy Registrant)
Domain Information
The domain v.everydownloader.com is registered by proxy through ENOM, INC. and was originally registered in June of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in San Francisco, California within the United States which resides on the Digital Ocean, Inc. network.
Registrant:
WHOISGUARD, INC.
Registrar:
ENOM, INC.
Server location:
California, United States (US)
Create date:
Tuesday, June 16, 2015
Expires date:
Thursday, June 16, 2016
Updated date:
Tuesday, June 16, 2015
ASN:
AS14061 DIGITALOCEAN-ASN - Digital Ocean, Inc., US
Root domain:
everydownloader.com
Whois:
1 everydownloader.com record
Analysis
Scanner detections:
Detections (100% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.Air Software.DownloadAssistant.Bundler (M), PUP.Air Software.Download.Bundler (M), PUP.Air Software (M)
100.00%
IPs Addresses
The domain v.everydownloader.com has been seen to resolve to the following 2 IP addresses.
159.203.253.236
fd-04-do-w-sf-1.gtdlrfwd.com
July 30, 2016
159.203.107.180
fd-03-do-e-ny-3.gtdlrfwd.com
January 3, 2016
Downloads
File downloads found at URLs served by v.everydownloader.com.
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/avast_free_antivirus_setup_online.exe&sid=Avast-US&uid=4075830&key=c4ac4c4f63cc6263525491372bdd2f78a6af7ffb870651a7f24c3e9ec57986b2&affiliate_image=&product_image=https://s3.amazonaws.com/evdlimages/.../avast-product.jpg&n=Avast Free Antivirus 2015&filename=Avast_Setup
(avast_setup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/firefox.exe&sid=Firefox-US&uid=3981020&key=cd0715e03d96ce64faf15b8f68d3ae1a406cfd05a90d6cfe6023fa1af373f622&affiliate_image=&product_image=https://s3.amazonaws.com/evdlimages/.../firefox-product.jpg&n=Firefox&filename=FirefoxSetup
(firefoxsetup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/ChromeSetup.exe&sid=Chrome-US&uid=4026693&key=a1183e4e0a7f707682651038897b8757db3025ea73d21c0fb9476a936875c3fb&affiliate_image=&product_image=https://s3.amazonaws.com/.../chrome-product.jpg&n=Chrome&filename=ChromeSetup
(327e5d3861cbf6a1f39bf8518ad8f8b2)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/gmod.exe&sid=Garrys Mod-US&uid=3939905&key=21247186f29ba391de82c1b485ec263ff54c7f1b9a0e3236d00ba29652dc1561&affiliate_image=&product_image=https://s3.amazonaws.com/evdlimages/.../product.png&n=Garry's Mod&filename=Garry's Mod Setup
(garry's mod setup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/firefox.exe&sid=Firefox-US&uid=3973680&key=cd0715e03d96ce64faf15b8f68d3ae1a406cfd05a90d6cfe6023fa1af373f622&affiliate_image=&product_image=https://s3.amazonaws.com/evdlimages/.../firefox-product.jpg&n=Firefox&filename=FirefoxSetup
(firefoxsetup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/ChromeSetup.exe&sid=Chrome-US&uid=3960474&key=a1183e4e0a7f707682651038897b8757db3025ea73d21c0fb9476a936875c3fb&affiliate_image=&product_image=https://s3.amazonaws.com/.../chrome-product.jpg&n=Chrome&filename=ChromeSetup
(3f22f5de4e05c7e942435d5d71851a33)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/chromecast.exe&sid=Chromecast Setup-US&uid=4019912&key=310dfe032b837665b1d71b6e7a28ff7a46ee34c59596e5a0b8a5457db85c0eae&affiliate_image=&product_image=https://s3.amazonaws.com/evdlimages/.../chromecast.png&n=Chromecast&filename=Chromecast Setup
(chromecast setup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?affiliate_image=&d=http://software.downloadtree.net/roblox.exe&filename=Roblox Setup&key=0fc9df32ee0387c3169e23607fb7348a4da4b68e897cfa6662d787360e6f2f2f&n=Roblox&product_image=https://s3.amazonaws.com/evdlimages/.../product.png&sid=Roblox-US&uid=4052493&uao=TW96aWxsYS81LjAgKFdpbmRvd3MgTlQgNi4xOyBXT1c2NCkgQXBwbGVXZWJLaXQvNTM3LjM2IChLSFRNTCwgbGlrZSBHZWNrbykgQ2hyb21lLzQwLjAuMjIxNC40NSBTYWZhcmkvNTM3LjM2
(roblox setup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/ChromeSetup.exe&sid=Chrome-US&uid=3960452&key=a1183e4e0a7f707682651038897b8757db3025ea73d21c0fb9476a936875c3fb&affiliate_image=&product_image=https://s3.amazonaws.com/.../chrome-product.jpg&n=Chrome&filename=ChromeSetup
(68b3b6cd9e0d3a04b9ee14a9c9c36859)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/firefox.exe&sid=Firefox-US&uid=3934675&key=cd0715e03d96ce64faf15b8f68d3ae1a406cfd05a90d6cfe6023fa1af373f622&affiliate_image=&product_image=https://s3.amazonaws.com/evdlimages/.../firefox-product.jpg&n=Firefox&filename=FirefoxSetup
(firefoxsetup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/ChromeSetup.exe&sid=Chrome-US&uid=4111570&key=a1183e4e0a7f707682651038897b8757db3025ea73d21c0fb9476a936875c3fb&affiliate_image=&product_image=https://s3.amazonaws.com/.../chrome-product.jpg&n=Chrome&filename=ChromeSetup
(ebd222dfb9ba0566b2186fd9cf11ca4a)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?affiliate_image=&d=http://software.downloadtree.net/gmod.exe&filename=Garry's Mod Setup&key=21247186f29ba391de82c1b485ec263ff54c7f1b9a0e3236d00ba29652dc1561&n=Garry's Mod&product_image=https://s3.amazonaws.com/evdlimages/.../product.png&sid=Garrys Mod-US&uid=3956593&uao=TW96aWxsYS81LjAgKFdpbmRvd3MgTlQgNi4xOyBXT1c2NCkgQXBwbGVXZWJLaXQvNTM3LjM2IChLSFRNTCwgbGlrZSBHZWNrbykgQ2hyb21lLzQzLjAuMjM1Ny4xMjQgU2FmYXJpLzUzNy4zNg__
(garry's mod setup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?affiliate_image=&d=http://software.downloadtree.net/gmod.exe&filename=Garry's Mod Setup&key=21247186f29ba391de82c1b485ec263ff54c7f1b9a0e3236d00ba29652dc1561&n=Garry's Mod&product_image=https://s3.amazonaws.com/evdlimages/.../product.png&sid=Garrys Mod-US&uid=3956593&uao=TW96aWxsYS81LjAgKFdpbmRvd3MgTlQgNi4xOyBXT1c2NCkgQXBwbGVXZWJLaXQvNTM3LjM2IChLSFRNTCwgbGlrZSBHZWNrbykgQ2hyb21lLzQzLjAuMjM1Ny4xMjQgU2FmYXJpLzUzNy4zNg__
(garry's mod setup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?affiliate_image=&d=http://software.downloadtree.net/BlueStacks.exe&filename=WhatsApp_BlueStacks Setup&key=24f16c44b924f3d573e6a623d9a75c229c3bc1ca12f92e691e22f939146627d0&n=WhatsApp BlueStacks&product_image=https://s3.amazonaws.com/evdlimages/.../product.png&sid=WhatsApp-US&uid=4012970&uao=TW96aWxsYS81LjAgKFdpbmRvd3MgTlQgNi4wKSBBcHBsZVdlYktpdC81MzcuMzYgKEtIVE1MLCBsaWtlIEdlY2tvKSBDaHJvbWUvNDMuMC4yMzU3LjEzMCBTYWZhcmkvNTM3LjM2
(whatsapp_bluestacks setup.exe)
1 / 68 (Adware)
http://v.everydownloader.com/v2/click/pn8b7cor/?d=http://software.downloadtree.net/mp3rocket.exe&sid=MP3 Rocket-US&uid=3954875&key=9d75f8c68ae00a554a0e4df52023e11b16020f3c1d277ba768eb85ff1d0876e9&affiliate_image=&product_image=https://s3.amazonaws.com/evdlimages/.../product.png&n=MP3 Rocket&filename=MP3 Rocket Setup
(mp3 rocket setup.exe)
Network Communications
The following 32 files have been seen to comunicate with v.everydownloader.com in live environments.
TCP »
159.203.253.236
:80
setup.exe (ImgBurn by Software Assistant)
TCP »
159.203.253.236
:80
setup_imgburn_2.5.8.0_download.exe (ImgBurn by Software Assistant)
TCP »
159.203.253.236
:80
kik for computer setup-efb5180a561c2ec1.exe
TCP »
159.203.253.236
:80
setup.exe (ImgBurn by Software Assistant)
TCP »
159.203.253.236
:80
mpc-hc.1.7.10.x86_download.exe (Media Player Classic HomeCinema Edition by Software Assistant)
TCP »
159.203.253.236
:80
setupimgburn_2.5.8.0_installer.exe (ImgBurn by Software Assistant)
TCP »
159.203.253.236
:80
setup.exe (ImgBurn by Software Assistant)
TCP »
159.203.253.236
:80
microsoft toolkit-4f2c4058580128b8.exe
TCP »
159.203.253.236
:80
setup.exe (Chrome by Software Assistant)
TCP »
159.203.253.236
:80
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
159.203.253.236
:80
chrome setup.exe (Chrome by Software Assistant)
TCP »
159.203.253.236
:80
setup.exe (Minecraft by Software Assistant)
TCP »
159.203.253.236
:80
n.exe (ImgBurn by Software Assistant)
TCP »
159.203.253.236
:80
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
159.203.253.236
:80
setup.exe (FIFA 15 by Software Assistant)
TCP »
159.203.253.236
:80
setup.exe (Chrome by Software Assistant)
TCP »
159.203.253.236
:80
setup.exe (ImgBurn by Software Assistant)
TCP »
159.203.253.236
:80
extreme injector.exe (Extreme Injector v3.6 by Software Assistant)
TCP »
159.203.253.236
:80
the forest setup.exe (The Forest by Software Assistant)
TCP »
159.203.253.236
:80
setup.exe (File Downloader by Software Assistant)
Latest 20 of 33 files
Website Details
URL:
http://v.everydownloader.com/
Title:
“Welcome to nginx!”
Web server:
nginx/1.4.6 (Ubuntu)
X